Affichage des articles dont le libellé est Keylogger. Afficher tous les articles
Affichage des articles dont le libellé est Keylogger. Afficher tous les articles

Darkhotel Attackers Target CEOs

Hackers have developed a scheme to steal sensitive information from top executives by penetrating the Wi-Fi networks of luxury hotels, security researchers said Monday.



Dubbed the "Darkhotel APT," the threat actors use three different malware distribution methods, including malicious Wi-Fi networks, booby-trapped P2P torrents, and highly customized spear phishing, Kaspersky Lab noted in research paper. 





Kaspersky said about 90 percent of the infections appear to be located in Japan, Taiwan, China, Russia and South Korea, but that the executives targeted include those traveling from the United States and other countries.




"The more interesting traveling targets include top executives from the US and Asia doing business and investment in the (Asia-Pacific) region."



The attackers’ methods include the use of zero-day exploits to target executives in spear-phishing attacks as well as a kernel-mode keystroke logger to siphon data from victim machines. They also managed to crack weak digital signing keys to generate certificates for signing their malware, in order to make malicious files appear to be legitimate software. 



Obviously, we’re not dealing with an average actor,” says Raiu. “This is a top-class threat actor. Their ability to do the kernel-mode key logger is rare, the reverse engineering of the certificate, the leveraging of zero days—that puts them in a special category.”



These types of attacks were first recorded in 2007, but activity spiked in August 2010 and has continued through to this year, the research found. Executives from electronics makers, pharmaceutical companies and military organizations were among the targets.



The key-logging tool's code is written in Korean, but Kaspersky said this did not necessarily mean the hackers were from Korea. It was also difficult at this stage in the investigation to tell if the attacks were state-backed, Raiu added.



The number of hotels that have been hit is also unknown. So far the researchers have found fewer than a dozen hotels with infection indicators. “Maybe there are some hotels that … use to be infected and we just cannot learn about that because there are no traces,” the network-management executive says. 



The company worked with Kaspersky to scour all of the hotel servers it manages for any traces of malware and are “fairly confident that the malware doesn’t sit on any hotel server today.” But that is just one network-management company. Presumably, the DarkHotel operation is still active on other networks.


~ mercredi 12 novembre 2014 0 commentaires

Any Keylogger for MAC


http://www.ehacking.net/2014/07/any-keylogger-for-mac.html
At times, we need a tool to remotely monitor activities of a computer user; this user might be your friend, loved ones, children and even colleagues. Whatever the objectives you have in your mind but you always look for the effective solution, and specially for the MAC operating system; it becomes harder to achieve the objectives. However, AnyKeylogger for MAC is one of the most effective and efficient solution to monitor activities of a MAC user remotely.




The above statement regarding Anykeylogger for MAC is a result of its performance. Any Keylogger for Mac OS X, as one of simple but effective keylogger for Mac OS X, can log all activities on Mac and able to send the logs to email address to help you remotely master your computer's activities. Any Keylogger for Mac has 6 major feature which is basic but enough to monitor your Mac's activities.

Besides, Any Keylogger for Mac run stealthily on the background of the Mac so that other people who can access the computer can't randomly change the settings of the software or even close the software.

With simple interface and effective monitoring features, Any Keylogger for Mac has won a number of Mac users and awards. Any Keylogger for Mac is a good solution to Mac activity monitoring. 

Key Features


Take Screenshots

Capture screenshots based on time interval

  • Capture screenshots based on the time interval
  • Capture screenshot when website is visited to save memory
  • Take screenshots in secret mode




Record Browsed Sites History

Record browsed sites history with detailed information

  • Record visited sites' URLs
  • Record visited time and websites' name
  • Record in stealth mode





Log Keystrokes 

Record user name and password of applications and all typed contents on websites except website password

  • Record keystrokes struck on keyboard
  • Record installation path and name of program where keystrokes are struck on





Record Program Activity

Record all programs or applications launched on the computer with relevant information

  • Track launched programs or applications running time
  • Track programs or applications installation path




Send The Logs Via Email

Collect logs of the Mac and then send them to target email address

  • Send logs via email (only support Gmail)
  • Do (not) send screenshots when sending logs
  • Automatically delete logs based on time interval







Run in stealth Mode

Run in stealth mode without detection by the monitored computer users
 
  • Activated by hotkey
  • Totally invisible in Add/Remove program list, installation files, task manager, Startup menu






Anykeylogger for MAC play a vital role for employee monitoring and parental control, as an employer you can take record of your employee activities and obviously as a parent you can observe the activities of your children and help them to grow with a positive mindset. Download any keylogger for MAC and don't forget to share your experience with us.




~ lundi 14 juillet 2014 0 commentaires

RootRepeal-Rootkit Detector Tool

Rootkit or simply a backdoor and on windows terminology we can call it malware, that allows an attacker to maintain access on a operating system. Rootkit is simply a software and a program that hide itself and continuously connect to it server.
There are different tools available to remove malware, as we have discussed about the best antivirus for windows.


When we are talking about rootkit it generally means a piece of software than can run on Unix like operating system including Linux and BSD. There are different rootkit remover and detector available to fight against these backdoors, this article will discuss about RootRepeal.


RootRepeal is a new rootkit detector that is available for public now, it has a great features. Easy to use and user friendly if you have a little computer skills you can use it. It is a power tool that can detect all the rootkits that are available on public.


Key Features
  1. Driver Scan - scans the system for kernel-mode drivers.  Displays all drivers currently loaded, and shows if a driver has been hidden, and whether the driver's file is visible on-disk.
  2. Files Scan - scans any fixed drive on the system for hidden, locked or falsified* files.
  3. Processes Scan - scans the system for processes.  Displays all processes currently running, and shows if a processes is hidden or locked.
  4. SSDT Scan - shows whether any of the functions in the System Service Descriptor Table (SSDT) are hooked.
  5. Stealth Objects Scan - attempts to determine if any rootkits are active by looking for typical symptoms.
  6. Hidden Services Scan - scans for hidden system services.
  7. Shadow SSDT Scan - counterpart to the SSDT Scan, but deals mostly with graphics and window-related functions.

There are different version available click on the above link to get the latest version, it is applicable on windows operating system, only x86 version of windows are supported. 


Note: If you want to learn more about Linux and Windows based Penetration testing, you might want to subscribe our RSS feed and Email Subscription  or become our Facebook fan! You will get all the latest updates at both the places.

~ lundi 18 juillet 2011 0 commentaires

Top 5 Free Antivirus

Antivirus software's are the necessary tool to protect a computer from miscellaneous viruses, worms, from backdoor like keyloggers and Remote administration tool, there are various antivirus software's are available on the Internet, some are available for free of cost and the others to be purchased.
Antivirus companies provides a facility to scan a file(s) online, if you want know about online virus scanner tool than click on the below link.



5 Best Online Virus Scanner
This article will cover about the best antivirus solution for desktop computing

Avast Antivirus
Avast Free Antivirus is a well-rounded free antivirus package: It does a solid job at blocking malware, has a pleasant interface, and scans files quickly. It provides the advanced firewall that automatically prevent hacker attack. Avast internet security provides the effective solution against spam(er).


Avira Antivirus
 
Avira antivirus did a great job and currently doing a great job to protect the user's from viruses and worms, it can fight against Internet spammers and against adware(s), so overall it is a good solution to use.


 Comodo Internet Security
 
Comodo Internet security provides a wonderful features to scan and destroy the known threat for your PC health, beside antivirus solution it provides a firewall solution to protect your computer from hackers. Comodo give a feature to analyse the incoming and outgoing packets from your computer, a effective firewall.


 Panda Cloud Antivirus
 
Panda security provides a range of different tools to protect a computer, panda cloud antivirus is easy to use and a powerfull antivirus solution for the premises,


Microsoft Security Essentials


Microsoft Security Essentials provides real-time protection for your home or small business PC that guards against viruses, spyware, and other malicious software.
Microsoft Security Essentials is a free download from Microsoft that is simple to install, easy to use, and is automatically updated to protect your PC with the latest technology.


Note: If you enjoyed this post, you might want to subscribe our RSS feed and Email Subscription  or become our Facebook fan! You will get all the latest updates at both the places.

~ dimanche 29 mai 2011 0 commentaires

How Does AntiVirus Work

The Antivirus is a Software that detect harmful Software's or programs  like Computer Virus, Computer Worms, Trojan Horses, Spyware, Ad-ware. Antivirus are one of the most important part of a computer and save us from many dangers every day. But the Question arises that how do they work?


 The Antivirus Work in two main Ways:
  • Signature based detection
  • Checking for Suspicious Behaviour
Signature Based Detection

The Signature Based Detection is the way in which the antivirus compare the content of the file to the dictionary of the viruses. This is a very effective way because it is able to identify all the viruses that are publicly known. The example of it is like this: If the file is like this 10101010 then the antivirus will compare it with dictionary, if it match's the 10101010 in dictionary than it will be considered as virus. The effectiveness of this method depends on that the virus or Trojan is public if it is not that it may not be able to detect it. Some hacker uses Crypter software to hide the content of the file e.g 10101010 would become 12121212 now antivirus would not find it in Dictionary because it seems another file to dictionary but in reality the file would still be virus. To encounter with this problem Antivirus Dictionaries also include the entries to identify the Crypted Virus. For Example they would also keep 12121212 in Virus Signature and identify that as virus also.

Suspicious Behaviour
This type include the antivirus running in the real time and observing the behaviour of the the files running. It sees that if the files are overwriting the data without users permission or notification. If this kind of behaviour is observed by the antivirus it will suddenly stop the program and ask the user about the reliability of the file. So User can choose the is it All right to let the program work or if it is a virus s(he) can stop it.

Point To Be Consider

  • As you have seen that normally the antivirus take the content or signature of a file or program to compare it with its database, now what if the database of an antivirus is not updated and if any new malware try to exploit your computer and your antivirus don't identify it because it has no information about. So the new threat can easily bypass your antivirus and will cause a harm to your computer, this is called Zero-day threats.
  • Awareness among the user(s) is/are very important rather than antivirus software's, you should teach your self on how to be safe on the jungle of web where every day, is the day of new threat.
  • You must be aware about the viruses and their effects and how they spread.
  • Do not download and run the unknown programs from Internet.
  • You should know how to secure yourself from malware.
  • You must know about the latest antivirus software for your operating system.
So these are two main ways employed by the antivirus to detect the unwanted files. So now always when you run a scan you would know what is happening.
 
About The Author
This Article was written by Muhammad Haseeb Javed. He Blogs at http://hackthepc.blogspot.com/



Note: If you enjoyed this post, you might want to subscribe our RSS feed and Email Subscription  or become our Facebook fan! You will get all the latest updates at both the places.

~ mardi 8 mars 2011 0 commentaires

Protect YourSelf From ATM Fraud


We are living in the age of technology and whole world has become dependent on plastic money to an impressive degree.There is no doubt that the use of a credit card and ATM it is safer to go with large amounts of cash, but you have to keep your eyes on the skimming.

Skimming fraud is an act to obtain card information illegally and use without the permission of card holder.
This can be done by using various method but in this article i will try to cover about ATM skimmer.



An ATM Skimmer is a device that acting as a card reader and normally place over ATM card slots where you would insert your card.
When you insert your card into a cash machine there is a reader that interprets the information on your card’s magnetic strip, the ATM skimmer works on the same way and when you put your card in that machine that has a skimmer device than this device steal information in the magnetic strip on credit/debit card as they pass through the overlying skimmer.

In the case of ATM or debit cards the criminal requires the user PIN for successful transaction, PIN san be steal by insert a small camera nearby which record all the action of the user.



 

















Skimming Spots

Normally this type of fraud has been done by a organized gangs operating in different countries, in some cases these groups are not directly involve in skimming but they just simply sell the fraudulent device to low-level and newbie criminal. The main common areas of skimming as follows:

  • Bank ATMs
  • Hotels
  • Gas station 
  • Merchant shops 

Protection
The most effective way to prevent this fraud is to create the awareness at all levels, banking system must have an ability to detect the skimming and banks should educate their staff regarding the common attacks.
Look around before using your card is there any piece of metal and plastic around the card reader, If an ATM looks suspicious, do not use it and alert the ATM owner.  




Note: If you enjoyed this post, you might want to subscribe our RSS feed and Email Subscription  or become our Facebook fan! You will get all the latest updates at both the places.

~ samedi 22 janvier 2011 0 commentaires

How To Protect Your Computer From Keyloggers


A keylogger is a small program that stores each keystroke a user types on a specific computer's keyboard. It is capable to send log files by email or via FTP.
Now the question is how to protect your computer system to get affected by keyloggers, keep in mind the sender of the file force you to click on it. So be careful while receiving a file from unknown person or even a known person.





You can get affected by vising untrustworthy web site. Some sites may have code in them that exploit your web browser and cause it to quietly install a keylogging application without your permission. (Note: even turstworthy sites can be hacked! The same hackers who are after your information can hack what you think of as trustworthy sites and add exploit code to them which could give you a keylogger.)   

Here is the major steps to fight against keylogger:

  • Use a good AntiVirus
  • Keep your operating system up-to-date.
  • Install firewall software that prevents any unauthorized access between your computer and the Internet. Comodo is recommended. Again, its free and well regarded. 
  • Get a virus scanner. Grisoft provides one for free. Be sure to configure it to scan your system regularly and to check for updates. 
  • Get a free anti-spyware program and run it. Spy Sweeper is a good one. As with your anti-virus software, be sure to configure it to scan your system regularly and check for updates. 
  • Be sure to run the latest version of your browser software 
  • Be careful downloading files! While your anti-virus and anti-spyware software should catch anything that gets installed, it's better to catch them before they get installed and have a chance to cause damage. Never download files from sites you don't trust and be wary of opening unexpected e-mail attachments. 
  • Use Antilogger like Zemana 







Note: If you enjoyed this post, you might want to subscribe our RSS feed and Email Subscription  or become our Facebook fan! You will get all the latest updates at both the places.

~ dimanche 21 novembre 2010 0 commentaires