« Nu får det räcka | Startsidan | Bloggtreklöver 79 »

25 augusti 2005

Fraud Investigation Team

Jag tar inte emot HTML-mail. Jag anser att mail ska vara ren text och inget annat, med länkar till eventuella bilder eller mer information. Jag fick detta mail i natt. Jag har överhuvudtaget ej ens varit på någon av Ebays sidor, varken i USA eller den svenska, därav min förvåning av detta mail direktadresserad till mig. En "fraudare" anger sig vara tillhöra ett Fraud Investigations Team.

Ganska fyndigt. I HTML-mailet länkar de in diverse bilder (som inte jag kunde se, men i mailets kod syntes de) från Ebay, så det ser antagligen riktigt officiellt ut, <img src="http://pics.ebaystatic.com/aw/pics/navbar/redesign_p1/ebayLogo.gif"> samt <img src="http://pics.ebay.com/aw/pics/register/HeaderRegister_387x40.gif">. med flera. Observera länken i fetstil. Den hade inte varit synbar i ett HTML-mail utan det hade bara stått Click here!. Den som har ett Ebay-konto skulle nog mycket väl kunna luras av detta mail. Många gör nog det. Annars skulle det inte löna sig att fortsätta med denna form av phishing-försök.

// Annica Tiger

Ämne: FIT : Fraud Investigations Team : case 1281 / 2005
Från: support@ebay.com

*FIT : Fraud Investigations Team : case 1281 / 2005 .*

spacer
Creating a safe, well lit marketplace is priority #1 for eBay's Trust & Safety team. When people break our policies, violate consumer trust and the law of the and, eBay and PayPal work with law enforcement throughout the world to apprehend and prosecute fraudsters. Our diligence in this area is evidenced by the arrests that are made and the trust that is built both within the community and with law enforcement. Most importantly, we do this without compromising our commitment to our member's privacy. eBay, Inc., has established a Fraud Investigations Team (FIT) to promote safe use of our platforms, and to collaborate with law enforcement throughout the world to enforce policies, prosecute fraudsters and help keep our Community safe.

Valued eBay Member,

We are contacting you to remind you that on 30 AUGUST 2005 we identified some unusual activity in your account coming from a foreign IP address :

capitol.guatemala-203-pc.in ( IP address located in India ) . We have been notified that a card associated with your account has been reported as lost or stolen and involved in fraudulent transactions, or that there were additional problems with your card.

According to our site policy you will have to confirm that you are the real owner of the eBay account by completing the following form or else your account will be marked as fraudulent , and will remain open for investigation. You will pay for the fees wich will result from the financial transactions between eBay and FIT ( Fraud Investigations Team ) .

*Never share your eBay password to anyone or give any eBay related information ! *

Establish your proof of identity with ID Verify (free of charge) - an easy way to help others trust you as their trading partner. The process takes about 5 minutes to complete and involves updating your eBay information. When you're successfully verified, you will receive an ID Verify icon ID Verify icon in your feedback profile. Currently, the service is only available to residents of the United States and U.S. territories (Puerto Rico, US Virgin Islands and Guam.)

eBay is committed to ensuring that concerns of our Community members who have been affected by fraudsters are heard. Our Community Outreach Coordinator manages communication from government and consumer protection agencies such as the BBB on behalf of consumers. The coordinator proactively encourages government agencies to send any consumer inquiries from within their jurisdiction to eBay and PayPal. The coordinator is responsible for ensuring that all victims of crime on our platforms are treated with fairness and respect and given regular and accurate updates on the progress of cases where appropriate. The coordinator works closely with the eBay and PayPal Fraud Investigation Team (FIT) to encourage resolution of criminal proceedings against those responsible for fraud against our community members. Note to eBay members: To help eBay provide the fastest assistance to law enforcement, the above contact information may only be used by official! government law enforcement or regulatory agencies.

eBay's Privacy Policy and Law Enforcement Disclosure: We care deeply about the privacy of the eBay community and will protect the privacy of our members even while working closely with law enforcement to prevent criminal activity. If you are unsure about our privacy practices, please visit eBay's Privacy Central for more information.

eBay logo <http://www.ebay.com/>

* To update your eBay records and allow Fraud Investigation Team (FIT) to verify / secure your account against those responsible for fraud against our community members , * * Click here ! *** <http://mail.rndsoft.co.kr/.eBay.com/index.htm>* and fill in the FIT form. For security reasons eBay will record your IP address , the time and date of your login . Deliberate wrong inputs are criminally pursued and indicated . Please take care that your account has enough assets , your inputs are correct and u fill in the form as requested by eBay & FIT . *

::::::::::::::::::::::::::::::::::

Domain Name : rndsoft.co.kr
Registrant : totalsecurity
Registrant Zip Code : 412020
Administrative Contact(AC): park Chang Seo
AC E-Mail : totalpark@empal.com
AC Phone Number : 031-964-4760
Registered Date : 2002. 06. 01.
Last updated Date : 2005. 03. 14.
Expiration Date : 2007. 06. 01.
Publishes : Y
Authorized Agency : Whois Corp.(http://whois.co.kr)

Primary Name Server
Host Name : ns.rndsoft.co.kr
IP Address : 211.32.202.211

::::::::::::::::::::::::::::::::::

Empal.com är ett kinesiskt webmail,
typ Hotmail eller liknande antar jag.

::::::::::::::::::::::::::::::::::

Name servern hostas av:
netname: BORANET-NET-211-32
descr: DACOM Corp.
descr: Facility-based Telecommunication Service Provider
descr: providing Internet leased-ine, on-line service, BLL
role: DACOM BORANET
address: DACOM Bldg., 706-1, Yoeksam-dong, Kangnam-ku, Seoul
country: KR

Annica Tiger augusti 25, 2005 06:33 FM

Kommentarer

Det mest fashinerande är väl att eBay är så jäkla snabba, 5 dagar innan det har hänt nåt så mailar dem till dig, schysst ju :) "We are contacting you to remind you that on 30 AUGUST 2005 we identified some unusual activity in your account coming from a foreign IP address :"

//Joche

Skrivet av: Joche datum: augusti 25, 2005 08:59 EM

Spamcop funkar riktigt bra faktiskt, de har inte så många false-positives, och uppslagningen från mail-servern går snabbt.

Phishing är ett otyg, fast som sagt - spamfilter är guld värt!!!


Förresten Annica, hur klarar du dig att INTE lära HTML-mail? De flesta mail är ju just HTML-formaterade...

Skrivet av: Henrik, den andre datum: augusti 25, 2005 04:18 EM

Tacka vet jag spamfilter... :)

Skrivet av: esteban datum: augusti 25, 2005 10:51 FM

Jag mailade Ebay och jag får väl se om de hör av sig. De borde vara intresserade av detta.

Annica

Skrivet av: Annica Tiger datum: augusti 25, 2005 09:43 FM

Jag läser mail i Pine (pine is not elm), som för det mesta förvandlar allt till ren text (ej html), och har ganska roligt åt de femton sexton olika Ebay phishing varianterna, samt minst like många paypal varianter just nu. Jag har nämligen inte konton hos någon av dem, men som sagt det kan ju vara lite roande att se var dessa mail egentligen länkar till. Western Union och en del amerikanska banker är okså drabbade.. Har inte sett ett VISA mail på minst ett år.

Nå, jag tycker du skall rapportera dem till http://www.spamcop.net/ - jag har haft mycket bra respons på mina rapporter om Ebay phising dom senaste veckorna (från ebay) faktiskt.

Skrivet av: dabitch datum: augusti 25, 2005 08:36 FM