1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Anyone know what this is?

Discussion in 'Proxies' started by kickapooh, Jun 21, 2013.

  1. kickapooh

    kickapooh Regular Member

    Joined:
    Apr 16, 2010
    Messages:
    431
    Likes Received:
    844
    We found this while searching for exploits on the big G. Looks to be some type of elaborate setup using proxyfire. No idea what it's doing other than that though. Looks like the screenshots update every minute or so. Anyone have a clue?

    http://203.152.220.43/index.php
     
  2. futurestunner

    futurestunner BANNED BANNED

    Joined:
    Dec 26, 2009
    Messages:
    1,532
    Likes Received:
    1,036
    wtf, looks like someone trying to hack my system. i just clicked "RED X" as soon as site started loading. :D
     
  3. nycdude

    nycdude Jr. VIP Jr. VIP Premium Member

    Joined:
    Oct 1, 2009
    Messages:
    485
    Likes Received:
    560
    Location:
    Mazatlán
    Wow, that's interesting. I have absolutely know clue what it's for. I checked the source, no links, nothing that looks suspicious at all...besides what it looks like on page. I would like to find out what this is for.

    In the source it looks like they are leeching proxies for SMTP proxies, using keywords:

    Code:
    
    </font><BR> <font size="4">SMTP-ALL - 33516 (350) / SMTP-uni - 1343 / Keywords - 1188 </font><BR>
    
    Also check this out:
    Code:
    http://www.proxybase.org/ip/203.152.***.***/TFQIp-H9S0_IG5bV3YWyYC7dlMSZrm2i8X_XHrHVKks
    
    I'm assuming they're scanning those port numbers and displaying the results in real time. It keeps refreshing and updating every minute or so.
     
    Last edited: Jun 21, 2013