Před pár dny mě požádal známý o „vyčištění webu“ protože se mu tam nějak dostala stránka banky. Taková ta co sbírá zajímavé a pro rhybáře velmi užitečné informace. Přeposlal mě také mail co dostal od RSA Anti Fraud Command Center. Na mailu bylo ale něco podezřelého …
A tady už je mail od RSA Anti Fraud Command Center na první pohled nic podezřelého …
Dear ********* Team
It appears that your website ********* has been hacked by a
fraudster. It is now hosting a phishing attack against HawaiiUSA FCU.
Please remove the fraudulent folders/files as soon as possible and
secure your website as it has been compromised.
In addition, please send us any source files of the attack.
Please let us know if you have any questions or need further
assistance. We appreciate your cooperation.
RSA Anti-Fraud Command Center
RSA, The Security Division of EMC
Dear Sirs:
RSA, an anti-fraud and security company, is under contract to assist
HawaiiUSA FCU and its related entities in preventing or terminating
online activity that targets HawaiiUSA FCU clients as potential fraud
victims. RSA has been made aware that you appear to be providing
Internet Services to a fraudulent Web site, which is part of a
"phishing scam"*. This activity violates HawaiiUSA FCU copyright,
trademark and other intellectual property rights and may violate the
criminal laws of the United States and other nations.
E-mail messages have been broadly distributed to individuals by a
person or entity pretending to be HawaiiUSA FCU. These e-mails use
HawaiiUSA FCU name and identity (including trademarks) without
authorization. The e-mails request recipients to verify and submit
sensitive details related to their HawaiiUSA FCU accounts. Within the
fraudulent e-mail message, there is a link that leads the recipients
to a fraudulent website displaying HawaiiUSA FCU copyrighted materials
and trademarks. The fraudulent website is located at the following
URL address http:/*********/images/www.hawaiiusafcu.com
) to which you provide services and which is under your control.
The fraudulent website not only represents a misuse of HawaiiUSA FCU
intellectual property; its purpose is to improperly obtain personal
information of HawaiiUSA FCU customers in order to fraudulently access
their bank accounts. The owners of those websites typically
perpetrate identity-theft related activities, such as using customer's
credit cards or bank accounts without authorization. In addition,
since the vast majority of all of the e-mails are not being sent to
actual HawaiiUSA FCU customers, the actions may serve to damage the
reputation and image of HawaiiUSA FCU.
Please take all necessary steps to immediately shut down the
fraudulent website, terminate its availability to the Internet and
discontinue the transmission of any e-mails associated with this
We understand that you may not be aware of this improper use of your
services and we appreciate your cooperation. We specifically would ask
that you also take the following actions:
Please provide us with a tar/zip file of the source code for this
site, so that we may analyze it to help prevent further attacks.
If any customer data has been captured that is stored on your systems
or equipment, please send us that data so that the customers to whom
that data relates can be notified and take steps to protect their
Please provide a copy of any records you maintain that indicate the
name, contact information, method of payment or similar information
that may be useful in helping learn about the identity and location of
the customer for whom the website has been operated.
Thank you for your cooperation to prevent and terminate this
fraudulent activity.
RSA Anti Fraud Command Center
Tel: +44(0)800-032-7751 (UK)
Tel: +1-866-408-7525 (US)
Fax: +972-9-9566658 (EU)
Fax: +1-212-208-4644 (US)
E-mail: afcc@rsasecurity.com http://www.rsa.com For more information about RSA's AFCC http://www.rsa.com/node.aspx?id=3348
HawaiiUSA Federal Credit Union
Name: Michael R. Camat
Address: 1226 College Walk
Tel: (808) 534-4300
Fax: (808) 534-4349
E-mail: mcamat@hawaiiusafcu.com
*"Phishing" is an e-mail scam that attempts to trick consumers into
revealing personal information, such as their credit or debit account
numbers, checking account information, Social Security Numbers, or
banking account passwords, through an imposter's Web site or in a
reply e-mail.
Dokonce ti hodní kluci prohlédnou zdrojový kód webu a poradí co upravit aby se tam ti zlí už nedostali.
Podivné je že mail přišel z adresy
RSA Anti-Fraud Command Center <afcc247@gmail.com>
Že by neměly vlastní mailserver? Spíš to bude tím že nějaký rhybář nahodil falešnou stránku banky, jiný ji našel a napadlo ho, že by nebylo špatné, poctivě nakradené údaje vymámit z majitele webu, protože ve zdrojích falešné stránky byl mimo jiné i soubor s nasyslenými daty.
No nic, tak to je vše, jdu nakupovat, ten seznam kreditek mi na pár měsíců vystačí :)
[2] Kdyz je nekdo takovej omezenec, ze si mysli, ze kazdy uzivatel pocitace musi byt pocitacove gramotny... :-(
Aneb kazdy jsme expert na neco jineho. Ja si treba neumim opravit auto (ani trochu!), pouze tam umim nalit benzin a vodu do ostrikovacu, ale stejne ho denne pouzivam. A nestydim se za to. Proc by jiny clovek, co stejnym zpusobem pouziva pocitac, mel byt znevazovan fachidioty jako jsi ty?
Mám poznámku k počítačové gramotnosti. Přirovnání s používáním auta je na první pohled trefné, na druhý pohled ale silně pokulhává. Abyste mohl řídit auto (na veřejné komunikaci), musíte nejprve získat řidičský průkaz a při tom (mimo jiné) musíte prokázat, že víte, jak auto funguje - alespoň v základních principech. Stejné by to mělo být i s počítačem: jestli se chcete připojit k veřejné síti (internetu), měl byste vědět, jaká nebezpečí vám hrozí.
Dovolím si také jedno přirovnání: pokud vás někdo na benzince požádá o klíče k vašemu autu s tím, že vám zdarma udělá kontrolu emisí a že si zatím v bufetu máte dát kafe na jeho účet, asi mu nebudete moc důvěřovat... A ani nemusíte být automechanikem... :-)
[8] Jenomže takovýto podvodný email spíše odpovídá tomu, že u silnice stojí zloději aut převlečeni za policajty, řeknou vám, že vám jde divný smrad z výfuku, ať necháte běžet motor a jdete se na to zezadu podívat, a poté co vystoupíte z auta, tak vám s ním ujedou.
Kdo řekne, že "si za to řidič může sám a dobře mu tak", tak tomu fakt přeju, aby se mu něco takového stalo.
Microsoft Office 2007 Office Standard 2007 is a miracle . Microsoft Office 2010 Microsoft Office Standard 2007 has the key tools word 2007 and demand office 2010 professional that users have wanted, to make their Microsoft Office counting experience easier. With its improved menus Office 2010 and toolbars, improved office 2007 professional graphics and formatting, time and e-mail adobe reader management tools and enhanced safety. I think that you will be so 2010 office impressed by Microsoft ms office 2007 Office Standard 2007;l really Microsoft Office 2007 wonder how you got adobe acrobat 9 along without it. Office 2007 makes microsoft 2010 it easier and happier to get things done. New calendar office 2007 microsoft views and appointment tools make you organize your time and communications Simple register office 2007 key to RSS feeds Outlook 2007 has a new office 2007 download Instant Search tool so that you can find any office professional 2010 information you need something office professional 2007 likely e-mail, calendars, tasks ms office 2010 and more Enhanced security features protect against junk e-mail adobe acrobat and phishing Share documents securely with Document microsoft 2007 Inspector -- detect and you can remove unwanted 2007 microsoft office comments, hidden text and other information .Microsoft Office Standard 2007 2007 office offers the central Microsoft Office micro office 2010 applications, but significantly modern for faster, better results.acrobat adobe Comprised of Excel, Word, PowerPoint, and meaning, this acrobat 9 software suite allows you to create high-quality microsoft office 2010 professional documents and introduce , build microsoft office 2007 professional powerful spreadsheets, and deal with your e-mail information.
ray ban adventurous and strong.ray ban sunglassesmay be showcased in films. ray ban uk was a fashion and ray ban sale perhaps ray ban glasses can attract persons for popular and fashion.ray ban aviatorrange ray ban wayfarerare highly expensive.in adition to ray ban warrior in the Country.pandora bracelets were opened funding pandora charms concept an embraced trend pandora jewellery will make excellent pandora beads may also be bought for producing pandora bracelets sale is also good for ladies. pandora charms sale make excellent on pandora jewellery uk is determined, The pandora charms they've been waiting for all seasons pandora sale well for pandora uk is among ingredients pandora charms sale uk contain unique.tiffany jewellery is as true will probably be your best option.tiffany uk is little surprise as well as on the web.This tiffany jewellery uk really is much like custom jewellry. in the manner tiffany and co are few things new excels tiffany co jewellery celebration you skip an opportunity.
Ook Ook Ook Ooook Ook Ooook Ooooook Ook Ooook Ooooook Ooooook Ook Ook Ooook Ooooook Ooook Ooooook Ook Ooook Ooooook Ook Ooook Ooooook Ook Ook Ook Ooook Ook Ooook Ooooook Ook Ooook Ooooook Ooooook Ook Ook Ooook Ooooook Ooook Ooooook Ook Ooook Ooooook Ook Ooook Ooooook Eeeeek!
Přečteno 31 325×
Přečteno 23 040×
Přečteno 16 157×
Přečteno 15 973×
Přečteno 13 812×