The Best KeyLogger

September 13, 2012 by
Filed under: TheBestKeyLogger 

The Best KeyLogger

http://www.thebestkeylogger.com/

This is Invisible Keylogger surveillance, Keystrokes Recorder, Spy Software tool that registers every activity on your PC to logs.
The Keylogger allows you to secretly track all activities from all computer users and automatically receive logs to a desire e-mail. With this tool you will have TOTAL control of what is happening on your computer. Every keystroke, every website visited, every process started, every msn chat room entered and much much more that you will control from now on. The keylogger automatically activate it self when windows starts and is completely invisible. The Keylogger is not listed in System Tray, MSConfig (Startup entry), Uninstall list (Add/Remove programs) And start menu. The keylogger also Hides its files.

The Windows boot time has become slow than usually. Difference= 16 sec (-37%).

SYSDIR.EXE
Description: SysApp Microsoft SysApp 3.5.4.0
MD5= F7A78A3BD558D96075C49A1C4E681E71
File is not signed.
File size= 6758400
Related registry changes:
HKCU\SOFTWARE\MICROSOFT\INSTALLER\ASSEMBLIES\C:|DOCUMENTS AND SETTINGS|ALL USERS|APPLICATION DATA|SYSAPP|SYSDIR.EXE
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INSTALLER\USERDATA\S-1-5-21-1659004503-1708537768-1801674531-500\COMPONENTS\1BFAFE59A2269224908246F20DE0EEB6\1A3A0813A3B08CF48B4046834A06CD67: “%COMMON APPDATA%\SYSAPP\SYSDIR.EXE
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INSTALLER\USERDATA\S-1-5-21-1659004503-1708537768-1801674531-500\COMPONENTS\C486773ED31109423922851B00C7574F\1A3A0813A3B08CF48B4046834A06CD67: “%COMMON APPDATA%\SYSAPP\SYSDIR.EXE.CONFIG”
HKCU\SOFTWARE\MICROSOFT\INSTALLER\ASSEMBLIES\C:|DOCUMENTS AND SETTINGS|ALL USERS|APPLICATION DATA|SYSAPP|SYSDIR.EXE\SYSDIR,VERSION=”3.5.4.0″,CULTURE=”NEUTRAL”,PROCESSORARCHITECTURE=”X86″: ‘U&FV3+WU_A’3U-6&R05N>EW*4XVGO=9BPB73BDTCJ’
HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\SYSDIR: “”%COMMON APPDATA%\SYSAPP\SYSDIR.EXE” /HIDE”

FILES ADDED:34

%APPDATA%\MICROSOFT\INSTALLER\{3180A3A1-0B3A-4FC8-B804-6438A460DC76}\_0B8BCBBD410DEDE9384311.EXE
%APPDATA%\MICROSOFT\INSTALLER\{3180A3A1-0B3A-4FC8-B804-6438A460DC76}\_DF0F4E9FBABE2B86F98003.EXE
%DESKTOP%\SYSDIR.LNK
%DESKTOP%\UNINSTALL SYSDIR.LNK
%TEMP%\CFG7.TMP
%TEMP%\CFGA.TMP
%TEMP%\MSI8502E.LOG
%TEMP%\OI_JMPBZL2T0J\THEBESTKEYLOGGERINSTALL.MSI
%COMMON APPDATA%\SYSAPP\ICON1_48_ICO_RGBA.ICO
%COMMON APPDATA%\SYSAPP\IONIC.ZIP.REDUCED.DLL
%COMMON APPDATA%\SYSAPP\JANUS.DATA.V3.DLL
%COMMON APPDATA%\SYSAPP\JANUS.WINDOWS.COMMON.V3.DLL
%COMMON APPDATA%\SYSAPP\JANUS.WINDOWS.GRIDEX.V3.DLL
%COMMON APPDATA%\SYSAPP\NDDE.DLL
%COMMON APPDATA%\SYSAPP\SYSAPPINSTALLER.EXE
%COMMON APPDATA%\SYSAPP\SYSAPPINSTALLER.EXE.CONFIG
%COMMON APPDATA%\SYSAPP\SYSDIR.EXE
%COMMON APPDATA%\SYSAPP\SYSDIR.EXE.CONFIG
%COMMON APPDATA%\SYSAPP\SYSDIR.INSTALLSTATE
%COMMON APPDATA%\SYSAPP\THEBESTLICENCE.RTF
%COMMON APPDATA%\SYSDIR\LOGS.IC
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,49,24).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,49,25).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,49,43).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,49,49).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,49,50).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,49,53).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,50,02).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,50,04).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,50,08).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,50,10).GIF
%COMMON APPDATA%\SYSDIR\SC\2012-09-13(16,50,14).GIF
%COMMON APPDATA%\SYSDIR\SETTINGS.IC
%WinDir%\INSTALLER\871FF.MSI

FILES DELETED:1

%PROGRAM FILES%\MOZILLA MAINTENANCE SERVICE\MAINTENANCESERVICE_TMP.EXE

FILES[ATTR]MODIFIED:2

%TEMP%\CE4CF87733651BF1F44DD1E02FC1A8E8
%WinDir%\TASKS\GOOGLEUPDATETASKUSERS-1-5-21-1659004503-1708537768-1801674531-500UA.JOB

FOLDERS ADDED:8

%APPDATA%\MICROSOFT\INSTALLER
%APPDATA%\MICROSOFT\INSTALLER\{3180A3A1-0B3A-4FC8-B804-6438A460DC76}
%TEMP%\OI_JMPBZL2T0J
%COMMON APPDATA%\SYSAPP
%COMMON APPDATA%\SYSDIR
%COMMON APPDATA%\SYSDIR\SC
%COMMON APPDATA%\SYSDIR\TEMP
%COMMON APPDATA%\SYSDLL
Install UnHackMe Install RegRun

Comments

Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!

You must be logged in to post a comment.