Scan Spyware on Twitter
Thursday, March 30, 2017

Bookmark and Share



acespy


        Download

Type: keylogger

Alias: spyware.acespy

Company: Retina-X Studios, LLC

Description: AceSpy is a Keylogger program developed by Retina-X Studios. It monitors user's activities, takes screenshots, logs keystrokes and send it to a specified address through email or FTP server. AceSpy can be installed both in stealth and administrator mode.

acespy

Warning: A spy-ware removal software uses certain rules for detection and removal of spy-ware, malware, ad-ware and trojan from your PC. ScanSpyware.Net provides this information "AS IS" without warranty of any kind. Your use of this information is at your own risk. We strictly restrict you from using this information if you are not sure about what you are doing.


Recommendation 1: We recommend you to take a backup of Windows Registry before following these manual spyware removal instructions to fix your PC. You can do this by either creating a Restore Point using System Restore Utility in Windows System Tools or using the Export feature of regedit.exe.


Recommendation 2: By trying to remove spy-ware from your PC without getting any help from an expert may produce unexpected results. In case you suspect that your PC is infected with some spy-ware, ad-ware, malware or virus, just follow the instructions available at http://how-to.scanspyware.net/diagnose-and-fix.html to contact us for abolutely FREE help.


Directories

  • C:\Windows\System32\AceSpy
  • C:\Windows\System32\AceSpy\Manual
  • C:\Documents and Settings\All Users\Start Menu\Programs\AceSpy
  • C:\Program Files\Retina-X Studios
  • C:\Program Files\Retina-X Studios\AceSpy
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\iecache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\keycache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\msgcache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\prncache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\appcache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\scrcache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\acecache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\wincache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\taskcache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\clipcache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\emailcache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\eventcache
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\recentcache

Files

  • C:\Windows\System32\ace16win.dll
  • C:\Windows\System32\AceSpy\ijl11.dll
  • C:\Windows\System32\AceSpy\ANSMTP.dll
  • C:\Windows\System32\AceSpy\Comcat.dll
  • C:\Windows\System32\AceSpy\Msinet.ocx
  • C:\Windows\System32\AceSpy\KTKbdHk.dll
  • C:\Windows\System32\AceSpy\Makecab.exe
  • C:\Windows\System32\AceSpy\Wininet.dll
  • C:\Windows\System32\AceSpy\Shlwapi.dll
  • C:\Windows\System32\AceSpy\Sysinfo.ocx
  • C:\Windows\System32\AceSpy\systune.exe
  • C:\Windows\System32\AceSpy\__acelog.ndx
  • C:\Windows\System32\AceSpy\Asycfilt.dll
  • C:\Windows\System32\AceSpy\Comdlg32.ocx
  • C:\Windows\System32\AceSpy\Mscomct2.ocx
  • C:\Windows\System32\AceSpy\Mscomctl.ocx
  • C:\Windows\System32\AceSpy\Msmapi32.ocx
  • C:\Windows\System32\AceSpy\Mswinsck.ocx
  • C:\Windows\System32\AceSpy\Riched32.dll
  • C:\Windows\System32\AceSpy\Richtx32.ocx
  • C:\Windows\System32\AceSpy\Tabctl32.ocx
  • C:\Documents and Settings\All Users\Start Menu\Programs\AceSpy\AceSpy.lnk
  • C:\Documents and Settings\All Users\Start Menu\Programs\AceSpy\Visit AceSpy.lnk
  • C:\Documents and Settings\All Users\Start Menu\Programs\AceSpy\Remove AceSpy.lnk
  • acespy21.exe (md5:7a1123f817922aaa676e26...)
  • acespy331t.exe (md5:a0a3feed587b20dfc7b12e...)
  • C:\Documents and Settings\All Users\Start Menu\Programs\AceSpy\License Agreement.lnk
  • C:\Documents and Settings\All Users\Start Menu\Programs\AceSpy\Help Documentation.lnk
  • C:\Program Files\Retina-X Studios\AceSpy\help.htm
  • C:\Program Files\Retina-X Studios\AceSpy\ijl11.dll
  • C:\Program Files\Retina-X Studios\AceSpy\Legal.txt
  • C:\Program Files\Retina-X Studios\AceSpy\acespy.url
  • C:\Program Files\Retina-X Studios\AceSpy\ansmtp.dll
  • C:\Program Files\Retina-X Studios\AceSpy\regsvc.exe
  • C:\Program Files\Retina-X Studios\AceSpy\shlhook.dll
  • C:\Program Files\Retina-X Studios\AceSpy\keylist.ndx
  • C:\Program Files\Retina-X Studios\AceSpy\systune.exe
  • C:\Program Files\Retina-X Studios\AceSpy\winlist.ndx
  • C:\Program Files\Retina-X Studios\AceSpy\unins000.dat
  • C:\Program Files\Retina-X Studios\AceSpy\unins000.exe
  • C:\Program Files\Retina-X Studios\AceSpy\urlfname.ndx
  • C:\Program Files\Retina-X Studios\AceSpy\userlist.ndx
  • C:\Program Files\Retina-X Studios\AceSpy\SMTPHook.dll
  • C:\Program Files\Retina-X Studios\AceSpy\contlist.ndx
  • C:\Program Files\Retina-X Studios\AceSpy\dscbtshl.dll
  • C:\Program Files\Retina-X Studios\AceSpy\keyboard.dll
  • C:\Program Files\Retina-X Studios\AceSpy\IShellLink.tlb
  • C:\Program Files\Retina-X Studios\AceSpy\chathandler.dll
  • C:\Program Files\Retina-X Studios\AceSpy\hideProcess.dll
  • C:\Program Files\Retina-X Studios\AceSpy\StealthAPIs.dll
  • C:\Program Files\Retina-X Studios\AceSpy\emailcatcher.dll
  • C:\Program Files\Retina-X Studios\AceSpy\getCurrentURL.dll
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\acecache\_ace11282005.log
  • C:\Program Files\Retina-X Studios\AceSpy\LOGS\eventcache\_event11282005.log

Registry Keys

  • HKEY_CLASSES_ROOT\\SHELLHOOK.CSHELLHOOK
  • HKEY_CLASSES_ROOT\CLSID\{84480A87-0AE5-11D5-AF6E-008048E23503}
  • HKEY_CLASSES_ROOT\TYPELIB\{84480A8A-0AE5-11D5-AF6E-008048E23503}
  • HKEY_CLASSES_ROOT\INTERFACE\{84480A86-0AE5-11D5-AF6E-008048E23503}
  • HKEY_CLASSES_ROOT\INTERFACE\{84480A89-0AE5-11D5-AF6E-008048E23503}
  • HKEY_CURRENT_USER\SOFTWARE\VNSI4H SOFTWARES
  • HKEY_CURRENT_USER\SOFTWARE\VNSI4H SOFTWARES\STEALTHAPIS
  • HKEY_CURRENT_USER\SOFTWARE\VB AND VBA PROGRAM SETTINGS\SYSTUNE
  • HKEY_LOCAL_MACHINE\SOFTWARE\RXS
  • HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SHELLHOOK.CSHELLHOOK
  • HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{84480A87-0AE5-11D5-AF6E-008048E23503}
  • HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\TYPELIB\{84480A8A-0AE5-11D5-AF6E-008048E23503}
  • HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\INTERFACE\{84480A86-0AE5-11D5-AF6E-008048E23503}
  • HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\INTERFACE\{84480A89-0AE5-11D5-AF6E-008048E23503}

Registry Values

  • HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\regsvc
  • HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\regsvc
  • HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\systune