Systweak Spyware Library
Systweak Spyware Library text
More than 21875 spyware signatures and growing
Microsoft Gold Certified Partner
Search in:
Comparison Details for Trojan.Aspam.b
Description: It is installed and run in the stealth mode. It captures the screenshots of the system and logs the keystrokes. It is difficult to remove this program from the system

#

SPYWARE

Advanced System Protector
Counter Spy
Spy Doctor
Spy Sweeper
Trend Micro

S.NO

File Path

Detected |Cleaned

Detected |Cleaned

Detected |Cleaned

Detected |Cleaned

Detected |Cleaned

1

Main exe (malware.exe)

2

C:\WINDOWS\system32\amcis32.dll

Registry Comparison Results

1

HKEY_CLASSES_ROOT\amcis32.IEClass()

2

HKEY_CLASSES_ROOT\amcis32.IEClass(default)

3

HKEY_CLASSES_ROOT\amcis32.IEClass\Clsid()

4

HKEY_CLASSES_ROOT\amcis32.IEClass\Clsid(default)

5

HKEY_CLASSES_ROOT\CLSID\{657B9354-BB3B-4
500-A9B0-109B4FA64815}()

6

HKEY_CLASSES_ROOT\CLSID\{657B9354-BB3B-4
500-A9B0-109B4FA64815}(default)

7

HKEY_CLASSES_ROOT\CLSID\{657B9354-BB3B-4
500-A9B0-109B4FA64815}\InprocServer32()

8

HKEY_CLASSES_ROOT\CLSID\{657B9354-BB3B-4
500-A9B0-109B4FA64815}\InprocServer32(default)

9

HKEY_CLASSES_ROOT\CLSID\{657B9354-BB3B-4
500-A9B0-109B4FA64815}\InprocServer32(ThreadingModel)

10

HKEY_CLASSES_ROOT\CLSID\{657B9354-BB3B-4
500-A9B0-109B4FA64815}\ProgID()

11

HKEY_CLASSES_ROOT\CLSID\{657B9354-BB3B-4
500-A9B0-109B4FA64815}\ProgID(default)

12

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\amci
s32.IEClass()

13

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\amci
s32.IEClass(default)

14

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\amci
s32.IEClass\Clsid()

15

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\amci
s32.IEClass\Clsid(default)

16

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSI
D\{657B9354-BB3B-4500-A9B0-109B4FA64
815}()

17

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSI
D\{657B9354-BB3B-4500-A9B0-109B4FA64
815}(default)

18

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSI
D\{657B9354-BB3B-4500-A9B0-109B4FA64
815}\InprocServer32()

19

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSI
D\{657B9354-BB3B-4500-A9B0-109B4FA64
815}\InprocServer32(default)

20

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSI
D\{657B9354-BB3B-4500-A9B0-109B4FA64
815}\InprocServer32(ThreadingModel)

21

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSI
D\{657B9354-BB3B-4500-A9B0-109B4FA64
815}\ProgID()

22

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSI
D\{657B9354-BB3B-4500-A9B0-109B4FA64
815}\ProgID(default)

23

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wi
ndows\CurrentVersion\Explorer\Browse
r Helper Objects\{657B9354-BB3B-4500
-A9B0-109B4FA64815}()

24

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wi
ndows\CurrentVersion\Explorer\Browse
r Helper Objects\{657B9354-BB3B-4500
-A9B0-109B4FA64815}\DontDelete()

Microsoft Gold Certified Partner

© Systweak Inc., 1999-2018 All rights reserved.