Pin It

All About Keyloggers - FAQ


A keylogger sometimes called a spying software is a small program which is used to monitor a local or a Remote PC, Keyloggers now a days are so easy to use that a person with even a basic knowledge of computers can use keylogger.Once a keylogger is installed in your computer it can monitor each and every keystroke typed on your computer, thus you can see how dangerous a keylogger can be.

Types of Keylogger

There are two types of Keyloggers:

1.Hardware keylogger
2.Software keylogger

Hardware keyloggers are rarely used now a days since you can monitor a Remote computer, Software keyloggers are the most widely used keyloggers as some of them support remote installaiton which means that you can monitor any computer anywhere in the World.


Can the victim detect it's presence once keylogger is installed in his/her computer?

Well it's really difficult for the victim to detect keylogger's presence as it runs in complete stealth mode, It hides it self from task manager, startup etc

Can I the victim trace you back?

Once the keylogger is installed, I think it's almost impossible for the victim to trace you back

How can I protect my self from keylogger?

A simple keylogger can be detected by even a lame antivirus, but sometimes the attacker can use methods like Crypting,Binding,Hexing etc, that make it harder for the Antivirus to detect the keylogger. So to counter that you should use a piece of software called sandboxie, Sandboxie runs the choosen computer program in an Isolated space so if the file you receive is a keylogger, You need no to worry because it won't affect your other programs, Firefox users can use the free version of keyscrambler which encrypts each and every keystrokes you type, so even if a keylogger is installed in your computer, You need not to worry as the attacker will receive the encrypted keystroke


Which Keylogger is the best?

With my experience of more than 4 years in the field of Ethical Hacking and security I suggest only two keyloggers which I think are best and have a comparatively low antivirus detection rate:

1.Sniperspy
2.Winspy


How do I find if a file is binded with a keylogger?

Keylogger can be binded with almost any file so how do you know if the file is binded?, You can use Bintext or Hex editor to find out, But Bintext and Hex editing method do not work effectively if the server is crypted so alternatively there is a great piece of software named asas "Resource hacker" that can tell you if the file is binded or not

Hope you had enjoyed reading the article.If you have any questions feel free to ask.

Subscribe to our Newsletter and receive updates directly via email - Get Ethical hacking and security tips directly to your inbox. Alternatively you can Join our Hackers Community on Facebook , Google+ and Twitter .

At RHA Infosec we provide different types of Security Testing from small business sites to Corporate Sites. Click Here to know more about our complete list of services.

Subscribe to RHA


Enjoyed this article?
Subscribe to "Rafay Hacking Articles" and get daily updates in your inbox for free!


Tags:


Kindly Bookmark it and Share it with Friends:

10 comments :

Nasruminallah on January 26, 2011 at 8:26 AM said...

Weel. Nice information. Thanks.

1. How can I use Sandboxie ?
2. Can I get Sniperspy and Winspy free ?
3. How to identify a binded file using Resource Hacker ?

I will be happy if I got help in above matters. Thanking you !!

shishimaru on January 26, 2011 at 8:45 AM said...

great article!! I've always wanted to know more about keyloggers than I do! Also I had no idea about how to detect one till reading this! Thanks for the good info and keep it up! >:3

Rafay Baloch on January 26, 2011 at 10:51 AM said...

@Nasruminallah
Google for the above questions and you will definitely find the answers.

DEVIL'S BLOG on January 26, 2011 at 9:35 PM said...

Nice info Rafay, thanks.

Hemant Bhandari on February 3, 2011 at 7:36 PM said...

very useful post Rafay...keep it up..:)

sami said...

nyc job bro, but i have a question when i have 3 100% FUD keyloggers but whenever i run them they do not open because .net 4 is not installed in my pc, so it is useless to send it 2 victim if he also uses win xp? what say?

Mahesh Verma on November 11, 2012 at 10:35 PM said...

It is very informative and valuable article. thanks for sharing this. :)

Anonymous said...

Unfortunally i can't be agreed with above commenters.I think it's a nice blog and the author has some knowledge, why to make such "hack facebook with 1 click" tutorials?
I know it's good for SEO, but almost every third thread is about "Click & hack" subjects.

Also i can't be agreed with the article.When i read the title, i thought the article will be one of the biggest in here.The title says that here's everything about keyloggers, but actually here's only few things about them.Also all of them aren't right, like the second one.Ofcourse it depends who's your victim, but many people who're into it, can trace back.

Also about the suggested keyloggers : They're both very expensive and hard to get it for free which means readers of your blog can't afford it because most of them are just curious about keyloggers.

Why don't you make real tutorials?

Rafay Baloch on November 13, 2012 at 10:57 AM said...

@Anonymous 8
Thanks for your comment.

The article was written about two years ago, i have republished the article again. The original article was really big but i have removed few things as i wrote a separate e-book on this subject. "An Introduction To Keylogger, RATS , Malware".

About your second questions, I don't recommend free keyloggers because most of them are themselves binded with other keyloggers, People disable their AV to use the keylogger, in reality they end up infecting their own computer. Unless you know how to use wireshark and other debugging tools like IDA PRO and OlyDBG, you won't be able to identify if it's been binded with another keylogger. I hope that clears my point of not suggesting free keyloggers.

Manoj_Panchal on November 15, 2012 at 8:41 AM said...

i have win spy. Its too good n fully undetectable... :O
N i dint pay for any software till yet n neva will i... :D

Dare to ask? :)

Blog Archive

 

Recent Comments

About

Rafay Baloch is an Independent security researcher, Internet marketer, Entrepreneur and a SEO consultant, He is the founder of RHA blog and multiple other blogs. Rafay got famous after finding a Remote Code Execution bug inside PayPal for which PayPal awarded him a sum of 10,000$ Read More..

Join In!

RHA © 2013. All Rights Reserved.