Post: False positives on .exe?
03-04-2011, 05:15 AM #1
The Open Minded
☮✌Peace Maker✌☮
(adsbygoogle = window.adsbygoogle || []).push({}); Is there any way to differentiate between an actual virus and a false positive on a .exe keygen?
(adsbygoogle = window.adsbygoogle || []).push({});
03-09-2011, 09:15 PM #11
David.
Do a barrel roll!
Originally posted by microcell View Post
you can always use anti keylogger shield, it will stop all keyloggers from working 100%
i posted a download of it here:
You must login or register to view this content.


hijack just looks at registry keys whats starting up.. it doesnt detect virusses etc... Gasp but it sure is a good tool to remove them i agree with you:y:


Seen a lot of your posts around here, you seem to know your shit. Yeah, that program is good. Another one is keyscrambler, used it before but never tested it.
03-09-2011, 09:16 PM #12
Originally posted by microcell View Post
you can always use anti keylogger shield, it will stop all keyloggers from working 100%
i posted a download of it here:
You must login or register to view this content.


Ok, btw does that work on FUD Keyloggers? :\
And, iStealer is diffrent than Keylogger. When you run the stealer, it sends victims passwords to you. Its not "active"
03-09-2011, 09:32 PM #13
Originally posted by Tuhoaja View Post
Ok, btw does that work on FUD Keyloggers? :\
And, iStealer is diffrent than Keylogger. When you run the stealer, it sends victims passwords to you. Its not "active"


yes this works on FUD, the program does not delete any keylogger it does not even detect them.
it just makes the logging of the keys impossible, keyloggers wont record anything.
so just be sure that you dont forget to enable the program before typing any sensetive stuff like passwords.
Smile
03-09-2011, 09:35 PM #14
Originally posted by microcell View Post
yes this works on FUD, the program does not delete any keylogger it does not even detect them.
it just makes the logging of the keys impossible, keyloggers wont record anything.
so just be sure that you dont forget to enable the program before typing any sensetive stuff like passwords.
Smile


Cool sounds good! :y:

Well I just check my processes.... keylogger will show there :p
03-09-2011, 09:38 PM #15
David.
Do a barrel roll!
Originally posted by microcell View Post
yes this works on FUD, the program does not delete any keylogger it does not even detect them.
it just makes the logging of the keys impossible, keyloggers wont record anything.
so just be sure that you dont forget to enable the program before typing any sensetive stuff like passwords.
Smile


Infact, KIS - Kaspersky Internet Security - has some detection system. Sometimes games are detected as a keylogger but of course it is a false positive. I think it just detects the executable's actions so some sort of Heuristic detection, so I think regardless of it being full undetectable from other scanning techniques would KIS not detect it because of it's actions? Not sure if you have used it but I'm currently using it and have for the past 6 or so months.

---------- Post added at 04:38 PM ---------- Previous post was at 04:37 PM ----------

Originally posted by Tuhoaja View Post
Cool sounds good! :y:

Well I just check my processes.... keylogger will show there :p


Not necessarily, it is very very easy to hide an executable from task manager.
03-09-2011, 09:43 PM #16
Originally posted by David. View Post

Not necessarily, it is very very easy to hide an executable from task manager.


Then I type netstat -b or netstat -n in cmd, it will show all active connections to me :black:
03-09-2011, 09:45 PM #17
Originally posted by David. View Post
Infact, KIS - Kaspersky Internet Security - has some detection system. Sometimes games are detected as a keylogger but of course it is a false positive. I think it just detects the executable's actions so some sort of Heuristic detection, so I think regardless of it being full undetectable from other scanning techniques would KIS not detect it because of it's actions? Not sure if you have used it but I'm currently using it and have for the past 6 or so months.

---------- Post added at 04:38 PM ---------- Previous post was at 04:37 PM ----------



Not necessarily, it is very very easy to hide an executable from task manager.



hm im not sure of what your question is..:embarrassed:
could you try to ask it in another sentence :p?

and youre right about the hiding executables from task manager..:y:
most are showen in task manager but under names like svhost.exe or explorer.exe so people that do not know anything about it wont recognize but they can also be invisible.,
03-09-2011, 09:49 PM #18
David.
Do a barrel roll!
I'm almost certain that Kaspersky, the antivirus software uses some sort of detection system that detects the executables behavior. Like how a keylogger records keystrokes, it will monitor what it is doing and if it detects it, then it will flash it up. Although there is AV killing codes but I'm not exactly sure what happens when they are implemented. What do you think?
03-09-2011, 10:01 PM #19
Originally posted by David. View Post
I'm almost certain that Kaspersky, the antivirus software uses some sort of detection system that detects the executables behavior. Like how a keylogger records keystrokes, it will monitor what it is doing and if it detects it, then it will flash it up. Although there is AV killing codes but I'm not exactly sure what happens when they are implemented. What do you think?


hmm im not sure... it could be...
i dont use anti virus because it deletes files i want to keep :p

AV killers in my experience is just ending procceses of the anti virus and an check every second to see if they are enabled again so it can close it again..
also an easy way to check is your infected is just look if your built-in windows fire wall is still enabled, if it is not and it was before without you turning it off yourself you can be sure your infected ;o

Copyright © 2026, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo