GhettoWebmaster.com

LoLo’s safe for work blog about Internet scams, deceptive marketing, spam, spyware, adware, and other asshatery.

  • Home
  • About Me
  • Contact
  • Press Coverage

23

Jan

MySpace Spamming Botnet setup in development?

Posted by LoLo  Published in Code, MySpace

My buddy PaperGhost just posted this:
Myspace Fake Profile Spammers: This Is How They Do It

It gives an overview of an odd MySpace spamming app that works in conjunction with files hosted on the net. The only thing I can imagine is that we got our hands on this thing early and it’s just a beta of sorts being sold to noobs. The coder is likely working towards making it so that he can infect systems with that garbage, so a botnet (your infected systems) can do his spamming for him…

Another interesting tidbit:
Based on some other files I saw on that url, it looks like the program works in conjunction with a proxy script…

no comment

2

May

Hot or Not Revamped: Script Kiddies and Spammers Paradise

Posted by LoLo  Published in Code, Hacking, Spam, Worms

Jim and James over at HotOrNot.com just made some major changes…

Just wanted to drop you a note to let you know that we’ve made HOTorNOT free! You no longer need to buy a star membership in order to write your double matches ;)

We’ve made a lot of changes to the site recently and much more is in the works. So if you haven’t been on in a while, log back in and check it out!

The free as in beer thing was inevitable with all the social networking sites now. The only surprise was that it didn’t happen sooner. The “lot of changes” line piqued my interest enough to log in to see what was up though. That’s where I found the huge surprise: a site finally managed to be less secure than MySpace. Seriously, it’s that bad. The new Hot or Not is wide open to massive spam campaigns, XSS worms, and all sorts of tomfoolery. It is nothing short of being the Script Kiddies and Spammers Paradise of the moment.

After giving myself a two minute self tour, this is what I discovered and was able to do:

The “lot of change” that opened the flood gates is their new “Super Profiles”. There’s nothing really super about them. They are just profile pages with some extremely basic social networking features. Just like in MySpace Land, the user customization is where it gets ugly.


continue reading "Hot or Not Revamped: Script Kiddies and Spammers Paradise"

20 comments

30

Nov

MySpace Worm: Phishing Accounts and Spreading Zango Porn

Posted by LoLo  Published in Adware, Code, Hacking, MySpace, Phishing, Worms, Zango

Yesterday, a metric ton of MySpace accounts were infected with yet another worm. As I predicted ten days ago, it was accomplished via a QuickTime embed. Visiting the profile of anyone infected would cause the navigation links across the top of your profile (Home | Browse | Search | Invite | etc…) to be replaced by fake navigation links which all linked to a spoof MySpace login page via some basic CSS and HTML added to your “About Me” section. And, the QuickTime embed was added to one of your “Interests” sections to further propagate this worm / phishing attack. At a glance, this looked like nothing more than that: a worm being used to phish MySpace passwords.


continue reading "MySpace Worm: Phishing Accounts and Spreading Zango Porn"

68 comments

Search

Categories

  • Adware (4)
  • Code (3)
  • Fraud (1)
  • General (5)
  • Google (1)
  • Hacking (4)
  • Legal (4)
  • Marketing (1)
  • MySpace (24)
  • Parenting 2.0 (1)
  • Phishing (3)
  • Porn (4)
  • Spam (7)
  • Video (1)
  • Wordpress (1)
  • Worms (4)
  • YouTube (1)
  • Zango (5)

My Hood

  • MySpace Hear Anyone?
  • My MySpace
  • My FaceBook
  • RetardedTShirts.com
  • BurntPickle.com (NSFW)
  • AdultJokes.com (NSFW)
  • DearFEMA.com

Subscribe

  • Main Entries Rss
  • Comments Rss

Archives

  • March 2008 (1)
  • February 2008 (4)
  • January 2008 (7)
  • November 2007 (3)
  • September 2007 (1)
  • July 2007 (2)
  • June 2007 (2)
  • May 2007 (4)
  • April 2007 (4)
  • March 2007 (1)
  • February 2007 (1)
  • January 2007 (3)
  • December 2006 (1)
  • November 2006 (2)
  • October 2006 (2)

Caveat Emptor

Recent Posts

  • Financial Site: Open to XSS Attacks and Other Hacks
  • MySpace Censorship: Filtering Images Gone Wild
  • Symantec found over 5 million phishing urls posted on MySpace
  • US Airways wants me to get you sick, today.
  • Strange Google Results
  • Florida Cybercrimes Unit Hiding Evidence - Self Pwnage
  • Snopes.com: Rumor has it that they are funded by AdWare
  • Porn Site Hacked, 16K Emails Snatched, Epic Fail at PayPal Phishing Attempt
  • Florida Cybercrimes: See how ludicrous this thing is?
  • MySpace Spamming Botnet setup in development?

Recent Comments

  • marty: Thank you so much!!!!!!!!! I’m One of thoes fast typers that could have very eaisly fallen prey to some son of a...
  • unknown soldier: Actually Tom never got hacked, myspace was just testing out new spam comments, they were after all started by...
  • tiffany: no one knows my p-word any ways becides me….. well at least i think soo…
  • tiffany: i was not hacked……..( well not yet). i am not alowed to be on myspace… that is what my dad says and...
  • The Guy your mom warned you about: Damn, too bad I’m retired ;-) But seriously, to all those who think Lolo is...
  • LoLo: I’ve just been taking a break of sorts from the net to get some off-line things in order. This post will be the...

Caveat Emptor

© Copyright 2006 - Present | All Rights Reserved by LoLo
Powered by WordPress Theme by Wired Studios