Log in

View Full Version : How to find a keylogger on your system??



Tight
09-24-2010, 02:44 PM
ok it finally happend to me, i just got hacked on my old battle.net account. really sucks..

now im using NOD32 x64bit and this crap cant find anything. :S

What program is a better alternetive to find the keylogger? (i heard you need to start wow to actually find it but not sure?)

strange thing is that its only one of my old inactive B.net accounts. (only one instance active on it) my new battle.net is not affected (yet)

need help here, i have never been hacked and i have played this from classic beta.. :S what do i do? Bah! i want to be a geek right now.

zenga
09-24-2010, 03:10 PM
This (http://forums.wow-europe.com/thread.html?topicId=5383442401&sid=1) might be a good start. Just follow the instructions i'd say.

Tight
09-24-2010, 03:24 PM
thx man, think that covers about everything.. :D

Shodokan
09-24-2010, 03:55 PM
Had it happen myself because of a flash exploit. Authenticators are your friend.

Keep your wow open and your internet browser. Programs you want.

AVG free
Malware Bites!
Spybot search & destroy
adaware

Tight
09-24-2010, 04:13 PM
Ya ill see if i can order one. Then i would not have this problem iguess.. :S

Im scanning as we speak.. :D Nothing so far but we will see..

//EDIT
hmm it might be my old computer though as my new RAF B.net account is not compromised. And i have been logging in to both on this pc.

Sbrowne55
09-24-2010, 04:16 PM
Just get a authenticator, save yourself the trouble. and run scans when you're sleeping.

Those keyloggers will get you again without an authenticator. So many wow sites are infected. Most google searches in wow are coming from gold sellers posting useful info so use visit their site. Stay away from wierd web addresses imo.

Get a new hotmail account, simply for your wows, and never use it for anything else. Don't ever log into it on your pc unless you have just scanned and its clean.

I've had keyloggers on my pc after the change, they had nothing to do.

Tight
09-24-2010, 04:24 PM
ya new hotmail adresses is a good idea. ill keep that in mind.

//Edit

Well i have scanned the computer with everything suggested in the link by Zenga and the programs suggested by Shodokan and nothing. its clean.
Just so strange. Must be my old computer then.

heyaz
09-24-2010, 05:47 PM
If its a good keylogger your antivirus won't find it.

And it'll log you authenticator token as well

Tight
09-24-2010, 05:52 PM
well i have used the following and nothing.

CCleaner
SUPERAntiSpyware
Spybot Search & Destroy
MalwareBytes
adaware
Nod32

Shodokan
09-24-2010, 06:28 PM
Have you updated your adobe flash?

Also if you are a windows 7 user... use the feature to "go back in time" basically. That's what I did... went back to a backup from two weeks beforehand and no problems.

Tight
09-25-2010, 02:33 AM
yes i think my flash is up to date.

And yes im a windows 7 user, only bad thing about rolling back to the previus is that i need to reinstall everything wow ect. as the computer is only 2 weeks old.
But its better then getting hacked. :D

Khatovar
09-25-2010, 03:44 AM
yes i think my flash is up to date.


Don't think. Know.

http://www.adobe.com/software/flash/about/

Tight
09-25-2010, 03:56 AM
Well its the latest version according to there wepage, so im all good there.

Sorry for being fuzzy. Im far from a computer geek eventhough i wish a was one.

lans83
09-25-2010, 06:18 AM
Thanks for sharing that link. I ran those programs tonite and cleaned out over a gig of crap with CCleaner and found two trojans with SuperAntiSpyware that SpyBot & AVG never picked up. Also checked my FlashPlayer and sure enough, it was way out dated.

zenga
09-25-2010, 10:08 AM
Earlier today i was over at my sis place, and for shit and giggles I decided to 'check' the flash on her windows machine and play with some security tools. Well all I can say is that updating flash on firefox is not that straight forward on Windows 7 64bit. I wonder how people who are not computer savvy are supposed to do this?

It turns out that there are 2 versions of the flash player installed on the system. One for firefox (which should also work for netscape, opera, ...) and one ActiveX version for IE. So the first step: tools > addons > plugins. No adobe flash in the list, only 'shockwave flash'. Now Shockwave and flash used to be 2 different things, but anyway let's try to update it. It brings me to a screen that says that I have a missing plugin, adobe download manager. Cool, lets install that one first. Oops not possible, I'm offered to install it manually though. Sweet, I can download an xpi file. Execute that with firefox, nothing happens.

Long story short, I end up in a circle, even after adding adobe.com to the safe list in firefox. A couple of articles on the adobe website give an indication that there seems to be quite some tricks involved to get it updating.

Finally I fired up the software manager tool in windows, uninstalled every piece that said 'adobe flash' and then went back to the adobe website. Finally had the latest version running.

I'm not surprised so many people run with an outdated flash version. A trivial task that should require a 1 click ends up to be confusing and complicated. And a quick google takes me to a plethora of blogs reporting this for about 3-4 years.