Ik hoorde onlangs (via MSN :-) van het programma Hotmail Hacker Gold. M'n
neefje blufte tegen me dat hij mijn hotmailaccount wel 'ns zou kraken! Je
vindt het programma vast wel op verschillende sites.
Nu mijn eigenlijke vraag: waar kan ik info vinden over de source van het
programma, of waarop is dit gebaseerd? Wordt dit niet gepatched door MSN?
Wietekoo
Hier een reply uit alt.hacking over een proggie genaamd
"hack_hotmail_trial.exe" :
===============
From: glenn@_muged_d15c0uk.c0m (glenn)
Newsgroups: alt.hacking
Subject: Re: HACK HOTMAIL EMAIL ACCOUNTS (FREE)
Date: Thu, 1 Aug 2002 10:09:29 +0000 (UTC)
Message-ID: <aib1cp$q4s$1...@paris.btinternet.com>
I downloaded this, (I already knew it was a virus), interestingly, it
isn't detected by PC-Cillin 2002. I havn't had the time to fully analyse
what it does yet, but intend to over the next few days.
It creates a file called temp.exe, which appears to be linked together
with a mirc32.exe file, not sure why it uses mirc, it doesn't appear to
make any mirc connections, it also creates a number of mirc related
folders, i.e sounds, logs etc.
The file then sends data every few seconds to
zidpc248.tu-graz.ac.at:45689 I havn't had the time to run a packet
sniffer on it to find out what exactly it is sending, or if in fact it
is a DDOS attack on a particular machine. The machine it is targetting
is a webserver, and is running SSH. Going on the numerous web
connections that the file opens also, I would suspect that it is most
likely a ddos.
I will be scrutinising it in a bit more detail tonight, providing I get
the time.
If anyone else has had a look at it, let me know what you find out.
Glenn
===============
Was te verwachten, toch?! :))
Als ik 1 PC meer had, dan had ik het kunnen testen... Helaas, net 1 PC
te kort (ik ga zoiets namelijk niet op de WSen van m'n ouders testen :)
Groeten, Jan
--
$WORK | $PRIVE
VEVIDA Services | Dutch Security Information Network
http://www.vevida.nl | http://www.dsinet.org/ - Why not?
Bedankt, Jan, ik volg ook even de thread op news:alt.hacker.
Wietekoo