Kidlogger

Kidlogger is a keylogger, which is used to record all the keystrokes typed by the user. It can log all websites visited, chat rooms talks, started programs, opened documents, viewed pictures and movies. It includes elevated threats that are typically installed without adequate notice and consent, and may make unwanted changes to system, such as reconfiguring browser’s homepage and search settings. These threats may install advertising-related add-ons, including toolbars and search bars, or insert advertising-related components into the Winsock Layered Service Provider chain. These new add-ons and components may block or redirect preferred network connections, and can negatively impact computer’s performance and stability. Elevated threats may also collect, transmit, and share potentially sensitive data without adequate notice and consent.0

General information:

Malware Name: Kidlogger
Malware Type: Key Logger
Company Name: Rohos
Company URL: http://www.rohos.com/
Threat Level: Elevated Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation.

Company Description:

Spyware Description:

Kidlogger is a keylogger, which is used to record all the keystrokes typed by the user. It can log all websites visited, chat rooms talks, started programs, opened documents, viewed pictures and movies. It includes elevated threats that are typically installed without adequate notice and consent, and may make unwanted changes to system, such as reconfiguring browser’s homepage and search settings. These threats may install advertising-related add-ons, including toolbars and search bars, or insert advertising-related components into the Winsock Layered Service Provider chain. These new add-ons and components may block or redirect preferred network connections, and can negatively impact computer’s performance and stability. Elevated threats may also collect, transmit, and share potentially sensitive data without adequate notice and consent.0

Characteristics/Symptoms:

    -> Monitor and capture data from computers -> Run in stealth mode -> Intercepts keystrokes from the keyboard and records them in a log -> Starts with the operating system0

Additional information might be found here:

google Search at Google for Kidlogger
bing Search at Bing for Kidlogger
yahoo Search at Yahoo for Kidlogger

Processes Running:

MainWnd.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\All Users\Start Menu\Programs\KidLogger\Readme.txt.lnk 579 Shortcut
C:\Documents and Settings\All Users\Start Menu\Programs\KidLogger\Teslain KidLogger.lnk 584 Shortcut
C:\Documents and Settings\All Users\Start Menu\Programs\KidLogger\Uninstall Teslain KidLogger.lnk 591 Shortcut

Folder information Created after Installation:

Folder Location
C:\Program Files\Teslain KidLogger

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Teslain KidLogger_is1 URLInfoAbout
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Teslain KidLogger_is1 URLUpdateInfo
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Teslain KidLogger_is1 UninstallString