RE: [Full-disclosure] Phishing E-mail for Amazon.com

ad_at_heapoverflow.com
Date: 11/18/05

  • Next message: Sune Kloppenborg Jeppesen: "[Full-disclosure] [ GLSA 200511-15 ] Smb4k: Local unauthorized file access"
    To: "'DAN MORRILL'" <dan_20407@msn.com>, <full-disclosure@lists.grok.org.uk>
    Date: Fri, 18 Nov 2005 16:06:48 +0100
    
    

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - - From marliness:

    Thank you for the report, we are addressing the issue now and will have the
    page removed right away. One of our dedicated hosting clients uses a program
    called "Simple Blog" that has been exploilted. They have been instructed to
    correct the vunerability to avoid future and on going abuse of this software
    on their system.
     
    If there are any questions or concerns please let us know.
     
    Thanks!
     
    Billy Krebsbach

    - - -----Message d'origine-----
    De : full-disclosure-bounces@lists.grok.org.uk
    [mailto:full-disclosure-bounces@lists.grok.org.uk] De la part de
    ad@heapoverflow.com
    Envoyé : vendredi 18 novembre 2005 15:51
    À : 'DAN MORRILL'; full-disclosure@lists.grok.org.uk
    Objet : RE: [Full-disclosure] Phishing E-mail for Amazon.com

    - - -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

     
    Got it so , he redirects to
    http://mynewestblog.com/exec/obidos/subst/index.html

    Registrant: John Junk
    Registered through: GoDaddy.com
    Domain Name: MYNEWESTBLOG.COM
    Domain servers in listed order:
    NS1.MARLINESS.NET
    NS2.MARLINESS.NET

    Have sent an email to informe godaddy and http://marliness.net/services.htm
    of this , probably the best thing to do :)

    - - - -----Message d'origine-----
    De : full-disclosure-bounces@lists.grok.org.uk
    [mailto:full-disclosure-bounces@lists.grok.org.uk] De la part de DAN MORRILL
    Envoyé : vendredi 18 novembre 2005 14:12 À :
    full-disclosure@lists.grok.org.uk Objet : [Full-disclosure] Phishing E-mail
    for Amazon.com

    This is the first time I have seen a Phishing expedition for Amazon, it
    looks fairly primative, links are all over the place. Just sharing so that
    we can tell our end users.
    - - -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.2rc2 (MingW32)

    iQIVAwUBQ33qUK+LRXunxpxfAQL8+g//fnsbVmxnBkhVpgOen9WPMNpP2MTRoeYS
    dbXKaYI9Yy5tAZMwTXmFiEg7DOBGbmHFm7I3skRQo51Ngd+X855lj/r//t5waL8S
    /TION4yOwucw9d2XFdMWUXjO8mCXy0EBCwzvLLBJ/p3/1Jtg9w7iN/diiuLRqgFP
    5zDZxGFV/yNLOQsiPvwzx8t01QhzOvnczQvyp4497+lx3gF5yHdw30GwXDaEGtdI
    0w8CnnRCJ9eL9dU6Q//f8FhAPY1PUhmT/7Sb1hhlZOG9aLJNdmP/kdCfnS1kgwsI
    l0TqhIKBL78cKH3O+ZrAaJ0tP8QVjcbhB4G7VMA/wOPQ1EI0tbjIQE6cfRQfVD0o
    bRXrajNg8QQfpX9IJA1qrqrrp+jjCCeBvTXvCrYa7GauguVGL5mlOa7DAiX3h/xa
    ZCz8d0mgtAdMncFRU8Zkxg7IaWoiNONTmRVTSkC1Bes51e/oTCTYA5xJzPXZ4cSI
    iFl70IYUDnM4MS5Ismt2pEYAJshv6dl3GBzyVukUwzWulWeOOOc3SJ+NCNslkP9O
    HmF6jRiYjRQ7KxKvFttxf1yM+KuhsV0YX0VpxO6u+c73luFlpfZfj5mdQfLF0gbl
    DYkkhmyp323eikdo0Rzz8oDg1fgDTdyyMCpd69avxDg/9xf37wirlqZwb/DLPdp/
    VlFKzmVEfrc=
    =mLbo
    - - -----END PGP SIGNATURE-----

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/

    - -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.2rc2 (MingW32)

    iQIVAwUBQ33tRK+LRXunxpxfAQJUlhAA0W8DfC1KoaMh/9blwj+M6XCDho4KkEgn
    1EoDK0UAV5icW/IaK4/uaaFtiF4RbAEzr+t9v2rMMmbzbEYCIn/l/zkS349eVIJ6
    z2NboJrx6MPXmBoDihk/j6QbAR9emyrd/OVxE7KE4WG4DOJeCLycOLBO2ufCLxVk
    rs1thMcJZkbTndHgDQH7rd31ilELSJPAJQJFqlOEcEMaFP57eny4+5VcJoBTfSee
    +1ZhsKbXY3VLqh3N306YbKHzbR1nqjOwi7+kvYez8jGZ9IB759R/ER+GvHvMZNc2
    5IYJgQoXkViclXX/OCKBlgjp384+3OrfymSbjHMyO/KowGD/crse8Vw/LXGDz/Sb
    +0FSNs7E5cGACUxZMe/xYEf9sZLNJQcj4D3I6qi/YJiVIceCJ5ChjDGZDy+sV+Wn
    vhWPuBGZkO11DENgks+lYQx+itxyexYfQk8jkusFR5f8lQ8pWiBVIhP+X8JBqteo
    2NTf9CmpiNCEY/NB+6vpdTaYDi+oNwon692n1r5pav1KcsVPe6dfFc2J2kNXxLn4
    oOSRgjvUEUWQbwWi5mMxGbEh8XHsYlse8ldyk5ic2AQPlGejIt/DIp5ArROj/Kfm
    bkoMG2959OwT2uxcK0ngW8Pb2yiW1jmkzHWZ/+XLiqDLdStmzlkB07ElzBHqj7pN
    Y+zsGhXZtxQ=
    =pq7O
    - -----END PGP SIGNATURE-----
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.2rc2 (MingW32)

    iQIVAwUBQ33to6+LRXunxpxfAQIVLhAAnaopH2J9L2VYLD2O9OcMUuEHH1gp1KXu
    txD3iiVOGPurmxjE/Q4iMzyj+Jufcc92WeW6JIIkVJ3tZliwGaczOEXj13PTzUic
    NEVOrWGbRg87eAgMrbU2JokTqhKtw/j2iBaLMKDTbgHK5N27J/UQYIdNjx88nf57
    I80oz3M0WJqg+s/Z4hpuAvOAjlv8kjpu0POmY8jXzCn5BuYFT7pNgNKGR1TG5lZw
    2uwXxMxZoKoJiCeiQ0bOrKKsFjISEOqK9SBMU7xpwp4WIUB6LNbZEqcvyNIaDicS
    0Mkr3V5ASa+3ySVihXvp+yj2o/TeVN/jodPZn4JD/WAOxKKngEpNMxccBL2SamtK
    f31+iZOzkGTDIm3vbow6KHjxrp/dboONzU4W5nF+gHyTIBGv+9fTrCtbjCjT0VK7
    Jp7H2rCEOYiofKguEDcqQ0+Hsj16iw9LNVwsnf9cqsRXQ2OpdAgihJMs6c3v8Qsc
    hLoYM3tDjSzeshbRQ+tNUtTutb1I8BsgophsJbw/q/0A6la17Wt9AtOhVhqzJEoQ
    3SLFHmKLQJBX7pU9OOTJlZwpllwyzrkghNspZmOaBxtDZUX/LuiykBjyHlgJZlD5
    1De0zYuAely+73wYNvwEWOpwvwkA27Rx/jrYFBxPjgvz8mA7JXHksjWGF2F+WSRm
    rzE3FZdVWiE=
    =rQ91
    -----END PGP SIGNATURE-----

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/


  • Next message: Sune Kloppenborg Jeppesen: "[Full-disclosure] [ GLSA 200511-15 ] Smb4k: Local unauthorized file access"

    Relevant Pages


    Loading