Keyscrambler - Encrypt your Keystrokes


Recommended Posts

Keyscrambler - Protect your personal information from keyloggers

http://www.qfxsoftware.com/

Give keyloggers the finger.

"There is a 1 in a 1,000,000 (or more) chance that today you will be shot with a gun. Wouldn't it be great to be wearing a Kevlar vest on THAT day??"

Today I'm going to review a nifty little program called "Keyscrambler". I remembered hearing about this application a while ago and I even tried it out. Today someone referenced it in a "Keylogger Remover" thread. He was recommending it as a preemptive measure for 'next time'. That got my interest sparked again so I looked into it. I ended up buying the Premium Version. This may have been an impulse buy, but it's one of those applications that it will never hurts to have.

As you all know a keylogger is an application that runs on your system for the sole purpose of capturing all the keystrokes the user inputs (or inputs via other means) into the computer.

It's thru these types of applications that the hackers are able to steal confidential information when it is entered into a the web browser (other than phishing sites of course).

Most of the time, an Anti-virus and/or Anti-malware application will detect and remove a keylogger from a computer, but it just has to miss one once. I know that most of us think that we will never fall victim to a keylogger. We would have to be stupid, right? I think we are all smart enough not to fall for a fake antivirus ad, BUT what about a vulnerability via a 3rd party browser add-on? It could happen. Enter now the Keyscrambler.

Keyscrambler works at the keyboard driver level of the kernel (or as low as Microsoft will let it work on 64bit Windows). There is a 32bit and 64bit version. I'm running it on Windows 7 - 64bit without issue. As you start typing on the keyboard, the data gets encrypted. The entire path is encrypted, from the moment a key is pressed on the keyboard, until it reaches the box it was intended for. Once it reaches the intended location, the information is then decrypted.

A keylogger running on the system between the keyboard and the destination will just see encrypted gibberish. (Example of FL:KJERERLEJR:F)

Keyscrambler supports a plethora of applications. It has to support the application before it can encrypt the data entered into it. I found that it supports every web browser imaginable as well as all the popular email clients, IM messengers, accounting software, office software and more. Certain things that it does not encrypt would be something like the run box, but how often are you really entering your credit card information into the Windows run box?

As you type into a supported application a long green box appears in the corner of the screen. It shows you the encrypted output of what you are typing. If you prefer not to use the green bar, you can use a tray icon instead.

tpying.jpg

There are 3 versions of the application.

First, there is the Free Version. It supports IE and Firefox, Flock and that's it. If you use any other web browser you are out of luck.

Next is the Pro Version $29.99 - This supports IE and Firefox as well as all the other web browsers. It also supports Email clients, IM/ VoIP, Password Managers (including but not limited to Roboform), Zip applications, Text Editors, Music apps and Online games.

Finally we have the Premium Version $44.99. This one supports everything mentioned above. It also supports a few additional type of applications. Office, Finance, Tax, Accounting (Like QuickBooks), Networking, Encryption, File Managers and Windows log-in. A complete run down of the applications covered by the assorted versions is available on the company's website.

There is no monthly fee and its just a 1 time fee with free lifetime updates. Once you install the program you use your email address and your Product Key to show you bought the application. It does require the internet to validate. Though it doesn't look like it does any sort of activation. It just makes sure that the Product Key matches the email address.

To check out the functionality, I installed an antikeylogger tester. I had it test how well keyscrambler protected against a low level keyboard hook. I told it to record and started entering my login name and password into the Neowin.net sign in page via Firfox. Once I was finished I checked the antikeylogger tester and all I saw was gibberish, Hooray!!

keyloggertest.jpg

That's really all there is to say about this application. There aren't a lot of features. All it does is encrypt data entered into the computer so that keyloggers can't see it.

A video showing how keyscrambler does against a low-kernal mode keylogger.

For best results watch this video in HD

Edited by warwagon
Link to comment
https://www.neowin.net/forum/topic/835718-keyscrambler-encrypt-your-keystrokes/
Share on other sites

Good idea if it really does what it says, however the prices for the pro/premium versions are way too high. I would have said $9.99 for pro and it should work with all apps including Office etc. No way would I pay $45, and can't imagine many others doing so.

Just looked at their site and it's $12.99 to upgrade pro to premium, so it's cheaper to buy pro + the upgrade than premium, whacky pricing!

Remember if you use Roboform then there are no key presses to log, I assume that would be true for the other password managers.

Edited by m.keeley

Pretty stupid that you have to pay just to use it in other browsers, I am sick of everyone assuming that the entire world either uses IE, or Firefox (flock is a pretty strange choice given that its market share is even lower than Opera's). Also, a good idea, but I think the price is overkill given that being hijacked by keyloggers is pretty rare nowadays where most details are stolen through phishing.

Pretty stupid that you have to pay just to use it in other browsers, I am sick of everyone assuming that the entire world either uses IE, or Firefox (flock is a pretty strange choice given that its market share is even lower than Opera's). Also, a good idea, but I think the price is overkill given that being hijacked by keyloggers is pretty rare nowadays where most details are stolen through phishing.

Agreed. Will I ever use it? Doubtful. But cool product nonetheless.

If you use IE or Firefox, then it doesn't hurt to have the freeware version. It doesn't run any background processes, and you can configure it to show a tray icon instead of the annoying green bar.

Don't assume this is "a step ahead" of the bad guys.

A lot of keyloggers that are developed take this into consideration and are Anti-Keyscrambler and other stuff!

Might work against the older stuff (that newbies use)

:) No problem.

So which keyloggers do you know of that can get around keyscramblers? Care to give any examples or quote the source of your information?

Edited by warwagon
Man...this is for paranoid people.

I know of a certain person that has nearly a million dollars in trade accounts and online banks. If this person uses a program like keyscrambler to protect their investment accounts in the event a keylogger ever got installed, then would you still call them paranoid?

Edited by warwagon
I know of a certain person that has nearly a million dollars in trade accounts and online banks. If this person used a program like keyscrambler to protect their investment accounts in the event a keylogger ever got installed, would you still call them paranoid?
Yes. A person that worried about it would be using a nonce keyfob or some other form of 2-factor authentication. Furthermore, that person would never be using an untrusted workstation for online banking.

My wife and I have accounts with that much money in them and I wouldn't think about using a bank that allowed those funds to be transferred without some sort of reliable verification. Most of the banks and investment firms I use won't even allow notarized letters for common mail-based communication.

Also, I'd be interested if anyone has seen an analysis of Keyscrambler. What warwagon posted looks a lot like a brochure advertisement to me. Everything you get from a Google search is the same self-serving advertisement. Plus there's no information on how the software actually works (though it probably actually works very similarly to most keyloggers by installing a global hook for the keypress event). Any malware running with admin access could theoretically get your keystrokes, since the destination application must access them as well. All of these are hallmarks of a bogus application that simply gets marketed well.

A keylogger could probably do an API call to GetWindowText and it'd be as simple as that for any targeted application. It would be a trivial matter to search for password fields in browser html and do the same thing with the Windows API.

Edited by boogerjones
Man...this is for paranoid people.
If there was an open-source anti-keylogger product that had been independently tested for security vulnerabilities, I would happily give my money to its parent company. Untrusted workstations are a significant threat and keyloggers are the easiest way to get private information. Phishing scams only work on old ladies and other people who know nothing about technology.
If there was an open-source anti-keylogger product that had been independently tested for security vulnerabilities, I would happily give my money to its parent company. Untrusted workstations are a significant threat and keyloggers are the easiest way to get private information. Phishing scams only work on old ladies and other people who know nothing about technology.

agreed

i use SSH tunnels and stuff to avoid information leakage, this just protects from another type of leakage

KeyScrambler will protect you against the majority of keyloggers, but it is far from fool proof.

I think the only way a true keylogger could bypass KeyScrambler is to install a system driver. Even with UAC disabled, Windows should still prompt you before installing an unsigned driver.

But there are far simpler ways to bypass KeyScrambler:

- Install a plugin into the web browser to capture the keystrokes after they're decrypted.

- Or even simpler, just disable the KeyScrambler plugin, though you might notice the green bar is gone.

Heck, if you start IE InPrivate Browsing, it disables all addons including KeyScrambler.

But as I said before, it will protect you against the majority of keyloggers.

Heck, if you start IE InPrivate Browsing, it disables all addons including KeyScrambler.

Incorrect.....sorta

The personal version runs as an extension in IE. The paid versions do not. Same for firefox.

inprivatev.jpg

Edited by warwagon
Yes. A person that worried about it would be using a nonce keyfob or some other form of 2-factor authentication. Furthermore, that person would never be using an untrusted workstation for online banking.

Define untrusted. The person I was referring to is using their own machine not some random PC at some persons house, they have no control over. By Trusted workstation are you referring to a pc that is just for doing online banking and nothing else?

  • 2 weeks later...
  • 2 weeks later...
So which keyloggers do you know of that can get around keyscramblers? Care to give any examples or quote the source of your information?

These fancy "key scramblers" indeed work against two types of key-loggers:

- those using passive methods for recording keystrokes (making use of API like GetAsyncKeyState() or GetForegroundWindow()... ).

- and also those hooking API function calls (thus intercepting keyboard events).

However, none of those fancy scramblers stand a chance against two types of widely known and used key-loggers:

- Those implemented as part of a kernel-level rootkit. They act as the keyboard driver, and have low level access to the hardware itself.

- those implemented in a malware hypervisor. Those have more privileges than the OS Kernel itself.

All in all, those so called keyscramblers would have done a very good job 10 years ago, not now.

Well I thought I would test it

I downloaded keyscrambler premium in a vm along with Elite Keylogger

http://www.widestep.com/

Elite Keylogger works in low-kernel mode as a driver-based monitoring software recording every detail of PC and Internet activity. It is the optimum solution for homes, families, small and middle offices, as well as big companies with the need to monitor hundreds of employees. Elite Keylogger is driver mode low kernel Keylogger.

It did not record anything I was typing when I used key scrambler. Once I turned off keyscammbler it recorded just fine. So that is one example of keyscrammbler defeating a low kernal mode driver based keylogger.

Web of Trust is saying that widestep.com is very untrustworthy. Are you sure you didn't actually install a keylogger instead of a keylogger prevention? :)

EDIT: Durr... widestep is where you did get the keylogger from. :)

Yep if you read some of the comments on the score card of WOT it says they make key loggers lol.

Right now i'm in the process of making a video I will put on youtube, just in case someone doesn't believe me.

Ok here is the video. As i'm posting this yotuube is still improving the quality of the video. So by the time you read this it will probably be HD.

THis video is of the test I mentioned above.

Well I thought I would test it

I downloaded keyscrambler premium in a vm along with Elite Keylogger

http://www.widestep.com/

Quote -

Elite Keylogger works in low-kernel mode as a driver-based monitoring software recording every detail of PC and Internet activity. It is the optimum solution for homes, families, small and middle offices, as well as big companies with the need to monitor hundreds of employees. Elite Keylogger is driver mode low kernel Keylogger.

It did not record anything I was typing when I used key scrambler. Once I turned off keyscammbler it recorded just fine. So that is one example of keyscrammbler defeating a low kernal mode driver based keylogger.

During the video I also accidnetly got tong tied and called keyscramber keylogger.... OOPS!

For best results watch this video in HD

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Ocenaudio 3.19.3 by Razvan Serea  Ocenaudio is a full featured, fast and easy to use audio and music editor. It is the ideal software for people who need to edit and analyze audio files without complications. Ocenaudio also has powerful features that will please more advanced users. To assist ocenaudio development, a powerful toolset of audio editing, analysis and manipulation called Ocen Framework was created. ocenaudio is also based on Qt framework, a well known library for cross-platform development. Cross-platform support ocenaudio is available for all major operating systems: Microsoft Windows, Mac OS X and Linux. Native applications are generated for each platform from a common source, in order to achieve excelent performance and seamless integration with the operating system. All versions of ocenaudio have a uniform set of features and the same graphical interface, so the skills you learn in one platform can be used in the others. VST plugins support Ocenaudio supports VST (Virtual Studio Technology) plugins, giving its users access to numerous effects. Like the native effects, VST effects can use real-time preview to aide configuration. Real-time preview of effects Applying effects such as EQ, gain and filtering is an important part of audio editing. However, it is very tricky to get the desired result by adjusting the controls configuration alone: you must listen the processed audio. To ease the configuration of audio effects, ocenaudio has a real time preview feature: you hear the processed signal while adjusting the controls. The effect configuration window also includes a miniature view of the selected audio signal. You can navigate on this miniature view in the same way as you do on the main interface, selecting parts that interest you and listening to the effect result in real time. Multiselection for delicate editions To speed up complex audio files editing, ocenaudio includes multi-selection. With this amazing tool, you can simultaneously select different portions of an audio file and listen, edit or even apply an effect to them. For example, if you want to normalize only the excerpts of an interview where the interviewee is talking, just select them and apply the effect. Eficient edition of large files With ocenaudio, there is no limit to the length or the quantity of the audio files you can edit. Using an advanced memory management system, the application keeps your files open without wasting any of your computer's memory. Even in files several hours long, common editing operations such as copy, cut or paste happen almost instantly. Fully featured spectrogram Besides offering an incredible waveform view of your audio files, ocenaudio has a powerful and complete spectrogram view. In this view, you can analyze the spectral content of your audio signal with maximum clarity. Advanced users will be surprised to find that the spectrogram settings are applied in real time. The display is updated immediately when altering features such as the number of frequency bands, window type and size and dynamic range of the display. Ocenaudio 3.19.3 changelog: Fixes issues with MP4 files with more than 8 channels Fixes incorrect VBR detection for some CBR MP3 files Other bug fixes and improvements Download: Ocenaudio 64-bit | Portable | ~40.0 MB (Freeware) Download: Ocenaudio for Linux and Mac OS View: Ocenaudio Homepage | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • DiskGenius 6.2.0.1829 - All Versions: Free, Lite & Portable by Razvan Serea DiskGenius is a full-featured partition manager, which is designed to optimize disk usage for Windows users. It will efficiently help you recover lost data, resize/split partition, backup files, edit hex data, check bad sectors, manage virtual disks, erase data, etc.. Create a system image backup for current Windows with simple clicks to keep the operating system under protection. DiskGenius key features: Partition Management - It can create format, resize, extend, backup, split, hide and clone partition, both MBR and GPT are supported. Disk and partition conversion - Convert dynamic disk to basic, convert virtual disk format and convert MBR to GPT, convert primary partition to logical. File recovery - It can recover files deleted or emptied form recycle bin, recover files from damaged partition or disk and recover files by file type and supports file preview and file filter. Partition recovery - It is the best partition recovery program in that it can recover files from damaged, corrupted and RAW partitions, search for lost partition and recover files from it, besides, it can fix partition table. RAID recovery - It can reconstruct Virtual RAID and recover files from it, and all RAID types are supported. Sector Editor - A Hex editor is embedded to help users edit raw hex data and recover data manually. Backup and Restore - It can backup and restore partition including system partition, hard disk and partition table. Bad Tracks - It can check and repair bad sectors for all storage devices; check hard disk S.M.A.R.T. information. Delete files permanently - It can delete files permanently so that they can't be recovered by any data recovery software. Virtual Disk - It supports virtual disks, including VMware, Virtual PC and Virtual Box. Create WinPE bootable disk and you can manage disk partition when system crashes or there is no operating system on your computer. Support FAT12/FAT16/FAt32/exFAT/NTFS/EXT2/EXT3/EXT4 file system format. DiskGenius 6.2.0.1829 changelog: Add the "Disk Speed Test" feature. Add the "Windows Boot Repair and Conversion" feature. Add the BMB21-2019 erase standard to the "Erase Sectors" feature. Add support for restoring an individual partition from a PMFX disk image file. Enhanced The "Verify Or Repair Bad Sectors/Blocks" feature displays disk read speed in the detection window during scanning. The "Quick Partition" dialog box allows users to quickly select the number of partitions by pressing the numeric keys 1, 2, 7, 8, or 9. The "Set Volume Name" dialog box supports selecting preset volume labels provided by the software. The "Copy Sectors" feature supports resuming copy tasks after modifying the number of skipped bad sectors. Add the "TRIM Optimization" option to the format dialog box. The "Clone Partition" and "Clone Disk" features perform TRIM optimization on target partitions or disks before cloning. Add support for Not Equal To search conditions (prefixed with "!") when searching hexadecimal data in the sector editor. Optimize the display of capacity values in the program interface to show two decimal places. Add a minimize button to dialogs that may require long processing time. Enhance support for the ReFS file system. Enhance support for newer HIF and MP4 formats when recovering files by type. Enhance support for the EXT4 file system. Enhance compatibility of the "File Recovery" feature with special data structures. Fixed Fixed the issue that the selected file system type automatically reverted to NTFS after changing it to exFAT or EXT4 in the "Quick Partition" dialog box. Fixed inaccurate Unicode string search results in the "Sector Editor" feature. Fixed the issue that exceptions might occur when adding multiple disks in the "Erase Sectors" feature. Fixed the issue that insufficient target disk space was incorrectly reported in some cases when cloning, backing up, or restoring disks. Fixed the issue that folder modification timestamps were not preserved when copying files from ReFS partitions. Fixed the issue that Excel-format reports generated by features such as file copying or bad sector checking could not be opened when the report contained more than one million rows. Fixed the issue that folders were not displayed in the exclude-folder dialog box when backing up partitions to image files. Fixed the issue that the "Erase Sectors" feature could not be executed in some cases. Download: DiskGenius 6.2.0.1829 | 63.9 MB (Freeware, paid upgrade available) Download: DiskGenius Portable 64-bit | 40.0 MB Download: DiskGenius Portable 32-bit | 36.0 MB Download: DiskGenius Lite 64-bit | 13.4 MB Download: DiskGenius Lite 32-bit | 11.6 MB View: DiskGenius Home Page | DiskGenius Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Really? Use a better search engine https://www.google.com/search?...ourceid=chrome&ie=UTF-8
  • Recent Achievements

    • Week One Done
      agatameier earned a badge
      Week One Done
    • One Month Later
      agatameier earned a badge
      One Month Later
    • Week One Done
      ssd21345 earned a badge
      Week One Done
    • Contributor
      MarkHughes4096 went up a rank
      Contributor
    • Dedicated
      jordanspringer earned a badge
      Dedicated
  • Popular Contributors

    1. 1
      +primortal
      513
    2. 2
      +Edouard
      182
    3. 3
      PsYcHoKiLLa
      143
    4. 4
      ATLien_0
      95
    5. 5
      Steven P.
      74
  • Tell a friend

    Love Neowin? Tell a friend!