Pages: 1

Account hacked

(Click here to view the original thread with full colors/images)


Posted by: rocou

Account M01 was hacked by e-gold 986087 name : CHIEF MASTER

Please,be carefull with mail coming from oolofguld@poolofgold.net asking confirmation of your POG/PW by payment of 0.01USD :shock:



Posted by: admin

H Roger, sorry to hear about what happenend

I think I must have rec. the same e-mail but SPAM assasin stopped it

See below

Quote:
This mail is probably spam. The original message has been attached
along with this report, so you can recognize or block similar unwanted
mail in future

Content preview: Dear Pool of Gold Network member: As you are probabbly
are aware from reading the newsletter that went out yesterday, we have
cleaned up the userID's. Any userID that did not have a valid E-Gold
number has been deleted. Please sign up for the same userID you had and
validate your account. This is a measure for security purposes, and to
assist in potential rating abuse. [...]

Content analysis details: (11.60 points, 10 required)
RATWARE_JIXING (2.9 points) Bulk email software fingerprint (JiXing) found in headers
BAYES_70 (2.3 points) BODY: Bayesian classifier says spam probability is 70 to 80%
[score: 0.7079]
HTML_40_50 (0.7 points) BODY: Message is 40% to 50% HTML
HTTP_USERNAME_USED (0.7 points) URI: Uses a username in a URL
NORMAL_HTTP_TO_IP (0.7 points) URI: Uses a dotted-decimal IP address in URL
USERPASS (1.3 points) URI: URL contains username and (optional) password
DATE_IN_FUTURE_06_12 (1.1 points) Date: is 6 to 12 hours after Received: date
MSG_ID_ADDED_BY_MTA_3 (0.9 points) 'Message-Id' was added by a relay (3)
RCVD_IN_OSIRUSOFT_COM (0.9 points) RBL: Received via a relay in relays.osirusoft.com
[RBL check: found 4.83.80.61.relays.osirusoft.com.]
MIME_HTML_ONLY (0.1 points) Message only has text/html MIME parts
CLICK_BELOW (0.0 points) Asks you to click below

The original message did not contain plain text, and may be unsafe to
open with some email clients; in particular, it may contain a virus,
or confirm that your address can receive spam. If you wish to view
it, it may be safer to save it to a file and open it with an editor.





eXTReMe Tracker