Posts Tagged ‘spam’

Introducing Your US Department of Justice and FBI Victim Notification System

Thursday, January 19th, 2012

Here’s something we really don’t see every day….

We recently received an email claiming to be from the U.S Department of Justice Victim Notification System (VNS)

Subject:     US Department of Justice Victim Notification System
From:     Courtney Walker <fedemail@vns.usdoj.gov>
To:     Business Representative <address>

Our typical “common sense” check for email Phishing Fraud starts with the obvious:

  1. Overly serious/threatening Subject line…. check!
  2. Human sender doesn’t match email address…. check!
  3. Impersonal and generic salutation… check!

The email itself open with:

DO NOT REPLY TO THIS EMAIL.

U.S. Department of Justice
Federal Bureau of Investigation
FBI – New York
26 Federal Plaza, 23rd Floor
New York, NY 10278
Phone:  (212) 384-2564
Fax:  (212) 384-4104

more »

OnlyMyEmail Beats 22 Competitors in the Virus Bulletin Spam Challenge

Friday, January 13th, 2012

The results from OnlyMyEmail’s sixth Virus Bulletin VBSpam Challenge competition have been released.

For the sixth time in a row, OnlyMyEmail’s MX-Defender stopped more spam than any of the 23 competing spam solutions. OnlyMyEmail missed just one single spam message out of 171,963 total, for a new record spam filtering capture rate of 99.9994% besting the previous record of 99.9993% -  also set by OnlyMyEmail in a previous competition.
By comparison, the next best capture rate was McAfee SaaS which missed 41 spam messages. The third best capture rate was AnubisNetworks which missed 97 spam emails.

The average “false-negative” rate among the other 18 filtering systems was a whopping 3,471 missed spam messages and the median was 272.

The results from Virus Bulletin’s VBSpam Challenge have proven, time and again, that for the last year OnlyMyEmail’s MX-Defender is decisively superior to any other spam defense available today, including hardware appliances, software programs and other Software as a Service (SaaS) solutions solutions as well.

The full list of competitors beaten by OnlyMyEmail includes: AnubisNetworks, BitDefender, FortiMail, GFI MailEssentials, Halon Security, IBM Lotus Protector, Kaspersky Anti-Spam, Libra Esva, Mailshell, McAfee Email Gateway, McAfee EWS, McAfee SaaS, Sophos Email Appliance, SPAM fighter, SpamTitan, Spider Antispam, Symantec Messaging Gateway, The Email Laundry, Vade Retro, Vamsoft ORF, Spamhaus ZEN+DBL and SURBL.

Goldline International Joins the Legions of Spammers

Friday, August 19th, 2011

With the price of gold sky-high, the profits to be made must be equally impressive, turning side-show companies like “Goldline International” into first rate spammers.

Either that, or the high price has brought competitor’s out of the woodwork, making them so desperate for business they’ve now turned to spam.

Either way, whether it’s gouging customers, desperate for business or just ethically bankrupt the “Goldline” spam has hit the main vain.

The emails from their advertisements, SEO campaigns or third-party affiliates arrive with a subject line that currently announces:

Subject:     Now Is The Time To Buy Gold!

These are blasted out from a wide variety of disposable sending domains using addresses that are “From:” more »

Craigslist – Confirmation for Posting Fraud

Sunday, August 7th, 2011

A clever Craigslist Phishing fraud is using a highly targeted approach to trick Craigslist advertisers into giving up their username and passwords.

The trick is to provide the headline from an actual Craigslist posting in order to help evade spam filtering and more importantly, to increase the likelihood of fooling the recipient into believing the “Confirmation for Posting” is legitimate.

A typical email will arrive such as:

Subject:     Your ad, titled ’1970 short bed ford ‘ has been posted.
From:     craigslist <acount@pueblo.craigslist.org>

The Subject line will vary according to match the title of the specific Craigslist posting.

more »

The Executive Registry, Who’s Who Among Spammers

Saturday, August 6th, 2011

Bogus “Who’s Who” listings and other similar publications have been around long before the Internet, so there’s nothing new about selling fake credentials and memberships in non-existent “executive” publications.

But, as with many things, Email and the Internet combine to make the scammer’s job easier with a wider and deeper reach, and all for lower cost.

The latest fake credential listing touts your invitation to join “The Executive Registry” and is signed by someone claiming to be “Ethan Andrews” of the “Candidate Review Committee” – for what that’s worth.

Here’s a copy of the latest email:

more »

Salesgenius List Selling Spam

Sunday, July 31st, 2011

Here’s an interesting business question:

Would you trust the integrity of a business list marketed to you by a spammer?

SalesGenius along with “DataBase 101″ and “InfoFree.com” (among other aliases) must think so as they’re ripping out plenty of spam trying to sell marketing lists to other small businesses.

This leaves us with Spammers selling spamming lists to potential spam wannabees. Just perfect.

Emails arrive mostly from various SalesGenius servers such as:

more »

OnlyMyEmail Sets Records in the VB Spam Challenge

Thursday, July 21st, 2011

The results from OnlyMyEmail’s fifth participation in the Virus Bulletin VBSpam Challenge have been released.

For the fifth time in a row, OnlyMyEmail’s MX-Defender stopped more spam than any of the other 18 competitors. The MX-Defender allowed only 2 spam messages out of 291,304 total, for a new record spam filtering capture rate of 99.9993%.

View the complete VBSpam Competition Results PDF

more »

Chase Online Alert: Debit Card/ATM Deduction from Account

Thursday, July 14th, 2011

As the biggest banks get bigger, they capture even more attention from spammers and online criminals intent on stealing legitimate user’s accounts.

Such is the case with JP Morgan Chase and yet another Phishing fraud email now circulating:

Subject:     Chase Online Alert: Debit Card/ATM Deduction from Account
From:     Chase Online Alert <Chase@emailnotify.chase.com>

more »

Account Update Notice – Craigslist Fraud

Monday, July 11th, 2011

While spam volumes may be down, the Phishing fraud’s continue in high volume with Craigslist.org users being highly favored targets.

Look for these spam emails to trap unsuspecting users:

Subject:     Account Update Notice
From:     ”craigslist” <help@craigslist.org>

While they spoof  “help@craigslist.org” as the sending address, most that we’ve reviewed have come from various hijacked Earthlink accouts:

from elasmtp-banded.atl.sa.earthlink.net ([209.86.89.70])
from elasmtp-scoter.atl.sa.earthlink.net ([209.86.89.67])

Here’s a complete copy of one of these “Account Update Notice” frauds:

more »

Wells Fargo Online Fraud Prevention

Thursday, June 30th, 2011

More spam claiming to be from Wells Fargo headed toward mailboxes as:

Subject:     Wells Fargo Online Fraud Prevention.
From:     “Wells Fargo Online”<wellsfargo@wellsconnect.wellsfargo.com>

When in reality the sending address is spoofed and the email is actually originating from Yahoo’s mail servers:

nm28-vm1.bullet.mail.ac4.yahoo.com ([98.139.52.247])

As is common for such Phishing frauds, the email warns you

more »