home contact keylogger.org add keylogger.org to favorites set keylogger.org as homepage Google Translate from English into Chinese (Simplified) Google Translate from English into French Google Translate from English into German Google Translate from English into Italian Google Translate from English into Japanese Google Translate from English into Portuguese Google Translate from English into Russian Google Translate from English into Spanish  Anti-Keylogger.org
Monitoring Software
Keylogger home Keylogger testing policy Press-releases Keylogger developers Keylogger articles Links Sponsorship & services Keylogger forum
Search for software: Powered by RegNow
PC Activity Monitor Pro (PC Acme Pro)
Current section
Site News
DISCLAIMER: Logging other people's keystrokes or breaking into other people's computer without their permission can be considered illegal by the courts of many countries. The monitoring software reviewed here is ONLY for authorized system administrators and/or owners of computers. We assume no liability and are not responsible for any misuse or damage caused by the keylogging software. The end user of this software is obliged to obey all applicable local, state, federal and other laws in his country of residence.

July 07th, 2009

Tools To Identify Anonymous Users Online

After posting 5 Free Ways to Track Online Leaks of Information, I received numerous requests asking how to identify the online source leaking the confidential company information. Here are some techniques a corporate investigator can use to identify anonymous users online.

In most cases the crooked insider is doing one of three methods: Posting to an online message board (i.e. Yahoo Finance Board), creating a URL along the lines of YourCompanySucks.com, or emailing your company, clients and competitors. In all three scenarios it is also likely that he or she is using a fake and anonymous email address that does not identify them outright (i.e. companyhater@email.com, rather than BGregg@email.com). Luckily for us, most insiders are still failing to hide their IP address even within their "anonymous" email. Once you have that address you can lookup basic information at whatismyipaddress.com.

Although Internet Service Providers diligently project the identities of their users (unless you have a court subpoena), using some of these tricks during regular office hours may pull your insider into one of the many traps below while at work. Even a fake Gmail account used on the insider's company network will show the company IP address that your IT department can legally pinpoint to the user.

First, confirm if the email is a randomly created address. Using Intelius' reverse email lookup, you can confirm (for free) whether the address belongs to anyone. If the email is registered to a name, you can pay a fee of $4.95 and close your investigation.

A powerful second tool is Spokeo.com. Register for the website and search the insider's email address. The service it will do a deep web search of multiple blogs, social networking sites, and photo sharing websites, and even confirm the email address is active. I cannot tell you how many times this website has closed my investigations. Often the insider uses a random, old email address that he or she hasn't used in years and Spokeo tracks it back to a Flickr photo of them—case closed.

After you have identified that the insider's email address is a freshly created, anonymous account, there are two options to get their IP address.
A) Convince them to email you directly and identify the IP address in the received header or this quick email IP tool, or
B) sign up for ReadNotify.com and email the insider. Even if the insider only opens up your convincing email (RE: I Know Who You Are), read notify will automatically and covertly send back a snapshot of the reader's IP address, the date and time the message was opened, location of recipient (per their ISP city /town), map of location, apparent email address of opening (if available), referrer details (ie; if accessed via web mail etc), URL clicks, how long the email was read for, how many times your email was opened and if your email was forwarded, or opened on a different computer. If this is done during office hours and your insider likes to check their email at work, you got them.

If the user is unreachable by email, you can also create your own simple webpage using one of the millions of free webpage accounts online and a free basic counter that collects user information, such as StatCounter.com. Simply paste the link on the insider's message board and let users click it. Stat Counter will then collect IP information, one of which could be your insider surfing while at work.

These tricks are great if you can identify the user with the IP address, but sometimes the address comes back to a personal ISP, or the user actually is using a proxy or TOR, so you're at square one. In those cases a little social engineering is needed to convince the user to post or send you a document, pdf or any other file that has hidden metadata. Opening the file and looking at the properties may give you the author's name, employee ID or that one clue that will identify them. The key is to be creative and get the insider to show you a glimpse of who they are. One piece of information can take them tumbling down and close your investigation.


Source: CSO Online




All news for September 18th, 2009:
20:13Microsoft Internet Explorer SSL security hole lingers
20:11Conservatives call for DNA databases to be reduced
20:09McAfee warns of bogus security suite
20:08Security market remains buoyant in choppy waters
20:07The good and bad of government in the cloud
20:05Vista, Windows 7 Are More Secure than Snow Leopard
20:04Will Google's Buy of reCAPTCHA Hurt Internet Security?
20:01HHS guts health-care breach notification law, groups warn
20:00Man gets 15 months for E-Trade skimming scam
19:59Sophisticated botnet causing a surge in click fraud
19:59Microsoft sues scareware scammers
19:58Software company fined for trading with the enemy
19:58Misdirected spyware infects Ohio hospital
19:57Firefox's Flash check drives 10M to Adobe's download
19:55Microsoft, Yahoo in informal talks with EU over search deal

All news for September 17th, 2009:
19:59Wireless Intrusion Detection and Prevention Systems: Selection Criteria
19:58How to Compare and Use Wireless Intrusion Detection and Prevention Systems
19:54Social Networking a Tool for More Secure ID Management?
19:521.8 million UK postcodes available online
19:51Batman 'glide' disabled in anti-piracy measure
19:47Study: eBay, Yahoo among most trusted companies
19:45One in eight Brits hit by identity theft
19:44Attack E-mails Use Fake Shipping Confirmation Ruse
19:44An Amazing Laptop Recovery Story
19:41Has Conroy's dept received filter report?
19:39Will security concerns darken Google's government cloud?
19:35New phishing attack chats up victims
19:34Report: Skype founders sue Skype
19:34Google buys reCAPTCHA to boost book scanning efforts
19:33Microsoft offers tools for secure application development



All news for September, 2009
All news for 2009 year
All news for 2008 year
All news for 2007 year
All news for 2006 year
All news for 2005 year
All news for 2004 year


DONATION: www.Anti-Keylogger.Org and www.Keylogger.Org is an independent research projects supported by a team of enthusiasts. If you find this project useful and would like to help foster its continued development, please consider making a donation.

Thanks in advance for your support!


Computer monitoring spy software |  Employee monitoring |  Internet activity everywhere |  Invisible keylogger surveillance |  Invisible keystroke recorder |  Keylogger |  Monitor kids |  Monitoring solution |  Network sniffer |  Parental control |  Password protected |  Powerful spy tool |  Powerful surveillance tool |  Record all keystrokes typed |  Record every action |  Records users activity |  Remote installation |  Remote spy software |  Remotely monitor |  Screenshot recorder |  Security tools |  Spy software |  Spying on employees |  Visited web pages | 
Keylogger.Org Site News

January 05th, 2010

New version of The Best Keylogger added!

Spytech SpyAgent
Security World News
Keylogger.Org Security World News

September 18th, 2009

Microsoft Internet Explorer SSL security hole lingers

Conservatives call for DNA databases to be reduced

McAfee warns of bogus security suite

Security market remains buoyant in choppy waters

The good and bad of government in the cloud

Vista, Windows 7 Are More Secure than Snow Leopard

Will Google's Buy of reCAPTCHA Hurt Internet Security?

HHS guts health-care breach notification law, groups warn

Man gets 15 months for E-Trade skimming scam

Sophisticated botnet causing a surge in click fraud

Microsoft sues scareware scammers

Software company fined for trading with the enemy

Misdirected spyware infects Ohio hospital

Firefox's Flash check drives 10M to Adobe's download

Microsoft, Yahoo in informal talks with EU over search deal

Free online TV and internet radio
Voting

We are planning to redesign our site. We would like You to express your opinion in this respect. Would you like to leave the site as it is? What changes would you like to suggest?

Yes, I like the site as it is.
It's ok, but some changes are necessary.
It should be changed completely.
VotingView results
Top | home | testing and reviews | testing policy | press releases | developers |

| articles | contest | chat | forum | sponsorship & services | contacts | links |
Top
Copyright © 2003-2010, Keylogger.Org Team. All Rights Reserved.
Use of any information from this website is permitted only with hypertext link to www.keylogger.org.