I'm Being Framed by a Trojan

I'm getting a surge in bounced e-mails that I didn't send (thanks to the protection offered by Sender Policy framework - SPF) of TROJ_AGENT.AYZO (or some variant of it) trying to spam people with links to infected web sites using an invalid user address at this domain.

If you receive an e-mail from prototypetimeless (note the backwards order of surname and firstname) from the timelessprototype dot  com domain which contains a link to any URL ending in "viewmovie.html", it ain't from me and someone is intending to get your computer infected, so don't click the link.

I have a saying: If you have evidence that I've tried to hack you, then I've been framed. However, that kind of integrity has been recognized and the spammer obviously knows this and intends to make use of that trust on innocent victims by using an (incorrect) e-mail address at my domain, hoping people will click it.

I've never used that user address at this domain ever, so someone must have constructed it by hand. I find it hard to believe a spam bot would know that a domain it's about to spoof contains two words and that it should swap those two words for the username. This feels targetted. At least, that's probably what someone wants me to think.

Phail tbh.

Please remember to implement Sender Policy Framework in your DNS and configure your mail servers to use strict SPF.

The nice thing about SPF bounced e-mails, I get to see the IP addresses of who's trying to send them Tongue out. So if any virus researchers, ISPs and/or law enforcement types want those, please contact me via the contact page on this blog. Thanks.

 

Currently rated 5.0 by 2 people

  • Currently 5/5 Stars.
  • 1
  • 2
  • 3
  • 4
  • 5

Posted by: Timeless Prototype
Posted on: 7/23/2008 at 12:08 AM
Tags: , ,
Categories: security | spam
Actions: E-mail | Kick it! | DZone it! | del.icio.us
Post Information: Permalink | Comments (0) | Post RSSRSS comment feed

Told You So - Don't Abuse Your Fans Apple

This next post is a rant, deal with it. 

Recently I blogged about Apple being built on a culture of fandom and how I'm noticing the abuse of their fans.

It didn't take long before others started noticing similar things too, people like Rob Enderle for example, who wrote (please read linked story for full context):

"People under financial pressure just don't respond kindly to any vendor taking advantage of them."

"Apple and Linux, at least Richard Stallman's Linux (fortunately he speaks for the minority), seem to be drifting from White Hat players to Black, and this bears watching."

"I'm trying to free your mind, Neo. But I can only show you the door. You're the one that has to walk through it." - Morpheus, The Matrix (1999).

Wake up Apple.

PS. Apple, I didn't appreciate finding Safari installed on my system and I don't want to install iTunes either. If I want them, I'll go find them and download them. It's my computer, not yours! IMHO, this is badware - too devious, and I'm not alone in thinking this way.

 

Currently rated 5.0 by 1 people

  • Currently 5/5 Stars.
  • 1
  • 2
  • 3
  • 4
  • 5

Posted by: Timeless Prototype
Posted on: 7/22/2008 at 2:21 PM
Tags: , , ,
Categories: security | spam
Actions: E-mail | Kick it! | DZone it! | del.icio.us
Post Information: Permalink | Comments (0) | Post RSSRSS comment feed