Skip to main content

Installing a spy program using Yahoo

Update: On 2013/08/03 redpill released an update to redpill Agent that allows redpill Agent to again get past the Norton scan of Yahoo if Ghost Protocol is active.
Yahoo recently started using Norton to filter email attachments. Currently redpill Detective does not get detected by Norton but redpill Agent from time to time does get detected by Norton. redpill continually work to avoid detection, but in the same way anti virus companies also keep on working on new methods to detect spy software.

If you try to attach the install module (embedded in a wordpad document) to a Yahoo email and it fails, you can email it using another service like gmail. If however you want to email it from or to a Yahoo email address, you need to send it as a link.

How to email the redpill Agent install module as a link

First we are going to create our install module. For this test, we are not going to use one of the default cover install modules but create our own … a ‘SMART Virus Removal Tool’.


Ensure that Ghost Protocol is active. Without Ghost Protocol the possibility that redpill Agent will be detected is almost certain. 

We now open a wordpad document (use WordPad and not Microsoft Word) and add some text to convince the target you double click on the icon. We then drag and drop the install module we created into the wordpad document.


Note: Be sure to add some text to tell the target to click on ‘Enable Editing’ if he opens the document using Microsoft Word. 

You now need to upload the document to Google Drive. If you don’t have a Google Drive account, create a gmail account (you will automatically get Google Drive as well).

Once you uploaded the document into Google Drive, click on ‘Share’ and choose the option to share it as a link.


Copy the link provided by Google Drive.

We can now type our email in Yahoo. Add some text for the link. For our example we will use ‘SMART Virus Removal Tool’.  Highlight the text and select ‘insert link’. Paste the link that you saved from Google Drive into the box.

Your email is now ready to be sent.


When the target gets the email and clicks on the link, Google Drive will show him a download button. When he downloads the file, the wordpad file will open.  He will then read the instructions and run the removal tool.


The target will think the SMART Virus was found and removed by the Virus Removal Tool but redpill Agent would have been secretly installed.


Comments

Popular posts from this blog

How to remotely install spy software

---------------------------------------------------------------------------------------------- Update (2015/07/07):  redpill now has a new and better product for installing spy software remotely: redpill Hacker
You can also have a look at newer articles with better tools at:
http://spysoftware.redpill.co.za -----------------------------------------------------------------------------------------------
In a previous article we discussed how to get usernames and passwords from other users on a computer you have access to. We will now look at how to install spy software on a computer you do not have access to … even if the computer is on the other side of the world.

Step 1: Get quality Spy Software

You will need quality spy software that can be remotely installed and is not easily detected and removed by anti-virus. There are a couple of key loggers that can be installed remotely, but very few that can secretly be remotely installed.

redpill Detective has been designed to be covertly installed…

Sending a spy program with gmail

To install a spy program remotely you need to email the target an install module. Spy software like redpill Agent and redpill Detective allows you to hide the install module within a 'cover application' . When emailing the target the install module, you will need either zip the file, embed it into wordpad or send it as a link as most email service providers doesn't allow you to add executables (exe's) as attachments.

To see how to send the spy program as a link see 'Installing spy software with a link'.
To see how to embed the spy program in wordpad, see  'How to remotely install spy software'.

Using a zipped file for the attachment can be a problem when either you or your target is using gmail as gmail will block attachments that contain executables even when they are zipped.

There is however a simple solution to the problem:

Add a password to your zip file

In winrar and winzip you can choose to add a password to your zip/rar file. When you add a passwo…

How to get a username and password

---------------------------------------------------------------------------------------------- Update (2015/07/07):  redpill now has a new and better product available: redpill Hacker

You can also see more up to date articles at:
http://spysoftware.redpill.co.za
-----------------------------------------------------------------------------------------------
This article will explain how to get a username and password for an email account like gmail or yahoo or a social network account like facebook.

In this article we will focus on getting a username and password of another user (the target) on a computer that you have access to. In a following article we will explain how to get a username and password from someone that works on a computer that you do not have access to that might be in another part of the world.

Step 1: Install a key logger

You will need to download and install a key logger that is not easily detected by anti-virus software and that is completely hidden and discreet
redpil…