Tools to sniff out keyloggers?

Saulyx

Junior Member
Joined
Jan 10, 2010
Messages
107
Reaction score
5
Hi there,

So i'm looking for tools to back track key loggers, especially the ones that send logs via SMTP and IMAP.

I am already using Cian&Abel to track down FTP data, however it's not working that well with mail stuff. As for wireshark - it's a bit tricky, could someone recommend something good?


Thanks
 
e-scan for windows anti virus, it will get hem and remove them.
 
Removing them isn't really what I'm after, I'm after tracking down where my logs are being passed to ;)
 
New UD keylogger are used/distributed every 3 months. The best way to solve it is:

Reformat your PC Then install eset nod32 or any good AV.
That will rid off any shit in your system. :)


For tracking the the receiver email or FTP used by hack3r ..Hmmm.. I forgot it anyway. -.-
 
Last edited:
Getting rid of it is not my problem, tracking it down is what i'm after, it's not spinning on my main frame anyway
 
One tool that has always worked for me much better than any vmware or sandbox is to use procmon. It monitors registry,file,processes, threads etc

http://technet.microsoft.com/en-us/sysinternals/bb896645.aspx
I use it all the time to actually see what exe's do when i find them suspicious.
 
A network monitor for smtp traffic will do the trick. Also check your http requests with a tool like http analyzer.
 
Just run everything in sandbox 1st and watch for the thing its installing,
for semi manual av program i prefer unhackme + sysinternal suite + unlocker (no fud thing can bypass your brain)
 
Back
Top