View Full Version : Tracing Amesico Keylogger
Nvestig8
10-08-04, 03:14 PM
I recently discovered Amesico Keylogger ver. 1 had been installed on my home PC. My home had been broken into several times the month before but nothing stolen. Now I know why, but not who. :irate: I need information about any method possible of tracking who was accessing my computer using this program, and proving it. The spyware was, by the way, deleted off of my computer via remote access the day after I discovered it.
Any and all help appreciated. :(
thepieman
10-08-04, 08:55 PM
I recently discovered Amesico Keylogger ver. 1 had been installed on my home PC. My home had been broken into several times the month before but nothing stolen. Now I know why, but not who. :irate: I need information about any method possible of tracking who was accessing my computer using this program, and proving it. The spyware was, by the way, deleted off of my computer via remote access the day after I discovered it.
Any and all help appreciated. :(
Its just spyware...doubtful someone broke in and installed it. I have been seeing it on a lot of computers that have been coming into my shop. A lot of spyware have the capability of Logging keystrokes....which is what makes them so dangerous. Just clean out your machine with a couple of good antispyware programs like Ad-aware SE , Spybot S&D 1.3 or Webroot Spysweeper
Pie
Nvestig8
10-09-04, 02:22 PM
Thanks for the reply, Pie.
I believe that the Amesico Keylogger was actually installed on my computer because-
a. Spysweeper found it there and named the file and software.
b. I had a break-in the day the file was installed.
c. the day after I discovered it there and did some internet research on it, it was deleted- so the person who installed it knew I was onto it and removed it.
The program is already off the computer. I was hoping that some of you computer guru types might be able to tell me how to:
1. locate and restore the keylogger files that were deleted.
2. trace the program/files to the person who was accessing it and my computer from a remote computer.
Anyone?
thepieman
10-09-04, 04:43 PM
Thanks for the reply, Pie.
I believe that the Amesico Keylogger was actually installed on my computer because-
a. Spysweeper found it there and named the file and software.
b. I had a break-in the day the file was installed.
c. the day after I discovered it there and did some internet research on it, it was deleted- so the person who installed it knew I was onto it and removed it.
The program is already off the computer. I was hoping that some of you computer guru types might be able to tell me how to:
1. locate and restore the keylogger files that were deleted.
2. trace the program/files to the person who was accessing it and my computer from a remote computer.
Anyone?
On a recent Spysweeper update Amerisco Keylogger showed up on almost all the computers in my Cafe...I think it was just a spyware that has been out there but went unnoticed because of the new updates release by spysweeper. Spysweeper just released some new definitions today just so you know....now there is 33,944 definitions available up from the previous 31,301.
Was the Keylogger the only spyware found on your computer?
Oh here is the site address for that keylogger: http://www.amecisco.com
Pie
Nvestig8
10-09-04, 07:45 PM
Yes. The only other thing (other than cookies) was the old cdilla file.
When I originally installed Spysweeper and ran a sweep, the Keylogger did not show up on the report. Later that month, when I ran the next sweep, (after the breakin) it did show up. I have looked at the Amecisco site, and contacted them. Their premium Keylogger package, available for under $100, allows access to the monitored computer from a remote computer. It says it works even if the monitored computer is turned off. It also has a telephone tap feature. Then, as I said, when I ran another sweep two days later the Keylogger program was gone. I had not quaranteened the file.
the Spysweeper report showed Amecisco Keylogger ver. 1.0.
vBulletin® v3.7.3, Copyright ©2000-2008, Jelsoft Enterprises Ltd.