Forums
There is currently 1 person viewing this thread.
Waheyyyy
17 Jan 10 14:57
Joined:
Date Joined: 02 Jun 05
| Topic/replies: 1,030 | Blogger: Waheyyyy's blog
My laptop got infected last week by some key logging program. Fortunately, my I.T. savvy mate got rid of it, however, it was on my computer for (I'm guessing) about 4 days before I realised it was there. I changed the passwords of poker and bank account but how exactly do they work? Would someone know what sites I go on and what passwords I was using as I was typing them? Or would my sites/passwords be stored somewhere for some **** to look at in say a few days time?.....? Like I said, I changed my passwords, but that was on a different pc/network and about 4 days later.

Post your reply

Text Format: Table: Smilies:
Forum does not support HTML
Insert Photo
Cancel
sort by:
Show
per page
Replies: 30
By:
Waheyyyy
When: 17 Jan 10 14:58
(Not a thinly disguised 'I look at pron' thread) I havn't looked at such smut for at least 2 weeks :)
By:
JPJ
When: 17 Jan 10 15:02
friend of mine got done for about $80K.

Backgammon it was
By:
dibble
When: 17 Jan 10 15:03
you never heard of google? or wikipedia?

http://en.wikipedia.org/wiki/Key_logging
By:
Waheyyyy
When: 17 Jan 10 15:05
Yeah dibble, but I knew you were lurking about... ;)
By:
dibble
When: 17 Jan 10 15:06
probably easier to google than ask me - I've not read that page you know!
By:
BlufDaddy
When: 17 Jan 10 15:07
Keyloggers work using the same method I've mentioned in other threads on here whereby you intercept the data being passed to Windows API functions.

A very basic keylogger would store nothing but keystrokes, but more likely, they would store what applications or websites you had focused at the time of the keystrokes.

There are various ways to transfer the data from an infected machine to the keylogger owner. Assume they have succeeded.
By:
BlufDaddy
When: 17 Jan 10 15:08
Dibble, do you get laid much?
By:
Waheyyyy
When: 17 Jan 10 15:09
Thanks Bluff. You see how easy it would've been dibble lol ;) xx Think I'll go and change all my passwords again. Getting paranoid now.
By:
dibble
When: 17 Jan 10 15:43
yes thanks bluf and I don't have to pay for it either :)
By:
Waheyyyy
When: 17 Jan 10 15:47
Dibble - 1 1/2
Bluff - 1
Whaheaeheyyeaheyyyy - 0
By:
BlufDaddy
When: 17 Jan 10 15:54
dibble 17 Jan 16:43

yes thanks bluf and I don't have to pay for it either


Yeah, and I'll bet you pick her up on her grammar during sex talk!
By:
stu
When: 17 Jan 10 16:06
Use Spyware Doctor (with anti-virus included) all the time - you have to buy it but it pretty much kicks ass and stops anything.
By:
"M"
When: 17 Jan 10 16:09
Let your bank and poker site know, you might be able to get new login details, which makes the information the keylogger has even less useful than it is now.

BlufDaddy 17 Jan 16:08
Dibble, do you get laid much?


Thinly disguised bluff wants to check out dibbles' back door?
By:
HYPE
When: 17 Jan 10 20:01
My defence against phishing websites (ones that pretend to be from your bank/paypal etc asking for log in details) is to fill in the forms with genuine looking made up names and account numbers.

I like to imagine the Nigerian faces lighting up when they get what looks like a genuine reply and then the realisation after several attempts to log in that they have been done!

I think everyone should send back false details - imagine getting a million replies with false info on!
By:
chop180
When: 17 Jan 10 20:06
I frequently do that as well Hype.
By:
Semi Skimmed Milk
When: 17 Jan 10 20:10
Have you read this site about scambaiting?

http://www.419eater.com/

There's a good story in there and I am told by a few sources who know more about this sort of thing that it's real.
By:
BlufDaddy
When: 17 Jan 10 22:27
With scambaiting, you're assuming they manually try to login to each account they've successfully phished.

I'm conjecturing here but I think it's likely the scammers would have a script that automates login attempts to the real bank with phished details and discards those that fail. That's how I would do it, assuming the real bank doesn't have an obfuscated text entry field (those fields you see on websites where it says enter the text you see in this box, where the text has been distorted).
By:
stu
When: 18 Jan 10 13:15
Still, at least would tie up their software in that case. Plus I think most banks would have more than a simple password/username, so difficult to do automatically.
By:
BlufDaddy
When: 18 Jan 10 13:43
It would only tie up the software for just a few seconds until the authentication request fails.

As I mentioned, obfuscated text input defeats scripting.
By:
The Leopard
When: 18 Jan 10 13:58
My bank has drop down boxes where you in put three random characters from password.....to defeat keyloggers...
By:
stu
When: 18 Jan 10 14:39
Yep think most now have drop down menus - pretty hard to track or run automatically I'd have thought.
By:
BlufDaddy
When: 18 Jan 10 15:58
Would probably take about an extra 2 hours to write the code to handle that.
By:
Horace plays Poker
When: 18 Jan 10 17:14
stu 17 Jan 17:06

Use Spyware Doctor (with anti-virus included) all the time - you have to buy it but it pretty much kicks ass and stops anything.


Spyware doctor is free if you download the Google pack (type Google pack in Google!) and only tick the one box to prevent the rest of their crap.

I would also recommend malewarebytes.

Then run ccleaner and tidy up that registry!
By:
"M"
When: 18 Jan 10 19:18
Giving the scammers false account numbers would cause them to leave traces of their activity when they tried to open the account. Whether anyone makes use of these to identify and block them is another matter. What doing this will almost certainly do is verify your email address to the spammers who sent you the message in the first place and possibly also your ip address. This is not information you really should be giving away.
By:
BlufDaddy
When: 19 Jan 10 12:23
"M" 18 Jan 20:18

Giving the scammers false account numbers would cause them to leave traces of their activity when they tried to open the account. Whether anyone makes use of these to identify and block them is another matter.


Nah, they're more likely to attempt logins through compromised machines rather than their own.

What doing this will almost certainly do is verify your email address to the spammers who sent you the message in the first place and possibly also your ip address. This is not information you really should be giving away.

If your machine is secure, then there's really not much danger in someone having your IP address. Besides, most home users have a sticky dynamic IP address so their IP will change from time to time anyway.

You only really need a static IP address if you're planning to host a web server, or for security reasons with 3rd parties eg some of my clients host sensitive data that I can only access with my username&password if I attempt to login from a pre-specified IP address.

I have an RSA SecurID token for one bank account which is a great way to prevent unauthorised withdrawals. It generates a random 6 digit number every 60 seconds which is required to make a withdrawal.

http://en.wikipedia.org/wiki/File:SecureID_token_new.JPG
By:
stu
When: 19 Jan 10 12:32
BlufDaddy 18 Jan 16:58
Would probably take about an extra 2 hours to write the code to handle that.


Surely lot more difficult though - plus I never have to select an entire password/code, just different combinations of parts of it.
By:
BlufDaddy
When: 19 Jan 10 12:40
Controlling the mouse in a way that is indistinguishable from a real human is pretty straightforward.

Scraping the HTML to find out what character numbers from the password are being asked for is also straightforward. Once you've logged in enough times, they'll have your password.

They might even have it the very first time you log in if, like virtually all net users, you use the same password for every different site you visit. Just check the characters you entered against known complete passwords you've entered for other sites and if they're the same, the chances are you're using the same password.
By:
stu
When: 19 Jan 10 12:44
Some good points - just out of interest Bluf, what do you think of using packages like SD, would stop the keyloggers before they get to you, or do you think it misses much? From personal experience I've found it very thorough.
By:
BlufDaddy
When: 19 Jan 10 12:57
I've not actually used Spyware Doctor but what it probably does is scan for the methods commonly associated with dodgy software such as rootkits and API hooking. There are some legitimate uses of these techniques so they probably also have some smart filtering to make sure it doesn't flag safe programs. Based on that, I would think SD (or something comparable) is software worth having.

For me, the concern is more about losing work if my machine has been compromised so regular backups are essential.
By:
"M"
When: 19 Jan 10 20:15
I have an RSA SecurID token for one bank account which is a great way to prevent unauthorised withdrawals. It generates a random 6 digit number every 60 seconds which is required to make a withdrawal.

This type of security is now available for full tilt, 5000 points for a piece of hardware, or 3000 for mobile phone application.

I still would not be comfortable giving anyone who scams people for a living any more information than I needed to, which for me is none.
sort by:
Show
per page

Post your reply

Text Format: Table: Smilies:
Forum does not support HTML
Insert Photo
Cancel
‹ back to topics
www.betfair.com