Security Basics mailing list archives

RE: Key Loggers


From: Alfred.Diggs () STIS com
Date: Fri, 24 Oct 2003 19:16:44 -0400

A few ways to find keyloggers.

1. Check your task manager for anything out of the ordinary. (after a few
years of windows you know all the running apps.)

2. Run a firewall on your computer like zonealarm as it will block (or at
least ask) and email servers from sending out email. (most keyloggers have a
build in email server)

3. You can try writing some funky word and then searching for it but most
keyloggers encrypt the data and it may not be found easily (be mindful if
while your typing your special word you change a character it will be
recorded as   myspecii<BS>alword   BS=BackSpace to kill the extra i)



Good Luck


Alfred


-----Original Message-----
From: Ivan Hernandez [mailto:ivan.hernandez () globalsis com ar] 
Sent: Friday, October 24, 2003 3:56 PM
To: s7726 () yahoo com
Cc: Security-Basics
Subject: Re: Key Loggers

s7726 wrote:

Is there a way to determine if a running process is logging keys? Can you
say look at whether or not it is implementing hooks or something? I am
interested to know if someone has put a key logger on a few machines.


Thank you


S7726 at yahoo dot com
 


I would first (in doubt) disconnect the machine from the network and 
start analysing the traffic, then search for any changing file each time 
you press a key !
also writing a strange word and searching for it can be useful sometimes
ivan hernandez


---------------------------------------------------------------------------
Visual & Easy-to-use are not words that you think of when talking about 
network analyzers. Are you sick of the three window text decodes? Download
ClearSight Network's Analyzer and see a new network analysis tool that 
makes the complex - easy
http://www.securityfocus.com/sponsor/ClearSightNetworks_security-basics_0310
21
----------------------------------------------------------------------------

---------------------------------------------------------------------------
Visual & Easy-to-use are not words that you think of when talking about 
network analyzers. Are you sick of the three window text decodes? Download ClearSight Network's Analyzer and see a new 
network analysis tool that 
makes the complex - easy
http://www.securityfocus.com/sponsor/ClearSightNetworks_security-basics_031021
----------------------------------------------------------------------------


Current thread: