Full Disclosure mailing list archives

Re: New MSN Servers


From: Nico Golde <fd () ngolde de>
Date: Fri, 3 Mar 2006 22:32:41 +0100

Hi,
* ZeuZ <zeuz.netraptor () gmail com> [2006-03-03 11:20]:
Hi everybody, yesterday I was about to update something in my MSN Space
and I found out something... Suddenly [1]logginet.passport.com redirected
me to [2]www.msn-int.com ([3]65.54.202.62) and at first I thought it was
some kinda spyware, so I Switched to Linux and tryed again, and again the
same... So I decided to check out with NMAP and I found out this:
Starting Nmap 4.01 ( [4]http://www.insecure.org/nmap/ ) at 2006-03-04
03:03 CET

[...] 
Thats no news, they always redirect. Check with:
telnet messenger.hotmail.com 1863
and send for example:
VER 1 MSNP11 MSNP10 CVR0
CVR 2 0x0409 telnet 23.5 unix TELNET 23.5 MSMSGS foobar () hotmail com
USR 3 TWN I foobar () hotmail com
After this the password authentication over ssl would be the next step.
Regards Nico

-- 
Nico Golde - JAB: nion () jabber ccc de | GPG: 0x73647CFF
Forget about that mouse with 3/4/5 buttons -
gimme a keyboard with 103/104/105 keys!

Attachment: _bin
Description:

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: