1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Can Somebody Please Help Me Out? My Buddy is in Serious Trouble

Discussion in 'BlackHat Lounge' started by crazyflx, Dec 5, 2009.

  1. crazyflx

    crazyflx Elite Member

    Joined:
    Nov 9, 2009
    Messages:
    1,674
    Likes Received:
    4,825
    Location:
    http://CRAZYFLX.COM
    Home Page:
    Removed so that story isn't accidentally discovered by people referenced in story. (Problem as been fixed, thanks to everybody below for their suggestions)

    MODS Feel free to remove this thread.
     
    Last edited: Dec 5, 2009
  2. callmybluff

    callmybluff Junior Member

    Joined:
    Jun 26, 2009
    Messages:
    134
    Likes Received:
    11
    wait..has she replied yet? What if shes into it but anyways lmao at this shit
     
  3. lolzap

    lolzap Regular Member

    Joined:
    Jan 20, 2009
    Messages:
    476
    Likes Received:
    99
    Wow man that's a shitty way to ruin a business! Unfortunately I don't have a computer related blog but you could try ezine as well. I hope everything will end up well for your friend.
     
  4. crazyflx

    crazyflx Elite Member

    Joined:
    Nov 9, 2009
    Messages:
    1,674
    Likes Received:
    4,825
    Location:
    http://CRAZYFLX.COM
    Home Page:
    I know, I couldn't help but laugh at him (he was seriously almost in tears)...but it is seriously funny.

    And yes, she has replied to him...with this:

    "LOOK AT YOUR ATTACHMENTS!!!!!"
     
  5. callmybluff

    callmybluff Junior Member

    Joined:
    Jun 26, 2009
    Messages:
    134
    Likes Received:
    11
    also, y does ur friend have pictures of cocks lol
     
  6. crazyflx

    crazyflx Elite Member

    Joined:
    Nov 9, 2009
    Messages:
    1,674
    Likes Received:
    4,825
    Location:
    http://CRAZYFLX.COM
    Home Page:
    I was actually going to do that, the thing is, I can't backdate the story. It will look pretty fishy that the article is posted after the incident happened.

    I can't actually backdate any post at any article site unfortunately...unless one of you guys owns an article site where you can change the posted date.
     
  7. crazyflx

    crazyflx Elite Member

    Joined:
    Nov 9, 2009
    Messages:
    1,674
    Likes Received:
    4,825
    Location:
    http://CRAZYFLX.COM
    Home Page:
    lmao, excellent question. In his defense, it was going into a woman's mouth (not being offensive here, just stating what happened....well, at least what he told me what happened.)
     
  8. zenerchi

    zenerchi Regular Member

    Joined:
    Jul 13, 2009
    Messages:
    322
    Likes Received:
    294
    Occupation:
    Building wealth and refreshing my stats page
    Location:
    Earth
    hahahaahhahhaha fucken classic story of the year

    who knnows she might end up liking his dick and he can have anal in one of the bathtubs he installs.

    anyways that shit is classic
     
    • Thanks Thanks x 1
  9. crazyflx

    crazyflx Elite Member

    Joined:
    Nov 9, 2009
    Messages:
    1,674
    Likes Received:
    4,825
    Location:
    http://CRAZYFLX.COM
    Home Page:
    That's pretty much exactly what he plans to do. The only difference is, I'm emailing him saying that stuff (he is asking me to do it because he isn't very computer savvy, and doesn't know enough computer jargon to make it sound legitimate).

    So, I'm emailing him the explanation from a legitimate domain name (admin@s*uper-IT-so*lutions.com) and he is forwarding it to her.

    He is going to say that I'm his IT guy.
     
  10. linkme

    linkme Regular Member

    Joined:
    Oct 26, 2009
    Messages:
    422
    Likes Received:
    135
    Occupation:
    teh Internets (since 1998)
    Location:
    Online
    You don't need to bak it up with another site, it's just overkill!

    But if your that keen to make your bs story, y not just buy another domain in the comp blog realm, put backdated auto content on it along with your virus story? Then you might end up with an autoblog that also returns some traffic out of this mess
    Posted via Mobile Device
     
  11. zenerchi

    zenerchi Regular Member

    Joined:
    Jul 13, 2009
    Messages:
    322
    Likes Received:
    294
    Occupation:
    Building wealth and refreshing my stats page
    Location:
    Earth
    why doesnt he act like he got the same picture in his email from her and it might be the virus?
     
  12. drdankmendez

    drdankmendez Junior Member

    Joined:
    May 30, 2008
    Messages:
    194
    Likes Received:
    316
    Location:
    In front of my computer
    LOL, Now i know his marketing angle to do 400k a year in hot tubs.... "Free blowjob with every hot tub setup***"

    ***Quality of blowjob may vary, not available in all areas. Void where prohibited.
     
  13. Elitepinki

    Elitepinki Power Member

    Joined:
    Dec 3, 2009
    Messages:
    517
    Likes Received:
    52
    lol mint
     
  14. stunna

    stunna Jr. VIP Jr. VIP Premium Member

    Joined:
    Sep 17, 2008
    Messages:
    488
    Likes Received:
    175
    Occupation:
    PPC Marketing Consultant
    Hahahah

    "Just look at what I have to offer you..."

    Nice.
     
  15. Davekenshi

    Davekenshi Newbie

    Joined:
    Nov 20, 2009
    Messages:
    11
    Likes Received:
    6
    Occupation:
    Kennel Technician at a Humane Society
    Location:
    Missouri
    Could tell her something along the lines of "I was researching marketing techniques and this website had an Ebook (or something) to download, so I downloaded it and apparently it is an email harvester/auto mailer and when I went to email you my information it put those pictures in there with me being unaware, since then I have obtained a new computer and I guarantee it will not happen again."

    As far as your website/blog, if your wanting to get technical with it, you could put information like
    "New Virus Wreak's Havoc in Email

    Code:
    [I]Logfile of HijackThis v1.99.1
    Scan saved at 21:47:41, on 13/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    
    Running processes:
    C:\windows\System32\smss.exe
    C:\windows\system32\winlogon.exe
    C:\windows\system32\services.exe
    C:\windows\system32\lsass.exe
    C:\windows\system32\svchost.exe
    C:\windows\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\windows\system32\spoolsv.exe
    C:\Program Files\Symantec AntiVirus\DefWatch.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\windows\system32\svchost.exe
    C:\Program Files\Symantec AntiVirus\Rtvscan.exe
    C:\windows\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\PROGRA~1\SYMANT~1\VPTray.exe
    C:\windows\system32\wscntfy.exe
    C:\windows\system32\rundll32.exe
    C:\windows\SOUNDMAN.EXE
    C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe
    C:\windows\system32\wuauclt.exe
    C:\windows\System32\svchost.exe
    C:\Documents and Settings\hezi\שולחן העבודה\HijackThis.exe
    
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [URL]http://google.icq.com/search/search_frame.php[/URL]
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [URL="http://google.icq.com/"]http://google.icq.com[/URL]
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://www.ubifone.co.il/habuma[/URL]
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://kazaa.vmule.com/homepage.html[/URL]
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = [URL]http://www.walla.co.il/[/URL]
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R3 - URLSearchHook: FiltURL Class - {5038FED1-CEFE-11D2-9E74-00A0C945A948} - C:\PROGRA~1\NETEX\URLSEA~1.DLL
    R3 - URLSearchHook: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O3 - Toolbar: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [internat.exe] internat.exe
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [LiveMonitor] C:\Program Files\MSI\Live Update 3\LMonitor.exe
    O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [ICQ Lite] "C:\Program Files\ICQLite\ICQLite.exe" -minimize
    O4 - Startup: D-Link AirPlus DWL-120+ Wireless USB Adapter.lnk = C:\Program Files\AIRPLUS\D-Link AirPlus DWL-120+ Wireless USB Adapter\AIRPLUS.EXE
    O4 - Startup: ZDWLan Utility.lnk = C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe
    O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Push Client.LNK = C:\Program Files\Interwise\Participant\pull.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
    O8 - Extra context menu item: &Search - [URL="http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZNxmk142YYIL"]http://edits.mywebsearch.com/toolbar...p=ZNxmk142YYIL[/URL]
    O8 - Extra context menu item: &יצא ל- Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: מחקר - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
    O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {0CD60E63-1850-4E5E-B7F7-EB7AECC3126A} (Masav.GetFileContent) - [URL="https://hb2.bankleumi.co.il/HomeBank/Operations/Masav.cab"]https://hb2.bankleumi.co.il/HomeBank...ions/Masav.cab[/URL]
    O16 - DPF: {10000000-1000-0000-1000-000000000000} - ms-its:mhtml:file://C:\foo.mht![URL]http://www.free32.com/POP.CHM::/sp.exe[/URL]
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - [URL]http://go.microsoft.com/fwlink/?LinkID=39204[/URL]
    O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - [URL]http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab[/URL]
    O16 - DPF: {21F49842-BFA9-11D2-A89C-00104B62BDDA} (ChartFX Internet Control) - [URL]https://hb2.bankleumi.co.il/download/CfxIEAx.cab[/URL]
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - [URL="http://messenger.zone.msn.com/binary/MineSweeper.cab28578.cab"]http://messenger.zone.msn.com/binary...r.cab28578.cab[/URL]
    O16 - DPF: {38AF165F-0599-4D29-9DA1-5C169F45023A} (CFloppyOp Object) - [URL]https://hb2.bankleumi.co.il/H/FloppyOpIe.cab[/URL]
    O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - [URL]http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab[/URL]
    O16 - DPF: {4E330863-6A11-11D0-BFD8-006097237877} (InstallFromTheWeb ActiveX Control) - [URL]http://tw.msi.com.tw/autobios/client/iftwclix.cab[/URL]
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - [URL="http://by13fd.bay13.hotmail.msn.com/resources/MsnPUpld.cab"]http://by13fd.bay13.hotmail.msn.com/...s/MsnPUpld.cab[/URL]
    O16 - DPF: {75D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin.SecureControl) - [URL="http://secure2.comned.com/signuptemplates/ActiveSecurity.cab"]http://secure2.comned.com/signuptemp...veSecurity.cab[/URL]
    O16 - DPF: {86A88967-7A20-11D2-8EDA-00600818EDB1} (ParallelGraphics Cortona Control) - [URL]http://www.parallelgraphics.com/bin/cortvrml.cab[/URL]
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - [URL="http://messenger.zone.msn.com/binary/MessengerStatsClient.cab28578.cab"]http://messenger.zone.msn.com/binary...t.cab28578.cab[/URL]
    O16 - DPF: {CBF2C04B-50B5-4C7B-8D49-ACB62582F8E6} (LauncherV1 Class) - [URL]http://chat-basic.nana.co.il/Cabs/launcher.cab[/URL]
    O16 - DPF: {D54160C3-DB7B-4534-9B65-190EE4A9C7F7} (SproutLauncherCtrl Class) - [URL="http://www.bigfishgames.com/online/feedingfrenzy/Game/SproutLauncher.cab"]http://www.bigfishgames.com/online/f...utLauncher.cab[/URL]
    O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - [URL="http://www.bigfishgames.com/online/dinerdash/DinerDash.1.0.0.58.cab"]http://www.bigfishgames.com/online/d...h.1.0.0.58.cab[/URL]
    O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - [URL]http://arcade.icq.com/carlo/zuma/popcaploader_v5.cab[/URL]
    O16 - DPF: {EC9C20C4-FF24-11D3-81B7-00902776CF54} (InstallerActiveX Class) - [URL]http://www.netex.co.il/site/Installer.CAB[/URL]
    O16 - DPF: {F59AB0C4-3443-4551-A78F-C101F9DE0215} (LauncherV1 Class) - [URL]http://irc.tapuz.co.il/BlogTVU-new/launcher.cab[/URL]
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - AppInit_DLLs:  evenncob.dll e1.dll confcon.dll constat.dll
    O20 - Winlogon Notify: conmgr - C:\windows\SYSTEM32\conmgr32.dll
    O20 - Winlogon Notify: dssmgr - egamgr32.dll (file missing)
    O20 - Winlogon Notify: sysshtic - C:\windows\system32\sysshtic.dll
    O20 - Winlogon Notify: WgaLogon - C:\windows\
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: CWShredder Service - Unknown owner - C:\DOCUME~1\hezi\LOCALS~1\Temp\Rar$EX00.859\CWShredder.exe (file missing)
    O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe[/I]
    Found that information on h**p://forums.spybot.info/showthread.php?t=8028

    Could also add something like "I caught wind of this when my ISP called me and said I was soliciting SPAM. Apparently this program spams email addresses, and I bought a new computer to rectify the situation"
     
    Last edited: Dec 5, 2009
  16. tygrus

    tygrus Supreme Member

    Joined:
    Mar 28, 2009
    Messages:
    1,237
    Likes Received:
    827
    Occupation:
    Engineer
    Location:
    Canada
    Get someone to send her an email posing as her internet hosting company saying something like,

    "Due to an unwarranted attack on our servers by malicious hackers and affiliate spammers, some x-rated materials may have been inadvertently sent to our clients without our firewall able to block it. If you have received such material, please delete it and report it to our email hotline. Please be assured that we are working diligently to ensure our network has the latest security measures in place and incidents like this will not happen in the future."
     
  17. DFunny

    DFunny Regular Member

    Joined:
    May 26, 2009
    Messages:
    282
    Likes Received:
    113
    LOL damn, thats rough. I think he should just be straight up honest with her. He should just be like "What happened is very embarrassing and unfortunate. I don't know how this picture ended up with the others. I am very sorry if this has offended you."

    You have to figure that if this chick is a hard ass business women she has a nose for bullshit. If you're going to feed her a line of crap make sure it's good!
     
  18. secrethq1

    secrethq1 Junior Member

    Joined:
    Oct 19, 2009
    Messages:
    148
    Likes Received:
    17
    gl what a story, a big business, a woman, a guy with cock pics LOL!

    I think she is into it. Just reply back what dont you want to sweeten the deal !
     
  19. Moto801

    Moto801 Senior Member

    Joined:
    Apr 25, 2009
    Messages:
    849
    Likes Received:
    413
    Location:
    Far away
    If this guy is a real business man then he will call her up on the phone and explain this situation to her like a man and tell her it was a mistake and some personal pictures somehow got in there by accident.

    Don't even bother with the e-mails.. get her on the phone or in person

    Mistakes happen, she will get over it.. not a big deal
     
  20. Spud Jr

    Spud Jr BANNED BANNED Premium Member

    Joined:
    Sep 16, 2009
    Messages:
    326
    Likes Received:
    118
    Don't make a mountain out of a molehill. A simple explanation and it'll be water under the bridge.

    If she wasn't interested in doing business with him, she would have made it known.

    Good luck