|
PCLogger v2.17 (Build 193)Updated on 29th May 2008 Can you afford not to know of changes to your PC?
Introduction
|
News - What's fixed
|
|
|
Fact 1: If there is one software that complements with a good Anti-Virus program, it is one that detects unsolicited changes
to your PC without using a virus definition file.
Fact 2: To detect the latest virus or hijacker, you need to have the latest virus definition which
your anti-virus software company may not have its signature yet. In the mean time, you still need the protection of a software that may able to
detect unauthorised changes made to your PC thus giving you the peace of mind that you required.
|
|
|
|
What is PCLogger?
PCLogger is an install and forget utility. It runs as a windows application that sits in your System Tray. Its main function is to monitor key changes in your PC in the background, e.g. what software/application is being installed or changed, changes in specfic PC folders, and changes to important areas of the NT registry. Unlike other software that requires manual scanning to detect what has changed to your PC, PCLogger works in real time.
Why is this type monitoring useful?
The main function of PCLogger is to log key changes of your PC. While it does not fix or remove malwares/viruses in your system, the information it captures may help you to identify the what, the when and the where. This capture of information is not only related to changes by viruses or spywares. In fact, any changes by anyone (including yourself) or any applications will be captured. The captured audit trail details may assist you (or someone more PC-savvy) to trace or diagnose when certain changes caused your PC to misbehave. Keeping track of what you have installed may empower you or your support engineer to perform the necessary diagnosis if something did go wrong.
How does it work?
PCLogger subscribes to operating system events thus enabling an immediate detection when the particular event is triggered. One key difference to this type of monitoring programs (e.g. your AntiVirus program) is that PCLogger does not need a virus definiton file. It works on the analogy that if a thief is breaking into your house, he must enter your house through a predefined opening (i.e. a door, a window or the roof). It does not need to know who the thief is and what is his name, his height and how he works. By monitoring predefined locations, PCLogger is designed to be future proof (of future virus or other malware).
Some examples of how PCLogger could be useful to you:
Your children have just installed an internet game that they have downloaded. Immediately,
PCLogger alerts you that another new file (c:\windows\fntldr.exe) was created. With a bit of investigation, you
would have found out that the program is actually a hijacker and proceed to remove the intruder; thus saving you
hours of grief trying to figure out why every time you start up your internet browser, you are brought to another web site.
You received an email enticing you to visit a certain web page. When you visit the web page, you see an empty page. That is when the fun starts when PCLogger started to alert you! PCLogger will detect that a file "msxmidi.exe" is created in your windows directory. Huh? Something definitely is happening behind your back. A search on the net will reveal that you have a keyboard logger attempting to capture your password when you logon to your favourite bank (Westpac or ANZ). Who knows, this may save you $$.
You are about to send your PC out to be repaired. Before you send your PC, you take a snapshot of all your drives. When your PC is returned, you take another snapshot of all your drives. By comparing the snapshots (using Windiff e.g.), you know exactly whether your drives have been tampered or not; thus giving to you the peace of mind that you required.
You found your browser suddenly became very slow. You also noted that you cannot open a popup window. Ok... You have left your son playing on your PC the last few days (perhaps, your son has downloaded a virus). So, you checked your PCLogger and you immediately confirmed that there is a new BHO installed 2 days ago around the same time when your son installed MessengerPlus.exe. The BHO is named "req.dat". When you searched the net, you found that you have caught a keyboard trojan on your PC! After removal of the trojan, you quickly checked your internet bank account details to see if there is any misappropriate transaction. Lucky you, the keyboard logger has not hit your account yet. With this discovery (that you did have a keyboard trojan in your PC), you take the decision to change your online banking password and your PC password immediately for a peace of mind.
|
|
Benefits
|
Here is a list of possible benefits when you are using PCLogger ...
| ü Alerts you of possible intrusion activites happening behind your back thus giving you a peace of mind |
| ü Complements with your favourite Anti-Virus software to give you the additional protection you need |
| ü Empowers you to debug an installation problem by giving you additional audit trail to work on |
| ü Empowers you to track the original source of a virus outbreak on your network |
| ü Continous peace of mind because you know PCLogger will work without any virus definition file |
|
|
|
Features
|
üCan detect most significant changes on your PC; including
- standard installations and removals
- NT service installations and removals
- ActiveX registrations and deregistrations
- changes to Auto Startup settings
- changes to BHO settings
- changes to Internet Explorer search page settings
- changes to Lsa settings
- changes to Firewall settings
- changes to Winlogon settings
- changes to scheduler settings (both AT and task scheduler)
- Important file associations changes
- Network share changes
- System/Network/Comdlg32/Explorer policies changes
- WINDOWS/SYSTEM32/Your own directory changes
- User Accounts changes (no need to setup Event Auditing)
- changes to Internet zones
|
|
|
| ü Virtually non intrusive (sits in the system tray) |
|
| ü Audible (but non annonying) alarm to indicate changes that is taking effect |
|
ü Friendly to your neighbours -
Sound will auto turn off after 10 beeps
Quiet Mode
|
|
| ü Silence audible alarm for 1 hour |
|
| ü Visible alarm that requires acknowledgement |
|
ü Easy to monitor your own directories
Monitor up to 50 directories
Can select multiple file extensions
|
|
| ü Easy to exclude events |
|
| ü Easy to exclude a whole category of events |
|
ü Easy to take a drive snapshot (shows Directory summary view and file view with CRC
Max file size for CRC calculation is 2G
|
|
| ü CSV log format |
|
| ü View the log file using your favourite associated program (to CSV) |
|
| ü Minimal Configuration required. |
|
| ü Resizable window |
|
| ü Runs on Windows NT 4, Windows 2000, Windows XP (Windows 9x: unsupported) |
|
| ü Win32 compliant - no undocumented features used |
|
| ü Written in C++ to be fast and robust |
|
| ü Well behaved multi-threaded application |
|
| ü Contains no adware, spyware, malware or annoying nagware |
|
Sample screen managing your monitored directories
Sample screen selecting your directory
Sample screen managing your excludes
Sample screen managing your category of events and options
Sample screen taking a drive snapshot
Sample events captured for Hijacker StartPage-BS
Sample events captured for Trojan Req.dat
Sample events captured during installation of a typical application
|
Download
|
|
|
You can try PCLogger for free. The normal trial version is a limited version of PCLogger. Following are the only differences between the Trial and the Registered versions of PCLogger:
- With the Trial version, you can receive up to 25 alerts.
- With the Trial version, you can monitor up to 5 directories.
- With the Trial version, you can exclude up to 5 events.
- With the Trial version, you cannot save the drive snapshots.
- With the Trial version, Lsa and XP Firewall monitoring are disabled
|
|
When you decide to register, you will not need to download PCLogger again. Just purchase from ShareIt or PayPal (see How to register), and we will send to you an unlock key and other instructions to your registered email address. Follow the instructions and you will be ready to enjoy the full benefits of PCLogger.
Disclaimer:
The programs are provided as is without any guarantees or warranty. Although Soft-Trek (the author) has attempted to find and correct any bugs in its software programs, the author is not responsible for any damage or losses of any kind caused by the use or misuse of the programs. Soft-Trek would appreciate acknowledgement if the software is used.
|
|
How to register?
|
After you have tried PCLogger and if you like it, please sponsor our PCLogger development by purchasing a software license.
We will send to you an unlock key to your registered email address.
Even if you do not register, we would still like to hear from you. Perhaps there is a missing function that you believe is most useful to you
and fellow users, or there is a bug that we have not discovered yet. In either case, please drop us a note as your feedback is very important to us.
|
| PCLogger license cost : |
|
Note 1: If money order or cheque, please draw cheque in Australian currencies in the name of
Soft Trek Pty Ltd
49 Alexander St
Dundas Valley
NSW 2117
Australia
|
|
Feedback
|
|
|
|