Interesting Phishing Email.... Don't get it.

Re: Interesting Phishing Email.... Don't get it.

PostBy: Richard S. On: Thu Jan 24, 2008 6:54 pm

Yanche wrote: You do not use the operating system on your hard drive but instead boot from a CD the contains the Linux operating system and applications.


But it can still access the harddrive, I'm not really familiar with it though. I keep a copy of Knoppix around specifically for that reason in case Windows takes a dump so I can access files easily for recovery before nuking and reformat.
User avatar
Richard S.
Mayor
 
Posts: 11056
Joined: Fri Oct 01, 2004 8:35 pm
Location: NEPA
Stove/Furnace Make: Van Wert
Stove/Furnace Model: VA1200


Re: Interesting Phishing Email.... Don't get it.

PostBy: av8r On: Thu Jan 24, 2008 8:31 pm

Richard S. wrote:
Yanche wrote: You do not use the operating system on your hard drive but instead boot from a CD the contains the Linux operating system and applications.


But it can still access the harddrive, I'm not really familiar with it though. I keep a copy of Knoppix around specifically for that reason in case Windows takes a dump so I can access files easily for recovery before nuking and reformat.


With enough memory, or a big USB drive you don't need any HDD in the machine. I use PEbuilder all the time for security audits and cleaning machines that can't be cleaned either in real or virtual mode. My NAS box (naslite) only has an HDD for the storage. Boots from a USB drive, floppy or CD.
User avatar
av8r
Member
 
Posts: 1222
Joined: Thu Dec 06, 2007 1:07 pm
Location: Near Owego, NY
Stove/Furnace Make: Leisure Line
Stove/Furnace Model: Hearth model with twin turbos

Re: Interesting Phishing Email.... Don't get it.

PostBy: Yanche On: Thu Jan 24, 2008 11:32 pm

Richard S. wrote:
Yanche wrote: You do not use the operating system on your hard drive but instead boot from a CD the contains the Linux operating system and applications.


But it can still access the harddrive, I'm not really familiar with it though. I keep a copy of Knoppix around specifically for that reason in case Windows takes a dump so I can access files easily for recovery before nuking and reformat.
Yes, once you boot with Knoppix your are running Linux. Then with your intervention and mounting of the hard drive you can read it. By default it is configured to be read only. Any virus, worm, TSR, etc. would have to a lot to do to write it's self to the hard drive. When you shut down it would be gone from RAM. If it made it to the hard drive it would then need to somehow execute to do it's dirty deed. All possible, but it would have to be a specially crafted virus to pull it all off.
User avatar
Yanche
Site Moderator
 
Posts: 3077
Joined: Fri Dec 23, 2005 1:45 pm
Location: Sykesville, Maryland
Stove/Furnace Make: Alternate Heating Systems, Inc
Stove/Furnace Model: S-130 Boiler burning pea coal

Re: Interesting Phishing Email.... Don't get it.

PostBy: e.alleg On: Fri Jan 25, 2008 2:10 am

I get some creepy ones from ebay scammers all the time. The scariest ones say "hay what's up with my part, $41.26 and it arrived broken in 3 parts, I even paid for insurance imma leave a negative if you don't do something....", the user names are correct so it's a scammer that is researching a little (takes 2 seconds to check ebay feedback) and then the ebay trust and safety logo click on it and there is a login screen. It looks just like the real deal EXCEPT for the address when you roll over the link is bogus. I send them to "spoof@ebay.com" or spoof@paypal.com and they take care of it supposedly. They have the right idea, insult the seller so you get pissed off and then your guard is down. Once they get your ebay ID and password your done my friend, they will be selling new Kubota's for $2999 buy it now (western union only, thanks) under your name. Thank god I didn't give anyone my passwords by accident when I was a total internet rookie.
User avatar
e.alleg
Member
 
Posts: 1389
Joined: Fri Feb 16, 2007 11:31 am
Location: western ny
Stove/Furnace Make: EFM
Stove/Furnace Model: 520

Re: Interesting Phishing Email.... Don't get it.

PostBy: Richard S. On: Fri Jan 25, 2008 3:00 am

e.alleg wrote:It looks just like the real deal EXCEPT for the address when you roll over the link is bogus.


You can't necessarily trust that either, there have been exploits in the past where the mouseover will show http://www.goodsite.com in the status bar but if you click it you'll go http://www.badsite.com.
User avatar
Richard S.
Mayor
 
Posts: 11056
Joined: Fri Oct 01, 2004 8:35 pm
Location: NEPA
Stove/Furnace Make: Van Wert
Stove/Furnace Model: VA1200

Re: Interesting Phishing Email.... Don't get it.

PostBy: WNY On: Fri Jan 25, 2008 8:26 am

The best one was my buddy selling his snowmobile on Ebay....

this one guy from Lithowania? (SP?) kept bidding on it, they emailed him and said he could have been a scammer and not to bid anymore, he explained he was a Yamaha dealer over there and trying to get used equipment from the US....we checked his references, we emailed Yamaha, found his website, everything looked legit, so let him bid, he ended up getting it, and they agreed to CASH on Pickup. He stated he would send a pickup service and cash....weeks went by, he was in contact and stated the trucking company SHOULD have picked it up by now.....hmmmm....

Not worried, since no money or equipment has changed hands...as of yet.

Lo and behold....49 days later a truck/trailer and a guy with cash shows up, pays for it, and off it went.....weird. Never heard back from the guy or if he ever got it....but CASH always works. :)
User avatar
WNY
Site Moderator
 
Posts: 5452
Joined: Mon Nov 14, 2005 9:40 am
Location: Cuba, NY
Stove/Furnace Make: Keystoker, LL & CoalTrol
Stove/Furnace Model: 90K, Hyfire I, VF3000 Soon

Re: Interesting Phishing Email.... Don't get it.

PostBy: CapeCoaler On: Mon Feb 18, 2008 11:06 am

We install software that locks the computer OS down and leaves a writeable partition for users to store some files if needed. The nice thing is we can add software that the end user needs then lock it back down. If the user borks the system for any reason, a simple reboot brings it back to its original configuration.
CapeCoaler
Member
 
Posts: 3576
Joined: Sun Feb 10, 2008 4:48 pm
Location: Cape Cod, MA
Stove/Furnace Make: DS Machine, Harman, Hitzer,...
Stove/Furnace Model: Bsmt #4 NS, MarkII, 503,...

Re: Interesting Phishing Email.... Don't get it.

PostBy: Richard S. On: Tue Feb 26, 2008 5:22 am

Here's another one I frequently get through 40lb heads email, wonder how many bands fall for it? Nor sure what the implications are here but certainly you don't want your signature floating around.

I am a serious collector of autographed pictures of Celebrities. I am working on my personal collection to see how many I can get. I used to go to autograph sessions and places where Celebrities were at to get my autographs. Things have come up in my life that I am no longer able to travel and get them. I have had several heart attaches and the doctor will not allow me to go out of town and have fun working on my hobby. So I have started sending out emails to obtain them. I would like to have your signed picture so I can add it to my collection. Please. My address is;




If your autographs are normally purchase could you please direct me to the proper place so I can try and get one.



Thank you,

Clarence
User avatar
Richard S.
Mayor
 
Posts: 11056
Joined: Fri Oct 01, 2004 8:35 pm
Location: NEPA
Stove/Furnace Make: Van Wert
Stove/Furnace Model: VA1200

Re: Interesting Phishing Email.... Don't get it.

PostBy: Devil505 On: Tue Feb 26, 2008 8:04 am

[quote="Richard S."]This one is quite interesting as it actually provides a real phone number as the only contact. the reply to address is for government website:

Obviously trying to get your financial info. For what it;s worth I would forawrd it along to the FBI
User avatar
Devil505
Banned
 
Posts: 7227
Joined: Tue Jul 03, 2007 10:44 pm
Location: SE Massachusetts
Stove/Furnace Make: Harman
Stove/Furnace Model: TLC-2000

Re: Interesting Phishing Email.... Don't get it.

PostBy: Richard S. On: Tue Feb 26, 2008 1:41 pm

Devil5052 wrote:
Obviously trying to get your financial info. For what it;s worth I would forawrd it along to the FBI


Well I know that but the only point of contact is real phone number and I really doubt it belongs to the person who sent it considering I got another very similar one with different phone number.
User avatar
Richard S.
Mayor
 
Posts: 11056
Joined: Fri Oct 01, 2004 8:35 pm
Location: NEPA
Stove/Furnace Make: Van Wert
Stove/Furnace Model: VA1200

Re: Interesting Phishing Email.... Don't get it.

PostBy: Devil505 On: Tue Feb 26, 2008 3:11 pm

Richard S. wrote:
Devil5052 wrote:
Obviously trying to get your financial info. For what it;s worth I would forawrd it along to the FBI


Well I know that but the only point of contact is real phone number and I really doubt it belongs to the person who sent it considering I got another very similar one with different phone number.


Still would send it along.

http://www.fbi.gov/
User avatar
Devil505
Banned
 
Posts: 7227
Joined: Tue Jul 03, 2007 10:44 pm
Location: SE Massachusetts
Stove/Furnace Make: Harman
Stove/Furnace Model: TLC-2000

Re: Interesting Phishing Email.... Don't get it.

PostBy: Richard S. On: Tue Feb 26, 2008 3:13 pm

Long deleted and I'm sure they could find all the same types of emails they wanted in their own inboxes. ;)
User avatar
Richard S.
Mayor
 
Posts: 11056
Joined: Fri Oct 01, 2004 8:35 pm
Location: NEPA
Stove/Furnace Make: Van Wert
Stove/Furnace Model: VA1200