Looks like it uses activex to download jpeg.exe to your computer. It uses GetSpecialFolder(2) which points to a temporary internet folder. Then uses ShellExecute execute the file!
If you viewed the page with javascript, most likely need activex on as well, search for jpeg.exe located in a temp internet folder. I don't know what happends after it is executed as I'm not downloading the file.
Hope that helps
Jay
Hi5 is a very big site, so it is not a scammer's heaven.
Been digging into the site and it is not jpeg.exe it is jpg.exe
Sometimes I wish I could kick people in the face via internet.
FYI, they already started a new forum called ProHackerz.com. I suggest you join now before they turn on the invite only feature, so that you can keep an eye on that place in the future, if it lasts long.
FYI, they already started a new forum called ProHackerz.com. I suggest you join now before they turn on the invite only feature, so that you can keep an eye on that place in the future, if it lasts long.
Wow just went that prohacker site, they are selling hacked paypal accounts over there!
Check this out.
http://vshare.ws./images/qqm3lnqlbujdfsqcaeg.gif
guys this is my latest acc hacked by me
so i am selling it for 15$
payment via
1>moneybooker
2>paypal
i want 10$ in money booker and 5$ in paypal and the money should be legal
Wow just went that prohacker site, they are selling hacked paypal accounts over there!
Check this out.
http://vshare.ws./images/qqm3lnqlbujdfsqcaeg.gif
guys this is my latest acc hacked by me
so i am selling it for 15$
payment via
1>moneybooker
2>paypal
i want 10$ in money booker and 5$ in paypal and the money should be legal
*the exceptional businesses of our esteemed moderators