Net Monitor for Employees
|
Description:
|
Keylogger
|
|
Risk Level:
|
Critical
|
|
Date of First Occurence:
|
Friday, May 09, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Keyloggers invisibly monitor and record all of your computer activity. This information is then automatically emailed to an anonymous user.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
RIMUOVI SPYWARE »
Geographical Distribution of Threat "Net Monitor for Employees"
Threat Info
View All
Detected Items
- Detected Files:
%PROGRAMFILES%\Network LookOut\Net Monitor for Employees\bin\NLSAgentSvc.exe
MD5: 3723A7EBA05A74C64EB983C083CB3198 Size:976896
MD5: E4716AF84B6CC1E78320EA169A59BBF4 Size:1136640
MD5: 88F7BC8F2A1E9959078DF09BFF500251 Size:1136640
MD5: 1F74A1DD7831797E94FD1DA990F12B43 Size:976896
MD5: 133954DA14617D6F7AEF36077A4B0023 Size:1136640
MD5: 133954DA14617D6F7AEF36077A4B0023
MD5: 07B0103B8C98C8E76524EADF05674C51 Size:1136640
MD5: 71300FE798A12470283CB3BD447F0229 Size:976896
%PROGRAMFILES%\Network LookOut\Net Monitor for Employees\unins000.exe
MD5: A686D86313D3ABB42539198D31C6778F Size:678682
MD5: 44D05C1E3A6CD196552C0BCD5932FCF5 Size:682266
%PROGRAMFILES%\Network LookOut\Net Monitor for Employees\bin\NLSupervisor.exe
MD5: 6388E57F1F9FB38B5B8A629555A121FF Size:1780224
MD5: A09119318DE1EE739A5E0FBCB5AEA520 Size:2165760
MD5: 11004A311CD7157650642713B188253C
%PROGRAMFILES%\Network LookOut\Net Monitor for Employees\bin\NLSAgtConfig.exe
MD5: CD255EED19285BFB281A41F142DB3D37 Size:1174016
MD5: 15D51A704C3D74D50629D004C627383F Size:990208
MD5: 321ED0145DBA62B47F941E70D0BFAE03 Size:990208
MD5: 5FC763A15CBD315021160D78C4268533
MD5: D3A264D85908E1BCF269CF4AAA59CC59 Size:990208
%PROGRAMFILES%\Network LookOut\Net Monitor for Employees\bin\NLSAgent.exe
MD5: 9097C1798F371DC46359216AAA90058F Size:1165312
MD5: 398A30151E2BC08A2EB3B5B74DE6D756 Size:1165312
MD5: E703072630095278A5F6677F8E85C8C8 Size:1165312
MD5: E703072630095278A5F6677F8E85C8C8
MD5: 0D49F8C7D28F5E370E03EB5B7E6CADE4 Size:1165312
- Detected Files with variable Filenames:
Detecting items list:
- Files by Name
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees\Buy License Key.lnk
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees\Help.lnk
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees\Net Monitor for Employees Agent Configuration.lnk
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees\Net Monitor for Employees.lnk
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees\NetworkLookOut.com.lnk
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees\Readme.lnk
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees\Uninstall.lnk
%ProgramFiles%\Network LookOut\Net Monitor for Employees\bin\NLSAgent.exe
%ProgramFiles%\Network LookOut\Net Monitor for Employees\bin\NLSAgentSvc.exe
%ProgramFiles%\Network LookOut\Net Monitor for Employees\bin\NLSAgtConfig.exe
%ProgramFiles%\Network LookOut\Net Monitor for Employees\bin\NLSupervisor.exe
%ProgramFiles%\Network LookOut\Net Monitor for Employees\bin\NMEmployees.hlp
%ProgramFiles%\Network LookOut\Net Monitor for Employees\conf\ctrlagt.cfg
%ProgramFiles%\Network LookOut\Net Monitor for Employees\ebuynow.url
%ProgramFiles%\Network LookOut\Net Monitor for Employees\eweb.url
%ProgramFiles%\Network LookOut\Net Monitor for Employees\unins000.dat
%ProgramFiles%\Network LookOut\Net Monitor for Employees\unins000.exe
- Files by Directories
%START_PROGRAMS%\Network LookOut\Net Monitor for Employees
- Registry Keys
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Net Monitor for Employees Console_is1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Net Objective_is1
HKLM\SYSTEM\ControlSet001\Services\NMEmployeesAgent
HKLM\SYSTEM\CurrentControlSet\Services\NMEmployeesAgent
«
Go to Software Database