The Lighter Side

Gulf Coast Relief Scavengers

Thursday, July 22nd, 2010

vultureHere we go again. The vultures are circling, ready to take advantage of people affected by the Deepwater Horizon oil spill; just like they do after every disaster.

We just blocked a stack of emails purporting to offer help collecting money from the 20 billion dollar compensation fund BP is so graciously providing. In reality though, these emails are an advance-fee fraud attempt.

Advance-fee fraud is a con game in which the perpetrator promises to help the victim receive a large payment (such as an inheritance) but requires “up-front” money to complete the transaction. If the victim is gullible enough they may request several advance payments but in all cases the final payout is never delivered.

The examples we’re focusing on today are pretty slimy overall and not difficult to detect as fraud but they do provide some insights into how these advance-fee scams work.

(more…)

Bookmark and Share

We are Not of Such Dirty and Illegal Characters

Friday, July 16th, 2010

felix laughingEvery so often we get the privilege of reading a laugh out loud funny fraud attempt.

Submitted for your enjoyment:

Subject: We are Not of Such Dirty and Illegal Characters

From: Western Union <westenunion11@live.com>

The subject alone is pretty funny but wait until you ready the message body.

Warning: You’ll probably have to read it several times because it’s fairly mind boggling.

(more…)

Bookmark and Share

The CIA Wants You

Wednesday, June 30th, 2010

cia sealWe don’t even know where to begin with this one:

Subject: Central Intelligence Agency

From: Central Inteligency Agency

To: undisclosed recipients: ;

The Central Inteligency Agency. Really?

(more…)

Bookmark and Share

What Bank of America Doesn’t Want You To Know

Tuesday, June 15th, 2010

Apparently Bank of America doesn’t want the public to know specific details about all of the various Phishing campaigns that are active on the Internet and that target Bank of America customers.

In a real “BP-ish” management response….  within 24 hours of our last posting Bank Of America Alert: Your Account Has Been Locked – Phish we received a suggestively threatening email from them, which was ALSO sent to one of our collocation providers, and additionally to our Domains by Proxy administrator address, that says, in part:

We have now detected a website, or a redirect to a website, hosted on your network that purports to be a Bank of America or a Bank of America affiliate* website.  The referenced site(s) uses the Marks, leading visitors to believe it is a website sponsored or endorsed by Bank of America or a Bank of America affiliate* while no such sponsorship or endorsement actually exists.

Technically, of course, by way of our displaying and explaining how Phishing attempts are executed it can be argued that we are displaying some of their “Marks” (we assume they mean Trademark content) on our blog site.

(more…)

Bookmark and Share

High Quality Spam

Monday, May 24th, 2010

Looked at as art, most spam is the email equivalent of a two year old scribbling with a crayon. Every once in a while, though, we see something outstanding. In this post we’re going to give a shout out to a spammer who obviously cares about their work.

We grabbed a few examples of this campaign and most of them have fairly innocuous subjects that might be likely to get you to open the message like:

You have new ticket

Your payment has been done

Tracking confirmation

Oddly there were a few obviously spammy ones like:

The best way to please her

Maybe they were trying to make sure they got the people who like to open spam messages too?

This campaign is sent though AOL.com servers, which simply goes to prove that no matter what the big “webmail” firms claim about their commitment to preventing spam, they’re easily and consistently exploited day in and day out. The four above all connected from different AOL servers:

  • imr-ma03.mx.aol.com ([64.12.206.41])
  • imr-ma04.mx.aol.com ([64.12.206.42])
  • imr-da05.mx.aol.com ([205.188.105.147])
  • imr-ma06.mx.aol.com ([64.12.78.142])

And all of them originated on different Webmail servers too:

  • webmail-d082.sysops.aol.com (205.188.181.108)
  • webmail-m110.sysops.aol.com (64.12.232.218)
  • webmail-d037.sysops.aol.com (205.188.181.88)
  • webmail-m053.sysops.aol.com (64.12.140.163)

We could go on down the line, but the point is that the spammer in question easily hacks and abuses AOL accounts with impunity.

(more…)

Bookmark and Share

Sympathy From The Devil

Friday, May 7th, 2010

devilThe image of Charlie Brown flying through the air after attempting to kick a football and having it snatched away by Lucy has become something of a cultural icon.  To some extent we feel sympathy for Charlie but at the same time we have to wonder why he keeps falling for it.

Time after time Lucy promises to hold the ball and every time Charlie Brown ends up on his back after she tricks him.

Today we’re going to look at the email fraud equivalent of Lucy holding the football.

(more…)

Bookmark and Share

Remove Me

Friday, April 16th, 2010

Today’s “Lighter Side” post is about what happens when you “unsubscribe” from spam.  Rather than providing opt-out links for your convenience, spammers have an ulterior motive for providing what appears to be a legitimate “removal” option that has nothing to do with the CAN-SPAM Act.

You should be really careful about unsubscribe attempts.

Here’s why: (more…)

Bookmark and Share

Beware of Granny

Friday, April 9th, 2010

granny wolfWe couldn’t decide whether to put this in Email Fraud or The Lighter Side. The Lighter Side won out because it’s so funny in a pathetic sort of way.

A 78 year old Florida “granny” has been arrested for scamming over one million dollars out of her friends and pastor. Her crime spree began around five years ago after  she was bilked out of over ten thousand dollars by a Nigerian lottery fraud scam.

(more…)

Bookmark and Share

Get Your 419 Degree

Friday, April 2nd, 2010

GraduationEducation is not an option, it’s an obligation to you and yours. Now you too can earn an advanced degree in the art of email fraud. Read on to learn more about how you can begin an exciting career as a 419 spammer.

We have often wondered where a professional 419 spammer would learn their craft and now, thanks to our diligent research, the answer has been found:

They attend The University of Nigeria of course. It’s so obvious we don’t know how we could have missed it.

(more…)

Bookmark and Share

419 Infomercial

Friday, March 26th, 2010

Because we deal with fraudulent email day in and day out we have become callous and jaded and no longer have any sympathy for the plight of 419 scammer. But what if we looked at it from a different point of view . . . (more…)

Bookmark and Share