Home Malware Programs Malware AIM Logger

AIM Logger

Posted: March 28, 2006

AIM Logger is a commercial malware application that records all AOL Instant Messenger online conversations. The logs can be sent to a configurable e-mail address or saved to a hard disk. AIM Logger must be manually installed. It runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 csvde.dll
    2 csvdea.dll
    3 csvdea.exe
    4 rva.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREKMiNT21SpyArsenal-AIM-LoggerHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRuncsvdeaHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallSpyArsenal-AIM-LoggerHKEY_LOCAL_MACHINESYSTEMControlSet001ControlNetworkNetCfgLockHolderHKEY_LOCAL_MACHINESYSTEMControlSet001ServicesPSSdk21HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlNetworkNetCfgLockHolderHKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_PSSDK21HKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootMS_NDISWANBHHKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesPSSdk21
Loading...