GhettoWebmaster.com

LoLo’s safe for work blog about Internet scams, deceptive marketing, spam, spyware, adware, and other asshatery.

  • Home
  • About Me
  • Contact
  • Press Coverage

20

Nov

QuickTime Embeds: MySpace Spammers New Best Friend

Posted by LoLo  Published in MySpace

After getting hit with the Flying Spaghetti Monster Worm (NSFW-ish link), 9/11 Worm, and approximately a gazillion billion members were infected with adware by downloading some garbage after being auto-redirected to fake MySpace IM & Porn Sites; MySpace implemented their Flash 9 security update in July. Sure, this was a major blow to the legit companies who feed the MySpace beast with widgets, but at least it slowed down the MySpace-to-SpamSpace morph. Since that time, MySpace has been hit by a number of small worms that employed Javascript workarounds, but those only required small patches to send them the way of the dinosaurs.

Now, spammers have found a new best friend: QuickTime Embeds that auto-redirect to the url of their choosing. This morning I logged into my MySpace and saw the following bulletin:

Title:
OMG!! UNLIMITED ringtones for ur phone!!!d0244

Body:
This site is a fukin ringtone GOLDMINE!!! I have no idea how they get away with this!!! Click on the link below to check it out!

http://profile.myspace.com/(url-truncated)&friendid=2a690aa49d

—
The bulletin was not posted by the owner of the account which it was sent from. The spammer posted it from his account after phishing him.


continue reading "QuickTime Embeds: MySpace Spammers New Best Friend"

11 comments

10

Oct

Demographic Info From 26,000 Phished MySpace Accounts

Posted by LoLo  Published in MySpace

A few weeks back I read this blog entry “Analyzing 20,000 MySpace Passwords” after seeing it on the homepage of Digg. The information presented is neat in that “I’m a nerd so I find this interesting” kinda way, but it didn’t reveal all that much. After being sent the url of a spoof MySpace log-in page, I checked the root and sure enough over 26,000 e-mail addresses and MySpace passwords were sitting there in a text file.

I sent the file over to my buddy Rabbit who aside from being a Sidekick 3 guru can toss together php scripts with ease. I asked him to run similar reports on the info as the other guy had done with his list of 20,000 passwords. After getting that knocked out, he wrote a little data scraping script to get demographic information on the phished accounts via the MySpace search for user by e-mail address function. Whenever you search for someone via e-mail you get some basic info along with a link to their MySpace profile: gender, age, sexual orientation, etc. Search Example


continue reading "Demographic Info From 26,000 Phished MySpace Accounts"

27 comments

5

Oct

MySpace Child Predator Exposed

Posted by LoLo  Published in MySpace, Parenting 2.0, Video

I started to write a little blog entry to go with this video, but it’s pretty self explanatory. MySpace; just like the rest of the internet, is infested with child predators who are constantly trolling for innocence. Here’s one that has been sending videos and pictures of himself to what he believes are 14-year-old girls.

If YouTube is down, this video is also on Google Video.

How’s that for a first blog post? lolz

Update: Since posting this video nearly 24 hours ago it has climbed into YouTube’s Top 100 for the day. It was at 99 for a bit, but moved up to 85 just a few minutes ago. Links to this post have been sent to Chip’s workplace, some news outlets (local to him and national), etc…

Could someone stick a fork in this guy? I think he’s done.

Update 2: 12pm here and I didn’t sleep last night. :-/
Just got my first call from a reporter though. Rick from the Star-Ledger in Jersey is doing a piece on this.

And, Steve Huff over at True Crime Magazine posted this blog entry after interviewing someone who worked with Chip in the past. It’s an interesting read to say the least.

Update 3: Just made the front page over at Digg.com. Sorry about the downtime I had for a few minutes. Note to self: Install cache plug-in on new WordPress blog before landing on Digg’s homepage.

Update 4: Over the weekend, John Powers of Action Report tracked down Chip and showed up at his house with a video camera in hand trying to get a statement from him. A blog entry about that can be found here.

Update 5: Looks like our buddy Chip lost his job over at Air America. John Powers has had that scoop and the transcript of a phone conversation with Chip in his case notes (no longer online).

132 comments
Page 8 of 8« First« Previous45678

Search

Categories

  • Adware (4)
  • Code (3)
  • Fraud (1)
  • General (5)
  • Google (1)
  • Hacking (4)
  • Legal (4)
  • Marketing (1)
  • MySpace (24)
  • Parenting 2.0 (1)
  • Phishing (3)
  • Porn (4)
  • Spam (7)
  • Video (1)
  • Wordpress (1)
  • Worms (4)
  • YouTube (1)
  • Zango (5)

My Hood

  • MySpace Hear Anyone?
  • My MySpace
  • My FaceBook
  • RetardedTShirts.com
  • BurntPickle.com (NSFW)
  • AdultJokes.com (NSFW)
  • DearFEMA.com

Subscribe

  • Main Entries Rss
  • Comments Rss

Archives

  • March 2008 (1)
  • February 2008 (4)
  • January 2008 (7)
  • November 2007 (3)
  • September 2007 (1)
  • July 2007 (2)
  • June 2007 (2)
  • May 2007 (4)
  • April 2007 (4)
  • March 2007 (1)
  • February 2007 (1)
  • January 2007 (3)
  • December 2006 (1)
  • November 2006 (2)
  • October 2006 (2)

Caveat Emptor

Recent Posts

  • Financial Site: Open to XSS Attacks and Other Hacks
  • MySpace Censorship: Filtering Images Gone Wild
  • Symantec found over 5 million phishing urls posted on MySpace
  • US Airways wants me to get you sick, today.
  • Strange Google Results
  • Florida Cybercrimes Unit Hiding Evidence - Self Pwnage
  • Snopes.com: Rumor has it that they are funded by AdWare
  • Porn Site Hacked, 16K Emails Snatched, Epic Fail at PayPal Phishing Attempt
  • Florida Cybercrimes: See how ludicrous this thing is?
  • MySpace Spamming Botnet setup in development?

Recent Comments

  • Roejack: My account got shitcanned yesterday. Waiting for a reply as to why (doesn’t seem forthcoming) or a restoration....
  • Fighter: Cybercrime units are woefully misinformed and turn away many victims with legitimate gripes. Great site — we are...
  • uhalright: I hate that nirvana cover, always have. Kurt should have stuck to music and left decision making and suicide to emos.
  • Anonymous: HoN considers their subscribers domb sheep at best. They don’t want you delete your account for several...
  • Cassie: it just keeps bringing me back to the main page. its been hours all ready. im really upset because i have like .....
  • marty: Thank you so much!!!!!!!!! I’m One of thoes fast typers that could have very eaisly fallen prey to some son of a...

Caveat Emptor

© Copyright 2006 - Present | All Rights Reserved by LoLo
Powered by WordPress Theme by Wired Studios