Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Spyware, Key Logger: Exoprience, Expertise Requested
Self ^ | July 31, 2015 | Histage

Posted on 07/31/2015 8:02:12 PM PDT by Hostage

A neighbor's estranged Ex has possibly installed spyware and a key logger onto a new notebook given as a 'gift' to both neighbor and teenage daughter.

The neighbor is the custodial parent of the one teenage daughter who recently received the new 'spy loaded' notebook computer from her estranged parent. The notebook runs Win 8.1 and is to be eventually upgraded to Windows 10. The teenager was told directly by the estranged parent that everything the custodial parent does could be seen and recorded and then messaged out clandestinely.

The neighbor would like to know the following:

1. How to detect if spyware and key logging is really taking place on the computer?

2. If spyware/key logging is detected, how to get rid of it for sure and can it be traced back to the Ex?

3. The notebook accesses the internet through a hotspot encrypted modem. Is there any danger that the encryption key to the wifi modem has been captured?

4. Should the OS be reinstalled to be sure the spyware is flushed out? How to know for sure and how to prevent it coming back?


TOPICS: Chit/Chat; Computers/Internet; Miscellaneous
KEYWORDS: computer; computing; keylogger; spyware
Navigation: use the links below to view more comments.
first 1-2021-33 next last
I suggested that the neighbor download and run malware bytes but I am not sure if that will be sufficient.
1 posted on 07/31/2015 8:02:12 PM PDT by Hostage
[ Post Reply | Private Reply | View Replies]

To: Hostage

That will not be sufficient. Remove the hard drive, trash it, and install a new one with a fresh Windows install.


2 posted on 07/31/2015 8:04:13 PM PDT by dinodino
[ Post Reply | Private Reply | To 1 | View Replies]

To: dinodino

Thanks for the input.

Can work files be saved first?

Neighbor says they have data on Google Drive. Should that be flushed too?

They are going to install Win 10. But the install is an upgrade. They should do a new install?


3 posted on 07/31/2015 8:07:35 PM PDT by Hostage (ARTICLE V)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Hostage

Yes, new install. Your work files should be okay—just copy them off. The files on Google Drive are probably okay too


4 posted on 07/31/2015 8:09:04 PM PDT by dinodino
[ Post Reply | Private Reply | To 3 | View Replies]

To: Hostage

Start from scratch. Also check your state laws if laws have been broken. you can check which services are running in the back ground.

Me being me, I would troll the ex like crazy though. Tape up the mic and camera first


5 posted on 07/31/2015 8:09:21 PM PDT by Organic Panic
[ Post Reply | Private Reply | To 1 | View Replies]

To: Organic Panic

How do they check services running in the background? Task Manager?


6 posted on 07/31/2015 8:11:11 PM PDT by Hostage (ARTICLE V)
[ Post Reply | Private Reply | To 5 | View Replies]

To: Hostage

No way to do it if the machine is compromised.


7 posted on 07/31/2015 8:12:29 PM PDT by dinodino
[ Post Reply | Private Reply | To 6 | View Replies]

To: Hostage

I’m assuming you mean a software keylogger since its a laptop / notebook. Many of the antivirus programs will flush them out. Most of them send logs remotely to another computer via email so disconnect the computer from the Internet first. I’ve installed them many times. They’re pretty easy to remove. Many can simply be removed using the Uninstall function. You just have to find the name of the program or you can use a keylogger detection program like the following:

http://download.cnet.com/Keylogger-Detector/3000-2162_4-75744701.html
http://www.blazingtools.com/antispy.html


8 posted on 07/31/2015 8:13:03 PM PDT by jsanders2001
[ Post Reply | Private Reply | To 1 | View Replies]

To: dinodino

Doesn’t Malware Bytes detect these things?


9 posted on 07/31/2015 8:13:32 PM PDT by Hostage (ARTICLE V)
[ Post Reply | Private Reply | To 7 | View Replies]

To: Hostage
  1. Get the Windows® serial number off the the laptop.
  2. Request new installation media from the manufacturer.
  3. While you're waiting for that, on another computer, download a System Rescue CD here:http://sourceforge.net/projects/systemrescuecd/
  4. Write that rescue "CD" onto a USB stick in bootable form.
  5. Shutdown the laptop.
  6. Boot the USB stick from the BIOS menu, and use the rescue CD to format the hard-drive. [You do NOT need to trash the HD as some here are recommending.]
  7. When the install media arrives. Reinstall Windows®
  8. Yes, it it highly likely that your WiFi password is compromised. Change from another computer, but only after you've reformatted the laptop, and do not log onto the network until Windows® is reinstalled.

10 posted on 07/31/2015 8:15:53 PM PDT by FredZarguna (Dindunuffin.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Hostage

Reinstall the OS and format the drive. Then put a bag of dog shit on his steps, light it on fire, and ring his doorbell.


11 posted on 07/31/2015 8:15:59 PM PDT by Vermont Lt
[ Post Reply | Private Reply | To 1 | View Replies]

To: jsanders2001

Perfect, thank you. I’ll forward those links.

The crazy ex may also be the administrator. Is there an easy way to change that? Maybe with a new install/upgrade to Win 10?


12 posted on 07/31/2015 8:16:39 PM PDT by Hostage (ARTICLE V)
[ Post Reply | Private Reply | To 8 | View Replies]

To: FredZarguna

Thanks!


13 posted on 07/31/2015 8:17:53 PM PDT by Hostage (ARTICLE V)
[ Post Reply | Private Reply | To 10 | View Replies]

To: Hostage

If the estranged parent is trying to be sneaky, they’re doing it wrong. My guess is its just a mind game, else why tell the kid about it? Better safe than sorry, however.


14 posted on 07/31/2015 8:21:07 PM PDT by bigbob (The best way to get a bad law repealed is to enforce it strictly. Abraham Lincoln)
[ Post Reply | Private Reply | To 1 | View Replies]

To: dinodino; Hostage

He’s right. There is no way to have any confidence in anything now running on this machine. Although you can save your documents and such, I would scan any content you pull from the compromised machine on an entirely different computer. [In fact, I would scan it with two different virus scanners if it was one of my clients.] Just because a file isn’t an “executable” that doesn’t mean you can’t be tricked into opening it in a way that re-installs malicious code, so even supposedly “safe” content has to be approached as if it’s compromised until proven otherwise.


15 posted on 07/31/2015 8:21:19 PM PDT by FredZarguna (Dindunuffin.)
[ Post Reply | Private Reply | To 7 | View Replies]

To: dinodino

“... Remove the hard drive, trash it, and install a new one with a fresh Windows install” Very good advice.

I would add: Turn the old drive over to someone for analysis.

Isolate all other computers from the network, or buy a new router for a new network.

Change all passwords (email, FB, WiFi) from the updated unit.

Have any computers fully checked before joining network.

Consider whether the Ex’s comments meet the standard for bullying or child abuse in your state.


16 posted on 07/31/2015 8:22:37 PM PDT by cqnc (Don't Blame ME, I voted for the American!)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Hostage

Reinstalling Windows you will need to recreate user id’s you want. The reinstall of the OS will take care of any unwanted superusers.


17 posted on 07/31/2015 8:23:59 PM PDT by FredZarguna (Dindunuffin.)
[ Post Reply | Private Reply | To 12 | View Replies]

To: FredZarguna; All

Thanks to everyone. Freepers are the best.


18 posted on 07/31/2015 8:47:31 PM PDT by Hostage (ARTICLE V)
[ Post Reply | Private Reply | To 17 | View Replies]

To: Hostage

M4L Keylogger


19 posted on 07/31/2015 8:57:56 PM PDT by Scrambler Bob (Using 4th keyboard due to wearing out the "/" and "s" on the previous 3)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Organic Panic

Oh yeah, I would put on a show just for him. All Faked with backup video proof, then when he tries to use it lower the boom on him.
My living room would look like the end of “Bachelor Party”, donkey and all!


20 posted on 07/31/2015 9:45:10 PM PDT by rikkir (You can lead a horde to knowledge but you canÂ’t make them think. (TnkU ctdonath2))
[ Post Reply | Private Reply | To 5 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-33 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson