Cloud Keyloggers?

    Cloud Keyloggers?


    Posted: 16 Jun 2010

    Keystroke-logging computer viruses let crooks steal your passwords, and sometimes even read your e-mails and online chats. Recently, however, anonymous criminals have added insult to injury, releasing a keylogger strain that publishes stolen information for all the world to see at online notepad sharing sites such as pastebin.com.





    Last week, security experts at BitDefender discovered a continuing stream of new entries at pastebin.com and pastebin.ca that included text files laid out in the format typically used by keystroke-logging malware. For example, each keypress in the log posted to pastebin.com is preceded by a listing of the program currently in focus on the victim’s screen, and each function key pressed is spelled out, so that when the victim hits the backspace or down arrow key, for instance, the keystroke log will show a “[back]” or “[down]” entry in place of each corresponding keypress (see the screenshot to the right).

    Typically, keystroke logging malware will submit stolen data to a Web server specified in the malware that the attacker controls. BitDefender theorizes that those responsible for creating this keylogger variant may have chosen pastebin.com because it is unlikely to be blocked by Web filters or malware blacklists.

    I kept the pastebin.com home page open most of the weekend and refreshed it periodically, and confirmed that a relatively large number of keylogger records were being uploaded in real time to the free service. To the right is one of many screenshots I took of the files I found on Pastebin.com.

    Pastebin owner Jeroen said Pastebin is aware of the problem and is working on a new version of the site that should block these automated keyloggers from posting their content there.

    Source -
    Cloud Keyloggers? — Krebs on Security
    Posted By: JMH
    16 Jun 2010



  1. Posts : 304
    Windows 7 Ultimate 64 bit
       #1

    Interesting info. But i'm interested whats the best anti keylogging software that can effectively detect and remove keyloggers.
      My Computer


  2. Posts : 9
    Windows 7 64bit
       #2

    I visited pastebin.com and in 5 minutes had over 200 username.password combos for all sorts of sites... mostly facebook but also amazon.com, dating sites, porn sites, netflix, aol, google... didn't notice any banks but I'm sure they're out there too. This is unreal.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 09:03.
Find Us