Exellent blog and codes from Ruben Unteregger a.k.a. megapanzer
The last 2 weeks I have been working on a new tool, which is based on the methods of the Skype trojan. The objective is to surveil programs and extract sensible data from them. In order to do so you have to plant function hooks between the running program and the operating system. It took a while until i found the correct functions, but the result is satisfying and i think that I am on the right track. At the moment it is possible to extract passwords from Google Chrome, Apple Safari, Windows Live (Instant Messenger + Mail), GoogleTalk, FireFirefox and Thunderbird . For some programs there are better ways of attacking them, but with a little more time the procedures can be optimized.
On the 3rd of November (1pm Swiss time) the MioStar source code will be relased. Those who are interested are welcome to download, explore, review and critizise it.
Within the same time I have rewritten the SkypeTrojan code that way it can intercept GoogleTalk conversations. The audio data gets intercepted, converted to MP3 and saved.
Here is the source to MioStar : http://www.megapanzer.com/wp-content/uploads/MioStar_0_1.zip
source of the article