Archives for: 2008
12/21/08
Categories: Security, Email Scams, Phishing, Virus Info, Virus Emails
Classmates Day Center Scam - Virus Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
Categories: Security, Email Scams, Phishing, Virus Info, Virus Emails
Classmates Info Center Scam - Virus Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The
following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
12/17/08
urgent notification from customer service (message ref: 6811325207) Scam Mail
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
Urgent Scam Mail
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
12/11/08
Categories: Security, Email Scams, Phishing, Virus Emails
Online Demo Bank Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
Categories: Security, Email Scams, Phishing, Virus Emails
Demo account-Bank of America Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
Categories: Security, Email Scams, Phishing, Virus Emails
Update - Bank of America Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
12/06/08
telemarketer cell phone spam email
Recently I was asked about the following email:
HEADS UP
REMEMBER: Cell Phone Numbers Go Public today.
REMINDER... all cell phone numbers are being released to telemarketing companies tomorrow and you will start to receive sale calls.
.... YOU WILL BE CHARGED FOR THESE CALLS
To prevent this, call the following number from your cell phone: 888-382-1222 .
It is the National DO NOT CALL list. It will only take a minute of your time. It blocks your number for five (5) years. You must call from the cell phone number you want to have blocked. You cannot call from a different phone number.
HELP OTHERS BY PASSING THIS ON TO ALL YOUR FRIENDS.. It takes about 20 seconds.
12/03/08
Classmates Messagebox#749 Virus Email
I received multiple messages in my junk email. So, obviously something isn't right about these to start with. The following is the break down of the major parts of the messages I received.
Here are the subjects of this virus email:
This email was supposedly sent by:
Here is the body of the email:
11/30/08
December ISSA Meeting
What: December ISSA Lunch Meeting
When: Tuesday, December 2nd 2008. 11am – 12:30pm
Where: Abuelo’s in Rogers (map)
Our meeting will meet at a different location this month. We will be meeting at Abuelo’s Mexican Restaurant in Rogers (Just off of 540). It is an exit further south than our normal location for those of you coming from the Fayetteville / Fort Smith area. Our main focus of this meeting is to finalize election nominations, cast ballots, and discuss the plans for 2009. There will be no industry speaker at this meeting in order to accomplish all of the chapter business. However, plan to discuss topics for speakers in 2009. We will be planning the upcoming year (at a high level).
Dave
11/29/08
service@abuse-paypal.com Phishing Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The
following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the text of the email body:
11/25/08
Upgrade - Bank of America Scam Email
I received this message twice in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here are the subjects of this scam emails:
and
Bank of America - your Demo Account username and passcodes will be generated and emailed to you.
These emails were supposedly sent by:
and
Demo account-Bank of America
Here is the body of the emails:
11/19/08
United Postal Service Virus Email
This email is nothing but a virus deployment method. If you receive an email like this, don't open the attachment - JUST DELETE IT
Here is the subject of this virus email:
This email was supposedly sent by:
Here is what McAfee says about the attachment on this message:
11/11/08
Election News Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
inigo woodrow Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
11/10/08
Google AdWords Team Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
Google-AdWords Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
NetworkSolutions Support Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
USA Government Center Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
CNN news Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
11/07/08
USA News Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
David Samuels Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Good Proposal! -9GA
This email was supposedly sent by: David Samuels
Here is the body of the email:
mdaniellafu Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
Election results Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Obama win an Electoral College majority
This email was supposedly sent by: Election results
Here is the body of the email:
Elections Result center Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Election Night Results
This email was supposedly sent by: Elections Result center
Here is the body of the email:
Colorado Business Bank Support Department Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Colorado Business Bank - an encrypted SSL connection is equipped with a mechanism for detecting tampering
This email was supposedly sent by: Colorado Business Bank Support Department
Here is the body of the email:
Colorado Business Bank Account Service Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Colorado Business Bank - your password will never be displayed on your computer screen
This email was supposedly sent by: Colorado Business Bank Account Service
Here is the body of the email:
Colonial Bank Support Department Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Colonial Bank would like to announce latest update
This email was supposedly sent by: Colonial Bank Support Department
Here is the body of the email:
Colonial Bank Account Service Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Colonial Bank Warning: if you are not actively using the system.
This email was supposedly sent by: Colonial Bank Account Service
Here is the body of the email:
Better Business Bureaus Customer Update Department Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Better Business Bureaus, Attention: identity theft is a crucial matter
This email was supposedly sent by: Better Business Bureaus Customer Update Department
Here is the body of the email:
Wachovia connection Account Service Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Wachovia Customer Support - offer opportunities we believe may benefit our customers.
This email was supposedly sent by: Wachovia connection Account Service
Here is the body of the email:
Wachovia connection Security Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Wachovia Customer Support - protect the information you share with us.
This email was supposedly sent by: Wachovia connection Security
Here is the body of the email:
Wachovia connection Tech Support Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Wachovia Customer Support - We use some information to help identify and mitigate potential risks or loss to the Bank.
This email was supposedly sent by: Wachovia connection Tech Support
Here is the body of the email:
Colorado Business Bank Renewal Support Team Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Colorado Business Bank - an encrypted SSL connection is equipped with a mechanism for detecting tampering
This email was supposedly sent by: Colorado Business Bank Renewal Support Team
Here is the body of the email:
Elections Centre Scam Email
I received this message in my junk email. So, obviously something isn't right about it to start with. The following is the break down of the major parts of the message I received.
Here is the subject of this scam email:
This email was supposedly sent by:
Here is the body of the email:
Colonial Bank Customer Update Department Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Colonial Bank Warning: access the Bank's servers.
This email was supposedly sent by: Colonial Bank Customer Update Department
Here is the body of the email:
Bank of America Support Team Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Bank of America We recognize your right to privacy.
This email was supposedly sent by: Bank of America Support Team
Here is the body of the email:
Better Business Bureaus Security Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Better Business Bureaus, Attention: do not provide confidentiality via encryption.
This email was supposedly sent by: Better Business Bureaus Security
Here is the body of the email:
LaSalle Bank Business Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Warning LaSalle Bank Consumers: Information from a consumer reporting agency
This email was supposedly sent by: LaSalle Bank Business
Here is the body of the email:
Ocean Bank Corporate Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Ocean Bank Alert - Federal Warning Systems
This email was supposedly sent by: Ocean Bank Corporate
Here is the body of the email:
Wachovia connection Update Service Department Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Wachovia online would like to inform you news
This email was supposedly sent by: Wachovia connection Update Service Department
Here is the body of the email:
Bank Of America Customer Update Department Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Bank of America Update - News.
This email was supposedly sent by: Bank Of America Customer Update Department
Here is the body of the email:
abdulkarim xiaobo Scam Email
I received this message in my junk email. So obviously something isn't right about it to start with.
The following is the break down of the major parts of the message I received.
Here is the subject of this scam email: Real Genuine Offer from Successful Greek Company!
This email was supposedly sent by: abdulkarim xiaobo
Here is the body of the email:
10/27/08
November ISSA Lunch and Learn
What: November ISSA Lunch and Learn
When: Tuesday, November 4th 2008. 11am – 12:30pm
Where: Whole Hog Café, Bentonville (map)
Presentation: Dave Smith & Von Nguyen of Palo Alto Networks
(http://www.paloaltonetworks.com)
What will they be presenting:
Dave and Von will give a presentation on Next Generation Application Firewalls.
They will cover why conventional firewalls are no longer enough to protect the
enterprise and why smarter application firewalls are now needed. They will
explain how an effective application-aware firewall can curb numerous security threats.
Our November meeting marks the beginning of our annual elections.
We will be electing individuals for the following offices:
• President
• Vice President
• Secretary
• Treasurer
Dave
10/22/08
Finance Solutions LTD. Phishing Email
Yesterday I received an email from a "company" about becoming a customer care representative. So there are a few issues with this:
- I didn't apply anywhere for a customer care representative position.
- The domain watford.gov.uk of the replyTo address in the email header doesn't match the name of the company that supposed sent the email and looks like a government domain in the UK.
- The email address that received this email is one that I use for my website and would never use for personal business.
So all in, if you receive an email like this, DELETE IT .
Here is the image of the email I received. You can click on the thumbnail below to see a larger version of the image:
Mystery Shopper Phishing Email
Yesterday I received an email from a "company" about becoming a mystery shopper. So there are a few issues with this:
- I didn't apply to anything about being a mystery shopper.
- The domain cushingdolan.com of the replyTo address in the email header doesn't match the name of the company that supposed sent the email.
- The email link in the email body points to a gmail account, which has a different name than the person who "signed" the email and the address that sent this email.
- The sending email address doesn't match either the name of the sender or the email address you are supposed to reply to.
- And....Michael is spelled wrong in the gmail address
So all in, if you receive an email like this, DELETE IT .
Here is the image of the email I received. You can click on the thumbnail below to see a larger version of the image:
More Bank of America Phishing Emails
I received five more copies of the Bank of America Phishing Email. The web page that these emails point to, tried to force me to execute an executable file. Trend Micro says this exe file is CRYP_MEW-11.
So if you receive an email like these, DELETE IT .
Here are the images of the emails I received. You can click on one of the thumbnails below to see a larger version of the image:
10/20/08
Commerce Bank Phishing Email
This is another version of the Key Bank Phishing Email. The web page that this email points to, tried to force me to execute an executable file. Trend Micro says this exe file is CRYP_MEW-11.
So if you receive an email like this, DELETE IT .
Here are the images of the emails I received. You can click on one of the thumbnails below to see a larger version of the image:
10/17/08
Work From Home Scam Email
Today I received two emails that are supposed about recruiting for a home based position. The fact that I received the same message from two different sources is a big tip off that it is a scam. With the economy in shambles, more folks might be tempted to reply to this message which would not be a good idea.
So if you receive an email like this, DELETE IT .
Here are the images of the emails I received. You can click on one of the thumbnails below to see a larger version of the image:
10/16/08
Bank of America Phishing Email
This is another version of the Key Bank Phishing Email. The web page that this email points to, tried to force me to execute an executable file. I have not had a chance to look into the executable yet, but any web page that does that concerns me.
So if you receive an email like this, DELETE IT .
Here are the images of the html and text of email I received, the web site, and the download prompt. You can click on one of the thumbnails below to see a larger version of the image:
10/15/08
Key Bank Phishing Email
Initially I thought this was just another Phishing email, but when I checked the link that was in this email, the web page tried to force me to execute an executable file. I have not had a chance to look into the executable yet, but any web page that does that concerns me.
So if you receive an email like this, DELETE IT .
Here are the images of the html and text of email I received, the web site, and the download prompt. You can click on one of the thumbnails below to see a larger version of the image:
10/14/08
Shipping and Receiving Clerk Scam Email
Today I received an email that is supposed about recruiting for a home based position. Some things about this message just didn't seem right to me and with the economy in shambles, more folks might be tempted to reply to this message which would not be a good idea..
- The reply to address (where the message was sent from) and the manager's email address were from separate domains - tpgcpas.com and gmail.com respectively.
- The wording of the message while better than most scam emails, still isn't quite right. There are punctuation, tense, and grammar issues in this message.
Here is an image of the email I received. You can click on the thumbnail below to see a larger version of the image:
Flagstar Bank Phishing Email
This email appears to from Flagstar Bank, but after a quick look, it is fairly apparent that it is nothing more than a Phishing email. A couple of points on this message:
- The second sentance doesn't read right, it appears to be missing a word.
- The third sentance is not constructed right and again doesn't read correctly.
Here is an image of the email I received. You can click on the thumbnail below to see a larger version of the image:
M & I Bank Phishing Emails
I won't go into detail on these phishing / scam emails, since I received three today, they are obviously not real.
Here are the images of the emails I received. You can click on one of the thumbnails below to see a larger version of the image:
10/13/08
Advan Group LTD Scam Email
Well I guess I should have expected the number of home based work email scams to increase, but for me to get two (2) in one (1) day is crazy and the day isn't over yet.
This email is supposedly about a home based opportunity with Advan Group LTD. When I first saw the email in my "Junk" folder I figured I could ignore it, but with our economy heading south, there may be more folks tempted by this message and replying to it is a very bad idea. This, like most scam emails, suffer from what I would call a lack of understanding of the english language. What I mean by that is that the email doesn't read right.
- The reply to address (where the message was sent from) and the manager's email address were from separate domains - heidenheim.com and gmail.com respectively.
- The wording of the message isn't quite right. There are punctuation, verb tense, and grammar issues in the message.
- The email says you will be working over 4 hours a day Monday through Friday, but only 16 hours a week
Here is an image of the email I received. You can click on the thumbnail below to see a larger version of the image:
Shipping and Courier Scam Email
Today I received an email that is supposed about recruiting for a home based position. Some things about this message just didn't seem right to me and with the economy in shambles, more folks might be tempted to reply to this message which would not be a good idea.
- The reply to address (where the message was sent from) and the manager's email address were from separate domains - linux.ca and gmail.com respectively.
- The wording of the message while better than most scam emails, still isn't quite right. There are punctuation, tense, and grammar issues in this message.
Here is an image of the email I received. You can click on the thumbnail below to see a larger version of the image:

10/03/08
CitiBank Alert Scam Email
10/02/08
NWA Chapter of ISSA - October 7th Meeting
The next NWA ISSA Meeting is coming up fast.
Please mark your calendars for October 7th. Our October meeting will include lunch and a discussion/presentation about risk analysis.
WHAT: NWA ISSA Meeting
WHEN: October 7th, 2008 11am
WHERE: Whole Hog Café, Bentonville
SPEAKER:
Quantitative Risk Assessment
Chris Calvert, CISSP, CISM - Laconic Security
AGENDA:
11am – Lunch
11:15am – Call to order for Chapter Business
11:30am – Go over upcoming Chapter elections
11:45am - Speaker
As always, all are invited and do not need to be ISSA members to attend.
We are looking forward to seeing everyone there.
Dave
02/24/08
Mozilla Firefox IFrame Recursion Remote Denial of Service Vulnerability
Firefox version 2.0.0.12 has an issue with a possible remote denial of service due to the way it handles iframes.
Looking at the example exploit code, if you are using the NoScript extension there may some mitigation to your exposure.
02/18/08
Another PayPal Scam Email
Today I received an email from PayPal that had a reply address of akstcalmaribatejanamnsdgs_at_almaribatejana.com. That tipped me off that something wasn't quite right with the message. A quick read through the message confirmed that for me. The grammar was not quite right and the word member was mis-spelled in the message. And if you moused over the link the target address was not paypal, but the one listed in the email text below.
See the full text of this email, with the grammar and spelling mistakes highlighted.
02/12/08
Another Monster Version of the Foreign Payment Officer Scam
So here is a scam email that I received the yesterday. It looks very much like Monster Version of the Foreign Payment Officer Scam, but they are some subtle differences. The biggest one is the description of how you will earn the salary is missing from this message. Maybe in an attempt to throw off spam filters or just to make the message look more legitimate.
There are a couple of things that don't sit right with the message:
1) The email address that you are supposed to contact does not match the sender's domain.
2) Secondly the company is based in the Ukraine but the sending email domain is listed as an internet provider for the UK.
3) You can't see it in this text version, but the image that is attached to this message is for "Masters DB Software Development Company", which is the company that supposedly sent the Monster Version of the Foreign Payment Officer Scam email.
4) Lastly, whoever wrote this message misspelled Ukraine.
Here is the full text of the email I received:
02/11/08
OpenID Anyone
I thought OpenID would be pretty cool if it was adopted widely. For it to be adopted widely, it needed the support from a group of the big boys. Well it looks like that is starting to happen.
I guess we will have to wait and see what happens now. Hopefully everyone can work together for a solution that we can all use.
02/10/08
CitiBank Business Phishing Email
I received a suspicious email today and after a quick look realized that it was a phishing email. First off, it is addressed to someone named Moarah, beats me who that is. Then when I moused over the link I saw that the target of the link was very different from what I expected as a matter of fact it pointed to a completely different domain than one that Citibank would use. Another big tip off that this is not a valid email.
Here is the full text of the email:
02/08/08
CISSP Exam Review Seminar in Tulsa
February 25-29, 2008 - Tulsa, Oklahoma
The University of Tulsa, Continuing Engineering & Science Education
As you know, the CISSP certification provides information security professionals with an independent and objective tool to demonstrate their competence. It allows knowledgeable and accomplished information security professionals to distinguish themselves with a credential that commands international respect.
This review seminar serves as an excellent foundation for learning the concepts, topics, and standards of the CBK (Common Body of Knowledge); as well as preparing for the Certified Information Systems Security Professional (CISSP) Exam.
Charles Anderson Version of the Next of Kin Scam Email
A couple of days ago, I received an email that looks very much like the Sir Richard Williams Version of the Next of Kin Scam Email or Next of Kin / Barrister scam email or Another Next of Kin scam email that I have received previously. It is pretty the exact same message with a few changes in the wording.
As always, one of the biggest tip offs in messages like this are the misspellings of key words. In this case the word mining is spelled minning. Since this is the name of the company, it probably should be spelled correctly.
Here are the contents of the email message:
Monster Version of the Foreign Payment Officer Scam
So here is an interesting email I recevied the other day. At first glance I was just going to throw it away and then I realized that this was another version of the Foreign Payment Officer Scam - David Martins or Another Foreign Payment Officer Scam or Foreign Payment Officer Scam .
This one is a little more insidious since it was sent supposedly from a hit that was found on monster.com, a job site.
There are a couple of things that don't sit right with the message:
1) The email address that you are supposed to contact does not match the sender's domain.
2) Secondly the company is based in the Ukraine but the sending email domain is listed as an internet provider for the UK.
3) If this was truly a business that was making this much money, they would already have a solution in place.
Here is the full text of the email I received:
02/03/08
Another Version of the Lottery Scam Email
Late last week, I received an email that told me that I was the lucky winner of a "Random Award from AOL and Microsoft". Aside from the fact that it is very unlikely that any organization would misspell their own name in an award notification. If you look at the first sentence in the first paragraph of the announcement, Microsoft and successfully are spelled incorrectly. I am not subscribed to any beta programs through either of these companies. So this was a fairly easy scam to spot.
Here are the contents of the entire email.
Foreign Payment Officer Scam - David Martins
Last week I received an email that looks very much like the Another Foreign Payment Officer Scam or Foreign Payment Officer Scam that I have received previously. It is pretty the exact same message with a few changes in the wording.
Here is the entire message.
01/29/08
Sir Richard Williams Version of the Next of Kin Scam Email
Today, I received an email that looks very much like the Next of Kin / Barrister scam email or Another Next of Kin scam email that I have received previously. It is pretty the exact same message with a few changes in the wording.
Here is the text of the email.
01/26/08
Regions Bank Phishing Email
Under the heading of yet another phishing email, yesterday I received an email from Regions Bank asking me to update my information.
This was fairly easy for me to spot since I don't have have an account at Regions. Even if I did have an account with Regions, the standard warning signs were present in the email message, the grammar not being quite right, mention of interruption of service,and the email just didn't read right.
01/21/08
Scam Email FROM MRS.MONICA MARTINS.
I received this email earlier today and after a quick look realized that it was just another version of the "Foreign Officer Payment Scam". The scam where someone asks you to cash a check or handle a money transfer for them and they will pay you some large amount of money. Don't do it!!!! These folks are professional scammers and will take your money and you will have nothing to show for it.
01/19/08
Firstbanks Phising Mail
Today I received notification from Firstbanks that my Firstbanks Internet banking account was about to expire. This was an easy phishing email for me to spot, even without Thunderbird telling me that it thought that the email was a scam, since I don't use Firstbanks for anything. If you take just a minute to actually read the email, it just doesn't sound right or read right. There are grammar errors and the improper English use as well as missing words in the message body.
Another Lottery Scam Email
Late yesterday, I received an email that told me that I was the lucky winner of the "2010 WORLD CUP AWARD". Aside from the fact that it is very unlikely that any organization would notify the winner of $2,000,000 U.S. by email, there are a few glaring misspellings that would not be present in any official notification. This message is essentially just another version of the Canada Lottery Scam that I posted about earlier this week.
Here is the contents of the email I received. (All the misspelled words are displayed using bold italics.)
01/17/08
Canada Lottery Scam Email
Today, I received and email that told me that I was the lucky winner in a Canadian Lottery drawing. Imagine my surprise since I never entered a Canadian Lottery and in fact haven't been to Canada since the early 1980's. Of course this is a scam email.
Here are couple of write ups on this scam:
http://www.consumerfraudreporting.org/lotteryscamCanadaSoccer.php
http://www.scamdex.com/HYPMAIL/0709/35043.php
01/08/08
A Quick Look at the Windows Media Player Plug-In EMBED Overflow Exploit
During July 2007, I noticed some sites serving up pages that were trying to take advantage of the Windows Media Player Plug-In EMBED Overflow Universal Exploit (MS06-006). So I took some time to dig through one of the pages just to see what it was doing. I have waited a few months to post this, just to make sure everyone has had enough time to patch, update, and otherwise protect their systems. I figure 6 months should be enough time for even the most busy folks to get their stuff updated and that any addresses referenced here would be dead. Which at the time of this writing the address was not active.
Recent CitiBank Scam Email
While checking my morning email, I noticed an email from CitiBank addressed to the email account that I use for notifications from this site. Without even looking at the message I was pretty sure that it is a scam or phishing mail of some type. Of course as soon as I highlighted the message to review it, ThunderBird told me that it suspected that the message was a scam. Even though the grammar and use of english in the message was much better than most scam / phishing emails, a quick read of the message and checking the target location of the provided link confirmed this very quickly for me.
01/03/08
February Northwest Arkansas ISSA Meeting
What: The NWA Chapter of the Information Systems Security Association (ISSA) will be hosting a presentation on PowerShell and Visual Studio 2008.
Where: Granite City Grill in Pinnacle Hills Promenade
Directions to Granite City Grill. From I-540 take Exit 83 (Pinnacle Hills Pkwy/HWY94) and go east. Turn right at the first light (Promenade Blvd). Go past the Best Buy (always a good GEOREF for computer people). At the second light (Park Place Drive) turn left; this enters the shopping center parking lot. You will see P. F. Chang’s on the left. Turn right on that street that P. F. Chang’s is on and you will see Granite City Grill (just past where they have broken ground for a Sullivan’s Steak House).
When: February 5, 2008 at 11:00 hrs
Remember to check the nwa-issa website regularly for chapter news and updates.
If you are interested in becoming a part of the ISSA or are interested in learning more on this topic, Please feel free to attend.
January Northwest Arkansas ISSA Meeting
The Northwest Arkansas Information Systems Security Association January chapter meeting will held be on January 8, 2008 and will start at 11:00 a.m.
A presentation regarding Implementing a Visitor Wifi Network Within Your Existing Infrastructure will follow lunch.
The location is Jose's Southwest Grill in Springdale.
Meeting Agenda:
11:00 - 11:15 Sign In
11:15 - 11:30 Introduction and Announcements
11:30 - 12:00 Club Business/Lunch
12:00 - 1:00 Speaker/Presentation
This will be the first meeting with our new officers.
- Colin Henderson - President
- Dave Moats - Vice President
- Mike Calvi - Secretary
- Christopher Beasley - Treasurer
Remember to check the nwa-issa website regularly for chapter news and updates. During the next month we will be transitioning to the new nwa-issa website, however the old site will continue to work.
If you are interested in becoming a part of the ISSA or are interested in learning more on this topic, Please feel free to attend.
Search
Follow Me:
Categories
- All
- Security (225)
- Email Hoaxes (22)
- Email Scams (161)
- Hacks and Exploits (2)
- Phishing (168)
- Virus Info (32)
- Virus Emails (20)
- Virus Internals (2)
Archives
- January 2010 (1)
- December 2009 (15)
- November 2009 (22)
- October 2009 (7)
- March 2009 (35)
- February 2009 (24)
- January 2009 (16)
- December 2008 (9)
- November 2008 (34)
- October 2008 (15)
- February 2008 (10)
- January 2008 (10)
- More...
Misc
Who's Online?
- Guest Users: 3































