Monday, April 17, 2017

How To Remotely Install A Keylogger Onto Your Girlfriend's Computer

For those of you wondering what a keylogger is, the simple answer is that it's a piece of software or hardware that captures every keystroke and saves them for retrieval by you, the attacker. These types of devices have long been used by hackers to capture logins, passwords, social security numbers, etc. Here we will use it to capture the keystrokes of a cheating girlfriend.Fire up Metasploit and let's get started.

Step 1 : Migrate The Meterpreter

Before we start our keylogger, we need to migrate the Meterpreter to the application or process we want to log the keystrokes from. Let's check to see what processes are running on the victim system by typing:
  • meterpreter >ps
Notice in the screenshot above that we have a listing of every process running on the victim system. We can see about 1/3 of the way down the process listing with a Process ID (PID) of 912, the Notepad application is open and running.
Let's migrate to that process and capture any keystrokes entered there. Type:
  • meterpreter > migrate 912
You can see from the screenshot that Meterpreter responds that we have migrated successfully,

1Q/ynjErOgDj50XcLTkdgY61HLHba6LDu_1gCLcB/s1600/4.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;">

Step 2 : Start The Keylogger

Now that we have migrated the Meterpreter to the Notepad, we can embed the keylogger.

Metasploit's Meterpreter has a built-in software keylogger called keyscan. To start it on the victim system, just type:

  • meterpreter> keyscan_start
With this command, Meterpreter will now start logging every keystroke entered into the Notepad application.

Step 3 : Write A Short Note On The Victim System

Let's now move to our victim system and write a short note to make sure it works.

Step 4 : Recover The Keystrokes

Now, let's go back to our system with Meterpreter running on Metasploit. We can now dump all of the keystrokes that were entered on Cheatah's computer. We simply type:
  • meterpreter> keyscan_dump
As you can see, every keystroke has been captured including the tabs and end of line characters. Now you have the evidence on Cheatah!
Thats it you are up ! we'll continue to look at other powerful features of Metasploit's Meterpreter.

No comments:

Post a Comment