SmartFeedSmartFeed          

Porsche Hangout


WELCOME - YOU ARE CURRENTLY VIEWING 419EATER AS A GUEST

By joining our community you will have the ability to post topics and access other forums reserved for members. Registration is quick, simple and absolutely free. Join our community today by clicking here.

ScamWarners.com - Internet Anti-Fraud Center - now open!


 Introduction

View next topic
View previous topic
 
Post new topicReply to topic
Author Message
NobodyYouShouldRecognize
Hello I'm New here!


Joined: 06 Nov 2009
Posts: 7
Location: Michigan, maybe...


PostPosted: Fri Nov 06, 2009 1:44 pm Reply with quoteBack to top

I go by NobodyYouShouldRecognize, but you can call me NYSR Twisted Evil

Favorite Site: http://www.foimb.com <caution, mature content>

I'm between 25 and 35 and have had my own computer since I was around 5, so I have basically seen the evolution of online scams.

I work in an IT related field.

I definately enjoy playing the role of a white-hat nowadays.

I had visited this site for the first time maybe a year ago, made a few more visits and finally decided to start posting and looking for leads on scammers to mess with.

While I have worked with various programming languages and grammers through the years including MS-BASIC, Q-BASIC and even COMMO, nowadays I prefer Python. Python can be ran in most any current environment such as L/U/nix, Windows and Mac.

For a long time I have taken random attacks against me somewhat personally and have done things like contact hosting companies, ICANN, registrars, the IC3 and even neighbors of the vilians. Back when VB explots were more commonplace, specifically those that traveled via Windows Shares being accessible directly accross the internet ( before routers were common ) I would even leave people notes on how to contact me and instructions for how to secure their computers. Once upon a time I rewrote a virus that would use the same mechanism for travel, but I swapped out the payload for one that automatically removed the vulnerability that is used to get there. I was kind of suprised it didn't make headlines, but then again it was also still detected as a virus by AV software.

Lately I wrote a program to help me combat phishers, those people who send SPAM that is meant to trick someone into thinking it links to their bank or some other valuable site with the goal of capturing login details and other personal information. Information on the program I wrote will be posted in the 'Publish your work' area.

I have shared information about baiting and leading on scammers with others and heard some first hand stories of what they did.

My intent here is to create a topic ( if it doesn't already exist ) where people can post phishing emails so that I can retrieve them and have a little fun while preventing the phishers from getting valuable information.
View user's profileSend private message
Inspector Gadget
Angel of unrealistic meetings


Joined: 20 Feb 2007
Posts: 6187
Location: Trumpton


PostPosted: Fri Nov 06, 2009 2:12 pm Reply with quoteBack to top

Welcome to Eater.
Phishing mails we don't normally have much to do with, unless they have fake sites attached that can be dealt with. Are you looking for those types? If so, the Fake Banks and websites forum is where you'll find them.

_________________
Easter 2015 x2 Pith Helmet Co bait with Rumbero Sao Tome island to Gabon van donation
Pith Helmet Co bait with Jayhawk and VJD. Stanley's bottle tour Aba to Lagos
Pith Helmet Pith Helmet Team Hector, airport in installments and St Louis to Kayes
Pith Helmet Halil, Cotonou to Accra
Pith Helmet + Sand Timer Precious 10/08/11
Cellphone x8 Nigeria Spain Mortar x34 Closed lad accounts x 73 Goat
grown up man like him, still doing all this shit games - Stanley, (he doesn't like Parcel Direct)
You again do the strange reflections stuffed with drugs? - Natalia
Sand Timer x3 Hector 24/1/13 Sand Timer Moses 15th Oct 2011
Pretty Rose Sand Timer x 2Mick Ole 11th Sept 2014-16 Sand Timer Asare Akuffo start 4th Aug 2014
View user's profileSend private messageSkype Name
thud419
Baiting Guru


Joined: 04 Jan 2006
Posts: 3193


PostPosted: Fri Nov 06, 2009 3:11 pm Reply with quoteBack to top

Welcome to eater NYSR. It's nice to have another Python fan around.

You should be aware that any topic discussing sending viruses, trojans, keyloggers and the like will be shut-down immediately. (The number one reason being it's illegal, and the number two being it is too easy to affect innocent parties.)

_________________
Click here to feel warm and cozy.

I did not f**k your wife in any way -- Nike Akanbi
I don't know what else to do or do I continue filling and filling forms. -- Barr. Koloti
you has been dribbling me up and down but I will show some thing you have never seen before, I think you breath air wait and see. -- Sand Timer Barr. Cole
Cellphone x14
United States x 0.25 won from Reaper in a sucker's bet

Hello Kitty! pony Mortar x8 Closed lad accounts x several
View user's profileSend private messageSend e-mailVisit poster's website
NobodyYouShouldRecognize
Hello I'm New here!


Joined: 06 Nov 2009
Posts: 7
Location: Michigan, maybe...


PostPosted: Fri Nov 06, 2009 3:50 pm Reply with quoteBack to top

thud419 wrote:
Welcome to eater NYSR. It's nice to have another Python fan around.

You should be aware that any topic discussing sending viruses, trojans, keyloggers and the like will be shut-down immediately. (The number one reason being it's illegal, and the number two being it is too easy to affect innocent parties.)


Understood, although I don't think what I spoke about should be considered as this since what I sent out was actually an 'antibody' as I like to call it.

Just as there are T-cells and such travelling through your body to fight infections,... I created a digital version of that for the internet, atleast for a particular baddy that was out.

Admin, if you want to talk to me, go ahead Smile

Inspector Gadget wrote:
Welcome to Eater.
Phishing mails we don't normally have much to do with, unless they have fake sites attached that can be dealt with. Are you looking for those types? If so, the Fake Banks and websites forum is where you'll find them.


The emails in question do have links to real looking mock-ups... but I will take a look at the forum area you mentioned. Thanx!
View user's profileSend private message
Ima Baeder
419Eater Admin


Joined: 03 May 2007
Posts: 18314


PostPosted: Fri Nov 06, 2009 4:45 pm Reply with quoteBack to top

Welcome, NobodyYouShouldRecognize. Very Happy

Please do check out the fake sites forum but we don't shut down phishing sites/pages there. Our focus there is on fraudulent sites set up by scammers to prop up their advance fee fraud scams. (fake banks, couriers, law firms, etc.). Many of us do report phishing pages to the companies being spoofed, we just don't post them here.

_________________
348 Fake Sites killed United StatesUnited KingdomUnited NationsMaltaNigeriaGhanaBeninGermanySouth AfricaRussiaTogoMalaysiaEuropean UnionJapanIvory CoastSpainFranceSwitzerlandChinaCanadaItalyThailand

Star Mugu Reseller Mortar Closed lad accounts x 100 Sand Timer 2 Years Pretty Rose Mc Fry Mc Fry Nurse Nastys Audi TT Goat Flying Monkey Easter Egg 2011
View user's profileSend private message
NobodyYouShouldRecognize
Hello I'm New here!


Joined: 06 Nov 2009
Posts: 7
Location: Michigan, maybe...


PostPosted: Fri Nov 06, 2009 4:58 pm Reply with quoteBack to top

Ima Baeder wrote:
Welcome, NobodyYouShouldRecognize. Very Happy

Please do check out the fake sites forum but we don't shut down phishing sites/pages there. Our focus there is on fraudulent sites set up by scammers to prop up their advance fee fraud scams. (fake banks, couriers, law firms, etc.). Many of us do report phishing pages to the companies being spoofed, we just don't post them here.


Yeah, actually I don't want to shut them down either... I haven't posted it yet, but the program I made directly connects to the website in question and uses POST to transmit faked information to them. There is a ton of random things including the delays inbetween each page, over 1500 proxy servers that are used, fake referrer information, browser agent info... basically the whole gammet, although the information looks valid. It can even answer security questions.

I figured that this way, with the delays, even people who get tricked are somewhat protected because the phishers will not know what information is real and what's fake.
View user's profileSend private message
Dya Reyarunen-Downmeleg
Baiting Guru


Joined: 10 Aug 2009
Posts: 4129
Location: At the toilet door yelling are you almost done in there? Oops, too late...


PostPosted: Fri Nov 06, 2009 5:36 pm Reply with quoteBack to top

Welcome here , NobodyYouShouldRecognize.
Happy baiting!

_________________
^ You are my favorite Canadian on Earth. Very Happy Pastor Frank



Closed lad accounts x163 Easter Egg 2011 Easter Egg Easter Egg 2013 Goat Goat Goat Golden Goat Mc Fry Purple Flower Mortar Elite Ninja Team Member

so as to enable the conclusion of this transaction on your behalf since you are not dead because if you are dead you would not have write me because I know that never will a dead
write to living...
I could receive the document official which you want to forward me for adhesion with [email protected]
I am captivated, impressed and hypnotised with your sincerity
This you’re [email protected] has it existed some how somewhere before?
Your ASSCODE is: 999-035-2655



"I Am Not a Justin Beiber Fan" innocent.being


Steward, WTF?



SAY NO TO SCURVY
View user's profileSend private message
Slightlyoutofit
Baiting Guru


Joined: 13 Feb 2007
Posts: 14310
Location: Foraging for Nuts.


PostPosted: Fri Nov 06, 2009 5:52 pm Reply with quoteBack to top

NobodyYouShouldRecognize wrote:

Yeah, actually I don't want to shut them down either... I haven't posted it yet, but the program I made directly connects to the website in question and uses POST to transmit faked information to them.

I figured that this way, with the delays, even people who get tricked are somewhat protected because the phishers will not know what information is real and what's fake.


There's at least one service out there that does the same job:

http://www.phishfighting.com/

A great tool. Hopefully yours will be as successful. Very Happy

_________________
Star pony pony pony Nurse Nastys Audi TT Purple Flower Whip
Safari Jolly Roger Mortar Closed lad accounts Cellphone United Kingdom

God will see you true for all this you have done to me you bastard. - Collins Kalu
MAY THE HAND THAT TYPE ON KEYBORD BECOME STRICKEN AND TRANSMIT VIRUS TO YOU ENTIRE BODY. - Dr Linda Akeem
oh what a mess its time cabbage punks like u will be expose for trully what they are. - David Cole
View user's profileSend private messageYahoo MessengerSkype Name
Roycropper
Undead Moderator


Joined: 14 Nov 2005
Posts: 7993
Location: Luxury Coffin


PostPosted: Fri Nov 06, 2009 5:56 pm Reply with quoteBack to top

Welcome NYSR. There was a program or a website that flooded phishing sites with fake logins and pw's, was it Phish Fryer or something? It was discussed on here, but not really what we normally do.

BTW, please don't quote whole posts, we can see them above yours. As it's your first day, I won't get all heavy handed with my 'Edit' button, but just be aware we don't do it, some forums that do end up with posts viewed down a long oblong tunnel. Wink

ETA: Phishfighter, that's the one, thanks Slightly. OP, please ignore the fact that the rabid squirrel just did what I just told you not to do, he's new.

_________________
the European Union has bounced on our freckles
COULD YOU IMAGINE WHAT HAPPENED WHEN I WENT TO THE BANK
our Agent is Completely broke, pocketless and stranded
I WLL SEND AN AFRICA WITCH TO ATTACH YOU BASTARD
You go die like bird
i started shouting HALLELUJAGOBBLE but none of them notice me immediately police arrested me due to the shouting
f*ck u asshole ur damn mother will loose ur fcuking skull brain ur brain is nothing to compare with rat f*ck ur u
MY FRIEND ALEX WAS DETAINED IN POLICE STATION
I am not happy due to the question i answered at money office. Let me tell you do not play with me ok.
Pith Helmet 10
x4 United Kingdom New Zealand Mortar Closed lad accounts Sand Timer 6Yrs Tattoo x6 Flying Monkey
View user's profileSend private message
NobodyYouShouldRecognize
Hello I'm New here!


Joined: 06 Nov 2009
Posts: 7
Location: Michigan, maybe...


PostPosted: Fri Nov 06, 2009 6:05 pm Reply with quoteBack to top

I definately would edit the quotes, so there was only the last one in my reply. I actually didn't use quote, and then I went back and edited the post Surprised

Either way, thanks for the links peoples... I'll check them out and eventually I will publish some of the anti-scamming that I have done.

Thanks Again!
View user's profileSend private message
Slightlyoutofit
Baiting Guru


Joined: 13 Feb 2007
Posts: 14310
Location: Foraging for Nuts.


PostPosted: Fri Nov 06, 2009 6:30 pm Reply with quoteBack to top

I never quoted the whole post either.

Just the pertinent points that make my post more glorious.
Bloody pedants.

_________________
Star pony pony pony Nurse Nastys Audi TT Purple Flower Whip
Safari Jolly Roger Mortar Closed lad accounts Cellphone United Kingdom

God will see you true for all this you have done to me you bastard. - Collins Kalu
MAY THE HAND THAT TYPE ON KEYBORD BECOME STRICKEN AND TRANSMIT VIRUS TO YOU ENTIRE BODY. - Dr Linda Akeem
oh what a mess its time cabbage punks like u will be expose for trully what they are. - David Cole
View user's profileSend private messageYahoo MessengerSkype Name
Pastor Frank
Moderator


Joined: 31 Jan 2007
Posts: 11427
Location: Illuminati HQ


PostPosted: Sat Nov 07, 2009 3:28 am Reply with quoteBack to top

Hi NYSR and besco, welcome to Eater.

@besco, Assuming that your post was not spam, I suggest you remove the link, it exposes your real life details. If you really want to become a baiter, I am sure your services as a Mandarin translator could prove invaluable.

_________________
"Father Juan are sure that you are man of God,because your behaviors showed you as unbeliever" -Mary R

"Shallow men believe in luck. Strong men believe in cause and effect." -Emerson
View user's profileSend private messageSend e-mail
Reaper
Hello I'm New here!


Joined: 06 May 2007
Posts: 0
Location: Travelling in a fried-out combie. On a hippie trail, head full of zombie...


PostPosted: Sat Nov 07, 2009 3:37 am Reply with quoteBack to top

You know those masks aren't very effective. Surgical ones at least.



But on topic, welcome NYSR. Very Happy

_________________
110+United KingdomNigeriaSpainNetherlandsGhanaChinaIvory CoastUnited StatesSwitzerlandAustraliaFranceDenmarkSierra LeoneEuropean UnionSenegalUnited NationsRussiaBurkina FasoBeninCzech RepublicQuestion
Cellphone x15 Mortar x18 Closed lad accounts 50+

SafariSafariSafari Shola - 4.3k miles Lagos - Abidjan | Lagos - N'Djamena, Chad | Lagos - Sokoto "i have not eaten anything except water"
SafariSafari Mr Floyd - Lagos - N'Djamena, Chad | Lagos -N'Djamena --> Abeche, with RS (7 days in hell Rolling Eyes ) "we are dieing here"

Art Trophies: <a href="http://forum.419eater.com/forum/viewtopic.php?t=129502">Eva Bust</a> - <a href="http://forum.419eater.com/forum/viewtopic.php?t=135167">Reaper's Art Gallery</a>

- I am the King of Rome, and above grammar
Easter Egg
View user's profileSend private messageSkype Name
NobodyYouShouldRecognize
Hello I'm New here!


Joined: 06 Nov 2009
Posts: 7
Location: Michigan, maybe...


PostPosted: Sat Nov 07, 2009 5:23 am Reply with quoteBack to top

below is a little animation that shows some of the things my phisher program sends to phishing sites... basically though, I adjust copies of the software to be specific to each phishing site I come across. The graphic is just of the information generation front end, the actuall programs I use are console based.

The program uses over 1500 proxies that are grabbed daily from a proxy site and if they fail 3 times in one session then they are removed from the current proxy list.

Fake referrer information as needed, otherwise it's the previous page as it should be.

Randomly chosen web browser user agent per cycle.

The drivers license numbers are valid based on the generated name and such.

The addresses do NOT exist, but the phone numbers and zip codes match up with the randomly selected city.

I'm adjusting the social security number generator to not generate certain known non-issued SSN's.

The type of credit card is selected random, out of around 6 choices and the length and format match up with the proper card type. No check digits though since I don't want to generate real numbers.

Around 30 security questions and answers are generated each round that I can choose from as needed depending on how the site is setup.

Multiple passwords and emails each round, so I have backups and since some will look more real than others.

There are random delays between filling out each set of forms.

blah, blah, blah...

It also generates a log of all the information sent to the phisher...

The program can operate at speeds ranging from DoS ( which I don't use ) to as few times per day as I want based on an internal timer.

The program stops and notifies me when the site goes down... then can try again at a predetermined interval and alerts me if the page comes back but has changes or is mostly changed.

This program runs on *NIX, Windows and Mac OS X+... and uses VERY LITTLE resources... best is when it's ran in the background on a high power web server Twisted Evil

I have sent hundreds of thousands of batches of fake information over the last few months. Laughing

Normally while it is running, I contact a half dozen places with information on the site address being used and once the site is no longer active I like to make sure that the registrar and host know that it was a scammer.

Image
View user's profileSend private message
Display posts from previous:      
Post new topicReply to topic


 Jump to:   



View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



** Find out information about your IP address **


All Content © 2003 - 419Eater.com
Powered by phpBB © 2001, 2002 phpBB Group :S5: FI Theme :: All times are GMT