EvilZone

Community => General discussion => : silenthunder February 16, 2013, 01:08:49 AM

: received a "file0.txt"
: silenthunder February 16, 2013, 01:08:49 AM
On facebook someone sent me from a blank email address no message but a 26kb file labeled "text0.txt". I cant open it on ios and im afraid of what will happen if i attempt it on winblows.. What should i do with it?
: Re: received a "file0.txt"
: relax February 16, 2013, 01:13:58 AM
On facebook someone sent me from a blank email address no message but a 26kb file labeled "text0.txt". I cant open it on ios and im afraid of what will happen if i attempt it on winblows.. What should i do with it?


open it in a VM...
: Re: received a "file0.txt"
: kenjoe41 February 16, 2013, 01:18:02 AM
malware is so popular in .txt .doc .pdf. Open it in a virtual environment or sandbox. There your 60% sure your safe.
: Re: received a "file0.txt"
: techb February 16, 2013, 01:19:33 AM
Also make sure your not hiding file extentions. I've fooled people by doing something like README.txt.exe

Also how could a .txt be infected? It is just a simple io buffer of sorts. If anything, notepad or something would be infected. I know of .pdf and .doc's but never a .txt

And if you don't have a VM, use a hexeditor.
: Re: received a "file0.txt"
: silenthunder February 16, 2013, 06:00:03 AM
Also make sure your not hiding file extentions. I've fooled people by doing something like README.txt.exe

Also how could a .txt be infected? It is just a simple io buffer of sorts. If anything, notepad or something would be infected. I know of .pdf and .doc's but never a .txt

And if you don't have a VM, use a hexeditor.

I opened the message on my laptop, can't open the file because "this message has been marked as abusive/spam", but I saw that there was a phone number there with a local area code, so I texted it. turned out to be a friend that lives a few hours away trying to post to my wall on facebook but accidentally sent me some kinda text file. CASE CLOSED XD
: Re: received a "file0.txt"
: Axon February 16, 2013, 06:06:53 AM
Also make sure your not hiding file extentions. I've fooled people by doing something like README.txt.exe

Also how could a .txt be infected? It is just a simple io buffer of sorts. If anything, notepad or something would be infected. I know of .pdf and .doc's but never a .txt

And if you don't have a VM, use a hexeditor.


Yes I was thinking the same, txt files could not be infected. I would say open it in a linux environment, it's much safer. Gedit can open txt files, and if you are so paranoid then simply delete the file.
: Re: received a "file0.txt"
: silenthunder February 16, 2013, 06:11:24 AM

Yes I was thinking the same, txt files could not be infected. I would say open it in a linux environment, it's much safer. Gedit can open txt files, and if you are so paranoid then simply delete the file.

It's not that I was paranoid, more like interested. I wanted to see what it was and what it was made of.
: Re: received a "file0.txt"
: Axon February 16, 2013, 06:17:01 AM
It's not that I was paranoid, more like interested. I wanted to see what it was and what it was made of.


Then use Linux to check the file. Before you do that. Have you tried tracing the source of the email, check the email header and see if you can find some info.
: Re: received a "file0.txt"
: silenthunder February 16, 2013, 06:19:43 AM

Then use Linux to check the file. Before you do that. Have you tried tracing the source of the email, check the email header and see if you can find some info.

I was at work when I received it and I was using iOS. When I got home it was too late to do any of this, and also unnecessary because the phone number was there for me to text.
: Re: received a "file0.txt"
: s3my0n February 16, 2013, 07:08:12 AM
You don't even need anything special to open a text file ... If in windows just do: type file.txt in cmd.exe to see its contents.
: Re: received a "file0.txt"
: kenjoe41 February 16, 2013, 09:00:27 AM
It's not that I was paranoid, more like interested. I wanted to see what it was and what it was made of.
do you smell the sweet scent of social engineering. Always be paranoid even with the one you share a bed, they all feed on our weakness and love.
: Re: received a "file0.txt"
: Superflu0usRoot February 16, 2013, 07:49:38 PM
Two simple ways to find out:

an online service such as:
http://textuploader.com/?p=7

or in a linux environment (if you really want, use someone elses linux environment, and wget the file) do a:
:
cat file0.txt
I'm sure it IS possible to create an exploit using cat (anything is possible) though I haven't seen it and it would be a VERY specialized attack.
: Re: received a "file0.txt"
: silenthunder February 16, 2013, 08:06:31 PM
do you smell the sweet scent of social engineering. Always be paranoid even with the one you share a bed, they all feed on our weakness and love.

Being paranoid and being careful are 2 different things. A great social engineer has no need to be paranoid
: Re: received a "file0.txt"
: lucid February 17, 2013, 08:07:33 AM
CASE CLOSED XD

Lol