Ergebnis 1 bis 3 von 3

Thema: CNN World NEWS "Acts of Terror"

  1. #1
    Neues Mitglied
    Registriert seit
    22.02.2006
    Beiträge
    15

    Standard CNN World NEWS "Acts of Terror"

    Heute eingegangen, seltsamer Header, e-mail hat einen Anhang den ich nicht zu öffnen wage. Norton Antivirus hat schon beim Empfang der Mail einen Wurm, Virus etc. unschädlich gemacht. Was da wohl drinsteht ?

    X-Symantec-TimeoutProtection: 0
    X-Symantec-TimeoutProtection: 1
    X-Symantec-TimeoutProtection: 2
    X-Symantec-TimeoutProtection: 3
    X-Symantec-TimeoutProtection: 4
    X-Symantec-TimeoutProtection: 5
    X-Symantec-TimeoutProtection: 6
    X-Symantec-TimeoutProtection: 7
    X-Symantec-TimeoutProtection: 8
    X-Symantec-TimeoutProtection: 9
    X-Symantec-TimeoutProtection: 10
    Return-Path: <nobody@secure.vgpserver2.com>
    Received: from mailin16.aul.t-online.de (mailin16.aul.t-online.de [172.20.26.72])
    by mhead15 with LMTP; Wed, 29 Mar 2006 15:14:48 +0200
    X-Sieve: CMU Sieve 2.2
    Received: from secure.vgpserver2.com ([69.93.200.66]) by mailin16.sul.t-online.de
    with esmtp id 1FOaHd-0cqZNh0; Wed, 29 Mar 2006 15:00:21 +0200
    Received: from nobody by secure.vgpserver2.com with local (Exim 4.52)
    id 1FOaH9-00061s-VQ
    for blablablablabla; Wed, 29 Mar 2006 06:59:51 -0600
    To: blablablablablabla
    Subject: Acts of terror in Washington
    MIME-Version: 1.0
    From: CNN World News <news@cnn.com>
    Content-Type: multipart/mixed;
    boundary="=_49dfe65234f7578929bd9bd583babe99"
    Message-Id: <E1FOaH9-00061s-VQ@secure.vgpserver2.com>
    Date: Wed, 29 Mar 2006 06:59:51 -0600
    X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
    X-AntiAbuse: Primary Hostname - secure.vgpserver2.com
    X-AntiAbuse: Original Domain - t-online.de
    X-AntiAbuse: Originator/Caller UID/GID - [99 99] / [47 12]
    X-AntiAbuse: Sender Address Domain - secure.vgpserver2.com
    X-Source:
    X-Source-Args:
    X-Source-Dir:
    X-TOI-SPAM: u;0;2006-03-29T13:14:48Z
    X-TOI-VIRUSSCAN: unchecked
    X-TOI-MSGID: e85c15bb-c710-4585-8dde-b462357aad9c
    X-Seen: false
    X-NAS-BWL: No match found for 'news@cnn.com' (11 addresses, 0 domains)
    X-NAS-Language: English
    X-NAS-Bayes: #0: 1.22683E-036; #1: 1
    X-NAS-Classification: 0
    X-NAS-MessageID: 89
    X-NAS-Validation: {F48F1F82-69FC-4DAC-9F8A-9BDB616D6039}


    Today FBI has informed on set of new acts of terrorism in Washington.
    On a communique was lost more than two thousand person and about ten thousand
    have received the wounds which were much of them are in a grave condition.
    You can learn the detailed information in the attached file.

  2. #2
    Senior Mitglied Avatar von Telekomunikacja
    Registriert seit
    17.07.2005
    Ort
    Nach dem Umzug 'mal wieder woanders
    Beiträge
    1.032

    Standard

    Alternativer Text (11.03.2006)...
    Today FBI and SCOTLAND YARD has informed on set of new acts of terrorism
    in New York and London. On a communique was lost more than two thousand person
    and about ten thousand have received the wounds which were much of them are in
    a grave condition.Police and MI5 identified an Al-Qaeda cell that had carried
    out extensive research and video-recorded reconnaissance missions in preparation
    for the attack. You can learn the detailed information in the attached file.
    ... konkrete Beschreibung...
    ... Attached to the email was a 47KB zip file news.zip.
    Inside news.zip is news.exe...
    ... vage Definition...
    ... a trojan downloader of some sort...

  3. #3
    Mitglied Avatar von Mycroft
    Registriert seit
    30.03.2006
    Ort
    Hamburg-Süd
    Beiträge
    123

    Standard ungeschickt - sieht mal wieder nach'm minderjährigen aus

    Analyse des E-Mail-Headers (Programm: "abuse!")

    "Sender (or dispatching mailserver) IP:69.93.200.66
    He/she/it has said to be :secure.vgpserver2.com
    Receiving mailserver [by]:mailin16.sul.t-online.de
    *********
    In line: Received: from nobody by secure.vgpserver2.com with local (Exim 4.52)
    Probably a fake - did not find a valid IP
    69.93.200.66 is the last valid ip, probably the spammer?
    ***** RESULTS ******
    Stopped on received line : 2
    - 69.93.200.66(66.69-93-200.reverse.theplanet.com): Spam source
    (...)
    Possible abuse found in whois info: abuse@theplanet.com "


    Profis benutzen eher open proxies, die das tracen unmöglich machen.

    Beschwerde an abuse@theplanet.com , englisch, (mit vollem Header!)...

    Und was der Anhang war - also echt, das willst du gar nicht wissen.
    Bisher hat mich das 21. Jahrhundert doch eher enttäuscht...

Lesezeichen

Lesezeichen

Berechtigungen

  • Neue Themen erstellen: Nein
  • Themen beantworten: Nein
  • Anhänge hochladen: Nein
  • Beiträge bearbeiten: Nein
  •  
Partnerlink:
REDDOXX Anti-Spam Lösungen