{"id":625,"date":"2009-09-01T08:22:44","date_gmt":"2009-09-01T02:52:44","guid":{"rendered":"https:\/\/www.qadit.com\/blog\/?p=625"},"modified":"2009-09-01T08:22:44","modified_gmt":"2009-09-01T02:52:44","slug":"keyloggers-6-simple-tips-to-avoid-being-a-victim-of-keylogging","status":"publish","type":"post","link":"https:\/\/qadit.com\/blog\/keyloggers-6-simple-tips-to-avoid-being-a-victim-of-keylogging\/","title":{"rendered":"Keyloggers &#8211; 6 Simple Tips to avoid being a victim of Keylogging"},"content":{"rendered":"<p style=\"text-align: justify;\">How safe is internet banking? Online banking fraud has doubled in the first half of 2009.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Some customers are still falling foul of &#8216;phishing&#8217; schemes i.e emails that pretend to be from a bank and then direct\u00a0customers to bogus websites where their passwords are stolen.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">But more careful online bank customers are also suffering at the hands of underground hacking technology &#8211; <strong>&#8216;Keylogging&#8217;<\/strong> &#8211; and\u00a0is largely held responsible for the rise in online fraud. \u00a0Unlike Phishing, this is not an attack that alert and\u00a0sophisticated users can avoid.<\/p>\n<p><!--more--><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">A keylogger is a software program or a device designed to secretly monitor and log all keystrokes.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Many keyloggers hide themselves in the system (i.e. they have rootkit functionality), which makes them fully-fledged Trojan\u00a0programs.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Unlike other types of malicious program, keyloggers present no threat to the system itself. Nevertheless, they can pose a\u00a0serious threat to users, as they can be used to intercept passwords and other confidential information entered via the\u00a0keyboard. \u00a0So any PC &#8211; which could even be your home PC &#8211; can be vulnerable to keylogging software.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Here are some simple tips you can take to prevent being the next victim of a keylogging attack &#8211; after all prevention is\u00a0definitely better than losing the money in your bank!!<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\"><strong>Tip 1 &#8211; Have a robust and updated anti virus solution running<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Most antivirus companies have already added known keyloggers to their databases, making protecting against keyloggers no\u00a0different from protecting against other types of malicious program: install an antivirus product and keep its database up to\u00a0date. However, since most antivirus products classify keyloggers as potentially malicious, or potentially undesirable\u00a0programs, users should ensure that their antivirus product will, with default settings, detect this type of malware. If not,\u00a0then the product should be configured accordingly, to ensure protection against most common keyloggers.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\"><strong>Tip 2 &#8211; Use a firewall always<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Most keylogger software transmit a &#8220;I am alive&#8221; message as well as the recorded keystrokes to the bot handler. \u00a0To detect\u00a0this, install a personal firewall on your PC and keep a track of the data that is being sent by your PC to the external\u00a0world.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Configure an alert whenever any data is being transmitted to internet, review the alert and block the file or port if it is a\u00a0suspicious data packet.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\"><strong>Tip 3 &#8211; Use a virtual keyboard<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Another method which can be used to protect against both keylogging software and hardware is using a virtual keyboard. A\u00a0virtual keyboard is a program that shows a keyboard on the screen, and the keys can be &#8216;pressed&#8217; by using a mouse.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">So if your net banking login screen has a virtual keyboard use it always.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">The idea of an on-screen keyboard is nothing new &#8211; the Windows operating system has a built-in on-screen keyboard that can be\u00a0launched as follows: Start &gt; Programs &gt; Accessories &gt; Accessibility &gt; On-Screen Keyboard. \u00a0Unfortunately this emulates\u00a0keystrokes and sends them to the application that has focus. Even the simplest keylogger will catch all of the entries from\u00a0the On screen keyboard as though they were typed.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Thus only specially designed virtual keyboards will prevent keylogging attempts &#8230;. we hope that the banks that have\u00a0deployed virtual keyboards have specifically designed it that way.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\"><strong>Tip 4 &#8211; Check the system processes running<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">At weekly intervals check the system processes running by typing &#8220;msconfig&#8221; in your Run Command. \u00a0Note down the processes\u00a0that are currently running as well as the processes that are configured to automatically Start when your system boots.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Investigate suspicious processes &#8211; which is easier said than done !!<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Unfortunately, malware processes are rarely named &#8220;evil keylogger.exe&#8221; !! Often malware, like keyloggers, have names that are\u00a0similar to other normal processes like svchost.exe, making it difficult to distinguish between a safe process and a malicious\u00a0one.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Further there are quite a few keyloggers that will not show up at all in the Task Manager process list.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Nevertheless, precaution is better than cure.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\"><strong>Tip 5 &#8211; Fool the keylogger &#8211; a simple way<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Another tip &#8211; as suggested by a couple of researchers at Microsoft &#8211; is to type your password in random way.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">Like if your password is \u201cyourpassword\u201d: Type \u201cpassword\u201d first then bring cursor to beginning, type \u201cyour\u201d. \u00a0This way you can\u00a0fool keyloggers.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\"><strong>Tip 6 &#8211; Fool the keylogger &#8211; a more methodical way<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">The string of keys sent to the browser will often contain domain names, followed by userid and passwords.<\/p>\n<p style=\"text-align: justify;\">For example the segment <em>www.netbanking.xyz.comiamsafeweak123<\/em> tells the logger that user id &#8220;iamsafe&#8221; has password\u00a0\u201cweak123\u201d at www.netbanking.xyz.com<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">So one way of fooling the keylogger is by entering random keys so that they will be seen by the keylogger, but will not\u00a0affect normal login.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">The trick lies in the fact that keyloggers employ very low level OS calls. The keylogger sees everything, but it doesn\u2019t\u00a0understand what it sees. The browser also sees everything, but it doesn\u2019t use everything that it sees: it does not know what\u00a0to do with keys that are typed anywhere other than the text entry fields, and lets them fall on the floor. The keylogger has\u00a0no easy way to determine which keys are used by the browser and which fall on the floor.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Between successive keys of the password enter random keys. The string that the keylogger receives will contain\u00a0the password, but embedded in so much random junk that discovering it is not feasible.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Here is the method:<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">Navigate to the login page desired;<\/p>\n<p style=\"text-align: justify;\">Type in the userid;<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">In the password field enter the first character of the password, then click somewhere outside the password field on a text\u00a0(not a hyperlink) and enter some random characters, then click again on the password text field enter a few password\u00a0characters and repeat this process.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">The browser will ignore the random characters entered outside the password field, but the text that the keylogger will record\u00a0will be something like<\/p>\n<p style=\"text-align: justify;\"><em> www.netbanking.xyz.comiamsafewrfeolsdfadjflkrefj1sdfsd2dfvjl3flsdlf<\/em><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\">\n<p style=\"text-align: justify;\">It involves typing random characters between successive characters of the password, and changing focus to and from the\u00a0password field using the mouse.<\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\"><em>Follow these tips and have a safe online banking experience.<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>How safe is internet banking? Online banking fraud has doubled in the first half of 2009. &nbsp; Some customers are still falling foul of &#8216;phishing&#8217; schemes i.e emails that pretend to be from a bank and then direct\u00a0customers to bogus websites where their passwords are stolen. &nbsp; But more careful online bank customers are also &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/qadit.com\/blog\/keyloggers-6-simple-tips-to-avoid-being-a-victim-of-keylogging\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Keyloggers &#8211; 6 Simple Tips to avoid being a victim of Keylogging&#8221;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[12,7],"tags":[70,71,72],"class_list":["post-625","post","type-post","status-publish","format-standard","hentry","category-itsec","category-frauds","tag-keylogger","tag-keylogging","tag-online-banking-fraud"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p9AH7Q-a5","_links":{"self":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts\/625","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/comments?post=625"}],"version-history":[{"count":0,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts\/625\/revisions"}],"wp:attachment":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/media?parent=625"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/categories?post=625"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/tags?post=625"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}