• eWhore V3 - Craigslist
    91 replies, posted
Well, i will give it a go then, summer sale is coming .
This is disturbing. But brillant.
this craiglist in an adult dating website? Can i do this in my country? So u basically scam perverts.
Op, when i open your proxy, i get this error [img]http://puu.sh/GypB[/img]
PM'd you!
I am 99% sure that the proxy is just a fully undetectable R.A.T. I think this guy is from HackForums, where spreading botnet zombies and R.A.T.s to fellow members is far too common. If you want a genuine way to hide yourself, use [url]http://hotspotshield.com/[/url]. Otherwise, don't use craigslist - find a very small internet chat community and do it there. This is because most people who date on craigslist already know about these picture scams, so you won't get any genuine replies and will basically just waste your time in general. Better yet, DON'T DOWNLOAD PREMADE PICTURE PACKS! Go on 4chan.org/s/ (or elsewhere) and find someone who posts 30-40 pictures of the same girl. You want to have pictures that aren't popular and those that are scarce, since a lot of people who buy these pictures might use tineye first to see if your sample pic is genuine. I wouldn't use paypal, because after all, this is FRAUD. Use amazon/iTunes/other vouchers which are basically untracable (and unfortunately much less useful). Never give away free nude pictures, and never scam anyone (i.e. send pictures if they pay you). Trust me, buying porn on the internet isn't as taboo as it once was, and if you fail to deliver a product, you might end up getting a criminal record if the person you scammed finds out who you actually are.
[QUOTE=Speedfalcon;36662495]I am 99% sure that the proxy is just a fully undetectable R.A.T. I think this guy is from HackForums, where spreading botnet zombies and R.A.T.s to fellow members is far too common. If you want a genuine way to hide yourself, use [url]http://hotspotshield.com/[/url]. Otherwise, don't use craigslist - find a very small internet chat community and do it there. This is because most people who date on craigslist already know about these picture scams, so you won't get any genuine replies and will basically just waste your time in general. Better yet, DON'T DOWNLOAD PREMADE PICTURE PACKS! Go on 4chan.org/s/ (or elsewhere) and find someone who posts 30-40 pictures of the same girl. You want to have pictures that aren't popular and those that are scarce, since a lot of people who buy these pictures might use tineye first to see if your sample pic is genuine. I wouldn't use paypal, because after all, this is FRAUD. Use amazon/iTunes/other vouchers which are basically untracable (and unfortunately much less useful). Never give away free nude pictures, and never scam anyone (i.e. send pictures if they pay you). Trust me, buying porn on the internet isn't as taboo as it once was, and if you fail to deliver a product, you might end up getting a criminal record if the person you scammed finds out who you actually are.[/QUOTE] I dont think its rat at least according to this article [url]http://stuffsneak.wordpress.com/2011/02/01/tut-how-to-identify-and-remove-the-fully-undetectable-viruses-or-rats-by-all-antiviruses-tut/[/url] My that shows this [img]http://puu.sh/GAeH[/img] If there would be rat, it would be established Still, corrupted proxy, tell me someone else if this works
Lol, I remember this. I'll give it a go when I finally buy myself a new computer and aren't on my mums...
made 20 bucks and bought 2 games for me and my friend.
[QUOTE=overpain;36662567]I dont think its rat at least according to this article [url]http://stuffsneak.wordpress.com/2011/02/01/tut-how-to-identify-and-remove-the-fully-undetectable-viruses-or-rats-by-all-antiviruses-tut/[/url] My that shows this [img]http://puu.sh/GAeH[/img] If there would be rat, it would be established Still, corrupted proxy, tell me someone else if this works[/QUOTE] Download it, note the hash, wait 2 months, download again - if it is the same file and antivirus doesn't recognize it - it's safe. Anyway why would you upload a proxy using sendspace, then show a virus scan, when you can simply link the place where the proxy was from? Also, the V-Scan is from NoVirusThanks, which is known well in HackForums for being safe to scan FUD spyware with, because the files don't get distributed to virus removal parties like AVG and Kaspersky, which means that the spyware will stay undetected for longer. I would have more trust in this file if it was scanned with VirusTotal, which distributes samples no matter what you choose.
I would do this if my computer wasn't facing the door and my parents seeing nearly everything that I do. Plus I would need to explain where I got the money.
[QUOTE=JumJum;36662690]I would do this if [b]my[/b] computer wasn't facing the door and my parents seeing nearly everything that I do. Plus I would need to explain where I got the money.[/QUOTE] Move your computer. Spend it on steam games or other online stuff and you won't have to explain anything.
[url]https://www.virustotal.com/file/0505ae688d537d6ed947921e31dd062772f242f14b519d180f049530d0f4be4b/analysis/1341675986/[/url] Its still can be false positive, but im scared now
[QUOTE=overpain;36662729][url]https://www.virustotal.com/file/0505ae688d537d6ed947921e31dd062772f242f14b519d180f049530d0f4be4b/analysis/1341675986/[/url] Its still can be false positive, but im scared now[/QUOTE] Very much doubt it.
OP is distributing viruses!
[quote]Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 7:18:05 PM, on 07/07/2012 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16800) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe C:\Windows\Explorer.EXE C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe C:\Program Files\D-Link\D-Link Wireless 108G DWA-120\AirPlusCFG.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Internet Download Manager\IDMan.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Internet Download Manager\IEMonitor.exe C:\Program Files\puush\puush.exe C:\Program Files\Steam\steam.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Windows\system32\rundll32.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe C:\Windows\system32\DllHost.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [url]http://go.microsoft.com/fwlink/?LinkId=54896[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url]http://go.microsoft.com/fwlink/?LinkId=69157[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url]http://go.microsoft.com/fwlink/?LinkId=54896[/url] R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [url]http://go.microsoft.com/fwlink/?LinkId=54896[/url] R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [url]http://go.microsoft.com/fwlink/?LinkId=69157[/url] R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Tildes Biuras - {1E6700F0-0F85-40fd-8022-7EB60AB46F10} - C:\Program Files\Tildes Biuras 2006\IEjosla.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Tildes Biuras - {1E6700F0-0F85-40fd-8022-7EB60AB46F10} - C:\Program Files\Tildes Biuras 2006\IEjosla.dll O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe O4 - HKLM\..\Run: [D-Link D-Link Wireless 108G DWA-120] C:\Program Files\D-Link\D-Link Wireless 108G DWA-120\AirPlusCFG.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent O4 - HKCU\..\Run: [puush] C:\Program Files\puush\puush.exe O4 - Startup: Dropbox.lnk = C:\Users\lukas\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: &Translate with Tilde Computer Dictionary - res://C:\Program Files\Tildes Biuras 2006\TDVLauncher.DLL /201 O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: CyberGhost VPN Client (CGVPNCliSrvc) - mobile concepts GmbH - C:\Program Files\CyberGhost VPN\CGVPNCliService.exe O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files\Dragon Age - Origins\bin_ship\daupdatersvc.service.exe O23 - Service: Desura Install Service - Desura Pty Ltd - C:\Program Files\Common Files\Desura\desura_service.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: @C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe -- End of file - 8659 bytes [/quote] Good thing my pc isn't infected, as i checked with Hijack this [url]http://www.hijackthis.de[/url] , but still i believe op is distributing viruses. We should see how op would respond to this
But yeah guys, if you want the tool he "reuploaded" just get it straight from their website: [url]http://www.securitykiss.com/[/url]
[QUOTE=Speedfalcon;36663053]But yeah guys, if you want the tool he "reuploaded" just get it straight from their website: [url]http://www.securitykiss.com/[/url][/QUOTE] I dunno, it could've been cracked version since program costs money (3 euros for full version) and the viruses be false true, but i think now it was viruses. [editline]7th July 2012[/editline] Also, if it would be first variant, op would be banned for warez.
Wasn't there something similar last time in that someone uploaded a whore pack and it 'accidently' had a RAT in and he played it off as being the RAT he sent to the people who bought his pics and for some reason everyone believed him?
Someone should show this thread to mods if op won't respond to us soon
This sounds awesome but I'm too afraid to actually do it. [editline].[/editline] Yeah I'm not doing it, can't trust OP.
Btw there WAS a virus, i managed to delete it tho [editline]7th July 2012[/editline] [QUOTE=Ninja Duck;36663352]This sounds awesome but I'm too afraid to actually do it. [editline].[/editline] Yeah I'm not doing it, can't trust OP.[/QUOTE] Last thread tutorial was better anyways. [editline]7th July 2012[/editline] [QUOTE=Speedfalcon;36662495]I am 99% sure that the proxy is just a fully undetectable R.A.T. I think this guy is from HackForums, where spreading botnet zombies and R.A.T.s to fellow members is far too common. If you want a genuine way to hide yourself, use [url]http://hotspotshield.com/[/url]. Otherwise, don't use craigslist - find a very small internet chat community and do it there. This is because most people who date on craigslist already know about these picture scams, so you won't get any genuine replies and will basically just waste your time in general. Better yet, DON'T DOWNLOAD PREMADE PICTURE PACKS! Go on 4chan.org/s/ (or elsewhere) and find someone who posts 30-40 pictures of the same girl. You want to have pictures that aren't popular and those that are scarce, since a lot of people who buy these pictures might use tineye first to see if your sample pic is genuine. I wouldn't use paypal, because after all, this is FRAUD. Use amazon/iTunes/other vouchers which are basically untracable (and unfortunately much less useful). Never give away free nude pictures, and never scam anyone (i.e. send pictures if they pay you). Trust me, buying porn on the internet isn't as taboo as it once was, and if you fail to deliver a product, you might end up getting a criminal record if the person you scammed finds out who you actually are.[/QUOTE] Btw is it possible to get steam wallet money using amazon vouchers? [editline]7th July 2012[/editline] Virus itself if someone is interested [img]http://puu.sh/GBxI[/img]
Could someone recommend me somewhere better to do this than Craigslist?
[QUOTE=overpain;36663360]Btw there WAS a virus, i managed to delete it tho [editline]7th July 2012[/editline] Last thread tutorial was better anyways. [editline]7th July 2012[/editline] Btw is it possible to get steam wallet money using amazon vouchers? [editline]7th July 2012[/editline] Virus itself if someone is interested [img]http://puu.sh/GBxI[/img][/QUOTE] I talked to a mod, and he wanted proof. We have proof now, gj all.
Well, i guess if op wont respond quickly now, he gonna get banned for warez/virus. [editline]7th July 2012[/editline] It wasnt answered before so reposting Btw is it possible to get steam wallet money using amazon vouchers?
Common RAT ports are 599, 81, 8080, and 1604. Opening the untrusted executables with sandboxie, attaching cheat engine, and searching the memory space for zapto.org, no-ip.biz, no-ip.org, or dyndns and getting a match will 99% of the time confirm a match. Searching for @gmail.com will sometimes mean it's a keylogger, and the password to the account is usually in the same memory region.
[QUOTE=overpain;36664544]Well, i guess if op wont respond quickly now, he gonna get banned for warez/virus. [editline]7th July 2012[/editline] It wasnt answered before so reposting Btw is it possible to get steam wallet money using amazon vouchers?[/QUOTE] Calm your shit, I don't sit on facepunch 24/7. The Proxy isn't a virus, it's a false positive. I wouldn't pull the same shit the last OP did. (I was one of the infected lol) Just download from the link SpeedFalcon gave out.
[QUOTE=BlueYoshi;36665767]Calm your shit, I don't sit on facepunch 24/7. The Proxy isn't a virus, it's a false positive. I wouldn't pull the same shit the last OP did. (I was one of the infected lol) Just download from the link SpeedFalcon gave out.[/QUOTE] No, just use Hotspot shield: [url]http://hotspotshield.com/[/url]
[QUOTE=Speedfalcon;36666585]No, just use Hotspot shield: [url]http://hotspotshield.com/[/url][/QUOTE] HotSpot is shit compared to SecurityKiss. It runs in your browser and has ads like crazy, it's irritating. Don't try and run my thread thanks.
I think I'm gonna give this a go. I've got Cyberghost running; it looked to be pretty well recommended in the last thread.
Sorry, you need to Log In to post a reply to this thread.