iSpyNOW has been detected (HTTP_ISpyNow_Installed)

About this signature or vulnerability

Proventia Network MFS, IBM Security Server Protection for Windows, Proventia-G 1.1 and earlier, Proventia Desktop, Proventia Network IDS, BlackICE Agent for Server, BlackICE Server Protection, BlackICE PC Protection, RealSecure Network, RealSecure Server Sensor, RealSecure Desktop, RealSecure Desktop Protector 3.6, Proventia Network IPS, Proventia Server IPS for Linux technology, Virtual Server Protection for Vmware:

This signature detects an install of iSpyNow.


Default risk level

High risk vulnerability  High

Sensors that have this signature

Proventia Network MFS: XPU 1.57, IBM Security Server Protection for Windows: 2.1.14.2400, IBM Security Server Protection for Windows: 1.0.914.0, Proventia-G 1.1 and earlier: XPU 24.18, Proventia Desktop: 8.0.675.100, Proventia Network IDS: XPU 24.18, BlackICE Agent for Server: 3.6eop, BlackICE Server Protection: 3.6.cpa, BlackICE PC Protection: 3.6cpa, RealSecure Network: XPU 24.18, RealSecure Server Sensor: XPU 24.18, RealSecure Desktop: eop, RealSecure Desktop Protector 3.6: eop, Proventia Network IPS: XPU 1.57, Proventia Server IPS for Linux technology: 1.0, Virtual Server Protection for Vmware: 1.0

Systems affected

Microsoft Windows 95, Microsoft Windows NT: 4.0, Microsoft Windows 98, Microsoft Windows 98SE, Microsoft Windows 2000, Microsoft Windows Me, Microsoft Windows XP, iSpyNOW iSpyNOW

Type

Protocol Signature

Vulnerability description

iSpyNow is an application used for remote Internet monitoring and surveillance. iSpyNow has been detected.

How to remove this vulnerability

This check is for informational purposes only.

References

iSpyNOW Web site
The most powerful surveillance software
http://64.21.67.175/features.htm

ISS X-Force
iSpyNOW has been detected
http://www.iss.net/security_center/static/21765.php