Home › Forums › Archives › Instant Messaging › Yahoo! Messenger Support › Preventing Malicious Activity
- This topic has 66 replies, 35 voices, and was last updated 20 years, 7 months ago by
kfinpgh.
-
AuthorPosts
-
July 25, 2003 at 1:21 am #6452
BLACK HAT
MemberI am moving this post into its own folder as it seems to have been buried. I believe this information has merit and will be of use to everyone that uses Instant Messaging programs whether it be AIM, Yahoo!, ICQ, MSN Messenger etc.
In reading through these forums it is apparent that a great many users are having difficulty with persons who boot them offline, steal their passwords and IDs etc.
This is harassment and laws exist in many US states and foreign countries that strictly forbid this kind of activity.
I live in Texas and this is the law in my state. Your state, county, city, parish, province or country probably has similar laws.
This is an excerpt from Texas State Law
77(R) SB 139 Enrolled version – Bill Text 1-1
AN ACT relating to the prosecution of and punishment for the offenses of
harassment and stalking.BE IT ENACTED BY THE LEGISLATURE OF THE STATE OF TEXAS:
SECTION 1. Section 42.07, Penal Code, is amended to read as follows:
Sec. 42.07. HARASSMENT. (a) A person commits an offense if, with intent to harass, annoy, alarm, abuse, torment, or embarrass another, he:(7) sends repeated electronic communications in a manner reasonably likely to harass, annoy, alarm, abuse, torment,embarrass, or offend another.
(1) “Electronic communication” means a transfer of signs, signals, writing, images, sounds, data, or intelligence of any nature transmitted in whole or in part by a wire, radio, electromagnetic, photoelectronic, or photo-optical system. The term includes:
(A) a communication initiated by electronic mail, instant message, network call, or facsimile machine; and (B) a communication made to a pager.
Seeing as this is against the law, it empowers us to take action. You pay to be online and chat with friends or family and you have a right to do so without being harassed.
Track down as many booter web sites as you can and look up the web host through traceroute. If you need further instruction on how to do this just post here and I will instruct you. I know that there are many designers, webmasters, techs etc that post on these forums that are well aware that this sort of activity is not acceptable on their systems and I am surprised that no one has moved to stop this at the source.
A good tool for locating the host of offending web sites is located here, http://www.network-tools.com
E-mail the web host and complain that the boot programs, password stealers, account lockers etc. made available on these web sites are denying you access to the Internet service that you pay for. This is in flagrant violation of any reputable web hosts acceptable use policy against harrassment or attempting to penetrate the security of another user’s account.
If someone were outside your home tampering with your phonelines so that you could not place a call, what would you do? Would you just hope that it goes away or would you take action? You would probably call the phone company or the police wouldn’t you? This is no different.
This will not stop people from trading boot codes in e-mail or on P2P programs but it sure does make it hard for people to just type “booters” into a search box and start downloading.
As they say, an ounce of prevention is worth a pound of cure.
July 25, 2003 at 2:10 am #58589Someguy03
MemberThere are way too many websites to be able to shut them all down. You might be able to slow down booting but not by much. Companies already work on patches that shutdown booting programs, Aol is a good example. We are on our way but theres a long road ahead of us.
July 25, 2003 at 2:40 am #58610BLACK HAT
MemberI have shut down 46 web sites in 8 days. I am ONE person. How many people are registered on this forum, 6,000 or more?
If only one percent of them pitched in, that knocks down web sites at quite a clip.
This activity has been going on for years. Your suggestion to wait until AOL, Yahoo etc. resolve issues on their own is a fruitless one.
July 25, 2003 at 3:03 am #58595shifter
ParticipantBLACK HAT – A great and noble plan. I endorse it completely. In fact I have just finished locating an offending site containing these boot programs and have reported it to the host. It took me about 2 minutes at most, and if we all do at least one, think of the good being done. Lets keep the booters underground. To make this even easier for users I have written this blurb for you using Black Hat’s initial post as a guideline so you can simply copy and paste into your email complaints. Feel free to elaborate and build the complaint so that it is most effective.
Dear Web Host,
I have just discovered http://www.offendingsite.com and am outraged at its offending content. This site contains numerous Booting programs, password stealers and/or account lockers used to maliciously attack internet users. These programs made available on this web site are denying me access to an Internet service that I pay for. This is in flagrant violation of any reputable web hosts acceptable use policy against harrassment or attempting to penetrate the security of another user’s account. Please remove this site ASAP. Thank you for your immediate attention.July 25, 2003 at 3:17 am #58609BLACK HAT
MemberWay to go Shifter!
I knew I could count on a fellow designer!
July 25, 2003 at 4:24 am #58599Johnson
MemberCracking and booting sites put disclaimers on them, saying the programs are only there for educational purposes blah blah blah, to cover their rears. Yahoo knows about the most popular booting, cracking sites, and they do nothing about it, so i doubt their hosts would care, it all comes down to money, and if the don’t host these sites, they won’t be making any money.
Now if a website had trojans on it, or trojaned programs, im sure the host would take some kind of action. Theres a lot worse things then booting people or stealing their ids.July 25, 2003 at 4:51 am #58608BLACK HAT
MemberJohnson:
The disclaimers placed on booter and cracker sites is a bunch of hogwash. It is a bluff. It looks very cryptic but it is worthless. See below.
Claim: Citing “code 431.322.12 of the Internet Privacy Act” protects web site operators from prosecution.
Status: False.http://www.snopes.com/legal/privacy.htm
Breaking into another user’s account would also give you access to their e-mail. Sometimes other passwords can be found in e-mail that may allow crackers to access more information on other accounts. Additionally, IDs can be tied to Yahoo! or Microsoft Passports or Wallets.
I am not really sure where you fail to see the serious nature of this issue.
You say that it all comes down to money. Certainly, it does. But, are you content to stand by and watch others make money illegally while you work hard and abide by the law?
My research has shown that most of these sites are owned by teenage kids that may not be aware that what they are doing is against the law. They are excited by the prospect of kicking another user offline. It becomes a game to them and they form gangs or cliques that trade these various tools. They seek out the creators of these programs and in many cases the creators of these programs have leased a server so they can host this type of material. They strike up a “friendship” with the creators of these programs who then offer them web hosting at 5-10 dollars a month. It doesn’t take a genius to figure out that if you supplicate the kids and endow them with some sort of cryptic status that they will become a loyal follower and host a web site with you. Get 100 kids lined up at 10 bucks a month and you can pocket 12 grand a year. Not bad. Would you like an extra 12 grand a year? I bet you would. Nice little racket, huh?
If only it were legal.
July 25, 2003 at 4:58 am #58588Someguy03
MemberI never said that reporting sites didnt work. I had never tried to report sites, assuming it wouldnt work. But if you can nail 46 sites in 8 days then im off to do some reporting. Thanks for the heads up, lets hope this goes well.
How do you find the host of the site?
July 25, 2003 at 6:04 am #58583David
ParticipantQuote:quote:Originally posted by someguy03I never said that reporting sites didnt work. I had never tried to report sites, assuming it wouldnt work. But if you can nail 46 sites in 8 days then im off to do some reporting. Thanks for the heads up, lets hope this goes well.
How do you find the host of the site?
You run a WHOIS? lookup.
http://www.register.com does WHOIS? lookup’s.
July 25, 2003 at 6:20 am #58587Someguy03
MemberIt says that it timed out. Is this a error or do only some sites work on the WHOIS?
July 25, 2003 at 6:38 am #58607BLACK HAT
Membersomeguy03:
I will make a little tutorial with screenshots and post it up here for you in just a bit. 🙂
July 25, 2003 at 7:31 am #58597coolguyj2
MemberQuote:quote:Originally posted by someguy03It says that it timed out. Is this a error or do only some sites work on the WHOIS?
try neo trace pro. It is a s/w which lets you trace everything for a particular IP(name, add,etc) and even looks up host names (http://www.yahoo.com)
its avlbl on FOSI’s site (sorry cant paste the link here, against forum policies)July 25, 2003 at 7:38 pm #58598Johnson
MemberI doubt you got that many sites shut down, this comes down to money. Unless they was childish geo cities sites, or sites hosted by yahoo or possibly angelfire. Yahoo could really careless, right now theres one main booter site, and one main cracking site, the booter site has been up since 1999, had MILLIONS of d/l’s and a friend of mine has a new domain for his cracking site, cause he sold his old one. He got in trouble with the fbi, but only cause he had a cracked program on his site, that was copyrighted. I would post the links for them, but it’s against forum policies, to let you get them shutdown, LMAO!
July 25, 2003 at 10:28 pm #58606BLACK HAT
MemberJohnson:
I have all of the e-mail replies from the web hosts who have shut these sites down. You can add 9 more web sites to the tally as of today. I will be happy to forward the e-mails to you if you require proof. I just hope you have a large mailbox.
someguy03:
I apologize for not having your tutorial up yet but I got involved in a lot of work today and well… I gotta work.. LOL
I am working on it and will have it posted soon.
July 28, 2003 at 11:08 am #58582secadmirer_1998
MemberHi Black Hat I appreciate u efforts. Please bring down this site [link removed by moderator] this guy stolen my yahoo id please do needful .thanks
-
AuthorPosts
- You must be logged in to reply to this topic.