Welcome to the MacNN Forums.

If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

You are here: MacNN Forums > Community > MacNN Lounge > New email scam - virus?

New email scam - virus?
Thread Tools
rambo47
Mac Elite
Join Date: Apr 2000
Location: Denville, NJ.
Status: Offline
Reply With Quote
Nov 21, 2005, 08:29 PM
 
How odd. I got 13 junk emails today, all with a zip file 54.2 MB in size. the first five were from various "government agencies" saying my IP address was logged at 30 "illegal web sites". Mail @cia.gov, Admin @fbi.gov, Office @cia.gov, etc. Comical in that they want me to believe the C.I.A. is interested in my web surfing habits. They all say I must open the attachment, which is a questionaire, and answer the questions. Yeah, let me get right on that! The same size attachment is on seveal more emails from people I don't know saying they're friends, "this is a new email address, the old one is not working." The barrage from all these concerned friends and government agencies is toughing, but give me a break! Does this crap work on people? I'm guessing the average computer user is truely that dumb and will open the attachment. Makes me glad I'm an immune Mac user! Tossers.
     
rambo47  (op)
Mac Elite
Join Date: Apr 2000
Location: Denville, NJ.
Status: Offline
Reply With Quote
Nov 21, 2005, 08:33 PM
 
Unbelievable! I just got another one from "office @yahoo.com" saying it's a registration confirmation. Looks like it's part of a large mailing list, showing it was sent to "x_mail-list @mac.com. Same attachment.
     
Mastrap
Addicted to MacNN
Join Date: Sep 2001
Location: Toronto
Status: Offline
Reply With Quote
Nov 21, 2005, 08:39 PM
 
You accept that large an attachment? I bounce everything over 10MB.
     
analogika
Posting Junkie
Join Date: Feb 2005
Location: 888500128
Status: Offline
Reply With Quote
Nov 21, 2005, 08:47 PM
 
The attachment unzips to an .exe file.

For some reason, It wouldn't launch!

Does this mean that the FBI will now come to Germany and break down my door because my IP address (which, btw, has nothing whatsoever to do with my e-mail provider that they used to send me that e-mail - some respectable detective work there) was registered on over 30 illegal sites that I have no recollection ever visiting?

Impressive.

I'll be wearing my tinfoil hat and speedos till they arrive.
     
Demonhood
Administrator
Join Date: Mar 2000
Location: Land of the Easily Amused
Status: Offline
Reply With Quote
Nov 21, 2005, 08:54 PM
 
it's making the rounds today.
i can just imagine someone sitting at their computer:
"Oh no, they're on to me! Wait, I've only visited 23 illegal websites, not 30. This must be for my wife. Honey, the CIA would like a word with you!"
     
JoshuaZ
Professional Poster
Join Date: Jun 2005
Location: Yamanashi, Japan
Status: Offline
Reply With Quote
Nov 21, 2005, 09:01 PM
 
OH NO! The CIA is spending all their time monitoring your porn habits. The horror.
     
goMac
Posting Junkie
Join Date: May 2001
Location: Portland, OR
Status: Offline
Reply With Quote
Nov 21, 2005, 09:03 PM
 
I got one from [email protected] today.
8 Core 2.8 ghz Mac Pro/GF8800/2 23" Cinema Displays, 3.06 ghz Macbook Pro
Once you wanted revolution, now you're the institution, how's it feel to be the man?
     
rambo47  (op)
Mac Elite
Join Date: Apr 2000
Location: Denville, NJ.
Status: Offline
Reply With Quote
Nov 21, 2005, 09:03 PM
 
Maybe if the C.I.A. spent a little more time looking for those WMD's instead of checking up on me....
     
Matt OS X
Mac Elite
Join Date: Aug 2003
Status: Offline
Reply With Quote
Nov 21, 2005, 09:04 PM
 
Yeah, I got them too.. maybe over 50 emails already! I dont understand cuz I use .mac.com email. Totally weird... how did they get my email address?!

A friend of mine who's a PC user said he got alot of emails today, too.. So we're not the only ones.

"Unfortunately, no one can be told what Mac OS X is... you must see it for yourself."
     
Cadaver
Addicted to MacNN
Join Date: Jan 2003
Location: ~/
Status: Offline
Reply With Quote
Nov 21, 2005, 11:13 PM
 
My mother called me today. She got two - one from "The CIA" and one from "[email protected]".

I haven't gotten any yet (crosses fingers; don't want my inbox space filled with 50MB attachments!)
     
Cadaver
Addicted to MacNN
Join Date: Jan 2003
Location: ~/
Status: Offline
Reply With Quote
Nov 21, 2005, 11:23 PM
 
Damn. Too late. Just got one from "The FBI."

At least the attachment was only 50KB, not 50MB.
     
rambo47  (op)
Mac Elite
Join Date: Apr 2000
Location: Denville, NJ.
Status: Offline
Reply With Quote
Nov 21, 2005, 11:40 PM
 
Originally Posted by Cadaver
Damn. Too late. Just got one from "The FBI."

At least the attachment was only 50KB, not 50MB.
D'oh! KB it is, not MB. Now that would be one hell of a virus!

Looks like it's wide-spread enough for the FBI to put out a warning.
     
- - e r i k - -
Posting Junkie
Join Date: May 2001
Location: Brisbane, Australia
Status: Offline
Reply With Quote
Nov 22, 2005, 12:08 AM
 
If everybody just added this to their bookmarks, the world would be a better place:
feed://www.snopes.com/info/whatsnew.rss

[ fb ] [ flickr ] [] [scl] [ last ] [ plaxo ]
     
Big Mac
Clinically Insane
Join Date: Oct 2000
Location: Los Angeles
Status: Offline
Reply With Quote
Nov 22, 2005, 02:22 AM
 
Yeah, my .Mac addresses got some too. I wonder how they were able to broadcast it to so many .Mac addresses, though. Anyone know?

"The natural progress of things is for liberty to yield and government to gain ground." TJ
     
Matt OS X
Mac Elite
Join Date: Aug 2003
Status: Offline
Reply With Quote
Nov 22, 2005, 01:54 PM
 
ARGHHH!!! I am still getting them today!! Tons of them! How do we stop it!!!!!!???

"Unfortunately, no one can be told what Mac OS X is... you must see it for yourself."
     
Doofy
Clinically Insane
Join Date: Jul 2005
Location: Vacation.
Status: Offline
Reply With Quote
Nov 22, 2005, 02:04 PM
 
Originally Posted by rambo47
D'oh! KB it is, not MB. Now that would be one hell of a virus!
Oh I dunno. Microsoft do one that's 650 Mb plus.
Been inclined to wander... off the beaten track.
That's where there's thunder... and the wind shouts back.
     
Doofy
Clinically Insane
Join Date: Jul 2005
Location: Vacation.
Status: Offline
Reply With Quote
Nov 22, 2005, 02:05 PM
 
Originally Posted by Mastrap
You accept that large an attachment? I bounce everything over 10MB.
Same here, unless the sender made my white list.
Been inclined to wander... off the beaten track.
That's where there's thunder... and the wind shouts back.
     
::maroma::
Addicted to MacNN
Join Date: Jan 2002
Location: PDX
Status: Offline
Reply With Quote
Nov 22, 2005, 02:14 PM
 
I've gotten the exact same ones. They even masquerade as Comcast (my local cable internet provider) saying that I updated my account, which I did recently so it threw me off. Good thing I had gotten 15 identical ones from different places. The FBI being one.

There's something very satisfying about trashing a message from the FBI that says they are on to my illegal activities. I get all warm and fuzzy.
     
Matt OS X
Mac Elite
Join Date: Aug 2003
Status: Offline
Reply With Quote
Nov 22, 2005, 02:27 PM
 
Originally Posted by Mastrap
You accept that large an attachment? I bounce everything over 10MB.

How can i do the same thing with my .mac ?

"Unfortunately, no one can be told what Mac OS X is... you must see it for yourself."
     
Y3a
Mac Elite
Join Date: Nov 2001
Location: Northern VA - Just outside DC
Status: Offline
Reply With Quote
Nov 22, 2005, 02:34 PM
 
Well, just use your "Network Utility" and do some checking.

Here's what I got:

OrgName: Latin American and Caribbean IP address Regional Registry
OrgID: LACNIC
Address: Potosi 1517
City: Montevideo
StateProv:
PostalCode: 11500
Country: UY

ReferralServer: whois://whois.lacnic.net

NetRange: 200.0.0.0 - 200.255.255.255
CIDR: 200.0.0.0/8
NetName: LACNIC-200
NetHandle: NET-200-0-0-0-1
Parent:
NetType: Allocated to LACNIC
NameServer: NS.LACNIC.NET
NameServer: TINNIE.ARIN.NET
NameServer: NS-SEC.RIPE.NET
NameServer: SEC3.APNIC.NET
NameServer: NS2.DNS.BR
Comment: This IP address range is under LACNIC responsibility for further
Comment: allocations to users in LACNIC region.
Comment: Please see http://www.lacnic.net/ for further details, or check the
Comment: WHOIS server located at whois.lacnic.net
RegDate: 2002-07-27
Updated: 2005-03-29

OrgTechHandle: LACNIC-ARIN
OrgTechName: LACNIC Whois Info
OrgTechPhone: (+55) 11 5509-3522
OrgTechEmail: [email protected]

# ARIN WHOIS database, last updated 2005-11-21 19:10

They had a Washington DC address, but a Virginia phone exchange LOL.
     
BlueSky
Mac Elite
Join Date: Aug 2004
Location: ------>
Status: Offline
Reply With Quote
Nov 22, 2005, 02:57 PM
 
http://ic3.gov/

http://www.ifccfbi.gov/index.asp

Specific to the email thing (and others), a list of mostly pdf's for download:

http://www.ifccfbi.gov/strategy/pressroom.asp
     
Love Calm Quiet
Mac Elite
Join Date: Mar 2001
Location: CO
Status: Offline
Reply With Quote
Nov 22, 2005, 03:35 PM
 
Originally Posted by Matt OS X
ARGHHH!!! I am still getting them today!! Tons of them! How do we stop it!!!!!!???
MAIL -> "Mark as Junk" -> let MAIL filters learn from each POS you receive.
TOMBSTONE: "He's trashed his last preferences"
     
bowwowman
Mac Elite
Join Date: Jun 2000
Location: If I tellz ya, then I gotsta killz ya !
Status: Offline
Reply With Quote
Nov 22, 2005, 03:39 PM
 
face it.......

in this together you all are
and da man knows, I tells ya...........

they coming you after, soon!
Personally I find it hilarious that you have the hots for my gramma. Especially seeins how she is 3x your age, and makes your Brittney-Spears-wannabe 30-something wife look like a rag doll who went thru WWIII with a burning stick of dynamite up her a** :)
     
gururafiki
Grizzled Veteran
Join Date: Jun 2001
Location: Good question...
Status: Offline
Reply With Quote
Nov 23, 2005, 01:43 AM
 

I felt left out that I didn't get these emails, and then I checked my SPAM folder...
     
Love Calm Quiet
Mac Elite
Join Date: Mar 2001
Location: CO
Status: Offline
Reply With Quote
Nov 23, 2005, 10:33 AM
 
Y3a:
Wow, I've not even heard about Network Utility. It's not be-all and end-all, but provides lots of stuff at the fingertips. Thanks
TOMBSTONE: "He's trashed his last preferences"
     
ReggieX
Professional Poster
Join Date: Oct 2000
Location: Toronto, ON
Status: Offline
Reply With Quote
Nov 23, 2005, 11:40 AM
 
Originally Posted by Y3a
OrgName: Latin American and Caribbean IP address Regional Registry
OrgID: LACNIC
Address: Potosi 1517
City: Montevideo
StateProv:
PostalCode: 11500
Country: UY
"Heh heh, look at this country: 'You Are Gay'." - Homer.
The Lord said 'Peter, I can see your house from here.'
     
ReggieX
Professional Poster
Join Date: Oct 2000
Location: Toronto, ON
Status: Offline
Reply With Quote
Nov 23, 2005, 11:41 AM
 
Originally Posted by rambo47
D'oh! KB it is, not MB. Now that would be one hell of a virus![/url]
So edit your first post already!
The Lord said 'Peter, I can see your house from here.'
     
andreas_g4
Professional Poster
Join Date: Mar 2002
Location: adequate, thanks.
Status: Offline
Reply With Quote
Nov 23, 2005, 11:49 AM
 
Originally Posted by Matt OS X
ARGHHH!!! I am still getting them today!! Tons of them! How do we stop it!!!!!!???
That is an easy task:

Step 1) Migrate to Windows
Step 2) Open the attachment

     
gururafiki
Grizzled Veteran
Join Date: Jun 2001
Location: Good question...
Status: Offline
Reply With Quote
Nov 23, 2005, 03:30 PM
 
Originally Posted by andreas_g4
That is an easy task:

Step 1) Migrate to Windows
Step 2) Open the attachment

Good one.
     
effgee
Caffeinated Theme Master
Join Date: Nov 1999
Location: hell (says dakar)
Status: Offline
Reply With Quote
Nov 23, 2005, 03:41 PM
 
Email accounts from three domains and I didn't get a single one. I feel so left out.

     
andreas_g4
Professional Poster
Join Date: Mar 2002
Location: adequate, thanks.
Status: Offline
Reply With Quote
Nov 23, 2005, 03:42 PM
 
Originally Posted by effgee
Email accounts from three domains and I didn't get a single one. I feel so left out.

Hm, me too. At least I got a fake 500 € telecom bill this month…
     
Oisín
Moderator Emeritus
Join Date: Mar 2004
Location: Copenhagen
Status: Offline
Reply With Quote
Nov 23, 2005, 03:45 PM
 
Originally Posted by effgee
Email accounts from three domains and I didn't get a single one. I feel so left out.

Same here. Well, two domains and six different webmail accounts. Not one did I get. We are outcasts from polite spam society, effgee.
     
effgee
Caffeinated Theme Master
Join Date: Nov 1999
Location: hell (says dakar)
Status: Offline
Reply With Quote
Nov 23, 2005, 03:56 PM
 
Outcasts we are, indeed. And in so many ways as well ...
Wouldn't want to have it any other way!</subliminalmessage>
     
nina81
Fresh-Faced Recruit
Join Date: Nov 2005
Status: Offline
Reply With Quote
Nov 24, 2005, 03:30 PM
 
see this link: it s very important and the answer of ur question: http://www.nyu.edu/its/security/alerts/
     
CMYKid
Grizzled Veteran
Join Date: Feb 2000
Location: Dayton, OH
Status: Offline
Reply With Quote
Nov 25, 2005, 01:49 AM
 
Originally Posted by effgee
Outcasts we are, indeed. And in so many ways as well ...
Wouldn't want to have it any other way!</subliminalmessage>

the number that you receive is inversely proportional to the number of a) friends and b) dumb friends that you have. Since itsa mailer worm, the ones dumb enough to open it that have your address in ANY document on their machine are responsible for your pain.

Or, I guess, if you just dont have any friends with pc's you'd be equally lucky.
     
   
 
Forum Links
Forum Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Top
Privacy Policy
All times are GMT -4. The time now is 12:46 PM.
All contents of these forums © 1995-2017 MacNN. All rights reserved.
Branding + Design: www.gesamtbild.com
vBulletin v.3.8.8 © 2000-2017, Jelsoft Enterprises Ltd.,