PC Review


Reply
Thread Tools Rate Thread

Apologies for being off topic but I have a question about SPAM

 
 
Mo
Guest
Posts: n/a
 
      30th Oct 2003
Amongst my SPAM I was wondering what is achieved by the following web
link (i.e what is the purpose of the "C4@" section)

http://(E-Mail Removed)/ruben

 
Reply With Quote
 
 
 
 
Guest
Posts: n/a
 
      30th Oct 2003
Your web browser ignores anything between the http:// and
the @ sign. Often its used to confuse people, such as in
a recent spam:

http://(E-Mail Removed)/index.htm

It appears that its a 'yourbank' site, but in fact that
part is ignored, so you can be duped into giving your info
out at a spoof site. Not a clue why they'd bothere just
putting C4 in though. Maybe trying to be channel 4?

Chris

>-----Original Message-----
>Amongst my SPAM I was wondering what is achieved by the

following web
>link (i.e what is the purpose of the "C4@" section)
>
>http://(E-Mail Removed)/ruben
>
>.
>

 
Reply With Quote
 
Mo
Guest
Posts: n/a
 
      30th Oct 2003
Thanks didn't know it was just ignored. Is there a more appropriate
newsgroup to post more SPAM related questions?

(E-Mail Removed) wrote:

> Your web browser ignores anything between the http:// and
> the @ sign. Often its used to confuse people, such as in
> a recent spam:
>
> http://(E-Mail Removed)/index.htm
>
> It appears that its a 'yourbank' site, but in fact that
> part is ignored, so you can be duped into giving your info
> out at a spoof site. Not a clue why they'd bothere just
> putting C4 in though. Maybe trying to be channel 4?
>
> Chris
>
>
>>-----Original Message-----
>>Amongst my SPAM I was wondering what is achieved by the

>
> following web
>
>>link (i.e what is the purpose of the "C4@" section)
>>
>>http://(E-Mail Removed)/ruben
>>
>>.
>>


 
Reply With Quote
 
Gary Smith
Guest
Posts: n/a
 
      31st Oct 2003
Mo <(E-Mail Removed)> wrote:
> Amongst my SPAM I was wondering what is achieved by the following web
> link (i.e what is the purpose of the "C4@" section)


> http://(E-Mail Removed)/ruben


A URL can contain a username and password in a construction which looks
like this: http://username(E-Mail Removed). The browser ignores
everything following the "//" up through the "@". "Username" and
"password" are used to fill in the Network Password box presented when a
page requires the user to log in. If login is not required, the entries
may be ignored or used for other purposes. In your example, "C4" looks
like a username, but could have some special meaning to the target site.

--
Gary L. Smith (E-Mail Removed)
Columbus, Ohio
 
Reply With Quote
 
Bumblebee
Guest
Posts: n/a
 
      31st Oct 2003
On Thu, 30 Oct 2003 15:22:23 +0000,"Mo" posted ...

>Thanks didn't know it was just ignored. Is there a more appropriate
>newsgroup to post more SPAM related questions?


Steve Gibson of http://grc.com/intro.htm maintains some newsgroups at
<news.grc.com> and among the newsgroups are "grc.spam" & "grc.spam.news"
Other newsgroups cover security and privacy issues etc.

If you visit http://grc.com/nntpquickref.htm you will get a background
of the topics GRC covers.
--

Chris Bee
 
Reply With Quote
 
Ndi
Guest
Posts: n/a
 
      1st Nov 2003
> but could have some special meaning to the target site.

Stressing the "could have special meaning". One could write a script to
spam a mail list or scan a SMTP server and generating these addresses. Some
HTTP server on the site can decode the info back into your mail address so
one would build a list of valid addresses.

Also, any info can be encoded there so when you visit the site, info would
be submitted. It cannot get hold of -say- your list of ports because it
doesn't run code on the local machine but it can have all the abilities of a
cookie. Actually, it's equivalent to a "submit" with no input from a user.
The only use that comes to my mind now is validating addresses.

I also had some trouble with a pre-padded "C4A" or similar related to a
worm that sent mail to address book. It pre-padded this string for some
reason. I see no use for such padding in the attacker view but it did help
me re-route all addresses beginning with that string to a phantom account.

--
Andrei "Ndi" Dobrin
Brainbench MVP
www.Brainbench.com


 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Off Topic Tweak UI for XP problem.. windoze groups no help..apologies proph3t Computer Hardware 0 20th Nov 2009 05:48 AM
Way Off Topic: Spam Question Magnusfarce DIY PC 2 21st Nov 2006 03:25 AM
Off-Topic SPAM RSD99 Scanners 7 29th Mar 2005 01:19 AM
off topic about spam Michael Hobbs Anti-Virus 2 9th Jan 2004 07:53 PM
off topic , regarding how to eliminate SPAM! Jeff Brown Microsoft VB .NET 6 22nd Sep 2003 10:12 AM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 02:56 PM.