Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top 25 Spyware:
Glossary Latest Detections ![]() |
Key Logger/Invisible Stealth KeyloggerAlias: Invisible Stealth Keylogger
Description: From the publisher: 'an extremely useful auditing and security tool. It runs silently in the background, records all of the machine's keyboard activities into a binary log file. The binary log file can later be viewed via included 'datview.exe' utility.' 'Invisible KeyLogger Stealth for WindowsNT version 1.0 is the world's first keystroke recorder that can capture even NT's trusted logon (alt-ctrl-del logon). It runs silently in the background, records all of the NT machine's keyboard activities into a binary file. This binary file can later be viewed via the 'datview.exe' utility provided. The only file that is required for keystroke recording is the file 'iks.sys'. This file can be renamed to maximize stealth. The binary log file can also be renamed and be redirected to a different path. The primary purpose of this program is to provide network administrators with an effective means to monitor workstation usage in hostile environments. It's an equally effective tool for parental control, security audit and network penetration for the security professionals.' Variants: Invisible Stealth Keylogger 1.2d, Invisible Stealth Keylogger 2.0, Invisible Stealth Keylogger 2.1 Threat type: Key Logger - A Key logger is a software application that runs in the background and records any keyboard activity. Logged information is stored in the machine and can be retrieved later by the attacker through the internet connection. Key loggers can record sensitive information such as passwords, credit card numbers, personal identification numbers, etc. Key loggers are commonly included as parts of other spyware programs. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer or your privacy. Detection: SpyNoMore detects Key Logger/Invisible Stealth Keylogger: Yes Threat risk: High Risk Very dangerous malware. Can log user's keyboard activity and take snapshots of the user's screen. Uses stealth installation and removal is very difficult. Category includes spyware programs, adware programs and trojans. Symptoms: Running Process Signatures: N/A File Signatures: %WINDOWS%\system32\drivers\iks.sys %DESKTOPDIRECTORY%\log viewer for iks.lnk %WINDOWS%\iks.dat Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: %PROGRAM_FILES%\iks Registry Signatures: HKLM\system\controlset002\enum\root\legacy_iks HKLM\system\controlset001\enum\root\legacy_iks HKLM\system\controlset002\services\iks HKLM\system\controlset001\services\iks SpyNoMore Collected Residual File Signatures: N/A
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
||||