Remove SystemSleuth. Description and removal instructions

 
Title: SystemSleuth

Type: Keyloggers
Severity scale:SystemSleuth severity is 72  (72 / 100)
 
SystemSleuth is a commercial computer surveillance program that monitors user activity, logs keystrokes, takes screenshots, records online chat conversations, captures incoming and outgoing e-mail messages, records web sites visited. SystemSleuth stores gathered data in encrypted log files. These files can be sent to a configurable e-mail address. The program must be manually installed. It runs on every Windows startup.


SystemSleuth properties:
• Takes and sends out screenshots of user activity
• Sends out logs by FTP or email
• Logs keystrokes
• Hides from the user
• Stays resident in background

Automatic SystemSleuth removal:

remover for SystemSleuth

SystemSleuth manual removal:

Kill processes:
ddss.exe, ddssdemo.exe
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\msregscan
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files\DDSS
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files\DDSS Demo
HKEY_CURRENT_USER\Software\Microsoft\Installer\Features\EA50A778F651BE748AF9CBF6C24D2981
HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\EA50A778F651BE748AF9CBF6C24D2981
HKEY_CURRENT_USER\Software\Microsoft\Installer\UpgradeCodes\6B7C89967F8073B489687CEA2A1D9744
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\6B7C89967F8073B489687CEA2A1D9744
HKEY_LOCAL_MACHINE\SOFTWARE\Divine Downloads\SystemSleuth
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{877A05AE-156F-47EB-A89F-BC6F2CD49218}
Delete files:
ddss.exe, ddssdemo.exe
Delete directories:
C:\Program Files\DDSS
C:\Program Files\DDSS Demo
C:\Documents and Settings\[Current User]\Start Menu\Programs\Divine Downloads Software\SystemSleuth
C:\Documents and Settings\[Current User]\Start Menu\Programs\Divine Downloads Software\SystemSleuth Demo
C:\Documents and Settings\[Current User]\Application Data\Microsoft\Installer\{877A05AE-156F-47EB-A89F-BC6F2CD49218}
Misc:
SystemSleuth uses files with random names.

Other programs to remove SystemSleuth:

• Malwarebytes Anti Malware - Review - Download
• Malwarebytes Anti Malware - Review - Download
• Windows Defender - Review - Download

Information added: 07/02/06
Information updated: 07/02/06

Additional resources related to SystemSleuth:

Attention: If you know or you have a website or page about SystemSleuth removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about SystemSleuth parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:

Latest spyware news:
Similar parasites: