![]() |
|
#26
|
||||
|
||||
|
Quote:
I tested this here as well (XP SP3 but shouldn't make a difference) and SafeOnline blocked everything. There are a number of factors which could be affecting it, from language settings to whatever CTM is doing behind-the-scenes. I can certainly investigate closer if wanted but on multiple PCs here, I've yet to see a single keystroke get stolen across English, British English, and Spanish keyboard configurations. Fundamentally "Advanced Keylogger" does nothing different than the Zemana leaktest or other leaktests. Quote:
Be aware that even though it may be protected from the initial entry, if there is a Man-in-the-Browser infection like Zeus, Caberp, Torpig, Silon, etc. on your PC, it will still be able to see credentials when they are sent across the network unless you use browser protection software. |
|
#27
|
||||
|
||||
|
Quote:
Prevx is great I must say.
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#28
|
|||
|
|||
|
Wouldn't running in a limited account while online prevent these key loggers from running and installing to begin with? Is a lot cheaper and easier too.
![]() |
|
#29
|
||||
|
||||
|
aigle, great testing anyway. Interesting to read your test and Joe's explanation of Prevx SafeOnline.
|
|
#30
|
||||
|
||||
|
Thanks, just tested as I like Prevx a lot.
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#31
|
||||
|
||||
|
@PrevxHelp
Does Prevx SOL works Ok in VirtualBox as I tested it on Windows 7 in VBox and still a fail.
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#32
|
||||
|
||||
|
It,s weired. Another person have tested it on XP and windows 7 and has confirmed my finding. Prevx SOL is bypassed by two loggers( screenshots by one and keystrokes by the other).
Wish some one else could try it as well. ![]()
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#33
|
||||
|
||||
|
Quote:
I'm on XP Quote:
Which 2 out of the 3 are they ? Let me know and i'll do it ![]()
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#34
|
|||
|
|||
|
Quote:
No. See http://www.prevx.com/blog/83/Is-Limi...ot-really.html Anyway, let's not derail this thread further. |
|
#35
|
|||
|
|||
|
Oh jeez...I've just tried Advanced Keylogger in my Win XP (SP3) VM and it successfully captured login details from Paypal. I couldn't get All-in-one Keylogger to work properly, but given Safeonline was bypassed by Advanced Keylogger I'm sure Aigle's test results are correct for that also.
![]() Joe, if you want to do a remote support session to try to diagnose this drop me a pm. |
|
#36
|
||||
|
||||
|
Quote:
Get them from here. http://www.relytec.com/ http://www.eltima.com/products/keylogger/
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#37
|
||||
|
||||
|
Don't forget what PrevxHelp has said about Keyboard language:
Quote:
TH
__________________
Triple Helix - Microsoft® MVP Consumer Security 2012/14 VIP Member Of ASAP - (Alliance of Security Analysis Professionals™) Webroot® SecureAnywhere™ Complete 2013 Closed Beta Tester v8.0.2.145 - VoodooShield 1.08 - Windows 7 Ultimate 64bit and all Windows OS's from XP to Win 8 on VM's. |
|
#38
|
||||
|
||||
|
Also see how Prevx is doing with real Keyloggers here: http://malwareresearchgroup.com/cate...roducttesting/
TH
__________________
Triple Helix - Microsoft® MVP Consumer Security 2012/14 VIP Member Of ASAP - (Alliance of Security Analysis Professionals™) Webroot® SecureAnywhere™ Complete 2013 Closed Beta Tester v8.0.2.145 - VoodooShield 1.08 - Windows 7 Ultimate 64bit and all Windows OS's from XP to Win 8 on VM's. |
|
#39
|
|||
|
|||
|
Quote:
Well, keyboard language for me is English. |
|
#40
|
|||
|
|||
|
Quote:
How are these not real keyloggers?!!!!! |
|
#41
|
||||
|
||||
|
Quote:
![]()
__________________
Sandboxie | WinPatrol | CCE | MBAM | OpenDns with DnsCrypt |
|
#42
|
||||
|
||||
|
Quote:
Who said they weren't? I was just pointing out that MRG is testing against malicious keyloggers sorry that I didn't make myself clear! TH
__________________
Triple Helix - Microsoft® MVP Consumer Security 2012/14 VIP Member Of ASAP - (Alliance of Security Analysis Professionals™) Webroot® SecureAnywhere™ Complete 2013 Closed Beta Tester v8.0.2.145 - VoodooShield 1.08 - Windows 7 Ultimate 64bit and all Windows OS's from XP to Win 8 on VM's. |
|
#43
|
||||
|
||||
|
Quote:
![]()
__________________
Sandboxie | WinPatrol | CCE | MBAM | OpenDns with DnsCrypt Last edited by Kernelwars : October 24th, 2010 at 05:20 AM. |
|
#44
|
||||
|
||||
|
All-in-one Keylogger & Advanced Keylogger test v PSOL
XP/SP2 Admin Installed both under ShadowDefender, with ALL my security disabled, apart from PSOL. All-in-one Keylogger captured a screenshot I have manually allowed protection for Wilders in Prevx, so it shouldn't have captured that In the Textual Report i only found one Keystroke logged out of many i did ? The Wilders one was not it, but note above. Didn't find any www's logged. I found it visably slowed my screen movements with text files & screenies etc Not sure if it worked properly as it was buggy, or was it that PSOL protected me ? MORE
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air Last edited by CloneRanger : October 24th, 2010 at 06:17 AM. Reason: Extra info |
|
#45
|
||||
|
||||
|
Advanced Keylogger was a different class altogether
Captured dozens of screenshots, here's just 2 Captured keys etc PSOL didn't block any of the above ?
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air Last edited by CloneRanger : October 24th, 2010 at 06:18 AM. |
|
#46
|
||||
|
||||
|
Quote:
![]()
__________________
Sandboxie | WinPatrol | CCE | MBAM | OpenDns with DnsCrypt |
|
#47
|
|||
|
|||
|
Quote:
Something weird is going on here. Maybe we're all testing in a VM and Prevx SOL has some problems in VMs due to the keyboard and screen interfaces?? Edit: Damn, just noticed Cloneranger is testing with Shadowdefender. Bang goes that theory. Common denominator is XP then?? |
|
#48
|
||||
|
||||
|
PrevxHelp:
Quote:
according to Wikipedia, the only way to prevent Man-In-The-Browser attacks is through what is called "transaction verification". Quote:
i'm no expert but according to the above it seems the only way to be safe beside "transaction verification" is not to get infected in the first place.
__________________
| Sphinx Firewall || NoScript || Image for Linux + BootIt Bare Metal | Last edited by moontan : October 24th, 2010 at 09:13 AM. |
|
#49
|
|||
|
|||
|
Has anyone tested Trusteer's rapport with these key loggers ,it's a bit heavier on the system but would protect your browser better if it does work against them.
|
|
#50
|
|||
|
|||
|
Quote:
Tests by MRG have shown it to be less effective than Prevx SOL. Back on topic...clearly there is a bug/possible regression going on here. I have previously tested SOL against keyloggers in XP and it did what it claimed. For some reason it's now not doing that - at least for XP. We just need to give PrevxHelp some time to respond. |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|