//flex table opened by JP

Click to See Complete Forum and Search --> : ICQ security?


Eli
05-19-2000, 09:37 PM
The other night on ICQ someone tried to send me a file they claimed was their pic. I refused it due to the .jpg.exe extension. I told buddy that I wasn't that stupid (got burned before...) and he somehow added me to his list without authorization. Since I run ICQ99a, would 99b or even 2000 have prevented that moron from adding me? He was also running two numbers at the same time, since I was added to two different lists. I'm just wondering if a newer version would prevent these occurances. Thanks.

seti
05-19-2000, 10:17 PM
They can add people to there list quite easily...as can they obtain IP's and run multiple icq's. The programs used to do these things from what I know are writen for 99a and b. I'm not sure if the exploit works for 2000. I doubt the un-authorized adding onto other people's list would stop when useing 2000 as the programs hack, crack, or whatever the term is....the program does it to their chat client.


I once had someone named "boobies" ask me if I wanted to see "her" picture. It was an exe. Nice try boobies. http://sysopt.earthweb.com/forum/smile.gif

[This message has been edited by seti (edited 05-19-2000).]

Eli
05-20-2000, 10:03 AM
This was a "sandra" at first, then a "vega" under a different number. I don't know, .jpg.exe just doesn't seem terribly convincing... They should've tried harder. lol

Actually I should've downloaded and deleted it, then claimed the pic was cute. Now that would really confuse them. http://sysopt.earthweb.com/forum/wink.gif

ytay
05-20-2000, 01:15 PM
well you were definately being sent a trojan, i have a low icq number and i get at least six idiots a day trying to get me to accept these things......i always accept them, and them i opened it (as if) and then watch them try to probe the trojan port, i also scan them to see which trojan it is and to test how up-to-date my trojan scanners are (tauscan still the best). but not all trojans pics are sent with an exe format they can be renamed to appear as a jpg file. nine out of 10 trojans i get sent are the sub seven trojan (latest version 2.1,3), then coced 238, and a splash of others. icq has spawned the biggest group of spam and trojan tossing idiots on the net, and it is real fashionable to steal icq numbers in some countries (95% of all trojans i get sent are from kids in turkey, russia #2). and if you have a low number you are a target. as far as adding you it doesnt matter what version you are running, it matters what version they are running. isoaq is a program written by a russian dude that allows you to add anyone without auth. and run up to seven icq's at once, it also allow your ip address to be shown to that person. best advice is never open up anything without scanning it even if its from a friend

dave icq #100906

also in security options for icq do not have it remember your password that way it will not be stored in the dat files, cause thats where these trojans look to steal your password http://sysopt.earthweb.com/forum/smile.gif

[This message has been edited by ytay (edited 05-20-2000).]

Eli
05-20-2000, 05:44 PM
The first time this happened just over a year ago I foolishly ran the file and they stole my AOL passwords. Luckily it didn't go beyond the theft, and I was planning a format and reinstall anyway. This time it was a random person though. My number isn't terribly low. 8348583. They are up to like 70 million now though...