Loverspy Malware
The LoverSpy Malware, also known by a lesser-used alias of EmailPI, is a commercial spyware program that was marketed for letting jilted lovers spy on their partners. Distributed through fraudulent e-mail messages at appropriate targets, the LoverSpy is capable of using multiple advanced methods to intercept information from compromised PCs without showing symptoms that would allow victims to detect the LoverSpy. With the programmer of the LoverSpy still at large and on the US FBI's 'most wanted' list, the LoverSpy remains a credible privacy-invading threat to anyone's PC. Malware experts warn that removing LoverSpy, or even noticing its existence without good anti-malware software, is unlikely to be practical.
When Your Lover Turns into Your LoverSpy
The LoverSpy is a specialized spyware product that's rented out to individuals who wish to keep an eye on their spouses or lovers – illegally. The victim is sent a threatening greeting card message that installs the LoverSpy, with estimated success rates for infections hovering around fifty percent. Malware experts have noted that, in spite of its specialized business plan, the LoverSpy includes many general information-stealing functions that could be used in other circumstances, such as:
- Recording your webcam input.
- Keylogging, AKA the recording of your keyboard-typed text information.
- Monitoring messages for specific programs of high interest, including instant messengers and e-mail clients.
- Capturing screenshots.
Because the LoverSpy, like any good spyware 'product,' doesn't intend to tip its victims off about its presence, none of these attacks will display major symptoms. At the most, you may notice some unusual system performance or resource allocation issues. You also shouldn't expect to see the usual signs of a new program on your computer, such as a new memory process in Task Manager, new files or new program entries in Control Panel.
Getting the PC Spy out of Your Love Life
Even though the black market business campaign for the LoverSpy has had middling financial success, its El Salvadoran creator has had his fair share of news headlines due to his eight year-long flight from the law. The LoverSpy continues to be a potential danger to the privacy of other PCs as long as Carlos Perez-Melara remains at large, and possibly afterward, too – since the LoverSpy easily may be re-purposed for other 'business' opportunities.
Given its elusive nature, detecting this spyware program or even removing the LoverSpy always should be left to anti-spyware or general anti-malware products with proven efficacy against high-level PC threats. On the other side of things, malware researchers also stress that the customers who rented the LoverSpy copies have by no means been ignored; they, too, have faced legal penalties, including various degrees of fines, for their exploitation of spyware for personal ends.
Technical Details
File System Modifications
Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.
The following files were created in the system:%Windir%\Mspssvf.exe
File name: %Windir%\Mspssvf.exeFile type: Executable File
Mime Type: unknown/exe
%Windir%\Mspssvf.txt
File name: %Windir%\Mspssvf.txtMime Type: unknown/txt
%Windir%\Rec_pwd.html
File name: %Windir%\Rec_pwd.htmlMime Type: unknown/html
%Windir%\Mspssvf.bat
File name: %Windir%\Mspssvf.batFile type: Batch file
Mime Type: unknown/bat
%System%\ShellExt\Csrss.exe
File name: %System%\ShellExt\Csrss.exeFile type: Executable File
Mime Type: unknown/exe
loverspy_demo.exe
File name: loverspy_demo.exeFile type: Executable File
Mime Type: unknown/exe
Leave a Reply
Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter . If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.