Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 51 guests and 1 member online
EH-Net News Feeds
Latest Additions
 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Malwarearrow Free Keylogger for Back Hacking
EH-Net
May 25, 2012, 06:19:46 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Advertise on EH-Net!! - Reasonable Rates, Highly Targeted Audience.
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Free Keylogger for Back Hacking  (Read 12277 times)
0 Members and 1 Guest are viewing this topic.
JordanJae
Newbie
*
Offline Offline

Posts: 1


View Profile
« on: January 27, 2010, 10:31:25 AM »

I'm looking for a Free Keylogger, obviously... I'm going to be using it to defend a Network me and two team mates setup for a High School competition where we protect it from Proffesional and College pen testers, being more of a pen tester than a defender I personally prefer an offensive defensive but I really don't use many keyloggers, but I ws thinking if I could use some sort of Real Time keylogger so my Team can know whats coming, I will be using a Live CD of Backtrack 4 and some virtual machines filled with honey pots to defend myself... So basically what I'm asking for is:

A Free Real Time Keylogger I can insert into their systems Remotely and possibly use with Backtrack 4.
Logged
chrisj
Hero Member
*****
Offline Offline

Posts: 997


View Profile
« Reply #1 on: January 27, 2010, 11:19:50 AM »

Sorry, not much help, but how would a key logger be useful? Are you looking to capture what they do on the box after they get into it?
Logged

OSWP, Sec+
aweSEC
Hero Member
*****
Offline Offline

Posts: 1100


View Profile
« Reply #2 on: January 27, 2010, 01:10:04 PM »

I am not sure if I understood you correctly, but Metasploit comes with a vnc payload which allows you to monitor another machine once you succeeded with the injection. Otherwise most of the better trojans should be able to do what you want. The harder part will probably to get it through there though.
Logged
unsupported
Sr. Member
****
Offline Offline

Posts: 318


Unofficial Newbie Moderator


View Profile
« Reply #3 on: January 27, 2010, 01:32:25 PM »

One possibility would be to configure Snort IDS to capture network traffic.  You'll be able to see what packets are being thrown at you in addition to any command lines.
Logged

-Un
CISSP, GCIH, GCIA, C|EH, Sec+, Net+, MCP
Ketchup
Hero Member
*****
Offline Offline

Posts: 1006



View Profile
« Reply #4 on: January 27, 2010, 01:37:58 PM »

I second what unsupported said.  I am almost sure that Snort's default configuration on Linux will do a small packet capture every time something triggers an alert.   Snort can also function as an IPS, simply severing the connection.
Logged

~~~~~~~~~~~~~~
Ketchup
ItsTheLion
Guest
« Reply #5 on: January 27, 2010, 02:14:11 PM »

Yeah Ill third this. Snort is what you want. Run it behind your firewall. You could also just run tcpdump if you want to see all packets (snort can do this too).

If an IPS is allowed its the way to go. Good Luck!
Logged
unsupported
Sr. Member
****
Offline Offline

Posts: 318


Unofficial Newbie Moderator


View Profile
« Reply #6 on: January 28, 2010, 06:43:29 AM »

... You could also just run tcpdump if you want to see all packets (snort can do this too).

That's like a needle in a haystack.  I'd also recommend Wireshark for a more user friendly and protocol aware application.
Logged

-Un
CISSP, GCIH, GCIA, C|EH, Sec+, Net+, MCP
ItsTheLion
Guest
« Reply #7 on: January 28, 2010, 07:47:30 PM »

... You could also just run tcpdump if you want to see all packets (snort can do this too).

That's like a needle in a haystack.  I'd also recommend Wireshark for a more user friendly and protocol aware application.

I completely agree with you, was going to add if you can read really fast use tcpdump lol. You can always use some options to narrow down your output such as src or host but your still going to get lots of output and your brain can't process it as fast as Snort or something similar. I also agree Wireshark is much more user friendly if you're running a gui.

« Last Edit: January 28, 2010, 07:56:30 PM by ItsTheLion » Logged
Ketchup
Hero Member
*****
Offline Offline

Posts: 1006



View Profile
« Reply #8 on: January 28, 2010, 09:07:50 PM »

Netwitness is another great network analysis tool.   It handles large packet capture better and has more sophisticated packet dissection tools.   
Logged

~~~~~~~~~~~~~~
Ketchup
johnnekar
Newbie
*
Offline Offline

Posts: 11

Information Revolution


View Profile WWW
« Reply #9 on: April 01, 2010, 01:51:32 PM »

This can help!!! Wink

http://blog.metasploit.com/2009/03/capturing-logon-credentials-with.html
Logged

Your tomorrow should be better than your today.. j0hnn3k4r
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.16 | SMF © 2011, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.11 seconds with 23 queries.
 

gk_static-ad_feb2012.jpg
Global Knowledge: Build Security Skills to Protect & Defend

els_130x200fixed2.gif
eLearnSecurity Student Course Now Live!
5% Off with Code
ELS-EH-5

SANS Deals 4 EH-Netters
$150 OFF Any SANS Course in Any Format!
Coupon Code: EHN_Connect Including SANS Security West 2012 & SANSFIRE 2012
Recent Forum Topics

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!

Vote For EH-Net

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2012 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.