<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Spam, Scam and Phishbusters forum - dslreports.com community</title>
<link>http://www.dslreports.com/forum/scambusters</link>
<description>Spam, Scam and Phishbusters forum current topics</description>
<language>en</language>
<copyright>Copyright 2007, dslreports.com</copyright>
<pubDate>Sat, 17 May 2008 18:55:55 EDT</pubDate>
<lastBuildDate>Sat, 17 May 2008 18:55:55 EDT</lastBuildDate>

<image>
<title>dslreports.com</title>
<url>http://i.dslr.net/bbrdisc1.gif</url>
<link>http://www.dslreports.com</link>
<width>19</width>
<height>18</height>
<description>bbr disc</description>
</image>

<item>
<title>Is free offer spot a scam?</title>
<link>http://www.dslreports.com/forum/remark,20467991</link>
<description><![CDATA[I am wondering if it is?  Anyone have knowledge?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20467991</guid>
<pubDate>2008-05-12 01:01:39</pubDate>
</item>

<item>
<title>[Credit Card Fraud] fraud:  www.prophotosland.com &#x26;amp; www.photogey</title>
<link>http://www.dslreports.com/forum/remark,20053977</link>
<description><![CDATA[This is the same small charge $9.87 credit card fraud scheme posted on other threads although I have not yet seen these two sites specifically mentioned.  If you see a small charge from either of these companies please:

1.  Report the FRAUD to your credit card company, do not just dispute the charge - state that it is FRAUD and insist on a chargeback.  Get a new credit card # and close the old account.

2. Report the fraud to www.ic3.gov with as much detail as possible

3.  DO NOT attempt to contact the company as they will reverse the charges but may charge you again next month.  They would rather refund your money then be investigated for fraud.  HOWEVER, if you want to help stop them work through ic3.gov and your credit card FRAUD division.

4.  Check your credit card statements carefully every month.

There are many forums out there regarding this topic... all you need to do is search on small charge credit card fraud or even 9.87 charge credit card fraud.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20053977</guid>
<pubDate>2008-02-24 14:45:05</pubDate>
</item>

<item>
<title>Help.... Fraud? Phish? Trojan? Or legit</title>
<link>http://www.dslreports.com/forum/remark,20496202</link>
<description><![CDATA[Working on a associates computer.  In their start menu, they have a Link that says "Install Free VirusScan Online"....

The link is: 

http://www.dxcart.com/cart/link.mhtml?id=21458-1005

But this link jumps to a Mcafee Page... Or is it?  Is this legit, or is this actually a fake trojan etc?

Seems funny that you'd link to a third party site to get a redirect to a legit site.  Why not just link direct to the legit site....

Thanks guys.
--
"Regulatory capitalism is when companies invest in lawyers, lobbyists, and politicians, instead of plant, people, and customer service." - former FCC Chairman William Kennard (A real FCC Chairman, unlike the current Corporate Spokesperson in the job!)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20496202</guid>
<pubDate>2008-05-16 23:21:10</pubDate>
</item>

<item>
<title>[Credit Card Fraud] Hacked Ebay and Paypal</title>
<link>http://www.dslreports.com/forum/remark,20483757</link>
<description><![CDATA[Someone hacked my email account, was able to request password changes for Ebay and Paypal over a weekend splurge to request such nice items as Toshiba laptaps, gold watches be sent to his friend @:

City: Ibadan
State: Oyo
Zipcode: 23402
Country: Nigeria.

Don't send items!  Don't respond outside of the ebay system.  No deals via email without an actual bid.  Don't send to a "friend" who is not the registered user.

Looks like the same scenario:

http://forum.419eater.com/forum/viewtopic.php?t=117120&highlight=]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20483757</guid>
<pubDate>2008-05-14 20:43:54</pubDate>
</item>

<item>
<title>[Spam] US$234 million Myspace fine against Spam King</title>
<link>http://www.dslreports.com/forum/remark,20487222</link>
<description><![CDATA[A followup to http://www.dslreports.com/forum/remark,20401649 

Looks like Wallace et al. owe more money for their spamming actions. Seems a shame they apparently are able to obfuscate assets somehow. 

Social networking site MySpace won a Los Angeles court judgement against Sanford "spamford" Wallace and his partner Walter Rines for creating and hijacking accounts on the service to flood users with spam adverts for a range of goods.

It is the account hijacking that appears to have angered My Space in particular, some of it carried out by obtaining passwords fraudulently.
Article here. 
--
Mayors of New York come from nowhere and go nowhere.
Wallace Sayre (apparently, so do governors... )]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20487222</guid>
<pubDate>2008-05-15 13:09:17</pubDate>
</item>

<item>
<title>[Scam] eHarmony Scam/Phish</title>
<link>http://www.dslreports.com/forum/remark,20490165</link>
<description><![CDATA[here is a email I get occasionally. I have gone to the real eHarmony web site and used my email address to get my password, the response I get back is not found.

I have never signed up for eHarmony either.

------------------------------------------
-------- Original Message --------
From: &#9;- Thu May 15 20:01:13 2008
X-Account-Key: &#9;account2
X-UIDL: &#9;AKnHjkQAAT2nSCxO2A8Fy1gmzWQ
X-Mozilla-Status: &#9;0001
X-Mozilla-Status2: &#9;00000000
X-Mozilla-Keys: &#9;
X-Apparently-To: &#9;xxxx@xxx.xxx via xxx.xxx.xxx.xxx; Thu, 15 May 2008 07:55:20 -0700
X-Originating-IP: &#9;[67.229.149.8]
Authentication-Results: &#9;mta109.sbc.mail.re3.yahoo.com from=decoratecorporation.net; domainkeys=neutral (no sig)
Received: &#9;from 67.229.149.8 (EHLO flpi111.prodigy.net) (207.115.20.151) by mta109.sbc.mail.re3.yahoo.com with SMTP; Thu, 15 May 2008 07:55:20 -0700
X-Header-Maps: &#9;tagged.as.spam.by.relays.prodigy.net.list.67.229.149.8
X-Originating-IP: &#9;[67.229.149.8]
Received: &#9;from service.vpls (service.vpls [67.229.149.8] (may be forged)) by flpi111.prodigy.net (8.13.8 inb regex/8.13.8) with ESMTP id m4FErMfl026874 for ; Thu, 15 May 2008 07:55:19 -0700
Received: &#9;(qmail 11791 invoked from network); Thu, 15 May 2008 09:55:23 -0500
Received: &#9;from unknown (HELO decoratecorporation.net) (192.168.1.21) by decoratecorporation.net with SMTP; Thu, 15 May 2008 09:55:23 -0500
Message-Id: &#9;
From: &#9;eHarmony Offer 
To: &#9;xxx@xxx.xxx
Subject: &#9;Free eHarmony Personality Profile
Date: &#9;Thu, 15 May 2008 09:55:23 -0500
MIME-Version: &#9;1.0
Content-Type: &#9;text/html; charset="iso-8859-1"
Content-Transfer-Encoding: &#9;8bit
X-Spam-Check: &#9;Z1UkkoIqTxX1a9eeMaztLebF+zP
--------------------------------------------
Links in the images
http://doleful.decoratecorporation.net/sharry/?xxx@xxx.xx

links to unsubscribe
http://campground.decoratecorporation.net/sharry/e.asp
http://tadpole.decoratecorporation.net/wcv.asp

Most of the message is Images so I am unable to paste them here.

Sinbad Sam]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20490165</guid>
<pubDate>2008-05-15 22:11:04</pubDate>
</item>

<item>
<title>[Phish] Prize entry</title>
<link>http://www.dslreports.com/forum/remark,20488607</link>
<description><![CDATA[Have anyone got a post card saying "You maybe a prize winner" and there is 800 number to call when you do they try to offer so called discounted magazine subscriptions
So i am not sure if it's a scam or phishing attack.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20488607</guid>
<pubDate>2008-05-15 17:13:55</pubDate>
</item>

<item>
<title>Rebate processor Spam, Scam</title>
<link>http://www.dslreports.com/forum/remark,20469953</link>
<description><![CDATA[I have been getting over 250 of these IDENTICAL spam messages every single day for a couple of weeks now. 

I went to the web site and as usual, they require a "Down Payment" to join, which saya SCAM to me.

I went to the REMOVE link, but so far ( 2 days ago) I am still getting these pests.

Here is the original Email:

-----------------------------

                                                                                                                                                                                                                                                               
Delivered-To: xxxxxxxxxx@gmail.com
Received: by 10.142.240.17 with SMTP id n17cs24918wfh;
        Mon, 12 May 2008 10:28:35 -0700 (PDT)
Received: by 10.114.183.1 with SMTP id g1mr7972341waf.3.1210613315066;
        Mon, 12 May 2008 10:28:35 -0700 (PDT)
Return-Path: 
Received: from 124.gw.static.snapservemw.com (124.gw.static.snapservemw.com [63.219.29.124])
        by mx.google.com with SMTP id j31si15460688waf.51.2008.05.12.10.28.30;
        Mon, 12 May 2008 10:28:35 -0700 (PDT)
Received-SPF: error (google.com: error in processing during lookup of ElijahSaylor@mizah.sectist.com: DNS timeout) client-ip=63.219.29.124;
Authentication-Results: mx.google.com; spf=temperror (google.com: error in processing during lookup of ElijahSaylor@mizah.sectist.com: DNS timeout) smtp.mail=ElijahSaylor@mizah.sectist.com
From: "Workers at Home" 
To: xxxxxxxxxx@gmail.com
Subject: Rebate Processor Needed - Great Pay
Date: Mon, 12 May 2008 09:13:47 -0800
MIME-Version: 1.0
Content-type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
Return-Path: ElijahSaylor@mizah.sectist.com
Message-Id: 

Rebate Processor Position - Easy Work - Great Pay

Your Help is Needed by Many Fortune 500 Companies - Home Depot,
Blockbuster, HP, Oakley and many more!

$179.50 and up... per day

Earn Financial FREEDOM Processing Rebates at Home And Do The Things YOU Want To Do!
Learn More!

Click Here: http://www.serrirostres.com/rebate/

Thank You for your time....

http://www.serrirostres.com/rebate/

To stop mail simply visit below:
http://www.serrirostres.com/rebate/?v=zn0566777967667tuq&qm=t96e787966456c7ovl&ww=iiv2666e713368747jtv&k=i2326b7a6870327jpw&km=usw87566726d667a78ml&r=gz
Rebate Formulas
732 S. 11th Street #181
Niles, MI 49120

If you dive into a pool of dry ice, can you swim without getting wet?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20469953</guid>
<pubDate>2008-05-12 13:33:58</pubDate>
</item>

<item>
<title>[Scam] Help with Russian dating scam</title>
<link>http://www.dslreports.com/forum/remark,20429031</link>
<description><![CDATA[I got an e-mail of a lovely lady  :D and was wondering if she is really living where she says:

Novosibirsk, Russian Federation.

Her e-mail address is "dariaangel333@yahoo.com"

I used Gmail to find her IP and got this:

68.142.237.93

I did a reverse lookup and got this:

CIDR:       68.142.192.0/18 
NetName:    INKTOMI-BLK-4
NetHandle:  NET-68-142-192-0-1
Parent:     NET-68-0-0-0-0
NetType:    Direct Allocation
NameServer: NS1.YAHOO.COM
NameServer: NS2.YAHOO.COM
NameServer: NS3.YAHOO.COM
NameServer: NS4.YAHOO.COM
NameServer: NS5.YAHOO.COM
Comment:    
RegDate:    2004-03-24
Updated:    2005-08-26

RAbuseHandle: NETWO857-ARIN
RAbuseName:   Network Abuse 
RAbusePhone:  +1-408-349-3300
RAbuseEmail:  network-abuse@cc.yahoo-inc.com 

OrgAbuseHandle: NETWO857-ARIN
OrgAbuseName:   Network Abuse 
OrgAbusePhone:  +1-408-349-3300
OrgAbuseEmail:  network-abuse@cc.yahoo-inc.com

OrgTechHandle: NA258-ARIN
OrgTechName:   Netblock Admin 
OrgTechPhone:  +1-408-349-3300
OrgTechEmail:  abechtel@inktomi.com

# ARIN WHOIS database, last updated 2008-05-03 19:10
# Enter ? for additional hints on searching ARIN's WHOIS database.

My question is that I still don't know where the scammer is really living?

Any ideas?

Cheers.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20429031</guid>
<pubDate>2008-05-04 04:54:53</pubDate>
</item>

<item>
<title>Rock phish information - continued</title>
<link>http://www.dslreports.com/forum/remark,18762644</link>
<description><![CDATA[This continues the series of reports that started in http://www.dslreports.com/forum/r17714410-Rock-phish-information

See that previous thread for general information on what is rock phish.

The main purpose of this thread is to document some of the activities of the rock phishers, particularly their practice of registering new domains for phishing, using those new domains for a few days or weaks then abandoning them (if they are not already suspended due to payment with a stolen credit card).
--
AT&T dsl; Westell 2200 modem/router; SuSE 10.1; firefox 2.0.0.5]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,18762644</guid>
<pubDate>2007-07-28 00:54:28</pubDate>
</item>

</channel>
</rss>
