Home Malware Programs Keyloggers Inlook Express

Inlook Express

Posted: March 28, 2006

Inlook Express is a commercial keylogger that records all user keystrokes and takes screenshots. Logged data is saved on a hard disk. Inlook Express must be manually installed. It runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 final.exe
    2 iecontrol2.exe
    3 inlook.exe
    4 inlookexpresssetup.exe
    5 is-qv2pm.exe
    6 remie20.exe
    7 svchost.exe
    8 svchost32.exe
    9 thehook.dll

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunsds20HKEY_LOCAL_MACHINESOFTWAREsds
Loading...