ican.stealyour.info

counter-surveillance and counter-intelligence concepts and strategies

CommentsPosts
  • Home
  • About
  • Site news
  • Spam email
  • Malware

Recent Posts

  • AOL Instant Messenger silently sniffing, retrieving URLs sent in chats
  • A Most Unusual Attachment
  • Google Suggest gets it right for once…
  • Stress testing the Gmail spam filter
  • Welcome to ican.stealyour.info

Tags

about dns domain effectiveness email experiment exploit extortionware filter filtering gmail google google apps javascript junk mail norton anti virus norton antivirus norton internet security norton is a virus obfuscation online pharmacy privacy rip off scam spam stealyour.info stress test welcome

A Most Unusual Attachment

By admin, on June 9th, 2010%

Highlighting the sophistication of JavaScript obfuscation in spam email

Earlier today we noticed this rather unusual attack email in one of our catch-all email honeypots after making it through Gmail’s infamously strong “award winning spam and virus filtering”. For anyone wondering, this is the same honeypot from the last story, which continues to receive about 600,000 spam emails a month. This one stood out from a field of 300 other mails that made it to the inbox:

Dear Customer,

This e-mail was send by [domain].com to notify you that we have temporanly prevented access to your account.

We have reasons to beleive that your account may have been accessed by someone else. Please run attached file and Follow instructions.

(C) [domain].com

We had our own reasons to “beleive” otherwise. Attached was an HTML file appropriately named “open.html”. Opening it in notepad revealed obfuscated JavaScript:

Continue reading A Most Unusual Attachment

One comment   Spam email   exploit, filtering, gmail, javascript, obfuscation, online pharmacy, spam  

Activism

  • EFF
  • Financial Privacy Now

Credit Report

  • Credit Freeze
  • Free Credit Report
  • Opt Out

Encryption

  • Gnu Privacy Guard
  • OpenVPN
  • PGP for free
  • TrueCrypt

Hacking

  • 2600 Magazine

Phreaking

  • SpoofTel

Spam email

  • Mailinator

Telemarketing

  • DoNotCall.gov

Web Browsing

  • NoScript

Latest Comments

  • ErrProne on AOL Instant Messenger silently sniffing, retrieving URLs sent in chats
  • Splody on AOL Instant Messenger silently sniffing, retrieving URLs sent in chats
  • HBG on AOL Instant Messenger silently sniffing, retrieving URLs sent in chats
  • gul on A Most Unusual Attachment
  • A Most Unusual Attack Email | ican.stealyour.info on Stress testing the Gmail spam filter

Copyright © 2012 ican.stealyour.info - All Rights Reserved
Powered by WordPress & the Atahualpa Theme by BytesForAll. Discuss on our WP Forum