Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

The Dark and Illicit Side of E-Mail Spam
Netscape Network ^ | 26 July '04 | Unattributed

Posted on 07/26/2004 1:17:35 PM PDT by Graybeard58

f you don't hit the delete button too fast, you may have noticed that your spam messages are changing. Big time.

What was once ludicrous come-ons for penis enlargements or lascivious offers for a peek at pornography is now a hotbed for financial scams and a black market for fake pharmaceuticals and software. The BBC News Online reports that spam is subtly shifting from nuisance to illegality, according to the British security firm Clearswift that has measured spam message topics for the past year. "Spam is now being used as a channel for a plethora of malicious and illegal activity," technical director Alyn Hockey told the BBC.

This is what makes up the spam pie: Finance: 39 percent Healthcare: 30.6 percent Other: 15 percent Direct Products: 9.6 percent Porn/Profanity: 4.8 percent Scams: 1 percent

Why are you now seeing more spam e-mail hawking a miracle diet rather than porn? Hockey says porn has been drastically reduced thanks to improved filtering technology. While porn has dropped to 4.8 percent of spam, compared with 21.8 percent a year ago, financial and pharmaceutical spam messages (read: Viagra) now make up nearly 70 percent of these annoying e-mails.

The dirty little secret of spam is that it works. Enough people respond to it to make it a viable business model. Hockey estimates that spammers have a one in 40,000 hit rate for the products they sell online. One reason for their success is that spammers pay attention to what's going on in the real world. "When Arnold Schwarzenegger was campaigning to be governor of California, there was lots of spam about offering Schwarzenegger memorabilia," Hockey told the BBC. Just watch. Toys and games will dominate before Christmas, and miracle diets will land in your e-mail box after the new year.

The scariest spam messages of all are those that try to steal information from you, including your Social Security number and credit card numbers. Click on these messages, and you'll go to what looks like a legitimate site, but the personal data you enter is stolen from you--something called phishing.

Hackers and spammers are joining forces, trying to infect home PCs with Trojan horse viruses that turn them into zombie PCs that can be remotely controlled without the owner's knowledge. Hockey predicts all this illegal activity will get worse before it gets better, but like pornography, it will eventually decline. "Pornography was offensive so there was a real push to try and stop it, and the same will become true of phishing once people become aware of it," Hockey told the BBC News.


TOPICS: Business/Economy; Extended News; Technical
KEYWORDS: spam
Navigation: use the links below to view more comments.
first previous 1-2021-4041-42 next last
To: Martin Tell
The scary part is how did they know I have a Citi Bank credit card?

They didn't. If you didn't have one, you'd just ignore the email.

21 posted on 07/26/2004 2:23:12 PM PDT by kevkrom (My handle is "kevkrom", and I approved this post.)
[ Post Reply | Private Reply | To 19 | View Replies]

To: martin_fierro

WTF? There must be a story behing that photo. Care to share it?


22 posted on 07/26/2004 2:24:10 PM PDT by Musket
[ Post Reply | Private Reply | To 11 | View Replies]

To: weegee

I have been trying to get those Nigerian scammers to front me $2500 to help me arrange things to fly over to meet them!

;)


23 posted on 07/26/2004 2:25:21 PM PDT by UseYourHead (This November, remember who the terrorists are voting for.)
[ Post Reply | Private Reply | To 4 | View Replies]

To: Musket
Check 'em out. Hilarious!
24 posted on 07/26/2004 2:28:27 PM PDT by martin_fierro (Zydecodependent.)
[ Post Reply | Private Reply | To 22 | View Replies]

To: backhoe

Those are great programs, but beware of ZoneAlarm. It does what it is supposed to, but it has some bugs. One of which - it will screw up your FTP server if you have one. I had to reinstall my system to fix it. I now use Norton Personal Firewall.


25 posted on 07/26/2004 2:29:08 PM PDT by Musket
[ Post Reply | Private Reply | To 16 | View Replies]

To: duckman
I have been receiving a lot of spam with gibberish in the leading paragraphs. Just nonsense words strung together. This has been happening for several months. It may be spam for insurance or mortgage or even pharmacy products. What is this all about? Anyone have any info?

This is to fool spam filters, but not necessarily for that particular message.

Spam filters often try to "learn" what is spam. So they send these messages through with hundreds of words and later on you will receive other spam that has one or a few of those words in the subject line. It's like they are priming the spam filter to allow through subsequent messages. I'm not exactly certain of the technical aspects of why this works, but they are all doing it, so it must work sometimes.

26 posted on 07/26/2004 2:32:24 PM PDT by Mannaggia l'America
[ Post Reply | Private Reply | To 7 | View Replies]

To: Mannaggia l'America
Spam filters often try to "learn" what is spam. So they send these messages through with hundreds of words and later on you will receive other spam that has one or a few of those words in the subject line. It's like they are priming the spam filter to allow through subsequent messages. I'm not exactly certain of the technical aspects of why this works, but they are all doing it, so it must work sometimes.

If I might offer a theory, you might have it backwards. Using the nonsense text might be an attempt to get more legitimate messages classified as spam (for the reasons you cite), which would make spam filters less effective, as people would stop using them so as to not lose messages they want to read.

27 posted on 07/26/2004 2:35:02 PM PDT by kevkrom (My handle is "kevkrom", and I approved this post.)
[ Post Reply | Private Reply | To 26 | View Replies]

To: Martin Tell
I got one from Citi Bank last week asking me to verify my credit card info. The scary part is how did they know I have a Citi Bank credit card?

They probably didn't. Citi is one of the big ones, so they just take the chance that a large number of people have a Citi card.

I get them, trying to get my Citi card number and my Wells Fargo number, and I have never used anything from Wells Fargo.

Now one thing that was very scary to me was that I wanted to buy something from Ebay, and they seller only accepted Paypal. I had a Paypal account for a few years, but I never used it and never had any money in it or connected it to a credit card.

I wanted to bid on an item on Ebay, so I connected the Paypal account to my credit card and the very next day I received a phishing e-mail from "Paypal"! Coincidence or not? Not sure.

And I can see how people would have been tricked by it. It was an HTML e-mail asking me to update some Paypal information, and it used graphics referenced right off the Paypal site (www.paypal.com).

The only piece of the e-mail that wasn't from www.paypal.com was the link to click and that went to an IP address, which I traced down to a server in Taiwan. The e-mail looked very real, and came at a time right after I enabled my Paypal account - it would have been very easy to be tricked.

28 posted on 07/26/2004 2:42:03 PM PDT by Mannaggia l'America
[ Post Reply | Private Reply | To 19 | View Replies]

To: martin_fierro

Those links are hilarious! I never thought of using all the great photos from different shows. The Mad, Mad, Mad, Mad World stuff had me rolling!

I'm glad there are a lot of people now turning these scams back around on the scammers. Hopefully, the scammers get what's coming to them. I have read that they have hurt people that actually went to see them.

Too funny!


29 posted on 07/26/2004 2:45:34 PM PDT by UseYourHead (This November, remember who the terrorists are voting for.)
[ Post Reply | Private Reply | To 24 | View Replies]

To: Graybeard58
Ahhh Viagra plus:
VIAAGRA plus:
VIAAGGRA plus:
VIAGGRA plus:
V I A G R A plus:
V I AA G R A plus:
V I AA GG R A plus:
V I A GG R A plus:
V,I,A,G,R,A plus:
V-I-A-G-R-A plus:
V+i+a+g+r+a plus:
vairga plus:
.etc and so on.

I could have gone on with countless other permutaions. What really makes me curious is; what makes these idiots think that I would be interested in their Viagra if I have filtered the actual word from my inbox?

30 posted on 07/26/2004 2:55:38 PM PDT by Positive (There's nothing sadder than seeing a group of great ideas being murdered by a bunch of brutal facts!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: boris

Bet you it was U.S. Bank. Also been done on CitiBank.


31 posted on 07/26/2004 3:14:06 PM PDT by Positive (There's nothing sadder than seeing a group of great ideas being murdered by a bunch of brutal facts!)
[ Post Reply | Private Reply | To 14 | View Replies]

To: Mannaggia l'America
Good story, and a good warning as well. I can see how determined phisers would just broadcast messages hoping to get a gullible Citi customer (or Wells Fargo or eBay)My Citi Bank phish also had good graphics, but I had heard too mnay warnings to click on the link (the link even seemed to contain the citi domain) or even open the message (my outlook contains a preview of message contents). I did, however, try to check my Citi account to see if there was a problem (which the phisher claimed there was). Sure enough the site was down. It's up now and I can access my accounts fine, so obviously there was not a software change as the phiser claimed.

I have not reported it to Citi yet, but I probably should.

32 posted on 07/26/2004 3:21:59 PM PDT by Martin Tell (I will not be terrified or Kerrified.)
[ Post Reply | Private Reply | To 28 | View Replies]

To: Graybeard58

Someone needs to file some class-action lawsuits as spammers. Not for any outrageously-huge amount of money--maybe even just $0.0016 each [one second of labor at $6.00/hour]. That would actually be a class-action lawsuit where I wouldn't even mind too much if lawyers swallowed up most of the winnings.


33 posted on 07/26/2004 3:41:57 PM PDT by supercat (Why is it that the more "gun safety" laws are passed, the less safe my guns seem?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mannaggia l'America

FYI, I get the Paypal scam mail regularly even though I have not used my account in quite a while.

BTW, I just got an Paypal email about my credit card expiring. However, unlike the scam mails, this email just told me to log into my Paypal account the way I usually do and update my credit card info. They did not provide any links to do so.


34 posted on 07/26/2004 3:52:50 PM PDT by IpaqMan
[ Post Reply | Private Reply | To 28 | View Replies]

To: IpaqMan
BTW, I just got an Paypal email about my credit card expiring. However, unlike the scam mails, this email just told me to log into my Paypal account the way I usually do and update my credit card info. They did not provide any links to do so.

My credit union allows users to set a "security phrase" which will be sent in all its legitimate mails. While the security phrase is sent in the clear and would thus not prevent someone from intercepting an email message and generating a fake one, it does mean that phishing won't work.

35 posted on 07/26/2004 4:02:53 PM PDT by supercat (Why is it that the more "gun safety" laws are passed, the less safe my guns seem?)
[ Post Reply | Private Reply | To 34 | View Replies]

To: Graybeard58

there's a sucker born every minute and some go around more than once


36 posted on 07/26/2004 4:56:13 PM PDT by y2k_free_radical (ESSE QUAM VIDERA-to be rather than to seem)
[ Post Reply | Private Reply | To 1 | View Replies]

To: weegee

Nigerians are the worst.

John


37 posted on 07/26/2004 5:02:55 PM PDT by John_7Diamonds
[ Post Reply | Private Reply | To 4 | View Replies]

To: Musket

Appreciate the warning- I run a hardware firewall- just can't abide the period of educating the SW firewalls and the way they slow the computer- but you do need something to stop this garbage.


38 posted on 07/26/2004 5:12:16 PM PDT by backhoe (1990's? Decade of Frauds. 2000's? Decade of Lunatics...)
[ Post Reply | Private Reply | To 25 | View Replies]

To: IpaqMan
I get those emails for both eBay and PayPal (owned by PayPal).

I simply click forward and send them to spoof@ebay.com or spoof@paypal.com.

I recieve responses from both ebay and paypal - they claim that they are active in pursuing the people who send these.

39 posted on 07/26/2004 5:19:21 PM PDT by Positive (There's nothing sadder than seeing a group of great ideas being murdered by a bunch of brutal facts!)
[ Post Reply | Private Reply | To 34 | View Replies]

To: Martin Tell
or even open the message (my outlook contains a preview of message contents)

I use Outlook also -- beware. The preview pane means you have opened the e-mail. There's not a lot of difference between previewing it and opening it. I keep the preview turned off.

This is especially important for spam that has "beacons". These are embedded image tags that can let the spammer know that you viewed the e-mail and that your e-mail address is valid.

When the preview is off, if you are not sure about a message, you can right-click on it and choose Properties and you can see the "from" address without actually viewing the message. With a lot of spam, the e-mail address is obviously fake, or at least one that no normal person would have.

40 posted on 07/26/2004 6:18:35 PM PDT by Mannaggia l'America
[ Post Reply | Private Reply | To 32 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-42 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson