• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Microsoft AntiSpyware just found a keylogger

csyberblue

Senior member
I take a lot of precautions to keep my computer safe, I run a hardware and software firewall, use firefox, have 3 spyware programs that I run regularly (with MS AntiSpyware running everynight automatically) and I have a virus scanner that updates and scans everyday. So when I still get a big problem, like a keylogger installed on my PC, I get kinda freaked out.

MS AntiSpyware found the file this morning while it did it's automatic scan. MS AntiSpyware runs everyday. The file was found in my "grabit" program folder (I had just installed grabit, a newsserver download program, last night) and was also found in my "peerguardian2" folder (peerguardian is a program used to block bad IP addresses). The Keylogger, called "NS Keylogger Personsal Monitor (Key Logger)" (the misspellings are intentional, that's what AntiSpyware told me) was quarantined successfully.

Besides going to a few new sites last night, I hadn't done much else differently than I usually do. I'm worried because I use only about 2 or 3 different passwords for all of my sites, and I probably typed in 2 of them last night. I ran my antivirus again and nothing showed up. I'm wondering what the next best step to be is, should I try and change my passwords to the important sites that I use, or should I do something else?

Thank you for any help
 
Originally posted by: dartworth
do you know when and how you picked up the logger?

I have no idea how I got it, but I did install a few new programs last night, one was called "grabit", the newsserver software I mentioned, and QuickPar-0.9.1.0, and regular Quickpar (both of these programs are used for newsgroups as well). All 3 of these install files are free and available for download. I got all 3 from the official websites.

I'm not sure when I picked up the keylogger, but MS AntiSpyware didn't detect the file yesterday morning, so I assume I must have got it between the hours of 7am on thursday and 7am on friday (today).
 
I assume you've changed your passwords after removing the logger right?

The fact you detected it pretty quickly may have saved you some grief.

It's a big deal to avoid using the same password at multiple sites. Why setup a phishing site to capture passwords if you can simply lure someone into creating an account on a different site and seeing if they use the same password?
 
When I installed the current Microsoft Antispyware and had it scan my system, it found a key logger - a program that I have been using for over 5 years. It was the screen capture component of HiJaak Pro 5.x by IMSI. So, I dumped it and replaced it with another capture program that is not a key logger.
 
Pretty strange but my scan using Microsoft Antispyware this afternoon also picked up the same 'NS Keylogger Personsal Monitor (Key Logger' in a file called 'unins000.exe' in my SpywareBlaster folder - I think its a false alarm but deleting it anyway.

Edit: Check this URL - http://www.wilderssecurity.com/showthread.php?t=76739&highlight=keylogger

Looks like a false positive with Microsoft Antispyware picking up the the latest SpywareBlaster as a keylogger. Don't worry about it.

Edit 2: What was the location of the 'keylogger' your scan picked up?
 
quick par - grabit - yummy binaries.

Buy software and you wont have a problem.

(if you were using it for a legit reason more power too ya - but porn and software pirating are all I have seen it used for)
 
Originally posted by: bNeta86
quick par - grabit - yummy binaries.

Buy software and you wont have a problem.

(if you were using it for a legit reason more power too ya - but porn and software pirating are all I have seen it used for)

So your saying people that buy software don't get keylogers or viruses or worms? What an uninformed comment :disgust:
 
Originally posted by: csyberblue
I take a lot of precautions to keep my computer safe, I run a hardware and software firewall, use firefox, have 3 spyware programs that I run regularly (with MS AntiSpyware running everynight automatically) and I have a virus scanner that updates and scans everyday. So when I still get a big problem, like a keylogger installed on my PC, I get kinda freaked out.

MS AntiSpyware found the file this morning while it did it's automatic scan. MS AntiSpyware runs everyday. The file was found in my "grabit" program folder (I had just installed grabit, a newsserver download program, last night) and was also found in my "peerguardian2" folder (peerguardian is a program used to block bad IP addresses). The Keylogger, called "NS Keylogger Personsal Monitor (Key Logger)" (the misspellings are intentional, that's what AntiSpyware told me) was quarantined successfully.

Besides going to a few new sites last night, I hadn't done much else differently than I usually do. I'm worried because I use only about 2 or 3 different passwords for all of my sites, and I probably typed in 2 of them last night. I ran my antivirus again and nothing showed up. I'm wondering what the next best step to be is, should I try and change my passwords to the important sites that I use, or should I do something else?

Thank you for any help

Your news leacher downloaded it, most likely.
 
Originally posted by: fatal
Originally posted by: bNeta86
quick par - grabit - yummy binaries.

Buy software and you wont have a problem.

(if you were using it for a legit reason more power too ya - but porn and software pirating are all I have seen it used for)

So your saying people that buy software don't get keylogers or viruses or worms? What an uninformed comment :disgust:


No - but I am specifically saying that people downloading binaries from a newsgroup are increasing the likelyhood. I have never seen a keylogger in retail software. If someone has gotten one please enlighen me.

And yes - I still stand by my comment above - buy retail software and you wont have a problem. People dont get infected with a virus - they install it themselves.

I'm sorry you got stuck with one in something you downloaded - I know how it can suck. But...I was pointing out that by using a system set up for pirating software..well nm - you get the point.
 
You can stand by your comments all you want, but you will still be wrong. There are lots of worm/trojan that log keystrokes & steal passwords that dont need to be installed.
 
Back
Top