<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-8543415</id><updated>2011-08-21T08:39:54.064-07:00</updated><title type='text'>The Astrotronix Galaxy Blog</title><subtitle type='html'>Aiding in the ongoing effort of educating and keeping people safe from the threats of Viruses, Malware, Scams, Hoxes, and Spyware. And adding in a mix of basic PC troubleshooting.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>92</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-8543415.post-6556772729640093102</id><published>2010-08-06T06:16:00.000-07:00</published><updated>2010-08-06T07:01:53.196-07:00</updated><title type='text'>Facebook Scam: Get FREE 520 Facebook Credits</title><content type='html'>"Judy in disguise, well what you aiming for,&lt;br /&gt;A circus of horrors, yeah, well that's what you are."&lt;br /&gt;~ John Fred And His Playboy Band&lt;br /&gt;&lt;br /&gt;As you read through Facebook, you find that people are posting this wonderful find:&lt;br /&gt;&lt;br /&gt;FREE 520 FACEBOOK CREDITS FOR LIMITED TIME ONLY HURRY UP!!&lt;br /&gt;(the website has been removed for security)&lt;br /&gt;&lt;br /&gt;You think this is a great idea... Now you can get ahead on the Zynga Games (Farmville, MobWars, etc..) but this is not a so great idea.&lt;br /&gt;&lt;br /&gt;This idea gives the 'creator' of this scam, access to your personal data, and also access to write on your wall.&lt;br /&gt;&lt;br /&gt;First you click the link, and hurry to find what you need to do. Wow this must be legit, its got the Facebook logo, and it looks like I am on Facebook. STOP!, enlarge the following photo and take a look at the URL (the place where you type in your web pages to go to them) its not 'facbook.com' anymore, its now a 'claimnow.t35.com' no relation to Facebook.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/TFwMDyi_d3I/AAAAAAAAAPw/Z8b8hFPEKUk/s1600/fbscam-credit.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 215px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/TFwMDyi_d3I/AAAAAAAAAPw/Z8b8hFPEKUk/s320/fbscam-credit.jpg" alt="" id="BLOGGER_PHOTO_ID_5502286103987582834" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;(click to enlarge)&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;Yep Dorthy, your not in Kansas anymore, you were whisked away from Facebook leaving (in most cases) your account information within your browser cache, and your account wide open.&lt;br /&gt;&lt;br /&gt;Lets go further, the first thing you need to do on this page is [ LIKE ] it. This is a big mistake, and starts the ball rolling for the train wreck. When you 'Like' something it appears on your wall for your friends to see. Your friends in return see that you 'like' this, and think its safe, and then follow you into also getting free Facebook credits.&lt;br /&gt;&lt;br /&gt;But wait... there's more... the next step is you need to 'Share' this bogus find, so you need to allow this page (the bogus page) to POST on your wall.&lt;br /&gt;&lt;br /&gt;So for the fun of trying to see where this scam takes us... I decided to complete the offers, and click the 'Step 3'&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/TFwNlXeJ4iI/AAAAAAAAAP4/pGEhNJaTOjc/s1600/fbscam-steps1n2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 221px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/TFwNlXeJ4iI/AAAAAAAAAP4/pGEhNJaTOjc/s320/fbscam-steps1n2.jpg" alt="" id="BLOGGER_PHOTO_ID_5502287780346716706" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;I was given the warning I would have to wait 5 minutes after completing the offers before I would receive the credits... So I waited... 10 mins.... 20 mins... 30 mins... and still received the same message.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/TFwOzAqWLzI/AAAAAAAAAQA/WYJGFJ29xFc/s1600/fbscam-results-bogus.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 145px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/TFwOzAqWLzI/AAAAAAAAAQA/WYJGFJ29xFc/s320/fbscam-results-bogus.jpg" alt="" id="BLOGGER_PHOTO_ID_5502289114253635378" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;I examined the website code, and found that the "Click Here" is just code (java-script) that creates a pop-up box with the same "error message" every time you click it, nothing else, no credits deposited, no nothing.&lt;br /&gt;&lt;br /&gt;Now for those who fell for this scam, and want to unlike the page, you need to go to your Profile Page -&gt; "Edit My Profile" -&gt; "Likes &amp;amp; Interests" and then make sure to click "Show Other Pages", and you will see this Rouge Facebook Page:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/TFwTqjuVVgI/AAAAAAAAAQI/VHeCeeXuLc8/s1600/fbscam-credit-unlike.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 107px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/TFwTqjuVVgI/AAAAAAAAAQI/VHeCeeXuLc8/s320/fbscam-credit-unlike.jpg" alt="" id="BLOGGER_PHOTO_ID_5502294466604914178" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Click "Remove Page" and then [Close]. and the page is gone.&lt;br /&gt;&lt;br /&gt;Also go back to your profile, and delete all the postings dealing with this subject from your Wall, to prevent others for falling for this Scam AND risking exposing their personal data.&lt;br /&gt;&lt;br /&gt;You also will want to change your Facebook password to play it safe.&lt;br /&gt;&lt;br /&gt;Anything that you need to [Like] before you view it (read, watch a movie, etc) is always up to no good... just skip it and move on.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6556772729640093102?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6556772729640093102/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6556772729640093102' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6556772729640093102'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6556772729640093102'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/08/facebook-scam-get-free-520-facebook.html' title='Facebook Scam: Get FREE 520 Facebook Credits'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/TFwMDyi_d3I/AAAAAAAAAPw/Z8b8hFPEKUk/s72-c/fbscam-credit.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-6810466575081578946</id><published>2010-06-24T07:23:00.000-07:00</published><updated>2010-06-24T07:32:24.667-07:00</updated><title type='text'>Firefox 3.6.4: plugin-container.exe</title><content type='html'>"Do ya, do ya want my face?..Do ya, do ya want my mind?..Do ya, do ya  want my love?" ~Electric Light Orchestra&lt;script language="javascript"&gt;&lt;!-- buyad(); --&gt;&lt;/script&gt;&lt;br /&gt;&lt;br /&gt;With the release of Firefox 3.6.4, they have included a seperate "container" to run plugins (Flash, etc) to allow Firefox to stay up and running, even though the plugin has crashed.&lt;br /&gt;&lt;br /&gt;Right off the bat, since this new .exe will be taking charge of the plugin department of Firefox, it will require access to your network, so you will be prompted by your firewall that the program "plugin-container.exe" requires access to the net. At this time, it is a valid Mozilla process.&lt;br /&gt;&lt;br /&gt;If and when your plug-in crash occurs, you will see this charming Lego man stating the plugin has crashed, and offers you to send a crash report:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/TCNqo8SmqfI/AAAAAAAAAPo/vBLnpc0_wIY/s1600/ffox-plugin-crash.jpg"&gt;&lt;img style="cursor: pointer; width: 291px; height: 240px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/TCNqo8SmqfI/AAAAAAAAAPo/vBLnpc0_wIY/s320/ffox-plugin-crash.jpg" alt="" id="BLOGGER_PHOTO_ID_5486346022678866418" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6810466575081578946?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6810466575081578946/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6810466575081578946' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6810466575081578946'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6810466575081578946'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/06/firefox-364-plugin-containerexe.html' title='Firefox 3.6.4: plugin-container.exe'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/TCNqo8SmqfI/AAAAAAAAAPo/vBLnpc0_wIY/s72-c/ffox-plugin-crash.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8964003621528210595</id><published>2010-06-21T10:19:00.000-07:00</published><updated>2010-06-21T11:30:04.291-07:00</updated><title type='text'>Facebook: Video Phishing</title><content type='html'>"Eminence front - It's a put-on..."&lt;br /&gt;~The Who&lt;br /&gt;&lt;br /&gt;Another Facebook threat that is now present, is Phising your Facebook account by tricking you that you need to login to Facebook (when you are already logged in) to view a video.&lt;br /&gt;&lt;br /&gt;Example of Facebook Post:&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/TB-lOXWPLCI/AAAAAAAAAPY/ZWTD7UuOpjI/s1600/fb-phishing-02.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 80px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/TB-lOXWPLCI/AAAAAAAAAPY/ZWTD7UuOpjI/s320/fb-phishing-02.jpg" alt="" id="BLOGGER_PHOTO_ID_5485284537364589602" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Other "titles" were dealing with a man hitting a woman (which the Phisher even replied to his own post), others (as like one above) are aimed towards World Cup Soccer using some unique video trying to entice your curiosity in hopes you will click it, and give up your info.&lt;br /&gt;&lt;br /&gt;This method is known as 'TAB Spoofing' the link on Facebook to view the video will whisk you away to a second web site, which will execute code (JavaScript) to open a new TAB and then "push" you to a bogus Facebook site with the video.&lt;br /&gt;&lt;br /&gt;You will then be asked to enter your Facebook user id and password before the video plays (the video is normally from YouTube, and is real unlike some of the video scams we have come across).&lt;br /&gt;&lt;br /&gt;Then once the Phisher has your Facebook login and password, they will then create a post on your wall in attempts  to lead your Facebook friends down the same path to Phish their Facebook account info...&lt;br /&gt;&lt;br /&gt;This Phishing process will continue and spread like wild fire... but here is what you can do.&lt;br /&gt;&lt;br /&gt;(1) - If you are prompted to enter your Facebook ID/Password when you click on a link, don't, this immediately should send up a red flag.&lt;br /&gt;&lt;br /&gt;(2) - Make sure to have a good Anti-virus installed AND updated to the latest definitions, most Anti-viruses now have whats called a "Link Scanner" and will attempt to block if you click the link. I suggest "Avast Home Edition"... but you may also use AVG Free Home Edition. They BOTH have a Link scanner.&lt;br /&gt;&lt;br /&gt;(3) - Most Facebook video posts are playable on your friends Wall (there is no need to go to another site to play them). If you do have to go off the Facebook path, pay attention to the lower&lt;br /&gt;left corner to see where you will be going:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/TB-row0aedI/AAAAAAAAAPg/DNWsqybUgYA/s1600/fb-links-02.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 174px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/TB-row0aedI/AAAAAAAAAPg/DNWsqybUgYA/s320/fb-links-02.jpg" alt="" id="BLOGGER_PHOTO_ID_5485291587948411346" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;( click to enlarge )&lt;br /&gt;&lt;br /&gt;(4) - If you find a suspicious link on your Friends wall, inform them via there NON Facebook email (remember the Phisher has access to their Facebook account now, if they are discovered they may just change the password of the victim), and have them change their password ASAP.&lt;br /&gt;&lt;br /&gt;(5) - Use a NON Microsoft Windows browser ... such as Firefox, Opera, or Chrome. Internet Explorer is entwined into the Microsoft OS, which makes it easier for malicious code to be executed and run on your system without your knowledge.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8964003621528210595?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8964003621528210595/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8964003621528210595' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8964003621528210595'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8964003621528210595'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/06/facebook-video-phishing.html' title='Facebook: Video Phishing'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/TB-lOXWPLCI/AAAAAAAAAPY/ZWTD7UuOpjI/s72-c/fb-phishing-02.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-605447884395349496</id><published>2010-06-09T06:31:00.000-07:00</published><updated>2010-06-09T06:42:22.522-07:00</updated><title type='text'>SPAM Scam: Twitter</title><content type='html'>This little Spam scam for Twitter has been making its rounds lately. You will receive an email like the one below, stating you have messages, and if you have images enabled, you may see a some rejected Hooters material under it.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/TA-YX_egvmI/AAAAAAAAAPQ/AyDbAjENMs8/s1600/twitter-scam.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 228px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/TA-YX_egvmI/AAAAAAAAAPQ/AyDbAjENMs8/s320/twitter-scam.jpg" alt="" id="BLOGGER_PHOTO_ID_5480766809477004898" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;As you guessed, its just a way to validate if your email is active or not (so you can yet receive more spam), and then you are pushed to one of those "Canadian Pharmacy" online stores.&lt;br /&gt;&lt;br /&gt;So do not click the link, its not officially from Twitter, and mark it as junk.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-605447884395349496?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/605447884395349496/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=605447884395349496' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/605447884395349496'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/605447884395349496'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/06/spam-scam-twitter.html' title='SPAM Scam: Twitter'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/TA-YX_egvmI/AAAAAAAAAPQ/AyDbAjENMs8/s72-c/twitter-scam.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1975963667682733062</id><published>2010-06-08T06:40:00.000-07:00</published><updated>2010-06-08T07:00:22.913-07:00</updated><title type='text'>Privacy Changes: Yahoo</title><content type='html'>"When I'm calling you...Oo-Oo-Oo, Oo-Oo-Oo..Will you answer too?...Oo-Oo-Oo-Oo"&lt;br /&gt;~Slim Whitman&lt;br /&gt;&lt;br /&gt;Following in the footsteps of Facebook, Yahoo now has decided to let all their user data to just all hang out unless the user has opted out.&lt;br /&gt;&lt;br /&gt;So you will want to decide if you want your information shared or not, and then log into your Yahoo account.&lt;br /&gt;&lt;br /&gt;When you first log in, you are greeted with the first of two screens to ask you if you want to share or not:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/TA5JNd16WSI/AAAAAAAAAOo/pKFLbyZw2tQ/s1600/yahoo-share1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 209px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/TA5JNd16WSI/AAAAAAAAAOo/pKFLbyZw2tQ/s320/yahoo-share1.jpg" alt="" id="BLOGGER_PHOTO_ID_5480398292254349602" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Then the second of the two screens. You do not have to fill this out, you may leave this blank and click [Next].&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/TA5JNoUnc8I/AAAAAAAAAOw/Rmz7rx-n9qQ/s1600/yahoo-share2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 233px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/TA5JNoUnc8I/AAAAAAAAAOw/Rmz7rx-n9qQ/s320/yahoo-share2.jpg" alt="" id="BLOGGER_PHOTO_ID_5480398295067489218" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Then you want to go to your profile settings page: http://pulse.yahoo.com/y/settings&lt;br /&gt;&lt;br /&gt;And then click on "Manage privacy settings", and then you wind up with a window:&lt;br /&gt;&lt;img src="file:///C:/DOCUME%7E1/jley/LOCALS%7E1/Temp/moz-screenshot-1.png" alt="" /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/TA5Lr4AtyUI/AAAAAAAAAPA/Pg2yDXN6KlY/s1600/yahoo-share3.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 236px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/TA5Lr4AtyUI/AAAAAAAAAPA/Pg2yDXN6KlY/s320/yahoo-share3.jpg" alt="" id="BLOGGER_PHOTO_ID_5480401013698316610" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;It is up to you what you want and don't want to share using this window.&lt;br /&gt;&lt;br /&gt;That concludes the "101" privacy settings for Yahoo, unless they are like Facebook and decide to change them on a monthly basis.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1975963667682733062?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1975963667682733062/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1975963667682733062' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1975963667682733062'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1975963667682733062'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/06/privacy-changes-yahoo.html' title='Privacy Changes: Yahoo'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/TA5JNd16WSI/AAAAAAAAAOo/pKFLbyZw2tQ/s72-c/yahoo-share1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-54609624726955561</id><published>2010-06-08T06:26:00.000-07:00</published><updated>2010-06-08T06:40:44.232-07:00</updated><title type='text'>Phisher - American Express</title><content type='html'>"Twice as Hard, As it was the first time, I said goodbye..."&lt;br /&gt;~The Black Crowes&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Remember if you receive ANY email stating there was a security change, NEVER click on and follow the link. Instead load up your Internet Browser (Firefox, Opera, Internet Explorer, etc), and then manually log into the web site.&lt;br /&gt;&lt;br /&gt;If there was a "change" you will be notified, and if always in doubt, call Customer Support of the site that is having the "change", and verify.&lt;br /&gt;&lt;br /&gt;In this example below, Phishers fired out all sorts of emails using various names to our domain trying to "reel" one in to give up the information they wanted.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/TA5FDH00KgI/AAAAAAAAAOg/s-oz4J3RLJA/s1600/amex-phish1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 200px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/TA5FDH00KgI/AAAAAAAAAOg/s-oz4J3RLJA/s320/amex-phish1.jpg" alt="" id="BLOGGER_PHOTO_ID_5480393716498967042" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;As you can see Thunderbird marked it as 'junk' (as well with the other 30 emails that the phisher fired off to us with various names such as "john", "pete", etc).&lt;br /&gt;&lt;br /&gt;Phishers will also go as far as attaching a program stating you need to run it to "update" your computer to meet their security requirements. The attachments arrive as .exe or .zip attachments.&lt;br /&gt;&lt;br /&gt;As a result, they will infect your computer with a Trojan or KeyLogger in attempts to monitor your keystrokes to get your passwords, etc or actually create a "backdoor" to log into your computer.&lt;br /&gt;&lt;br /&gt;NEVER execute any attachments in email, especially for ANY security updates (that is from banks, email pages, Microsoft, etc).  No company sends out "update" programs in email.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-54609624726955561?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/54609624726955561/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=54609624726955561' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/54609624726955561'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/54609624726955561'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/06/phisher-american-express.html' title='Phisher - American Express'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/TA5FDH00KgI/AAAAAAAAAOg/s-oz4J3RLJA/s72-c/amex-phish1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-6719529895204454381</id><published>2010-05-07T06:56:00.000-07:00</published><updated>2010-05-07T07:17:41.915-07:00</updated><title type='text'></title><content type='html'>"Judy in disguise, well what you aiming for,&lt;br /&gt;A circus of horrors, yeah, well that's what you are."&lt;br /&gt;~John Fred &amp;amp; His Playboy Band&lt;br /&gt;&lt;br /&gt;For you iTune shoppers, this is a nice email to receive, you&lt;br /&gt;have a $50 gift card waiting for you... all you need to do is&lt;br /&gt;execute the attachment for your code.&lt;br /&gt;&lt;br /&gt;Actually, it is a code alright, a virus code...to infect your&lt;br /&gt;system (confirmed by my Avast as Thunderbird was&lt;br /&gt;receiving it.. stopped it dead in its tracks).&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/S-QdaCsU7EI/AAAAAAAAAOY/K9bIvcCLUHo/s1600/virus-itunes.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 195px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/S-QdaCsU7EI/AAAAAAAAAOY/K9bIvcCLUHo/s320/virus-itunes.jpg" alt="" id="BLOGGER_PHOTO_ID_5468528180771220546" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The above email was sent from IP "78.147.218.213" they&lt;br /&gt;tried to masqurade their return address as&lt;br /&gt;"mail.romancestories.com". But in reality it was traced back&lt;br /&gt;to RIPE Network Coordination Centre  in Amsterdam (NL).&lt;br /&gt;&lt;br /&gt;While we're on the subject of iTunes, you should look into purchasing&lt;br /&gt; music from AmazonMP3.com, here are the benefits:&lt;br /&gt;&lt;br /&gt;01. Right off the bat, no DRM (Digital Rights Management), so you don't have to register your MP3 player with Apple, and tell it what your playing on it. Nor do you have to an MP3 that supports DRM (you can use ANY MP3 Player two years old, five years old).&lt;br /&gt;&lt;br /&gt;02. Better encoded music, AmazonMP3 encodes all their tunes at 256 KBps... while Apple and its DRM is limited to 128 KBps... sure they have higher KBps, but its only for music that's not popular, you know the CDs that wind up in the "low low  low discount bins at Record Stores).&lt;br /&gt;&lt;br /&gt;03. The prices are the same if not lower on some of the individual music tracks and albums.&lt;br /&gt;&lt;br /&gt;04. You can use any program or "drag &amp;amp; drop" your Amazon music onto your Device, so you don't need iTunes, Windows Media player, etc, to put your tunes on, or take them off your device.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6719529895204454381?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6719529895204454381/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6719529895204454381' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6719529895204454381'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6719529895204454381'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/05/judy-in-disguise-well-what-you-aiming.html' title=''/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/S-QdaCsU7EI/AAAAAAAAAOY/K9bIvcCLUHo/s72-c/virus-itunes.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-705987083814415504</id><published>2010-03-31T12:26:00.000-07:00</published><updated>2010-03-31T12:33:27.862-07:00</updated><title type='text'>Phishing: PNC Bank</title><content type='html'>"Broken words never meant to be spoken, Everything is broken."&lt;br /&gt;~Bob Dylan&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;And this is a prime example of a "n00b" Phisher, in attempts to separate you and your financial info. This one disguised themselves as a PNC Bank official email:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/S7Oh_ZgbacI/AAAAAAAAAOI/6nMq22MGnDE/s1600/phish-pcn1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 226px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/S7Oh_ZgbacI/AAAAAAAAAOI/6nMq22MGnDE/s320/phish-pcn1.jpg" alt="" id="BLOGGER_PHOTO_ID_5454881684226533826" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(Click to enlarge)&lt;br /&gt;&lt;br /&gt;And upon clicking the link, you get a SQL error. I guess they didn't know enough SQL to get their Phishing scheme off the ground. Oh well at least this attempted scheme is logged.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/S7Oh_nkvR4I/AAAAAAAAAOQ/01jqCgTEIX4/s1600/phish-pcn2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 62px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/S7Oh_nkvR4I/AAAAAAAAAOQ/01jqCgTEIX4/s320/phish-pcn2.jpg" alt="" id="BLOGGER_PHOTO_ID_5454881688002709378" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(Click to enlarge)&lt;br /&gt;&lt;br /&gt;As stated before, if you get emails such as this, ALWAYS contact your Financial Institution and consult them of the content in the email (new demos, account issues, etc). NEVER click the link and provide any info.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-705987083814415504?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/705987083814415504/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=705987083814415504' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/705987083814415504'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/705987083814415504'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/03/phishing-pnc-bank.html' title='Phishing: PNC Bank'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/S7Oh_ZgbacI/AAAAAAAAAOI/6nMq22MGnDE/s72-c/phish-pcn1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1447654367396907370</id><published>2010-03-08T09:32:00.000-08:00</published><updated>2010-03-08T11:19:59.015-08:00</updated><title type='text'>Rogue Antivirus: Antivirus 2010</title><content type='html'>"You're as cold as ice...."&lt;br /&gt;-Foreigner&lt;br /&gt;&lt;br /&gt;Its 2010, and the same scum who have brought you Antivirus 2007, 2008, 2009 variants are pleased to bring you a whole list of rouge variants for 2010 to a PC near you.&lt;br /&gt;&lt;br /&gt;Right off the bat, Avast! and AVG will not detect this (yet).&lt;br /&gt;&lt;br /&gt;So to begin, here are a few samples what to look out for in case you are infected:&lt;br /&gt;&lt;br /&gt;The "Rogue Shield", this is a new icon that appears in your systray:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/S5U6_XdhhqI/AAAAAAAAAOA/gtKdjaSNAAo/s1600-h/av.jpg"&gt;&lt;img style="cursor: pointer; width: 36px; height: 42px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/S5U6_XdhhqI/AAAAAAAAAOA/gtKdjaSNAAo/s320/av.jpg" alt="" id="BLOGGER_PHOTO_ID_5446324184678500002" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Anti-virus 2010:&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/S5U1IbW0HTI/AAAAAAAAAN4/ggeDxcjyF6I/s1600-h/antivirus2010.jpg"&gt;&lt;img style="cursor: pointer; width: 404px; height: 243px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/S5U1IbW0HTI/AAAAAAAAAN4/ggeDxcjyF6I/s320/antivirus2010.jpg" alt="" id="BLOGGER_PHOTO_ID_5446317743273155890" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Internet Security 2010:&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/S5U1HwSMqLI/AAAAAAAAANw/KvzHvtDPE2A/s1600-h/internet2010.jpg"&gt;&lt;img style="cursor: pointer; width: 408px; height: 237px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/S5U1HwSMqLI/AAAAAAAAANw/KvzHvtDPE2A/s320/internet2010.jpg" alt="" id="BLOGGER_PHOTO_ID_5446317731711068338" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Vista Antivirus Pro 2010:&lt;br /&gt;&lt;img style="width: 412px; height: 282px;" alt="http://lh3.ggpht.com/_B8nwWVzH9zc/S2NeHpr59qI/AAAAAAAAAzo/xq97iWpZIUg/VistaAntivirusPro2010.GUI.snap.png" src="http://lh3.ggpht.com/_B8nwWVzH9zc/S2NeHpr59qI/AAAAAAAAAzo/xq97iWpZIUg/VistaAntivirusPro2010.GUI.snap.png" /&gt;&lt;br /&gt;&lt;br /&gt;Windows 7 Internet Security 2010:&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/S5U1HY-IFuI/AAAAAAAAANo/ThdqgUDshCw/s1600-h/win72010.png"&gt;&lt;img style="cursor: pointer; width: 408px; height: 226px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/S5U1HY-IFuI/AAAAAAAAANo/ThdqgUDshCw/s320/win72010.png" alt="" id="BLOGGER_PHOTO_ID_5446317725452867298" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Symptoms:&lt;br /&gt;&lt;br /&gt;A process called '&lt;span style="font-weight: bold;"&gt;av.exe&lt;/span&gt;' will attempt will want to access the network. IF your &lt;span style="font-weight: bold;"&gt;firewall&lt;/span&gt; detects this and prompts you for access, &lt;span style="font-weight: bold;"&gt;deny it&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;Everything you attempt to launch, will be informed its infected, and bogus scanners will pop up and pretend to scan your PC and results will go through the roof. Its the Rouge software using "scareware" tactics into getting you to purchase the full version (btw the registered version is bogus, it will not remove anything, it is a scam, do not purchase or provide ANY info or credit card info!)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Okay, Your Infected, take a deep breath and here's how to fix:&lt;br /&gt;&lt;span style="font-size:85%;"&gt;updated: 20100308&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;01. Disconnect your PC from the network (unplug the network cable from the back)&lt;br /&gt;&lt;br /&gt;02. Reboot into safe mode (Press [F8] before the Windows logo displays and after post).&lt;br /&gt;&lt;br /&gt;03. On another "Clean  PC" download the following files:&lt;br /&gt;&lt;br /&gt;Malware Bytes:&lt;br /&gt;http://www.filehippo.com/download_malwarebytes_anti_malware&lt;br /&gt;&lt;br /&gt;Malware Bytes Def File:&lt;br /&gt;&lt;a href="http://mbam.malwarebytes.org/database/mbam-rules.exe"&gt;&lt;/a&gt;http://mbam.malwarebytes.org/database/mbam-rules.exe&lt;br /&gt;&lt;br /&gt;EXEFIX - XP (you will use this later if needed):&lt;br /&gt;http://www.winhelponline.com/exefix_xp.com&lt;br /&gt;&lt;br /&gt;04. Copy both files from above to a USB drive.&lt;br /&gt;&lt;br /&gt;05. Plug the USB drive into the infected system,&lt;br /&gt;&lt;br /&gt;06. Install Malware Bytes program first, do not allow it to reboot your computer.&lt;br /&gt;&lt;br /&gt;07. Install the malwarebytes def update (double click "mbam-rules.exe"  and click [Next] through the install until it finishes).&lt;br /&gt;&lt;br /&gt;08. Run Mwalware Bytes, if program does not load, you may need to rename the .exe to something different (aka 1234.exe), then attempt to execute the newly renamed file.&lt;br /&gt;&lt;br /&gt;09. Once in Malware bytes, click on [Scan] and and allow to scan your system.&lt;br /&gt;&lt;br /&gt;&lt;img style="width: 480px; height: 327px;" alt="http://www.darfuns.com/download-malwarebytes/malware-bytes.gif" src="http://www.darfuns.com/download-malwarebytes/malware-bytes.gif" /&gt;&lt;br /&gt;10. Wait for Malware Bytes to finish, and click [Remove Selected]&lt;br /&gt;&lt;br /&gt;&lt;img style="width: 467px; height: 335px;" alt="http://img.bleepingcomputer.com/swr-guides/virusheat/results-page.jpg" src="http://img.bleepingcomputer.com/swr-guides/virusheat/results-page.jpg" /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;11. Wait for Malware Bytes to attempt to remove the infection(s).&lt;br /&gt;&lt;br /&gt;12. Malware Bytes will then state it needs to reboot the PC, allow it to do so at this time.&lt;br /&gt;&lt;br /&gt;13. When you reboot go back into 'Safe Mode' (press [F8] before Windows logo).&lt;br /&gt;&lt;br /&gt;If you are running XP, you may find you can not double click on MB's icon to start it up and peform another scan. XP may warn that it can not open '.exe' files and gives you a list of programs to choose from. Click [Cancel].&lt;br /&gt;&lt;br /&gt;Now go back to your USB drive, and double click on 'exefix_xp.com' and click [Ok]. This will fix the registry issue that our "2010" variaent broke when it installed.&lt;br /&gt;&lt;br /&gt;You will now be able to launch MB and perform another scan to assure things are clean.&lt;br /&gt;&lt;br /&gt;Once clean go on to step 16.&lt;br /&gt;&lt;br /&gt;16. Reboot, and allow to come up in "Normal" mode.&lt;br /&gt;&lt;br /&gt;17. Review the system for any "2010" pop-ups, and assure the bogus "2010" shield is not in your system tray (see atop of doc for "Rogue Shield").&lt;br /&gt;&lt;br /&gt;18. Launch Malware Bytes and do another scan and allow it to clean up and reboot your PC if needed.&lt;br /&gt;&lt;br /&gt;19. After running Mawlare Bytes and getting an "all clear" its time to install and or update Spybot Search &amp;amp; Destroy to get "a second opinion".&lt;br /&gt;&lt;br /&gt;Filehippo: Spybot Search &amp;amp; Destroy&lt;br /&gt;http://www.filehippo.com/download_spybot_search_destroy/&lt;br /&gt;&lt;br /&gt;Spybot Search &amp;amp; Destroy: Def Updates:&lt;br /&gt;http://www.spybotupdates.biz/updates/files/spybotsd_includes.exe&lt;br /&gt;&lt;br /&gt;If you have SS&amp;amp;D installed, then just manually run the updates above, and run a scan.&lt;br /&gt;&lt;br /&gt;If you do not have SS&amp;amp;D installed,  run through this official tutorial from SS&amp;amp;D's site:&lt;br /&gt;&lt;br /&gt;http://www.safer-networking.org/en/tutorial/index.html&lt;br /&gt;&lt;br /&gt;In additional to this, you may want to download and run "Ccelaner" to clean up all your temp spaces from anything that may still be around from your infection.&lt;br /&gt;&lt;br /&gt;CCLeaner&lt;br /&gt;http://www.piriform.com/ccleaner/download/slim&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1447654367396907370?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1447654367396907370/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1447654367396907370' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1447654367396907370'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1447654367396907370'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/03/rogue-antivirus-antivirus-2010.html' title='Rogue Antivirus: Antivirus 2010'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/S5U6_XdhhqI/AAAAAAAAAOA/gtKdjaSNAAo/s72-c/av.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5675063405368264714</id><published>2010-01-07T07:07:00.000-08:00</published><updated>2010-01-07T07:29:56.719-08:00</updated><title type='text'>Infection: Web Mail Security Settings Updated</title><content type='html'>You get an email like the following stating there have been security changes to your email account. These come in all the time for various web bases email systems (hotmail, yahoo, outlook express web mail, etc.  also if you are wondering the screen shot is from Thunderbird 3):&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/S0X5KyBwd3I/AAAAAAAAANI/E4h_WPXPK2A/s1600-h/outlook-bogus2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 178px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/S0X5KyBwd3I/AAAAAAAAANI/E4h_WPXPK2A/s320/outlook-bogus2.jpg" alt="" id="BLOGGER_PHOTO_ID_5424015289860781938" border="0" /&gt;&lt;/a&gt;&lt;span style="text-decoration: underline;"&gt;&lt;br /&gt;&lt;/span&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;So I copied the link, and went to the page to do some research, and this one is an Outlook Web Access (bogus) page. Prompting me to download the "settings-file.exe" (which Avast! immediately caught even before I coult click the download button and stated it was a Trojan).&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/S0X4r7k4-hI/AAAAAAAAANA/BGoN48CIE5E/s1600-h/outlook-bogus.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 300px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/S0X4r7k4-hI/AAAAAAAAANA/BGoN48CIE5E/s320/outlook-bogus.jpg" alt="" id="BLOGGER_PHOTO_ID_5424014759848114706" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Rules of road...&lt;br /&gt;&lt;br /&gt;If you get an email like this stating there were security settings applied to your email account, do not click on the link in the email. Instead manually log into the web site with the address you know, if there are any you will then be prompted.&lt;br /&gt;&lt;br /&gt;At least 80% of these "Email Security Update Mails" are bogus, coming from the scum that have nothing better to do then to cause misery for others in attempts  to steal account information.&lt;br /&gt;&lt;br /&gt;Meanwhile, just mark this as junk, and keep moving forward.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5675063405368264714?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5675063405368264714/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5675063405368264714' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5675063405368264714'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5675063405368264714'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/01/infection-web-mail-security-settings.html' title='Infection: Web Mail Security Settings Updated'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/S0X5KyBwd3I/AAAAAAAAANI/E4h_WPXPK2A/s72-c/outlook-bogus2.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7731194903689786203</id><published>2010-01-06T09:03:00.000-08:00</published><updated>2010-01-06T09:26:23.110-08:00</updated><title type='text'>Infection: Western Union Money Transfer</title><content type='html'>"Western Union man&lt;br /&gt;Bad news in his hand&lt;br /&gt;Knocking at my door&lt;br /&gt;Selling me the score.."&lt;br /&gt;~The Five Americans&lt;br /&gt;&lt;br /&gt;A new year, and the scum of the net are back with new ways (and old ways) to get into your PC, give up your personal info, etc.&lt;br /&gt;&lt;br /&gt;This one came in several emails to our servers randomly taking shots at generated email addresses trying to get us to click on it and download there Trojan into one of our systems.&lt;br /&gt;&lt;br /&gt;====================================================&lt;br /&gt;&lt;span style="font-family: times new roman;font-family:courier new;font-size:100%;"  &gt;From: westernunionresponse@mail.westernunion.com&lt;br /&gt;Subject: Your Money Transfer Control Number&lt;br /&gt;To: (you)&lt;br /&gt;&lt;br /&gt;Dear customer,&lt;br /&gt;&lt;br /&gt;Thank you for using the Western Union Money Transfer®.&lt;br /&gt;&lt;br /&gt;Your money transfer has been authorized and is now available for pick up by the receiver.&lt;br /&gt;&lt;br /&gt;Transfers to certain destinations may be subject to further delay or&lt;br /&gt;additional restrictions.&lt;br /&gt;&lt;br /&gt;TRANSACTION DETAILS:&lt;br /&gt;&lt;br /&gt;Your Money Transfer Control Number [MTCN] is: 974757614&lt;br /&gt;&lt;br /&gt;Please use this number for any inquiries.&lt;br /&gt;&lt;br /&gt;Date of Order: Wed, 6 Jan 2010 11:58:48 -0500&lt;br /&gt;Amount Sent: $4931.50&lt;br /&gt;&lt;br /&gt;You can cancel this transfer by using the hyperlink below:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;link removed&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Thank you for using Western Union!&lt;/span&gt;&lt;br /&gt;====================================================&lt;br /&gt;&lt;br /&gt;After being warned by Thunderbird, Firefox AND Avast! that this was a scam, we wound up at this bogus page (all the images, text, etc stolen from the official Western Union site):&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/S0TCl3R5flI/AAAAAAAAAM4/wTsA-mqEta0/s1600-h/westunion.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 164px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/S0TCl3R5flI/AAAAAAAAAM4/wTsA-mqEta0/s320/westunion.jpg" alt="" id="BLOGGER_PHOTO_ID_5423673807010889298" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;First red flag, the url, its not just "http://www.westernunion.com" it contains additional text (yht5trte.com.pl), the "yht5trte.com" is the domain name its kept on, while the ".pl" is the Internet country code from Poland.&lt;br /&gt;&lt;br /&gt;When you click the "Cancel" button it verifies that your email is "active" (so you will get more of these wonderful scams), and then you are requested to download the "form" program to cancel the transaction.&lt;br /&gt;&lt;br /&gt;This wonderful file (form.exe) will infect your PC with a Trojan to allow the hacker into your system.&lt;br /&gt;&lt;br /&gt;For your reading pleasure, the Internet Country Codes, this is a major giveaway for most of these scams... &lt;span style="font-style: italic;"&gt;bogus website&lt;/span&gt;.&lt;span style="font-style: italic;"&gt;domain&lt;/span&gt;.&lt;span style="font-style: italic;"&gt;countrycode&lt;/span&gt;:&lt;br /&gt;&lt;br /&gt;http://www.learnthenet.com/english/html/85tldn.htm&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7731194903689786203?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7731194903689786203/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7731194903689786203' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7731194903689786203'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7731194903689786203'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2010/01/infection-western-union-money-transfer.html' title='Infection: Western Union Money Transfer'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/S0TCl3R5flI/AAAAAAAAAM4/wTsA-mqEta0/s72-c/westunion.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-9151741401299374987</id><published>2009-12-15T07:10:00.000-08:00</published><updated>2009-12-15T07:24:58.078-08:00</updated><title type='text'>Facebook: Your Info On A Search Engine!?</title><content type='html'>"We better stop, hey, what's that sound&lt;br /&gt;Everybody look what's going down"&lt;br /&gt;~Buffalo Springfield&lt;br /&gt;&lt;br /&gt;Another Facebook change sneaked under the covers, this one will automatically index all your info and make it available to search engines (Google, Yahoo, etc). This will allow anyone to view your info regardless if they are joined to Facebook or not.&lt;br /&gt;&lt;br /&gt;I guess they decided to keep this change quiet, since the last one got them in some hot water with at least 90% of their users.&lt;br /&gt;&lt;br /&gt;Any how, to correct another SNAFU from Facebook:&lt;br /&gt;&lt;br /&gt;01. Go to Settings&lt;br /&gt;&lt;br /&gt;02. Select "Privacy Settings"&lt;br /&gt;&lt;br /&gt;03.  Click on "Search"&lt;br /&gt;&lt;br /&gt;04. Uncheck "Allow Indexing" (pictured below)&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SyenFoDeljI/AAAAAAAAAMw/QZc0vq0sA8I/s1600-h/fb-privacy1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 121px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SyenFoDeljI/AAAAAAAAAMw/QZc0vq0sA8I/s320/fb-privacy1.jpg" alt="" id="BLOGGER_PHOTO_ID_5415480792029500978" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;You may want to also change "Facebook Search Results" to "Friends" or "Friends of Friends".&lt;br /&gt;&lt;br /&gt;Facebook has changed this option to "Everyone" so this means if this is not changed, your Facebook Searches will be viewable by everyone on Facebook.&lt;br /&gt;&lt;br /&gt;05. Click [Home] when completed (settings are automatically saved).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-9151741401299374987?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/9151741401299374987/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=9151741401299374987' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9151741401299374987'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9151741401299374987'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/12/facebook-changes-your-info-on-search.html' title='Facebook: Your Info On A Search Engine!?'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/SyenFoDeljI/AAAAAAAAAMw/QZc0vq0sA8I/s72-c/fb-privacy1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8353197469097064834</id><published>2009-12-10T07:40:00.000-08:00</published><updated>2009-12-15T07:24:14.824-08:00</updated><title type='text'>Facebook: Privacy Update 12/09/2009</title><content type='html'>"You spin me right round, baby&lt;br /&gt;Right round like a record, baby&lt;br /&gt;Right round, round, round"&lt;br /&gt;~Dead Or Alive&lt;br /&gt;&lt;br /&gt;Facebook has made another wonderful SNAFU decision and changed your privacy settings causing concerns and making your private data public unless you make sure your privacy settings remain in place.&lt;br /&gt;&lt;br /&gt;This blog is for those who were confused and or skipped this step when prompted by Facebook this morning to update their Privacy settings. Another "trick" that Facebook applies as an update, if you selected "Everyone" then your private items that were for "Friends Only" can now be seen by every user on Facebook.&lt;br /&gt;&lt;br /&gt;If you did get this screen, make sure to select "Old Settings" for everything to keep your privacy settings how they were.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SyEWdIm57OI/AAAAAAAAALw/_Xm63PZB3Tg/s1600-h/facebook-updateyourprivacy.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 297px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SyEWdIm57OI/AAAAAAAAALw/_Xm63PZB3Tg/s320/facebook-updateyourprivacy.jpg" alt="" id="BLOGGER_PHOTO_ID_5413632916858727650" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;01. Select your privacy settings from the Facebook toolbar:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SyEXPMOtCHI/AAAAAAAAAL4/VgtAD5qeiFw/s1600-h/fb-pr-toolbar.jpg"&gt;&lt;img style="cursor: pointer; width: 301px; height: 136px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SyEXPMOtCHI/AAAAAAAAAL4/VgtAD5qeiFw/s320/fb-pr-toolbar.jpg" alt="" id="BLOGGER_PHOTO_ID_5413633776824420466" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;02. Click "Profile Information"&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SyEXPoeMYiI/AAAAAAAAAMI/EyRSs7GTBrI/s1600-h/fb-pr-profile.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 262px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SyEXPoeMYiI/AAAAAAAAAMI/EyRSs7GTBrI/s320/fb-pr-profile.jpg" alt="" id="BLOGGER_PHOTO_ID_5413633784405582370" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;03. Click [Change Settings]&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SyEhy73rCcI/AAAAAAAAAMo/P9jcAutJVMk/s1600-h/fb-pr-change.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 186px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SyEhy73rCcI/AAAAAAAAAMo/P9jcAutJVMk/s320/fb-pr-change.jpg" alt="" id="BLOGGER_PHOTO_ID_5413645386024421826" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;You will then be prompted to enter your Faceook password. This is due to Facebook has now password protected your privacy settings. Enter your Facebook password and then click [Confirm].&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SyEfNxeEDaI/AAAAAAAAAMg/DcEQCuMDd5Y/s1600-h/fb-pr-passwd.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 101px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SyEfNxeEDaI/AAAAAAAAAMg/DcEQCuMDd5Y/s320/fb-pr-passwd.jpg" alt="" id="BLOGGER_PHOTO_ID_5413642548554239394" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;04. Make changes according to what you want:&lt;br /&gt;&lt;br /&gt;"Friends Only" = Only YOUR friends... nobody else.&lt;br /&gt;"Friends Of Friends" = Your Friends Friends, even if you did not Befriend them&lt;br /&gt;"Everyone" = Everyone, Every user on Facebook&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SyEXPbnD5_I/AAAAAAAAAMA/m4tsN2zOWj4/s1600-h/fb-pr-settings.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 228px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SyEXPbnD5_I/AAAAAAAAAMA/m4tsN2zOWj4/s320/fb-pr-settings.jpg" alt="" id="BLOGGER_PHOTO_ID_5413633780953114610" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;05. Click  [Back To Privacy] and then click on "Contact Information":&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SyEXQSJD6DI/AAAAAAAAAMY/EMlr3-FbYqc/s1600-h/fb-pr-contact1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 252px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SyEXQSJD6DI/AAAAAAAAAMY/EMlr3-FbYqc/s320/fb-pr-contact1.jpg" alt="" id="BLOGGER_PHOTO_ID_5413633795591235634" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;06. Make changes according to what you want:&lt;br /&gt;&lt;br /&gt;"Friends Only" = Only YOUR friends... nobody else.&lt;br /&gt;"Friends Of Friends" = Your Friends Friends, even if you did not Befriend them&lt;br /&gt;"Everyone" = Everyone, Every user on Facebook&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SyEXQGEHZfI/AAAAAAAAAMQ/1qRwY1oGxjE/s1600-h/fb-pr-contact2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 194px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SyEXQGEHZfI/AAAAAAAAAMQ/1qRwY1oGxjE/s320/fb-pr-contact2.jpg" alt="" id="BLOGGER_PHOTO_ID_5413633792349267442" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;07. Click [Home] in the Facebook toolbar (your privacy settings will automatically save)&lt;br /&gt;&lt;br /&gt;Have A Nice Day :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8353197469097064834?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8353197469097064834/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8353197469097064834' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8353197469097064834'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8353197469097064834'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/12/facebook-privact-update-12092009.html' title='Facebook: Privacy Update 12/09/2009'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SyEWdIm57OI/AAAAAAAAALw/_Xm63PZB3Tg/s72-c/facebook-updateyourprivacy.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-4120442333450190612</id><published>2009-12-09T07:02:00.000-08:00</published><updated>2009-12-09T08:38:37.699-08:00</updated><title type='text'>Rougeware: Personal Security</title><content type='html'>"Well I won't back down, no I won't back down, you can stand me up against the gates of Hell, but I won't back down."&lt;br /&gt;~ Tom Petty &amp;amp; The Heartbreakers&lt;br /&gt;&lt;br /&gt;This is a nasty variant of the aka "Security" Rougeware. Its called "Personal Security" and looks to be from the same scammers that create "Antivirus 2009, 2008, 2007, etc".&lt;br /&gt;&lt;br /&gt;First off lets explain "Rougeware", this is software that is offered to you via web sites or advertising banners that state you have a problem with your computer, and they can fix it.&lt;br /&gt;&lt;br /&gt;Once the software is downloaded and installed, it uses "smoke &amp;amp; mirrors" to trick you into thinking it found all the problems, and will remove them ONLY if you register the product.&lt;br /&gt;&lt;br /&gt;In reality, registering the product does not help at all, after you pay your $40 (sometimes up to $80) to register it, the scammers just leave you $40 less, and a program that continues to infect your computer and even blocking certain programs from running.&lt;br /&gt;&lt;br /&gt;Lets take a look at the signs of this variant...&lt;br /&gt;&lt;br /&gt;The first window displayed on your desktop is the bogus security center. Its job is to trick you to think its Windows Security center, and that you have no virus protection.&lt;br /&gt;&lt;br /&gt;DON'T CLICK ANY BUTTONS... Not even the [X] to close the Window!&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sx-8Rri6qhI/AAAAAAAAAKw/pN9uSBW13gE/s1600-h/personsec-fakeseccenter.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 247px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sx-8Rri6qhI/AAAAAAAAAKw/pN9uSBW13gE/s320/personsec-fakeseccenter.jpg" alt="" id="BLOGGER_PHOTO_ID_5413252289055599122" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;After the above is displayed, your then presented with yet another window that is pretending to scan your computer, and it miraculously finds lots of viruses, trojans, etc.&lt;br /&gt;&lt;br /&gt;DON'T CLICK ANY BUTTONS... Not even the [X] to close the Window!&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/Sx-8LMeXPsI/AAAAAAAAAKo/kYR7DEpPDWw/s1600-h/personalsec-main.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 247px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/Sx-8LMeXPsI/AAAAAAAAAKo/kYR7DEpPDWw/s320/personalsec-main.jpg" alt="" id="BLOGGER_PHOTO_ID_5413252177635786434" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;During your use of the infected system you will see this window several times, attempting to trick you that you have 42 threats on your system, and it offers to remove them for you.&lt;br /&gt;&lt;br /&gt;DON'T CLICK ANY BUTTONS... Not even the [X] to close the Window!&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sx-85GmwT0I/AAAAAAAAAK4/E0KINg6-d-g/s1600-h/personsec-threats.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 224px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sx-85GmwT0I/AAAAAAAAAK4/E0KINg6-d-g/s320/personsec-threats.jpg" alt="" id="BLOGGER_PHOTO_ID_5413252966334353218" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Yet another window attempting to trick you to click its buttons to make you think you need to update your virus database...&lt;br /&gt;&lt;br /&gt;DON'T CLICK ANY BUTTONS... Not even the [X] to close the Window!&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/Sx-9ZFjVVSI/AAAAAAAAALA/rSi48qs9x4A/s1600-h/personalsec-bogus-db.jpg"&gt;&lt;img style="cursor: pointer; width: 225px; height: 320px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/Sx-9ZFjVVSI/AAAAAAAAALA/rSi48qs9x4A/s320/personalsec-bogus-db.jpg" alt="" id="BLOGGER_PHOTO_ID_5413253515807380770" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Okay, its busting time....&lt;br /&gt;&lt;br /&gt;First disconnect your system from your network, internet, turn off your wifi. You do not want this system accessing any network while your cleaning up this infection. This variant will detect your cleaning it and will try to pull down more stuff to install on your system. Also if you click any of its buttons in its various windows, it will pull down more crap to remove.&lt;br /&gt;&lt;br /&gt;01. On another clean computer, dowload the following:&lt;br /&gt;&lt;br /&gt;Malware Bytes 1.42 (file hippo is safe to download from)&lt;br /&gt;http://www.filehippo.com/download_malwarebytes_anti_malware/tech/&lt;br /&gt;&lt;br /&gt;02. Copy the downloaded file to a USB drive.&lt;br /&gt;&lt;br /&gt;03. Plug the USB drive containing the file into the infected system.&lt;br /&gt;&lt;br /&gt;04. Install MalwareBytes (but uncheack "run now" and "update now).&lt;br /&gt;&lt;br /&gt;05. Go to the folder containing the installed "Malware Bytes" and copy and rename the main .exe file-&gt; "mbam.exe"... name it to something other then "Copy of mbam.exe". This infection will look for BOTH of these names, and kill the application as soon as its launched.&lt;br /&gt;&lt;br /&gt;06. Double click on the copied/renamed .exe you just renamed.&lt;br /&gt;&lt;br /&gt;07. Click on the [Scan] button to begin the scanning process, and wait.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/Sx_A-Tj42FI/AAAAAAAAALI/iDL7G96uZp4/s1600-h/mbytes-main.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 252px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/Sx_A-Tj42FI/AAAAAAAAALI/iDL7G96uZp4/s320/mbytes-main.jpg" alt="" id="BLOGGER_PHOTO_ID_5413257453757847634" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;08. Once the scan process is completed, you will see that Malwarebytes has found some issues, click [OK] to continue.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;div style="text-align: left;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/Sx_CHC_7ktI/AAAAAAAAALQ/QWostJ98d3U/s1600-h/malwarebytes-found.gif"&gt;&lt;img style="cursor: pointer; width: 320px; height: 226px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/Sx_CHC_7ktI/AAAAAAAAALQ/QWostJ98d3U/s320/malwarebytes-found.gif" alt="" id="BLOGGER_PHOTO_ID_5413258703442514642" border="0" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;img src="file:///I:/shared/emc-drive/personalsec-infection.jpg" alt="" /&gt;&lt;div style="text-align: left;"&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;09. You will then see a list of all the infections (spyware, viruses, trojans) that Malware has found, then click on [Remove Selected] and wait. Malware will then state it needs to restart your computer... do not allow it.&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/Sx_HYjIEHLI/AAAAAAAAALY/8aWyaWCxGz0/s1600-h/personalsec-infection.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 268px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/Sx_HYjIEHLI/AAAAAAAAALY/8aWyaWCxGz0/s320/personalsec-infection.jpg" alt="" id="BLOGGER_PHOTO_ID_5413264501682478258" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;10. Now shutdown your PC completely, this variant will stay in RAM, this is why you do not want to perform a "warm" boot (aka just restarting your system).&lt;br /&gt;&lt;br /&gt;11. Once your rebooted from a cold boot, repeat steps 06 through 10 again until you are clean.&lt;br /&gt;&lt;br /&gt;12. After you have rebooted to a clean system, update Malwarebytes, and perform yet another scan of your system to make sure its clean.&lt;br /&gt;&lt;br /&gt;13. I also recommend updating and running Spybot Search &amp;amp; Destory against the system, its always good to run them after each other sorta like a "second pair of eyes" to make sure things are properly cleaned up.&lt;br /&gt;&lt;br /&gt;14. Procedure completed.&lt;br /&gt;&lt;br /&gt;Here are results if you just perform a "warm" boot instead of a "cold" boot of your system, these screens were captured for the "Nortel Antivirs" which is Rougeware as well.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;The "Blue Screen Of Spyware!?"&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Before you thing majore issues are upon your system, stop and read what this is saying, its stating that your Rougeware is not yet registered. Scammers will pull out all the stops when trying to get your attention and hand over yout money for their scare tactics:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sx_ODvRGa6I/AAAAAAAAALg/JeEUeglfZiM/s1600-h/bogus-bluescreen.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 224px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sx_ODvRGa6I/AAAAAAAAALg/JeEUeglfZiM/s320/bogus-bluescreen.jpg" alt="" id="BLOGGER_PHOTO_ID_5413271840745745314" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Boot Screen of Infection:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Since the variant "lives" in the memory until you perform a "cold" boot, it can popup all over the place to get your attetion, scare and annoy you until no end. This is why its important to always do cold boots during the cleaning phase of your system:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/Sx_Orm04HFI/AAAAAAAAALo/hp9j2UapDDw/s1600-h/bootscree-bogus.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 214px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/Sx_Orm04HFI/AAAAAAAAALo/hp9j2UapDDw/s320/bootscree-bogus.jpg" alt="" id="BLOGGER_PHOTO_ID_5413272525674650706" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-4120442333450190612?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/4120442333450190612/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=4120442333450190612' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4120442333450190612'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4120442333450190612'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/12/rougeware-personal-security.html' title='Rougeware: Personal Security'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/Sx-8Rri6qhI/AAAAAAAAAKw/pN9uSBW13gE/s72-c/personsec-fakeseccenter.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2540593142613466222</id><published>2009-12-06T06:43:00.000-08:00</published><updated>2009-12-06T07:03:53.397-08:00</updated><title type='text'>Phisher: American Express "New" Form</title><content type='html'>"Whoohoo!..Whoohoo!"&lt;br /&gt;~Blur ("song 2")&lt;br /&gt;&lt;br /&gt;With Christmas (and NOT the "Holidays") right around the corner, Phishers will be on the attack trying everything they have to get you to willingly give up your financial information (credit cards, banks, etc).&lt;br /&gt;&lt;br /&gt;This one has arrived at our domain today with six emails, addressed to various names in hoping to get a bite:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SxvDOxVb-VI/AAAAAAAAAKY/WxUDhrbI-qY/s1600-h/amex-phish-email.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 166px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SxvDOxVb-VI/AAAAAAAAAKY/WxUDhrbI-qY/s320/amex-phish-email.jpg" alt="" id="BLOGGER_PHOTO_ID_5412134035744618834" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Upon investigating the link (and being warned by Firefox this was registred as a site forgery), I was presented with this lovely page:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SxvEThJeT-I/AAAAAAAAAKg/sRHaYAFqCZE/s1600-h/amex-phish-link.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 245px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SxvEThJeT-I/AAAAAAAAAKg/sRHaYAFqCZE/s320/amex-phish-link.jpg" alt="" id="BLOGGER_PHOTO_ID_5412135216810446818" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Firs thing you will notice is Firefox warning you again about this site, and also the address is not that of American Express's web site (click to enlarge the photo).&lt;br /&gt;&lt;br /&gt;As always, if you get a notification (exmail, txt message, etc) there is an issue with your account, ALWAYS call or manually log into your financial institution and verify the issue.&lt;br /&gt;&lt;br /&gt;NEVER follow these links, call the phone numbers (in both email or txt message) and disclose any information.&lt;br /&gt;&lt;br /&gt;In the meantime, mark these emails as 'junk' and delete them.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2540593142613466222?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2540593142613466222/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2540593142613466222' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2540593142613466222'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2540593142613466222'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/12/phisher-american-express-new-form.html' title='Phisher: American Express &quot;New&quot; Form'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SxvDOxVb-VI/AAAAAAAAAKY/WxUDhrbI-qY/s72-c/amex-phish-email.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1937152259876895115</id><published>2009-12-01T07:34:00.000-08:00</published><updated>2009-12-01T07:51:15.281-08:00</updated><title type='text'>Vishing: Phishing With A Phone Number</title><content type='html'>Vishing is a terminology of "Voice" and "Phishing".&lt;br /&gt;&lt;br /&gt;The 'Visher' uses a set of comprimised phone numbers from a finanical instution, and then uses a computer to dial them using CallerID spoofing (yes Caller ID can be tricked to come from any number out there). Then if a person answers, they are warned there was an issue with their account (fruad activies, late payment, etc), and then are instructed to enter their account number, credit card number.&lt;br /&gt;&lt;br /&gt;Once this occurs, then the Vishers' computer proceeds to ask them for more information regarding their account (pin, cid, expiration date of card, etc).&lt;br /&gt;&lt;br /&gt;After this occurs, the person is just disconnected, and the Visher has the info they need to do what they want with.&lt;br /&gt;&lt;br /&gt;Another form of Vishing is when you receive an email (like Phishing),  you are notified as well there is an issue regarding your account, but to fix it you will need to dial the number in the email (hence no link provided) like in the example below:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SxU3wjAlHLI/AAAAAAAAAKQ/5tOyrzoSSOw/s1600/vishing.gif"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 320px; height: 270px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SxU3wjAlHLI/AAAAAAAAAKQ/5tOyrzoSSOw/s320/vishing.gif" alt="" id="BLOGGER_PHOTO_ID_5410291834526440626" border="0" /&gt;&lt;/a&gt;Again the Visher is on the other end with their computer awaiting to take all of your information and walk away from the whole thing.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Steps To Help You Not To Become a Victim:&lt;br /&gt;&lt;br /&gt;Vishing Phone Calls:&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Just hang up if you suspect this is a fraud call (especially if they ask you for your account numbers as soon as you answer). Then call your bank's telephone number and find out if there is a problem or not. DO NOT give ANY information to the suspected Visher's call.&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;Vishing Email:&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;As always you call your financial institutions number they provide you and inquire if there is an issue with your account. DO NOT reply to the email, just delete it. If you reply this will indicate to the Visher "this is an active email account", which means more Vishing and more Junk Mail.&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1937152259876895115?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1937152259876895115/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1937152259876895115' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1937152259876895115'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1937152259876895115'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/12/vishing-phishing-with-phone-number.html' title='Vishing: Phishing With A Phone Number'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/SxU3wjAlHLI/AAAAAAAAAKQ/5tOyrzoSSOw/s72-c/vishing.gif' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2245221601838014982</id><published>2009-12-01T07:15:00.001-08:00</published><updated>2009-12-01T07:34:33.583-08:00</updated><title type='text'>Smishing: Phishing Over Cell Phones</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SxU2EpPpAPI/AAAAAAAAAKI/Vi2Xz_ixDKs/s1600/smish.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 232px; height: 308px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SxU2EpPpAPI/AAAAAAAAAKI/Vi2Xz_ixDKs/s320/smish.jpg" alt="" id="BLOGGER_PHOTO_ID_5410289980774351090" border="0" /&gt;&lt;/a&gt;&lt;span style="text-decoration: underline;"&gt;&lt;br /&gt;&lt;/span&gt;Phishers have gone to a new low, and have started to Phish using SMS messaging (text messaging) on cell phones.&lt;br /&gt;&lt;br /&gt;You get a message on your cell phone there are issues with your bank account, etc. and for you to call the "provided" 800 or 888 number to fix issues. Its a scare tactic and most people would immediately call to fix the issue with their bank account, credit card, etc. without giving a second thought of "is this for real?" or "is it a scam?".&lt;br /&gt;&lt;br /&gt;When the person calls the provided number, the Phisher is on the other end to ask you and take down all your information. As they ask for everything (name, address, account info, ssn#).&lt;br /&gt;&lt;br /&gt;Some Smishers will go to lengths to include a virus for phones that have Operating Systems (aka, Windows Mobile, etc) to infect your phone to do their bidding. This is the drawbacks of when cell phones become more and more like our computers they also bring in the same weaknesses.&lt;br /&gt;&lt;br /&gt;Things to help you to prevent you from falling prey to this:&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Delete the message if your uncertain about its origins.&lt;/li&gt;&lt;li&gt;Do not call the provided number on the text message. Call your bank, credit card co, etc and verify if there is a problem or not.&lt;/li&gt;&lt;li&gt;Do not open/execute the attachment on the text message&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2245221601838014982?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2245221601838014982/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2245221601838014982' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2245221601838014982'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2245221601838014982'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/12/smishing-phishing-over-cell-phones.html' title='Smishing: Phishing Over Cell Phones'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/SxU2EpPpAPI/AAAAAAAAAKI/Vi2Xz_ixDKs/s72-c/smish.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5297350606088293359</id><published>2009-12-01T06:55:00.000-08:00</published><updated>2009-12-10T08:54:43.582-08:00</updated><title type='text'>Trojan: H1N1 Government Profile</title><content type='html'>"Well, I was feelin' so bad, asked my family doctor 'bout what I had, I said, Doctor, Doctor, Mister M.D., can you tell me, what's ailing me?"&lt;br /&gt;~Grateful Dead&lt;br /&gt;&lt;br /&gt;As stated earlier, Phishers, Hackers, watch the headlines, and prey on the "popular" events taken place, and use that to scare people into infecting their own systems or giving up their own information at will.&lt;br /&gt;&lt;br /&gt;This one comes in while America is on the edge of its seat with the hype in the media about the "H1N1 (Swine Flu)" scare.&lt;br /&gt;&lt;br /&gt;First you get the email stating the Government wants anyone over the age of 18 to create a (lol) "H1N1 Profile" that they can track you with regardless if you get the shot or not:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SxUu3MhBmrI/AAAAAAAAAJw/LQ7vmQjI0Qw/s1600/cdc-email-bogus.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 126px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SxUu3MhBmrI/AAAAAAAAAJw/LQ7vmQjI0Qw/s320/cdc-email-bogus.jpg" alt="" id="BLOGGER_PHOTO_ID_5410282053142944434" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Then following the link from the email, I was taken to the bogus CDC page and presented to download my executable file (.exe) that will create my "H1N1 Profile":&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SxUvPvp3J3I/AAAAAAAAAJ4/_Kzqm06irSU/s1600/cdc-bogus1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 193px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SxUvPvp3J3I/AAAAAAAAAJ4/_Kzqm06irSU/s320/cdc-bogus1.jpg" alt="" id="BLOGGER_PHOTO_ID_5410282474892109682" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;As a result, this file (vacc_profile.exe) is a small Trojan (128k), when executed, turns your PC over to the Hacker on the other end who created this whole bogus thing.&lt;br /&gt;&lt;br /&gt;If you have any concerns or want to verify, head over to the offical site (http://www.cdc.gov) for the Centers for Disease Control And Prevention.&lt;br /&gt;&lt;br /&gt;And as always... just mark this as junk and delete it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5297350606088293359?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5297350606088293359/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5297350606088293359' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5297350606088293359'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5297350606088293359'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/12/trojan-h1m1-government-profile.html' title='Trojan: H1N1 Government Profile'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SxUu3MhBmrI/AAAAAAAAAJw/LQ7vmQjI0Qw/s72-c/cdc-email-bogus.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7957151008387628721</id><published>2009-11-30T12:55:00.001-08:00</published><updated>2009-11-30T13:08:31.229-08:00</updated><title type='text'>Phishing: IRS Tax Refund</title><content type='html'>As Christmas apporaches, so does the Phishers with there schemes to get your information. Preying on the less fortunate in hopes to part them with their identity information. Yeah&lt;br /&gt;Phishers can be quite the scum of the Earth.&lt;br /&gt;&lt;br /&gt;This one comes with a Tax Refund just in time for Christmas:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SxQx_2f_0HI/AAAAAAAAAJo/a-KNlPkYnug/s1600/irs-scams-2009-wave1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 208px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SxQx_2f_0HI/AAAAAAAAAJo/a-KNlPkYnug/s320/irs-scams-2009-wave1.jpg" alt="" id="BLOGGER_PHOTO_ID_5410004025410048114" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;ul&gt;&lt;li&gt;The IRS will never email you that you have a refund.&lt;/li&gt;&lt;li&gt;Never follow links or disclose information for any shady links in emails.&lt;/li&gt;&lt;li&gt;Never execute any file attachments, even if they are questionable or stating there are issues with your bank account, etc. (Call your bank if you have a question or need to verify)&lt;/li&gt;&lt;/ul&gt;Just delete these types of emails stating or promising tax refunds, and as stated above if you have a problem or questions contact the IRS directly.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7957151008387628721?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7957151008387628721/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7957151008387628721' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7957151008387628721'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7957151008387628721'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/11/phishing-irs-tax-refund.html' title='Phishing: IRS Tax Refund'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SxQx_2f_0HI/AAAAAAAAAJo/a-KNlPkYnug/s72-c/irs-scams-2009-wave1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-418857840657024572</id><published>2009-11-17T17:38:00.001-08:00</published><updated>2009-11-17T17:41:59.947-08:00</updated><title type='text'>Phisher/Virus: Verizon Account Issues</title><content type='html'>"Opaerator, oh will you help me place this call..."&lt;br /&gt;~Jim Croce&lt;br /&gt;&lt;br /&gt;Simple, the Phisher wishes to install the malicious Trojan included with this email to log or access your PC. This comes in as a "Scare" tatic to make you think you have an issue with your Verizon account (look for other variants of this email for AT&amp;amp;T, Sprint, etc).&lt;br /&gt;&lt;br /&gt;Example of email:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SwNQGrqFK6I/AAAAAAAAAJY/RYSC-lfFgDU/s1600/verizon-scam.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 128px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SwNQGrqFK6I/AAAAAAAAAJY/RYSC-lfFgDU/s320/verizon-scam.jpg" alt="" id="BLOGGER_PHOTO_ID_5405252053503388578" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Just mark it as junk, and delete it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-418857840657024572?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/418857840657024572/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=418857840657024572' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/418857840657024572'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/418857840657024572'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/11/phishervirus-verizon-account-issues.html' title='Phisher/Virus: Verizon Account Issues'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SwNQGrqFK6I/AAAAAAAAAJY/RYSC-lfFgDU/s72-c/verizon-scam.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3731525411809354907</id><published>2009-11-06T08:24:00.000-08:00</published><updated>2009-11-30T11:01:40.705-08:00</updated><title type='text'>Phisher/Trojan: Facebook Account Agreement</title><content type='html'>"I think it's time we stop, children, what's that sound Everybody look what's going down.." ~Buffalo Springfield&lt;br /&gt;&lt;br /&gt;They're at it again...just delete these FB account updates, agreement letters, etc.&lt;br /&gt;&lt;br /&gt;IF you suspect an issue with your Facebook account, directly log into Facebook (by typing the address or using your bookmark) and if there is an issue you will see it.&lt;br /&gt;&lt;br /&gt;This is a new level of the Facebook Account (agreement, maintenance, update, etc) scam that has been hitting our domain within the last two weeks. They have been randomly generating email addresses at our domain in hopes to get a "bite".&lt;br /&gt;&lt;br /&gt;And here is the "latest" FB Phishing Email (w/infected file):&lt;br /&gt;&lt;br /&gt;=========================================================&lt;br /&gt;Dear Facebook user,&lt;br /&gt;&lt;br /&gt;Due to Facebook policy changes, all Facebook users must submit&lt;br /&gt;a new, updated account agreement, regardless of their original&lt;br /&gt;account start date.&lt;br /&gt;&lt;br /&gt;Accounts that do not submit the updated account agreement by the&lt;br /&gt;deadline will have restricted.&lt;br /&gt;&lt;br /&gt;Please unzip the attached file and run "agreement.exe" by&lt;br /&gt;double-clicking it.&lt;br /&gt;&lt;br /&gt;Thanks,&lt;br /&gt;The Facebook Team&lt;br /&gt;&lt;br /&gt;Confirmation Code #: 4064963621083&lt;br /&gt;=========================================================&lt;br /&gt;&lt;br /&gt;And here is the Trojan that came in with the email above:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SvRPP5kZaRI/AAAAAAAAAJQ/i8hnuSTO_5U/s1600-h/avast-fb-account.jpg"&gt;&lt;img style="cursor: pointer; width: 279px; height: 320px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SvRPP5kZaRI/AAAAAAAAAJQ/i8hnuSTO_5U/s320/avast-fb-account.jpg" alt="" id="BLOGGER_PHOTO_ID_5401028987694180626" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;The Trojan is NOT active, unless you double click on it.... so just delete the email or allow your Antivirus delete the email for you.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3731525411809354907?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3731525411809354907/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3731525411809354907' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3731525411809354907'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3731525411809354907'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/11/phishingtrojan-facebook-account.html' title='Phisher/Trojan: Facebook Account Agreement'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/SvRPP5kZaRI/AAAAAAAAAJQ/i8hnuSTO_5U/s72-c/avast-fb-account.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3375810333188427834</id><published>2009-11-05T09:58:00.000-08:00</published><updated>2009-11-05T10:30:26.196-08:00</updated><title type='text'>TIP: Firefox Addon:  - AdBlock Plus</title><content type='html'>"Sign Sign everywhere a sign, blocking out the scenery breaking my mind." ~The Five Man Electrical Band&lt;br /&gt;&lt;br /&gt;AdBlock Plus a 'must' have add-on for Firefox. It gives you back control what you view in your browser. It simply allows you to block the downloading of Advertisements on web sites.&lt;br /&gt;&lt;br /&gt;Some sites go a bit overboard with the Ads, fitting as many as they can in the page, sometimes the Ads are very deceiving by promising you Cash, Credit Scores, Cars, etc...all with of course a catch of some sort.&lt;br /&gt;&lt;br /&gt;And think of the bandwith, and time that is taken for them to download and display on your your browser. A few ads here and there on one web page can add up, and some tend to "follow" you throughout your journey of the web site. Each page you vist on the site is chocked full of Ads.&lt;br /&gt;&lt;br /&gt;First download the "AdBlock Plus" add-on for Firefox. If you do not have Firefox yet, I highly recommend doing so and take back surfing the Net your way and a secure way.&lt;br /&gt;&lt;br /&gt;Once you have Ad Block installed you can either head to each site, and then click the Stop Sign at the top of Firefox that reads "ABP" this is AdBlock Plus. In the "Search" field, look for the following items&lt;br /&gt;&lt;br /&gt;Hulu:&lt;br /&gt;&lt;br /&gt;http://b.scorecardresearch.com/&lt;br /&gt;http://googleads.g.doubleclick.net/&lt;br /&gt;http://ads.hulu.com/&lt;br /&gt;&lt;br /&gt;And then add them into ABP,  you will wind up with a 10 second ad that states Ads could not be loaded:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SvMTR4jNvfI/AAAAAAAAAIw/Lf1jYFx6TnQ/s1600-h/hulu-blocked.jpg"&gt;&lt;img style="cursor: pointer; width: 271px; height: 136px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SvMTR4jNvfI/AAAAAAAAAIw/Lf1jYFx6TnQ/s320/hulu-blocked.jpg" alt="" id="BLOGGER_PHOTO_ID_5400681576106147314" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;This may work for a while until Hulu changes there Ad Servers. Then you should be able to update your ABP by&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;YouTube:&lt;br /&gt;&lt;br /&gt;http://ad-g.doubleclick.net/&lt;br /&gt;http://ad.doubleclick.net/&lt;br /&gt;http://pagead2.googlesyndication.com/pagead/&lt;br /&gt;&lt;br /&gt;This will block the annoying movie "Ads" that appear on the front page of YouTube, and ads that appear throughout  the YouTube pages. And most of all the Ads appear at the bottom of some of the YouTube videos.&lt;br /&gt;&lt;br /&gt;Before:&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SvMWo8zYWxI/AAAAAAAAAJI/RkyMm7HDcaU/s1600-h/youtube-before2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 46px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SvMWo8zYWxI/AAAAAAAAAJI/RkyMm7HDcaU/s320/youtube-before2.jpg" alt="" id="BLOGGER_PHOTO_ID_5400685270919568146" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;After:&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SvMVwOd9DmI/AAAAAAAAAJA/1LA47e3v_I0/s1600-h/youtube-after.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 50px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SvMVwOd9DmI/AAAAAAAAAJA/1LA47e3v_I0/s320/youtube-after.jpg" alt="" id="BLOGGER_PHOTO_ID_5400684296408993378" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Social Networks (Facebook, MySpace, Digg)&lt;br /&gt;&lt;br /&gt;These take ads a bit differently...but they can be blocked with yet another Addon named "Greasemonkey" and a few choice Greasemonkey Scripts (we'll cover that in another entry).&lt;br /&gt;&lt;br /&gt;I'll post more ABP filters as I find them, until then if your not using Firefox... you may want to start considering it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3375810333188427834?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3375810333188427834/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3375810333188427834' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3375810333188427834'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3375810333188427834'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/11/tip-firefox-addon-adblock-plus.html' title='TIP: Firefox Addon:  - AdBlock Plus'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/SvMTR4jNvfI/AAAAAAAAAIw/Lf1jYFx6TnQ/s72-c/hulu-blocked.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8410944279369509876</id><published>2009-10-28T08:53:00.001-07:00</published><updated>2009-10-28T10:27:37.921-07:00</updated><title type='text'>Phisher: Facebook Tool</title><content type='html'>"I put a spell on you..... because your mine!"&lt;br /&gt;~'Screaming' Jay Hawkins&lt;br /&gt;&lt;br /&gt;As Facebook goes through some cosmetic changes it gives Phishers some good ammunition to fire off some Phishing emails in attempts to obtain your Facebook account.&lt;br /&gt;&lt;br /&gt;Several of these came in this afternoon firing off random names trying to get a "bite":&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SuhpHniaC3I/AAAAAAAAAIQ/n5T4hdSgrRg/s1600-h/facebooktool.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 175px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SuhpHniaC3I/AAAAAAAAAIQ/n5T4hdSgrRg/s320/facebooktool.jpg" alt="" id="BLOGGER_PHOTO_ID_5397679732996836210" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SuhpHniaC3I/AAAAAAAAAIQ/n5T4hdSgrRg/s1600-h/facebooktool.jpg"&gt;&lt;/a&gt;&lt;span style="text-decoration: underline;"&gt;&lt;br /&gt;&lt;/span&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;As stated before if you suspect fraud, manually log into your account (aka load up your browser and type the website, etc...DO NOT use the email to log in!) and if there is an issue you will be prompted. Phishers often prey on Facebook, MySpace, Hotmail, G-Mail, etc.&lt;br /&gt;&lt;br /&gt;This one was last tracked back to Brazil: 201.22.71.128.dynamic.adsl.gvt.net.br&lt;br /&gt;&lt;br /&gt;Just delete it, and keep an eye out for any emails that request you for your personal information and provide a link to log you in. Because 90% of these emails are Phishers.&lt;br /&gt;&lt;br /&gt;So I decided to copy the first part of the URL in the email (without the email reference), and step into the Darkside of this Phisher scam.&lt;br /&gt;&lt;br /&gt;...but first warned by Firefox that this site was reported as forgery (this is why you should be using Firefox for your web surfing. If your not using Firefox, you may want to consider it.):&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/Suh2eFCAU9I/AAAAAAAAAIg/T-8U2MycnMo/s1600-h/whyfirefox.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 142px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/Suh2eFCAU9I/AAAAAAAAAIg/T-8U2MycnMo/s320/whyfirefox.jpg" alt="" id="BLOGGER_PHOTO_ID_5397694412522279890" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;After clicking "ignore this message", I was then greeted by the bogus Facebook page, notice the address in the address bar, and I was able to log in as using any user name with any password (most folks would think their logging into FB, and this is when your Username / Password are then "Phished" from you):&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/Suh2HbzkyxI/AAAAAAAAAIY/H4ngV1Itx4E/s1600-h/facebookfraud1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 195px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/Suh2HbzkyxI/AAAAAAAAAIY/H4ngV1Itx4E/s320/facebookfraud1.jpg" alt="" id="BLOGGER_PHOTO_ID_5397694023498779410" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I was then taken to a screen where I was presented with a file to download and run on my PC to "update" my account. We all know  the end of this story..your Facebook account is compromised and your left with an infected PC.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/Suh3ZRWthvI/AAAAAAAAAIo/EnzmDZ48Bt4/s1600-h/facebookfraud2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 140px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/Suh3ZRWthvI/AAAAAAAAAIo/EnzmDZ48Bt4/s320/facebookfraud2.jpg" alt="" id="BLOGGER_PHOTO_ID_5397695429442635506" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Don't click on any links in emails which they want you to update your account.&lt;/li&gt;&lt;li&gt;If in doubt, manually log into the web page (load up browser, type the web address)&lt;/li&gt;&lt;li&gt;Stop using Internet Explorer... Use Firefox. Internet Explorer did not give me any warning where I was going or about to do. &lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8410944279369509876?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8410944279369509876/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8410944279369509876' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8410944279369509876'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8410944279369509876'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/10/phisher-facebook-tool.html' title='Phisher: Facebook Tool'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/SuhpHniaC3I/AAAAAAAAAIQ/n5T4hdSgrRg/s72-c/facebooktool.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3438198082318164315</id><published>2009-10-26T09:18:00.000-07:00</published><updated>2009-10-26T10:10:39.662-07:00</updated><title type='text'>Scam: Test And Keep The...Laptop, Camera, etc</title><content type='html'>&lt;div style="text-align: center;"&gt;&lt;div style="text-align: left;"&gt;"I'm waiting for my man..Twenty-six dollars in my hand"&lt;br /&gt;~David Bowie&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: left;"&gt;Right off the bat... you're not going to get the laptop, ipod, camera, xbox, etc.&lt;br /&gt;&lt;br /&gt;This is an 'eye candy' ad in your email to reel you in to be taken for a ride to the town of Debt.&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SuXMKY8SiGI/AAAAAAAAAHg/bZG9r6IS5fA/s1600-h/freelaptop.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 253px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SuXMKY8SiGI/AAAAAAAAAHg/bZG9r6IS5fA/s320/freelaptop.jpg" alt="" id="BLOGGER_PHOTO_ID_5396944207339489378" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge the eye candy)&lt;br /&gt;&lt;br /&gt;Here is the legal mumbo-jumbo. You will notice right off the bat&lt;br /&gt;that they are not afiliated with any company in the picture (FedEx, Dell, etc),&lt;br /&gt;so this is another clear inidcation... this offer is a scam.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SuXQG4_g4xI/AAAAAAAAAHo/8JUDs9qa7Is/s1600-h/laptop-legal.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 42px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SuXQG4_g4xI/AAAAAAAAAHo/8JUDs9qa7Is/s320/laptop-legal.jpg" alt="" id="BLOGGER_PHOTO_ID_5396948545269981970" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge the mumbo jumbo)&lt;br /&gt;&lt;br /&gt;And by the way do not click the unsubscribe, or use the link provided to go to there site, its another way for them to verify your email is "valid" and send you yet more junk like this.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;Now here is kinda in a nutshell how these things work...&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;br /&gt;A small company or individuals are PAID to obtain sign ups for credit cards, memberships, etc. (from other marketing companies). The credit card offers are normally a fee based credit card (aka you pay the credit card company to use their card, on a monthly or yearly basis... highway robbery at its finest...). The Movie memberships are monthly based (Netflix, etc).&lt;br /&gt;&lt;br /&gt;So they throw out there hook and line (aka email) and put some bait on it (nice pretty picture of a laptop, camera, etc), and wait for people to start biting at it.&lt;br /&gt;&lt;br /&gt;Once they get a bite, they reel them in, and start requesting a lot of personal information.&lt;br /&gt;&lt;br /&gt;They first request your email address, and then they will request your street or po box address "where to ship your test/free product to". They may even as you for your phone number...(this is for the telemarketers they will send on to you). This is legal, remember your willingly giving your personal information to them.&lt;br /&gt;&lt;br /&gt;Once they have that, then they will request you fill out various offers to be eligible to test the laptop, camera, etc your going to keep. So you will find lots of credit card applications (with low APR rates, guaranteed to shoot sky high), Memberships to CD clubs, Movie Rental companies, etc. The list goes on and on...&lt;br /&gt;&lt;br /&gt;Mean while these scamming companies have your personal address, so they can now start swamping your mailbox full of junk, the army of telemarketers will begin calling you, your email inbox will be full of junk before the day is through.&lt;br /&gt;&lt;br /&gt;And if you had signed up, they now get paid because you signed up using them as a "reference", and they walk away, and you are left with..."yeah the laptop is in the mail..."&lt;br /&gt;&lt;br /&gt;As found through various posts of people who have been reeled in by these types of scams, they have waited for months, and never seen a product. Instead they have been paying money for&lt;br /&gt;memberships, and paying for fee based credit cards on a monthly basis.&lt;br /&gt;&lt;br /&gt;Your best bet...&lt;ul&gt;&lt;li&gt;Just mark these ads as 'junk' and delete them.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Start saving your money and go buy your own item, without any middle man involved. The amount of money you will loose by these gimmicks you could by yourself a nice laptop, camera, music player, etc.&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;Other screen grabs during my investigation...&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SuXTRnjRxzI/AAAAAAAAAHw/SkLstQnlVPM/s1600-h/laptopinfo.jpg"&gt;&lt;img style="cursor: pointer; width: 261px; height: 234px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SuXTRnjRxzI/AAAAAAAAAHw/SkLstQnlVPM/s320/laptopinfo.jpg" alt="" id="BLOGGER_PHOTO_ID_5396952028101592882" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;The personal info gathering page..&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SuXTnNVdRXI/AAAAAAAAAH4/Cjs-gPxwP-s/s1600-h/congrats.jpg"&gt;&lt;img style="cursor: pointer; width: 337px; height: 95px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SuXTnNVdRXI/AAAAAAAAAH4/Cjs-gPxwP-s/s320/congrats.jpg" alt="" id="BLOGGER_PHOTO_ID_5396952399021426034" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="text-align: center;"&gt;(click to enlarge)&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;Two offers for you to be granted to be a test on a laptop this scam company has no relations to the company who will give it to you, and the shipper (FexEx) that will deliver it to you for free... wow... good thing I used a global email address... ;)&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3438198082318164315?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3438198082318164315/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3438198082318164315' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3438198082318164315'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3438198082318164315'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/10/scam-test-and-keep-thelaptop-camera-etc.html' title='Scam: Test And Keep The...Laptop, Camera, etc'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/SuXMKY8SiGI/AAAAAAAAAHg/bZG9r6IS5fA/s72-c/freelaptop.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3066712837536857533</id><published>2009-10-26T08:55:00.000-07:00</published><updated>2009-10-26T09:17:53.819-07:00</updated><title type='text'>Scam: Confirm / Your Order Has Now Shipped</title><content type='html'>Scammers are trying desperately to get "verified" email addresses so they can continue to spam them and or sell them to other spammers to make a profit.&lt;br /&gt;&lt;br /&gt;So they send fake "order confirmations" to get you to click on malicious links in your email to have you confirm your address is a "live" address. In hopes to "scare" folks into thinking they ordered something they didn't. &lt;br /&gt;&lt;br /&gt;And when the unsuspecting user clicks on the link to look at the order information, their email gets "verified" as working, and they are normally taken to a spam sits (Vigara, Canadian pills, etc).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;[Example]=================================================&lt;br /&gt;&lt;br /&gt;To: &lt;span style="font-style: italic;"&gt;youremail@mail.com&lt;/span&gt;&lt;br /&gt;Subject: Order Shipped -- Order #07925&lt;br /&gt;&lt;br /&gt;We ship Worldwide! To all countries! To all destinations!&lt;br /&gt;Cant see a picture? Click Here!&lt;br /&gt;&lt;br /&gt;To unsubscribe from this mailing list, please log in to ...link removed..., click on "My Account", click "Update" to edit your registration details and uncheck the "Receive Newsletter?" check box.&lt;br /&gt;&lt;br /&gt;Or unsubscribe at ...link removed....&lt;br /&gt;&lt;br /&gt;Privacy Statement | Terms &amp;amp; Conditions | Contact&lt;br /&gt;&lt;br /&gt;AMAZON Ltd.&lt;br /&gt;Tower Bridge Business Complex. Unit 7, B439. 051 Clements Road. London. SE87 6DG&lt;br /&gt;&lt;br /&gt;© 2009 AMAZON, Ltd. All Rights Reserved&lt;br /&gt;==========================================================&lt;br /&gt;&lt;br /&gt;It is not officially from Amazon for starters.  They use the "same" email body and just give it different headers. Such as an email with the subject of "Sales Order from walmart.com" which is not even closely afflilated with Amazon.com&lt;br /&gt;&lt;br /&gt;Also you are not "subscribed" to anything, its another gimick to get you to click it to verify your email address is active.&lt;br /&gt;&lt;br /&gt;And last the "can't see the pictures?" is a new ploy to get you to click and verify your email address is valid. There are no pictures, when you click it your transported to what ever spam they are trying to sell (Viagra, Canadian Pills, etc).&lt;br /&gt;&lt;br /&gt;If you are even in doubt about orders from WalMart, Amazon, etc. Do not click any links in these emails, instead log into Amazon manually and check your orders.&lt;br /&gt;&lt;br /&gt;As for these email scams, mark it as junk and trash it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3066712837536857533?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3066712837536857533/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3066712837536857533' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3066712837536857533'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3066712837536857533'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/10/scam-confirm-your-order-has-now-shipped.html' title='Scam: Confirm / Your Order Has Now Shipped'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8521107189139265438</id><published>2009-10-19T17:46:00.000-07:00</published><updated>2009-10-26T08:55:43.137-07:00</updated><title type='text'>Virus: Microsoft pack</title><content type='html'>And the Scammers continue to try to get you to install their Viruses/Trojans on your PC.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Example of Email ]==========================================&lt;br /&gt;&lt;br /&gt;Subject:     Conflicker.B Infection Alert&lt;br /&gt;Date:     Mon, 19 Oct 2009 08:26:52 -0300&lt;br /&gt;From:     Microsoft Windows Agent &lt;microcenter@romeoley.com&gt;&lt;br /&gt;To:     &lt;user@user.com&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Dear Microsoft Customer,&lt;br /&gt;&lt;br /&gt;Starting 18/10/2009 the ‘Conficker’ worm began infecting Microsoft&lt;br /&gt;customers unusually rapidly. Microsoft has been advised by your&lt;br /&gt;Internet provider that your network is infected.&lt;br /&gt;&lt;br /&gt;To counteract further spread we advise removing the infection&lt;br /&gt;using an antispyware program. We are supplying all effected&lt;br /&gt;Windows Users with a free system scan in order to clean any&lt;br /&gt;files infected by the virus.&lt;br /&gt;&lt;br /&gt;Please install attached file to start the scan. The process&lt;br /&gt;takes under a minute and will prevent your files from being&lt;br /&gt;compromised. We appreciate your prompt cooperation.&lt;br /&gt;&lt;br /&gt;Regards,&lt;br /&gt;Microsoft Windows Agent #2 (Hollis)&lt;br /&gt;Microsoft Windows Computer Safety Division&lt;br /&gt;&lt;br /&gt;File Attachment: install.zip&lt;br /&gt;&lt;br /&gt;==================================================&lt;br /&gt;&lt;br /&gt;Always consider the following:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Microsoft WILL NEVER email you any patches or executable software.&lt;/li&gt;&lt;li&gt;Your ISP will never email Microsoft concerning your network or infected PC&lt;/li&gt;&lt;/ul&gt;The attachment will install a virus/trojan on your PC...DO NOT INSTALL!&lt;br /&gt;&lt;br /&gt;Just mark it as junk and delete.&lt;br /&gt;&lt;/user@user.com&gt;&lt;/microcenter@romeoley.com&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8521107189139265438?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8521107189139265438/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8521107189139265438' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8521107189139265438'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8521107189139265438'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/10/virus-microsoft-pact.html' title='Virus: Microsoft pack'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-4797669894341904671</id><published>2009-10-15T07:28:00.000-07:00</published><updated>2009-10-15T07:58:10.577-07:00</updated><title type='text'>Phishing: New wave of scams...</title><content type='html'>A new wave of email account phishing scams are about. For owners of their own domans, they appear to be official from your domain hosting provider.&lt;br /&gt;&lt;br /&gt;For email accounts, they will attempt to gain access to your hotmail, yahoo, etc. email accounts.&lt;br /&gt;&lt;br /&gt;Example of one for owners of domains looks something like this:&lt;br /&gt;&lt;br /&gt;=======================================================&lt;br /&gt;Dear user of the &lt;span style="font-style: italic;"&gt;mydomain&lt;/span&gt;.com mailing service!&lt;br /&gt;&lt;br /&gt;We are informing you that because of the security upgrade of the mailing service your mailbox (&lt;span style="font-style: italic;"&gt;user@mydomain.com&lt;/span&gt;) settings were changed In order to apply the new set of settings click on the following link:&lt;br /&gt;&lt;br /&gt;http://&lt;span style="font-style: italic;"&gt;mydomain&lt;/span&gt;.com/owa/service_directory/settings.php?email=&lt;span style="font-style: italic;"&gt;user@mydomain&lt;/span&gt;.com&amp;amp;from=&lt;span style="font-style: italic;"&gt;user@mydomain&lt;/span&gt;.com&amp;amp;fromname=&lt;span style="font-style: italic;"&gt;user&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Best regards, &lt;span style="font-style: italic;"&gt;mydomain&lt;/span&gt;.com Technical Support.&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;br /&gt;=======================================================&lt;br /&gt;&lt;br /&gt;Lets take a look at a few of these "read flags" that you should be aware of.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;The Masqueraded Link:&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;But if you hover over the link itself, it is masqueraded, and in Thunderbird you immediately see the real link at the bottom of the pane, and it reads:&lt;br /&gt;&lt;br /&gt;http://&lt;span style="font-style: italic;"&gt;mydomain&lt;/span&gt;.com.nerrasssy.co.uk/owa/service_directory/settings.php?email=&lt;span style="font-style: italic;"&gt;user&lt;/span&gt;@&lt;span style="font-style: italic;"&gt;mydomain&lt;/span&gt;.com&amp;amp;from=&lt;span style="font-style: italic;"&gt;mydomain&lt;/span&gt;.com&amp;amp;fromname=&lt;span style="font-style: italic;"&gt;user&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;This is a server over in the United Kingdom hosting this bogus Phisher page waiting for you to log in and give up your personal information.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Invalid User Names on your Domain:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Also another key factor, they do not have a valid user name from your domain. Instead they may have "&lt;span style="font-style: italic;"&gt;usernamell@mydomain.com&lt;/span&gt;" or "&lt;span style="font-style: italic;"&gt;littlejohn@mydomain.com&lt;/span&gt;". Which you can immediately see that is bogus.&lt;br /&gt;&lt;br /&gt;And a golden rule... never click on the link in an email that states there is a issue with&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Bank Account&lt;/li&gt;&lt;li&gt;Credit Card Accounts&lt;/li&gt;&lt;li&gt;ATM Accounts&lt;/li&gt;&lt;li&gt;Mail Service Delivering A Package (UPS, USPS, FedEx, etc)&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Email Account&lt;/li&gt;&lt;li&gt;Personal Web Domain Issues, or Service Updates&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;And begin entering your personal information.&lt;br /&gt;&lt;br /&gt;If in doubt, manually log in (aka type in the web page for your email, such as Hotmail, Yahoo Mail, Google, etc) and log in to see if you have an issue.&lt;br /&gt;&lt;br /&gt;With Banks, Credit Cards, etc, you may login by typing in the known address of your financial institution or calling their support center and verifying issues.&lt;br /&gt;&lt;br /&gt;With the Postal Service emails, these normally contain an executable file (.zip format) and state to execute it to print a ticket why they could not deliver the package to your house. These attachments are Trojans or Viruses to infect your system.... do not execute.&lt;br /&gt;&lt;br /&gt;First off if there was an issue delivering your package, most postal services will leave a tag of some sort stating they could not deliver it and will make another attempt the following day, they will never email you.&lt;br /&gt;&lt;br /&gt;With Domains, always contact the service provider directly and verify with their help desk if there is an issue (email or call them).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-4797669894341904671?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/4797669894341904671/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=4797669894341904671' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4797669894341904671'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4797669894341904671'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/10/phishing-new-wave-of-scams.html' title='Phishing: New wave of scams...'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5962074596851538233</id><published>2009-10-08T12:59:00.000-07:00</published><updated>2009-10-08T13:12:48.009-07:00</updated><title type='text'>Rouge: SWP2009 Demo.com</title><content type='html'>I just encountered this one this afternoon... lots of Pornsites launched through Internet Explorer, and lots of warnings of Viruses, Trojans, etc. And of course the "We'll remove all this nasty stuff for you if you purchase the full version..."&lt;br /&gt;&lt;br /&gt;This is yet another variant of rouge Antivius that infects your computer and tries to pass itself off as a saviour to remove your problems (it put on your PC in the first place).&lt;br /&gt;&lt;br /&gt;If you find yourself infected with this nasty Malware do the following:&lt;br /&gt;&lt;br /&gt;* Disconnect your PC from the Internet (it will keep pulling down crap while your connected)&lt;br /&gt;&lt;br /&gt;* On another "CLEAN" PC, download MalwareBytes and its def file. And rename both of them to some oddball name. This malware will attempt to detect the installer by their standard names and state they are infected (the Scareware part of this ordeal).&lt;br /&gt;&lt;br /&gt;* Burn Malware and its def file to a CD, and attempt to install on the infected PC.&lt;br /&gt;&lt;br /&gt;* Go into  the install directory, and rename the 'mbm.exe' to yet another oddball name (again this looks for Malwarebytes and Spybots "standard" .exe names).&lt;br /&gt;&lt;br /&gt;* Launch the "oddball" named Malware executable, and fire off a scan.&lt;br /&gt;&lt;br /&gt;This is the standard procs and files associated with the "SWP2009 Demo.com" variant:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Ss5HZvAzSKI/AAAAAAAAAHY/3J6SIZWEVEs/s1600-h/mwb-swp2009-procs.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 203px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Ss5HZvAzSKI/AAAAAAAAAHY/3J6SIZWEVEs/s320/mwb-swp2009-procs.jpg" alt="" id="BLOGGER_PHOTO_ID_5390324311451191458" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Malware Bytes: Program&lt;/span&gt;&lt;br /&gt;http://www.malwarebytes.org&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;Malware Bytes: Def File&lt;br /&gt;&lt;/span&gt;&lt;a href="http://mbam.malwarebytes.org/database/mbam-rules.exe"&gt;http://mbam.malwarebytes.org/database/mbam-rules.exe&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5962074596851538233?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5962074596851538233/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5962074596851538233' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5962074596851538233'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5962074596851538233'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/10/rouge-swp2009-democom.html' title='Rouge: SWP2009 Demo.com'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/Ss5HZvAzSKI/AAAAAAAAAHY/3J6SIZWEVEs/s72-c/mwb-swp2009-procs.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-6089226156905946036</id><published>2009-10-07T14:08:00.000-07:00</published><updated>2009-10-07T14:28:39.316-07:00</updated><title type='text'>Scam: Low Priced Software</title><content type='html'>"You Can't Always Get What You Want..."&lt;br /&gt;~The Rolling Stones&lt;br /&gt;&lt;br /&gt;Interesting emails from scammers coming out since Windows 7 is about to be released.&lt;br /&gt;&lt;br /&gt;They promise a "low" price for Windows 7, along with other "new" software (that is due to be released soon)..but some how they "magically" have the retail version.&lt;br /&gt;&lt;br /&gt;Yeah, you guessed it, a big scam. The only thing you are going to get from these scammers, is a bogus software file (most likely a virus or trojan), and your credit card info stolen from you.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Example of email received:&lt;br /&gt;&lt;br /&gt;==========================================================&lt;br /&gt;&lt;br /&gt;From: "Nigel Cuevas" &lt;redeem44@rileycon.com&gt;&lt;br /&gt;To: &lt;you@your_email.com&gt;&lt;br /&gt;Subject: Need Good Software? Ask Us For Help.&lt;br /&gt;Date: Thu, 8 Oct 2009 05:13:14&lt;br /&gt;&lt;br /&gt;Install the new Windows 7 Ultimate NOW!&lt;br /&gt;&lt;br /&gt;This operational system has become familiar&lt;br /&gt;to all the computer users recently.&lt;br /&gt;&lt;br /&gt;Windows 7 Ultimate gives you everything that&lt;br /&gt;you need for a fast and effective work of your&lt;br /&gt;computer or a laptop. Feel free to create your&lt;br /&gt;personal home network with Windows 7 Ultimate&lt;br /&gt;operational systems and share your pictures,&lt;br /&gt;videos, music etc. in seconds. Widows 7&lt;br /&gt;Ultimate system gives a wide range of new&lt;br /&gt;features that are no available in any other&lt;br /&gt;operational systems. Once you installed it to&lt;br /&gt;your computer you will even get a chance to&lt;br /&gt;watch TV channels for free.&lt;br /&gt;&lt;br /&gt;Buying Windows 7 Ultimate NOW, you will make&lt;br /&gt;sure that your personal data will be secured&lt;br /&gt;as this operational system owns the highest&lt;br /&gt;security level then ever.&lt;br /&gt;&lt;br /&gt;You can get all this for only $99.95 at Windows 7&lt;br /&gt;Ultimate site while the retail price for this&lt;br /&gt;unique operational system is $399.99. This way&lt;br /&gt;you save up to $300 and there is no need for&lt;br /&gt;you to leave your home and visit computer shops&lt;br /&gt;to buy it. As you can buy it through the internet&lt;br /&gt;right now.&lt;br /&gt;&lt;br /&gt;Visit us right now to get your Windows 7 Ultimate&lt;br /&gt;today or look through the other software that is&lt;br /&gt;presented at our site. Only in our online software&lt;br /&gt;shop you will easily get:&lt;br /&gt;&lt;br /&gt;  * Windows XP Professional with Service Pack 3 for $59.95&lt;br /&gt;  * Adobe Photoshop CS4 Extended for MAC for $119.95&lt;br /&gt;  * Office Enterprise 2007 for $79.95&lt;br /&gt;&lt;br /&gt;And many other software products as well. Visit&lt;br /&gt;Windows 7 Ultimate site now and get your software!&lt;br /&gt;&lt;/you@your_email.com&gt;&lt;/redeem44@rileycon.com&gt;&lt;br /&gt;==========================================================&lt;redeem44@rileycon.com&gt;&lt;you@your_email.com&gt;&lt;br /&gt;&lt;br /&gt;Right off the bat, Windows 7 hasn't been released yet, not out until 10/22/2009. However there is a 'beta' (pre-release test version) out, that Microsoft has discontinued support on and revoked all "windows keys" from. This version was offered to beta testers for free until the retail version was ready to ship.&lt;br /&gt;&lt;br /&gt;Also, they claim all their software (such as Windows 7) is down loadable. Upon checking this out, I found the software in .zip files.  With any installable Operating System (such as Windows),  you will need a bootable CD to install it. Or at least a very large .iso file (you can burn .iso files to CDs and DVDs), but there is no mention of .iso files or what to do with the software once you download it.&lt;br /&gt;&lt;br /&gt;I traced back the originating IP address (61.252.113.254) and not only is it from Republic of Korea, but also on a vast majority of known spammers lists.&lt;br /&gt;&lt;br /&gt;Just mark it as junk and delete it.&lt;table class="table" border="0" cellpadding="2" cellspacing="0"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;/tr&gt;&lt;tr&gt;&lt;th class="h1"&gt;&lt;br /&gt;&lt;/th&gt;&lt;td class="h1"&gt;&lt;br /&gt;&lt;/td&gt;&lt;td class="h1"&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;th&gt;&lt;br /&gt;&lt;/th&gt;&lt;td&gt;&lt;br /&gt;&lt;/td&gt;&lt;td colspan="2" nowrap="nowrap"&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;th class="spacer"&gt;&lt;br /&gt;&lt;/th&gt;&lt;td&gt;&lt;br /&gt;&lt;/td&gt;&lt;td colspan="2" nowrap="nowrap"&gt;&lt;br /&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;/you@your_email.com&gt;&lt;/redeem44@rileycon.com&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6089226156905946036?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6089226156905946036/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6089226156905946036' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6089226156905946036'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6089226156905946036'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/10/scam-low-priced-software.html' title='Scam: Low Priced Software'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8976436016786114016</id><published>2009-09-30T08:22:00.000-07:00</published><updated>2009-09-30T08:43:33.517-07:00</updated><title type='text'>Cleanup Tip: Compacting Email Mailboxes</title><content type='html'>You have been getting email for years now, and you rarely delete any emails (well except for the junk mail). And suddenly your system and email client seem to be slowing down, and its now taking a few minutes to get your mail. And once in a while your email client seems to "lock up" when you try to move or delete a message.&lt;br /&gt;&lt;br /&gt;Its time to compact your mailboxes....&lt;br /&gt;&lt;br /&gt;Compacting mailboxes is one step to take to clean up your mailboxes, and assure they are not wasting 'empty' space on your system.&lt;br /&gt;&lt;br /&gt;Also compacting your mailboxes will improve your email client's performance (henc instead of reading a 4 GB file, it now working with a 1 GB file).&lt;br /&gt;&lt;br /&gt;Here is how:&lt;br /&gt;&lt;br /&gt;MOZILLA THUNDERBIRD&lt;br /&gt;&lt;br /&gt;01. Click on your mailbox (aka Local Folders)&lt;br /&gt;02. Click 'File'-&gt; 'Compact Folders'&lt;br /&gt;   &lt;br /&gt;    Depending on the original size of your mailbox&lt;br /&gt;    this may take some time.&lt;br /&gt;&lt;br /&gt;03. Wait for 'Compaction&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;OUTLOOK 2003:&lt;br /&gt;&lt;br /&gt;01. Click 'File' -&gt; 'Data File Management'&lt;br /&gt;02. Click on first mailbox, and click [Settings]&lt;br /&gt;03. Click [Compact Now]&lt;br /&gt;&lt;br /&gt;    Depending on the original size of your mailbox&lt;br /&gt;    this may take some time.&lt;br /&gt;&lt;br /&gt;04. Wait for the 'Compacting...' message to disapear&lt;br /&gt;05. Click [ok] and then [close]&lt;br /&gt;06. Procedure completed.&lt;br /&gt;&lt;br /&gt;Here is a Outlook mailbox that was never compacted. It took about 2.5 hours to complete the compacting:&lt;br /&gt;&lt;br /&gt;Outlook.pst "Before" Compacting (4 GB file yikes! no wonder Outlook was running slow)&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SsN4E8MGSdI/AAAAAAAAAHI/-hEoLUSo5jE/s1600-h/outlook-before.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 82px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SsN4E8MGSdI/AAAAAAAAAHI/-hEoLUSo5jE/s320/outlook-before.jpg" alt="" id="BLOGGER_PHOTO_ID_5387281605536926162" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Outlook.pst "After" compacting (the 4 GB is now down to 1.3 GB)&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SsN4FbxG73I/AAAAAAAAAHQ/aGEnOVoPT0Y/s1600-h/outlook-after.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 79px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SsN4FbxG73I/AAAAAAAAAHQ/aGEnOVoPT0Y/s320/outlook-after.jpg" alt="" id="BLOGGER_PHOTO_ID_5387281614013656946" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;OUTLOOK EXPRESS:&lt;br /&gt;&lt;br /&gt;01. Click 'File'-&gt; 'Folder'&lt;br /&gt;02. Click on 'Compact All Folders'&lt;br /&gt;   &lt;br /&gt;    Depending on the original size of your mailbox&lt;br /&gt;    this may take some time.&lt;br /&gt;&lt;br /&gt;03. Wait for completion of task.&lt;br /&gt;04. Procedure completed.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8976436016786114016?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8976436016786114016/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8976436016786114016' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8976436016786114016'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8976436016786114016'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/09/cleanup-tip-compacting-email-mailboxes.html' title='Cleanup Tip: Compacting Email Mailboxes'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/SsN4E8MGSdI/AAAAAAAAAHI/-hEoLUSo5jE/s72-c/outlook-before.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8089763387927817801</id><published>2009-09-24T06:27:00.000-07:00</published><updated>2009-09-24T06:40:59.177-07:00</updated><title type='text'>SPAM:  'Blocked' or 'Locked' Images in Email</title><content type='html'>Lately there have been several emails coming from Spammers that state images are "blocked" or "loccked" and to view them click the link. Here is an example:&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/Srt0KfatrQI/AAAAAAAAAHA/HGJcPVO4obw/s1600-h/blockedimages.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 240px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/Srt0KfatrQI/AAAAAAAAAHA/HGJcPVO4obw/s320/blockedimages.jpg" alt="" id="BLOGGER_PHOTO_ID_5385025503032618242" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;This is just another way for Spammers to verify your email is active, so they can continue to send you more spam, and maybe even sell your "active" email to other spammers for cash.&lt;br /&gt;&lt;br /&gt;Simply, do not click ANY links in this emai (unsubscribe, service disclaimer, contact us, etc), they all are set to the same program to let the spammer know your email is "active".&lt;br /&gt;&lt;br /&gt;Just mark it junk and delete it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8089763387927817801?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8089763387927817801/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8089763387927817801' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8089763387927817801'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8089763387927817801'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/09/spam-blocked-or-locked-images-in-email.html' title='SPAM:  &apos;Blocked&apos; or &apos;Locked&apos; Images in Email'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/Srt0KfatrQI/AAAAAAAAAHA/HGJcPVO4obw/s72-c/blockedimages.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5780737542971777189</id><published>2009-09-03T13:00:00.000-07:00</published><updated>2009-11-30T10:45:50.204-08:00</updated><title type='text'>ISSUE: MalwareBytes Installed But Will Not Run</title><content type='html'>"Extreme ways they help me, They help me out late at night."&lt;br /&gt;~Moby ('Extreme Ways')&lt;br /&gt;&lt;br /&gt;You have an infected PC, and you installed Malwarebytes and are unable to run it.&lt;br /&gt;&lt;br /&gt;Some Spyware/Virus writers caught on, and have coded the process names into their code which look and kill the processes before they get a chance to start that would end up defeating their spyware or virus.&lt;br /&gt;&lt;br /&gt;You can easily combat this, by simply copying the '&lt;span style="font-style: italic;"&gt;program_name.exe&lt;/span&gt;' and rename the copy to something really off the wall that the writers would not be able to look for in their code.&lt;br /&gt;&lt;br /&gt;Something like '12346mb.exe' is a start. Some will look for the program name of "Copy of &lt;span style="font-style: italic;"&gt;program.exe&lt;/span&gt;", so just avoid using this name for the renamed program.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5780737542971777189?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5780737542971777189/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5780737542971777189' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5780737542971777189'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5780737542971777189'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/09/issue-malwarebytes-installed-but-will.html' title='ISSUE: MalwareBytes Installed But Will Not Run'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7796981437993924288</id><published>2009-09-02T10:26:00.000-07:00</published><updated>2009-11-30T11:01:08.016-08:00</updated><title type='text'>Rougeware: Advanced Virus Remover</title><content type='html'>Rouge Software Preventive Tips:&lt;br /&gt;&lt;br /&gt;*&lt;span style="font-weight: bold;"&gt; &lt;span style="color: rgb(255, 0, 0);"&gt;DO NOT trust any pops ups that claim your systems is infected&lt;/span&gt;&lt;/span&gt;, or prompting you to download and install a AntiVirus/Spyware tool. If you think you are infected, seek help, or go to an official site (AVG, Avast!, McAfee, Symantec, NOD32) site and download either a free home version or demo.&lt;br /&gt;&lt;br /&gt;* Invest into a good firewall, install it, AND review what its telling you. #1 mistake people make with firewalls, they just click [yes] to get out to the net or get their game or application working, this defeats the purpose of the firewall. I highly recommend "Sygate Personal Firewall", its user friendly, it tells you everything that is happening, and its free, so there are no excuses not to go download it and install it!&lt;br /&gt;&lt;br /&gt;Now for the removal of "Advanced Virus Remover":&lt;br /&gt;&lt;br /&gt;First off... ALWAYS backup your data... its infections like these that sometimes you may never get your system back and have to blow everything away.&lt;br /&gt;&lt;br /&gt;OK, you may notice the pornographic icons on your desktop to adult sites (don't click them). Then you will begin receiving messages from he rouge software that your infected, and you MUST purchase the full version to remove the viruses (don't click these either).&lt;br /&gt;&lt;br /&gt;Internet Explorer will also start failing.&lt;br /&gt;&lt;br /&gt;Here is system that's infected with the Advanced Virus Remover:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sp6sP2kKtNI/AAAAAAAAAGw/VLLZGvSktJk/s1600-h/adv-virusremover-infected.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 179px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sp6sP2kKtNI/AAAAAAAAAGw/VLLZGvSktJk/s320/adv-virusremover-infected.jpg" alt="" id="BLOGGER_PHOTO_ID_5376924393472177362" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click for larger image of example)&lt;br /&gt;&lt;br /&gt;** Don't reboot, this software disables your 'Safemode' **&lt;br /&gt;&lt;br /&gt;Immediately fire off a system scan with AVG for now and allow it to detect.&lt;br /&gt;&lt;br /&gt;** If you get a popup requesting to register, or click [Ok]... DON'T! **&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sp6utqFLaLI/AAAAAAAAAG4/5W1TW9AIi-c/s1600-h/adv-virusremover-banner.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 71px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sp6utqFLaLI/AAAAAAAAAG4/5W1TW9AIi-c/s320/adv-virusremover-banner.jpg" alt="" id="BLOGGER_PHOTO_ID_5376927104540305586" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click for larger image of example)&lt;br /&gt;&lt;br /&gt;This will tell this infection to go out and download MORE infections to your PC. Instead just move the pop-ups out of the way so you can get to AVG. Because even if you click the [X] on the pop-up, it will still go out and and grab more stuff (aka 'no' is not an option to this software).&lt;br /&gt;&lt;br /&gt;AVG will be unable to remove two threats, and will require a system reboot, allow it to do so.&lt;br /&gt;&lt;br /&gt;When the system returns, re-scan with AVG to see if all infected items have been removed.&lt;br /&gt;&lt;br /&gt;Then  scan with MalwareBytes followed by Spybot Search &amp;amp; Destroy.&lt;br /&gt;&lt;br /&gt;Scanning times will vary depending on how much data you have on your system.&lt;br /&gt;&lt;br /&gt;By this time, your system should be clean, if not then you may have other infections you will need to research to remove and start looking for recovery disks and pray that your data is backed up.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7796981437993924288?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7796981437993924288/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7796981437993924288' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7796981437993924288'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7796981437993924288'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/09/rougeware-advanced-virus-remover.html' title='Rougeware: Advanced Virus Remover'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/Sp6sP2kKtNI/AAAAAAAAAGw/VLLZGvSktJk/s72-c/adv-virusremover-infected.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7778086656136548502</id><published>2009-08-31T13:53:00.000-07:00</published><updated>2009-09-01T11:06:20.754-07:00</updated><title type='text'>Virus: 'Reader_s.exe'</title><content type='html'>Dr Ray Stantz: Venkman? I saw it, I saw it, I saw it.&lt;br /&gt;Dr. Peter Venkman: It's right here, Ray. It's... looking at me.&lt;br /&gt;Dr Ray Stantz: He's an ugly little spud, isn't he?&lt;br /&gt;Dr. Peter Venkman: I think he can hear you, Ray.&lt;br /&gt;~Ghostbusters (1984)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Before anything... yes this is a very bad virus, you are looking at full system rebuild at this time. of this Document. No Antivirus company has been able to successfully REMOVE the virus, only detect it and say "yep... you have it" at the time of this document.&lt;br /&gt;&lt;br /&gt;I have battled this virus for four days, and took notes what I did. I have read many of posts how people have combated the virus, and they all boiled down to .. full system re-build.&lt;br /&gt;&lt;br /&gt;The author of this virus should be hunted down by a lynch mob and beaten severely with the big metal IBM keyboards of years gone by.&lt;br /&gt;&lt;br /&gt;This virus will infect every .html / .htm file on your system. This includes all "help" files (Windows, Firefox, Quicken, etc). Your virus vault may reach capacity with the infected files as such with AVG (filled it up with 1,700 infected .html files)&lt;br /&gt;&lt;br /&gt;So far no major Anti-virus products can remove it, and the stand alone 'Virut' detectors/removers only detect it and kill the process. It returns on the next reboot (most Virut detectors require a reboot after it detects the virus to remove it). It comes right back as soon as you reboot your PC.&lt;br /&gt;&lt;br /&gt;To get rid of this nasty virus, you will need to completely remove your partitions and recreate them again. So hopefully you have good backups of your data off your system.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Now we start....&lt;br /&gt;&lt;br /&gt;Virus Family Tree: win32/Virut&lt;br /&gt;&lt;br /&gt;Processes associated with this threat:&lt;br /&gt;&lt;br /&gt;reader_s.exe&lt;br /&gt;&lt;span style="font-style: italic;"&gt;yourusername.&lt;/span&gt;exe&lt;br /&gt;winlogon.exe (an altered version by the hacker)&lt;br /&gt;&lt;br /&gt;Synopses:&lt;br /&gt;&lt;br /&gt;You will first notice that your virus checker will begin stating that all .html files are now infected, and a process 'winlogon.exe.' is attempting to connect to something out on the Internet (this is why everyone should be running a firewall!).&lt;br /&gt;&lt;br /&gt;At this time, just formatting your partition will not work, the virus lives within the boot sectors of the partition, and remains there even AFTER you have formatted and attempted to re-install Windows.&lt;br /&gt;&lt;br /&gt;It does not come back right away, but comes back within 30 mins after a network connection is connected to your PC. This is when you will see 'winlogon.exe' makes an attempt to connect to a 91.xxx.xxx IP address. Its attempting to break out, and download more harmful items to infect your system.&lt;br /&gt;&lt;br /&gt;What to do...&lt;br /&gt;&lt;br /&gt;First.... disconnect your system from the network!&lt;br /&gt;&lt;br /&gt;Second... DO NOT use USB drives on the infected system with Windows booted, they may become infected and transfer the infection to other systems. A few $0.10 CDRs vs. Another Infected System...you decide.&lt;br /&gt;&lt;br /&gt;So far I have encountered this and dealt with this only on a Windows XP box, so the following method is for Windows XP at this time:&lt;br /&gt;&lt;br /&gt;On ANOTHER PC (aka Not Infected!):&lt;br /&gt;&lt;br /&gt;* Download and burn the ISO of 'G-Parted' from:&lt;br /&gt;http://gparted.sourceforge.net&lt;br /&gt;&lt;br /&gt;* Download a copy of Avast!:&lt;br /&gt;http://www.avast.com/&lt;br /&gt;&lt;br /&gt;* Download a copy of Sygate Firewall:&lt;br /&gt;http://www.tucows.com/preview/213160&lt;br /&gt;&lt;br /&gt;Burn 'Avast!' and 'Sygate'  onto a CDR....(or CD-RW)&lt;br /&gt;&lt;br /&gt;You want to use CD/DVD ROM's during this recovery, and not USB drives, they may become infected and you may risk infecting your other systems.&lt;br /&gt;&lt;br /&gt;Grab your copy of G-Parted, and Windows Install CD, and get ready for a rebuild.&lt;br /&gt;&lt;br /&gt;This Virus also stays in memory, so no warm boots before deleting/creating your partitions and booting the Windows install CD.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;What!?!! You don't / haven't backed your data up.&lt;/span&gt;   :/&lt;br /&gt;&lt;br /&gt;01. Download (on an uninfected PC): Knoppix Live DVD and burn to a DVD:&lt;br /&gt;&lt;br /&gt;http://www.knopper.net/knoppix/index-en.html&lt;br /&gt;&lt;br /&gt;02. Turn your infected PC off and let it sit for 2 mins, and then boot from the Knoppix DVD.&lt;br /&gt;&lt;br /&gt;03. Once Knoppix has loaded,  and you see your drives on the Knoppix desktop, plug in your USB drive.&lt;br /&gt;&lt;br /&gt;This is not certifying your data is 100% recoverable, BUT its your only chance for recovery at this point.&lt;br /&gt;&lt;br /&gt;04. Backup your data from C:\Documents and Settings\&lt;span style="font-style: italic;"&gt;your name&lt;/span&gt; on to the USB drive, you&lt;br /&gt;will want to inlcude from this path:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Favorites&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;My Documents (which will house My Pictures and My Music)&lt;/li&gt;&lt;/ul&gt;Using Mozilla Firefox and Thunderbird?:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Mozilla (the entire dir, this houses Firefox)&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;Thunderbird (the entire directory, if you use this email client)&lt;/li&gt;&lt;/ul&gt;Outlook Users:&lt;br /&gt;&lt;br /&gt;C:\Documents and Settings\JLey\Local Settings\Application Data\Microsoft\Outlook&lt;br /&gt;&lt;br /&gt;05. Once your data is backed up, shutdown the system and remove your USB drive and put it up in a safe place for now.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;...now on with the show&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Removal Instructions for Windows XP:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;01. Shut system off, wait about 2 minutes.&lt;br /&gt;&lt;br /&gt;02. Plug things in, turn on PC, load G-Parted from the LiveCD.&lt;br /&gt;&lt;br /&gt;03. G-Parted: remove all partitions, create a 20 GB one for Windows for now.&lt;br /&gt;&lt;br /&gt;04. Exit G-Parted, power PC down, wait 2 mins.&lt;br /&gt;&lt;br /&gt;05. Power up, begin Windows Install.&lt;br /&gt;&lt;br /&gt;Windows will copy the files to your system, and reboot your system. This is okay at this time for a "warm" boot. It will also perform another "Warm" boot during the final stages before going to the desktop.&lt;br /&gt;&lt;br /&gt;The critical mistake I did first time around, was to warm boot from the Infected Windows OS, and format and reinstall Windows, the virus remained in the bootblock and ram waiting for its chance to strike.&lt;br /&gt;&lt;br /&gt;06. After a successful install of Windows,  install 'Avast!' anti-virus (yeah I know I'm an AVG fan, but Avast! will allow you to scan the boot blocks of the drives, so far AVG free will not). You may have to connect the PC to the Net for a few seconds to Avast! can grab the latest definitions to apply to itself (this is okay for now).&lt;br /&gt;&lt;br /&gt;07. Install, and only allow Avast to connect to the Net and download its updates, then pull the plug on the network.&lt;br /&gt;&lt;br /&gt;08. Then install Avast!, right click on the 'a' icon in system tray, and select "Start Avast! Antivirus".&lt;br /&gt;&lt;br /&gt;At this time, Avast! will begin scanning your memory for issues, once completed, right click in tghe Avast! window, and select "Schedule Boot-Time Scan..." and reboot your system. And allow Avast! to do its job and scan everything you have installed thus far (this is why you just installed a "Vanilla"&lt;em&gt;&lt;/em&gt; copy of Windows... short time to scan).&lt;br /&gt;&lt;br /&gt;09. After PC boots, install Sygate firewall, reboot PC (yet again) and review processes that Sygate reports wants to access the Internet. (Windows XP Firewall is a joke, like having a screen door on a submarine...Win9x has no firewall to begin with). Sygate is FREE (no gimicks) and provides a simple yet secure interface allowing you what to let in/let out to the Internet.&lt;br /&gt;&lt;br /&gt;Do not allow "winlogon.exe" to access the Internet if prompted by Sygate, this means your still infected. Review above steps to see what was missed.&lt;br /&gt;&lt;br /&gt;Other then that monitor PC for at least 12 hours allowing it to be connected to the Internet to see if anything else prompts Sygate to connect.&lt;br /&gt;&lt;br /&gt;10. After 12 hours have passed, and no infections, begin rebuilding your partitions and restore your data.&lt;br /&gt;&lt;br /&gt;The reason why I use 12 hours, I did not see the virus right away, while it lurked in the bootblock until I connected to the net and about 5 hours later it popped right back when 'winlogon.exe' prompted Sygate to access the Internet.&lt;br /&gt;&lt;br /&gt;Also as word of advice, use the "Full Detail" mode when an application is trying to access the Inet via Sygate. So you can see what it is trying to access. In most cases, some folks just click [yes] to get rid of the message, etc to get their program or game loading.&lt;br /&gt;&lt;br /&gt;......and this is how systems WITH a good Firewall leads to become infected.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7778086656136548502?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7778086656136548502/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7778086656136548502' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7778086656136548502'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7778086656136548502'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/08/virus-readersexe.html' title='Virus: &apos;Reader_s.exe&apos;'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-903489957217180063</id><published>2009-08-23T17:58:00.001-07:00</published><updated>2009-08-23T19:46:35.339-07:00</updated><title type='text'>Phisher: Yahoo Account</title><content type='html'>"And I said ..No, No, No.... I Don't.... No More"&lt;br /&gt;-Ringo Star &amp;amp; His All Star Band&lt;br /&gt;&lt;br /&gt;Golden rule, never reply to any emails requesting your name and or password. Nine out of Ten times they are Phishers like the following trying to hijack your email account and use it for SPAM.&lt;br /&gt;&lt;br /&gt;This one came in requesting the Yahoo account info, pretending to be the Help Desk at Yahoo, and needed our info to set up an alert. Oh and they use scare tactics to attempt to scare you into giving it up, such as you will no longer receive any more mail once it reaches 25 MB.&lt;br /&gt;&lt;br /&gt;These Phishers are behind the times, Yahoo email is much bigger then 25 MB.&lt;br /&gt;&lt;br /&gt;-[example of email]---------------------------------------------------&lt;br /&gt;&lt;br /&gt;Subject:      Helpdesk Program&lt;br /&gt;Date:     Mon, 24 Aug 2009 00:58:02 +0200 (CEST)&lt;br /&gt;From:     System Administrator &lt;serviciosgenerales@illescas.es&gt;&lt;br /&gt;Reply-To:     foldermaill@yahoo.com.hk&lt;br /&gt;To:     undisclosed-recipients:;&lt;br /&gt;&lt;br /&gt;The Helpdesk Program that periodically checks the size of your e-mail space is sending you this information. The program runs weekly to ensure your inbox does not grow too large, thus preventing you from receiving or sending new e-mail. As this message is being sent, you have 18 megabytes (MB) or more stored in your inbox. To help us reset your space in our database, please enter your current user name (_________________) password (_______________)&lt;br /&gt;&lt;br /&gt;You will receive a periodic alert if your inbox size is between 18 and 20 MB. If your inbox size is 20 MB, a program on your Webmail will move your oldest e-mails to a folder in your home directory to ensure you can continue receiving incoming e-mail. You will be notified this has taken place.&lt;br /&gt;&lt;br /&gt;If your inbox grows to 25 MB, you will be unable to receive new e-mail and it will be returned to sender. All this is programmed to ensure your e-mail continues to function well.&lt;br /&gt;&lt;br /&gt;Thank you for your cooperation.&lt;br /&gt;Help Desk&lt;br /&gt;&lt;br /&gt;-------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;So as in the past, just mark it as "junk" and delete it and move on to the next email.&lt;/serviciosgenerales@illescas.es&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-903489957217180063?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/903489957217180063/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=903489957217180063' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/903489957217180063'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/903489957217180063'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/08/phisher-yahoo-account.html' title='Phisher: Yahoo Account'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-9166960664708648966</id><published>2009-08-06T09:35:00.000-07:00</published><updated>2009-08-06T10:03:24.683-07:00</updated><title type='text'>Virus: UPS Unable to Deliver Package</title><content type='html'>"Please Mister Postman, look and see,  If there's a letter in your bag for me"&lt;br /&gt;~ The Marvelettes&lt;br /&gt;&lt;br /&gt;You receive an email from UPS stating they were unable to deliver a package to your home. But don't worry, this is just a scam to get you to williningly install malicious software to infect your computer from a Hacker.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;[Example Email]---------------------------------------------------------&lt;br /&gt;&lt;br /&gt;From: "Lorena Carroll" &lt;billsl39@sironi.it&gt;&lt;br /&gt;To: &lt;span style="font-style: italic;"&gt;you&lt;/span&gt;&lt;you&gt;&lt;br /&gt;Subject: UPS Tracking Number 890AIUM&lt;br /&gt;&lt;br /&gt;Hello!&lt;br /&gt;Unfortunately we were not able to deliver postal package sent on the 28th of July in time because the addressee's address is inexact.&lt;br /&gt;&lt;br /&gt;Please print out the invoice copy attached and collect the package at our department.&lt;br /&gt;&lt;br /&gt;Your United Parcel Service of America&lt;br /&gt;&lt;br /&gt;-------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;And then there is the attached file. In this case a 'UPSNR_e92fa218.zip'  was the attachment I am supposed to run to generate an invoice.&lt;br /&gt;&lt;br /&gt;Well this file is how malicious software gets on your computer. Don't execute it.&lt;br /&gt;&lt;br /&gt;1) UPS or USPS will never email you if they can not deliver a package. They will just post a sticky note or leave a pink note stating they will make another attempt. After three times, you can go pick up the package.&lt;br /&gt;&lt;br /&gt;2) There is no need to .zip or send an executable (.exe) program to generate an invoice, 90% of the time its a standard email that comes through. This allows you the consumer to view it without having to jump through hoops to get another piece of software instal to view it.&lt;br /&gt;&lt;br /&gt;So, just mark these as 'junk'  and delete it.&lt;/you&gt;&lt;/billsl39@sironi.it&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-9166960664708648966?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/9166960664708648966/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=9166960664708648966' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9166960664708648966'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9166960664708648966'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/08/virus-ups-unable-to-deliver-package.html' title='Virus: UPS Unable to Deliver Package'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1738044266029366868</id><published>2009-07-13T09:20:00.000-07:00</published><updated>2009-07-13T09:39:23.419-07:00</updated><title type='text'>"Don't Fall For FiOS"</title><content type='html'>&lt;div style="text-align: center;"&gt;&lt;div style="text-align: left;"&gt;&lt;p&gt;"ooh-hoo, jackie blue, making wishes that never come true"&lt;br /&gt;~Ozark Mountain Daredevils&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;Comcast makes another attempt to sway people from going or joining Verizon FiOS, with some new TV ads depicting their own version of the "FiOS" install man. And how Verizon blunders installing FiOS.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SltfO1hrfhI/AAAAAAAAAGo/D_tJgKf9f_I/s1600-h/comcast-joke.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 231px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SltfO1hrfhI/AAAAAAAAAGo/D_tJgKf9f_I/s320/comcast-joke.jpg" alt="" id="BLOGGER_PHOTO_ID_5357980890178485778" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;They did this a year or so ago with their blue glowing "FiOS Man" trying to make friends and being told they are staying with Comcast. Ironically this "Truth About FiOS" is published and hosted on Comcast equipment. If they were "really" telling the truth, they would have pointed out a different server, and or had another comapny step in to evaluiate the "Comcast vs. FiOS" ordeal.&lt;br /&gt;&lt;br /&gt;The questions they posted above, are weak, and they also apply for Comcast. For example the question about installing FiOS involves days, and digging up your lawn.&lt;br /&gt;&lt;br /&gt;For those who have had or have Comcast, you had to also schedule a day aside to allow Comcast to install, and for those who have underground wiring, you found that Comcast had to dig up your lawn as well, or as in the case with a buddy of mine, it took seven (thats right 7) Comcast Techs to visit all stated the modem drops he was receiving (10+ a day for minutes even hours) was 'Ok'.&lt;br /&gt;&lt;br /&gt;Then the eighth Comcast Tech to arrive found the Coax cable had deteriorated somewhere underground, and guess what... yes, Comcast had to dig the lawn up to replace because the entire neighborhood utility wiring was underground.&lt;br /&gt;&lt;br /&gt;Need better answers or concrete evidence, and don't want to rely on Verizon or Comcast and need to see more peoples Comcast problems?&lt;br /&gt;&lt;br /&gt;Visit Broadband Reports:&lt;br /&gt;http://www.dslreports.com&lt;br /&gt;&lt;br /&gt;And if you want to look into moving over to FiOS:&lt;br /&gt;&lt;br /&gt;http://www.verizon.com/fios&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1738044266029366868?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1738044266029366868/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1738044266029366868' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1738044266029366868'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1738044266029366868'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/07/dont-fall-for-fios.html' title='&quot;Don&apos;t Fall For FiOS&quot;'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SltfO1hrfhI/AAAAAAAAAGo/D_tJgKf9f_I/s72-c/comcast-joke.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-367021696927357182</id><published>2009-07-09T11:08:00.000-07:00</published><updated>2009-07-09T11:30:15.489-07:00</updated><title type='text'>Scam: Tronix Country</title><content type='html'>"Keep a knockin' but you can't come in&lt;br /&gt;Come back tomorrow night and try it again"&lt;br /&gt;~Little Richard&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;First off......no not related to us.&lt;br /&gt;&lt;br /&gt;So just like the Blue Hippo computers, this ad is run on television and on the radio. Promising you a "real fast computer" for $29.99 a week. Sounds good eh?&lt;br /&gt;&lt;br /&gt;Well the $29.99 a week is for twelve (12) months (52 weeks * $29.99 = $1554.80),  and of course they will add on the shipping and handling costs to this figure.&lt;br /&gt;&lt;br /&gt;Then there is the $99.00 to establish an account with Tronix Country.&lt;br /&gt;&lt;br /&gt;Oh and if you find you can't pay the $29.99 a week, there is a $175.00 cancellation processes.&lt;br /&gt;&lt;br /&gt;You can go out and purchase a fast machine for $600.00.&lt;br /&gt;&lt;br /&gt;** small voice of concern ** "But they will help rebuild my credit..."&lt;br /&gt;&lt;br /&gt;So do yourself a favor, and save that $29.99 a week, along with the $99.00 and the $175.00, and put it all in the bank. When you have saved up around $600.00 then go purchase the computer.&lt;br /&gt;&lt;br /&gt;Better, take that money and begin to pay off your debt, no access to a PC for banking? Then choose a local bank you can walk to, once you have enough of your credit paid off, then use the card to purchase the computer and then pay off that amount immediately.&lt;br /&gt;&lt;br /&gt;** small voice of concern ** "But what about the FREE printer, hdtv, mp3 player...!!!!?"&lt;br /&gt;&lt;br /&gt;Places like Best Cry are begging you to take the free printers because they are cheap and want to get rid of them. The ink cartridges are more then the printers now a days anyway.&lt;br /&gt;&lt;br /&gt;Mp3 player, you can get one 4GB for around $40.00.&lt;br /&gt;&lt;br /&gt;And if you need an HDTV... well your basically paying for it with that $1200 your paying extra for that PC from Tronix Country.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-367021696927357182?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/367021696927357182/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=367021696927357182' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/367021696927357182'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/367021696927357182'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/07/scam-tronix-country.html' title='Scam: Tronix Country'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1560991068903709252</id><published>2009-06-30T07:35:00.000-07:00</published><updated>2009-06-30T07:43:49.006-07:00</updated><title type='text'>Hackers: Death of A Celebrity Scam</title><content type='html'>"Your mind tricked you to feel the pain&lt;br /&gt;Of someone close to you leaving the game of life&lt;br /&gt;So here it is, another chance"&lt;br /&gt;~Queensryche&lt;br /&gt;&lt;br /&gt;Since the passing of Michael Jackson, Billy Hayes, Farrah Faucet, etc, hackers are now using this as a ploy to get you to install their Trojans, Spyware, and even viruses on your system by stating if you execute the file from their website (or attached to email sometimes) that will reveal their killer.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SkojNX-yffI/AAAAAAAAAGg/R4w_ipVywBY/s1600-h/xfile-scam.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 199px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SkojNX-yffI/AAAAAAAAAGg/R4w_ipVywBY/s320/xfile-scam.jpg" alt="" id="BLOGGER_PHOTO_ID_5353129819765898738" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;(click to enlarge)&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;Don't follow the link or double click on any attachments in the email, and for that matter don't waste your time following the link.&lt;br /&gt;&lt;br /&gt;Its all rubbish, mark it as junk and move onto the next email.&lt;br /&gt;&lt;br /&gt;Until the next email scam....&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1560991068903709252?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1560991068903709252/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1560991068903709252' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1560991068903709252'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1560991068903709252'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/06/hackers-death-of-celbraity-scam.html' title='Hackers: Death of A Celebrity Scam'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SkojNX-yffI/AAAAAAAAAGg/R4w_ipVywBY/s72-c/xfile-scam.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8658954972732715635</id><published>2009-06-17T13:41:00.000-07:00</published><updated>2009-06-23T11:57:52.991-07:00</updated><title type='text'>Virus/Spyware: Criticle Patch For </title><content type='html'>"Please Mister Postman, look and see, If there's a letter in your bag for me"&lt;br /&gt;~The Marvelettes&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SjlVBq7w7tI/AAAAAAAAAGQ/TTe5cRCqvJA/s1600-h/crit-update-scam.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 224px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SjlVBq7w7tI/AAAAAAAAAGQ/TTe5cRCqvJA/s320/crit-update-scam.jpg" alt="" id="BLOGGER_PHOTO_ID_5348399519672364754" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;(click above for larger image)&lt;br /&gt;&lt;br /&gt;You receive an email with attachment that states there is a criticle software patch for some popular named piece of software (Outlook, Outlook Express, etc), and miraculously the patch is attached to the email.&lt;br /&gt;&lt;br /&gt;Wrong..this is a way for Hackers to infect your PC with viruses, spyware or trojans that can steal your information or keylog your id and passwords from web sites. Do not double click or save these attachments.&lt;br /&gt;&lt;br /&gt;Other variants of this type of email offer an installation of Internet Explorer (that happens to be attached to the email).&lt;br /&gt;&lt;br /&gt;This version contains a link in the email, which is a masqueraded link. It shows a valid link in the email, but takes you someplace other then 'updates.microsoft.com' and if you are using Internet Explorer, it will install the update (thanks to the vunribility with ActiveX and Internet Explorer).&lt;br /&gt;&lt;br /&gt;If your using Firefox, first off the Firefox will warn you that the site was reported for forgery, and stops there. If you choose to proceed, you go to the site, and since there is no ActiveX in Firefox, the sites plans are foiled and nothing is secretly installed onto your system.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SkEj5qQEnHI/AAAAAAAAAGY/tSV4Sgcr4T8/s1600-h/crit-update-scam2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 174px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SkEj5qQEnHI/AAAAAAAAAGY/tSV4Sgcr4T8/s320/crit-update-scam2.jpg" alt="" id="BLOGGER_PHOTO_ID_5350597305794075762" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to view larger image)&lt;br /&gt;&lt;br /&gt;If you review the address bar (where you put the web page address in), you will see that the site does contain the word 'microsoft' in it, but it does not just contain 'update.microsoft.com', but rather 'update.microsoft.com.ilfl1l1.com' which is the number one thing to look for.&lt;br /&gt;&lt;br /&gt;Rules of the road:&lt;br /&gt;&lt;br /&gt;Microsoft nor any other software company will not attach patches or executables to their email and send it to you. As a rule of thumb patches, etc are obtained by visting the vendors website and you manually download them.&lt;br /&gt;&lt;br /&gt;Just mark it as junk, and delete it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8658954972732715635?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8658954972732715635/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8658954972732715635' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8658954972732715635'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8658954972732715635'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/06/virusspyware-criticle-patch-for.html' title='Virus/Spyware: Criticle Patch For &lt;software name&gt;'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/SjlVBq7w7tI/AAAAAAAAAGQ/TTe5cRCqvJA/s72-c/crit-update-scam.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7419524939275880911</id><published>2009-06-09T10:17:00.000-07:00</published><updated>2009-06-09T10:44:35.789-07:00</updated><title type='text'>Scam: Job Offers</title><content type='html'>"Get a job Sha na na na, sha na na na na"&lt;br /&gt;~Silhouettes&lt;br /&gt;&lt;br /&gt;Offers to "work from home" come in the email several times a day. And some are very tempting, but in the long run, they are scams to take your money.&lt;br /&gt;&lt;br /&gt;They offer you a small percentage for collecting checks from their customers (who turn out to be affiliated with the scam) who send you checks (which are bogus) for hundreds of dollars.&lt;br /&gt;&lt;br /&gt;You take the check into the bank to cash it and since you are promised a percentage of that money and then turn around and wire the scamers the rest of the funds. Normally it takes a few days for a check to cash, so you don't see the outcome right away.&lt;br /&gt;&lt;br /&gt;But at day seven, your bank calls you stating the check was a fraud, and as you realized that you have been taken, the check you wired is valid, and the scamers walk away with your cash.&lt;br /&gt;&lt;br /&gt;At the same time, they also Phish your information (see the bottom of the example email), so now they know the "basics" about you. Anyone for fake IDs, credit card applications, etc?&lt;br /&gt;&lt;br /&gt;Example of Email Scam;&lt;br /&gt;&lt;br /&gt;================================================================&lt;br /&gt;Dear Sir/Madam,&lt;br /&gt;&lt;br /&gt;We have a job opening for the position of Online Accounts Clerk.&lt;br /&gt;&lt;br /&gt;Would youlike to work from your home and get paid weekly? We&lt;br /&gt;are offering this position to all interested applicants. Please&lt;br /&gt;carefully read through. BusbyFabric, is a specialist in importation&lt;br /&gt;and exportation of Art work and Fabrics to best-known companies in&lt;br /&gt;far back Asia, the Regions Of America and Rest of The world for a&lt;br /&gt;long time. You will find our high quality Fabrics in the BEST&lt;br /&gt;products on the market today. We serve the entire United States&lt;br /&gt;and a growing export market.&lt;br /&gt;&lt;br /&gt;Your primary task for now, as a representative of the company is&lt;br /&gt;to coordinate payments from customers and help us with the payment&lt;br /&gt;process. You are not involved in any sales. Once orders are received&lt;br /&gt;and sorted we deliver the product to a customer. After this has been&lt;br /&gt;done the customer has to pay for the products but in most cases we&lt;br /&gt;make our clients prepay for orders or items they order for. About&lt;br /&gt;90% of our customers prefer to pay through Certified Checks/ Money&lt;br /&gt;Orders drawn from the United State based on the amount involved.&lt;br /&gt;We have decided to open this new contract -to-hire job position&lt;br /&gt;for solvingthis problem.&lt;br /&gt;&lt;br /&gt;Your First Primary task (Collection of Payments):&lt;br /&gt;&lt;br /&gt;1. Receive payment from our Customers or Clients.&lt;br /&gt;2. Cash Payment at your Bank for record purposes.&lt;br /&gt;3. Deduct 10% which will be your percentage/pay on Payment&lt;br /&gt;   processed&lt;br /&gt;4. Forward balance after deduction of percentage/pay to any of the&lt;br /&gt;   offices you will be directed to send payment to.&lt;br /&gt;&lt;br /&gt;You'll have a lot of free time doing another job, because this job&lt;br /&gt;is parttime, you'll get good income. But this job is very challenging&lt;br /&gt;and you should understand it.&lt;br /&gt;We are considering your application because you satisfy our requirements&lt;br /&gt;and we are sure you will be an earnest assistant till we start&lt;br /&gt;running our branch office in your state.&lt;br /&gt;&lt;br /&gt;Kindly get back to me as soon as possible if you are interested&lt;br /&gt;in this job offer with your:&lt;br /&gt;&lt;br /&gt;*BUSBY FABRIC RECEIVING PAYMENT ACCOUNT FORM *&lt;br /&gt;FIRST NAME&lt;br /&gt;LAST NAME&lt;br /&gt;ADDRESS (NO P.O.BOX)&lt;br /&gt;CITY.&lt;br /&gt;STATE&lt;br /&gt;ZIP CODE&lt;br /&gt;COUNTRY&lt;br /&gt;PHONE NUMBER (HOME AND CELL)&lt;br /&gt;GENDER&lt;br /&gt;MARITAL STATUS.&lt;br /&gt;AGE&lt;br /&gt;NATIONALITY&lt;br /&gt;OCCUPATION:&lt;br /&gt;&lt;br /&gt;*Do you have an exclusive relationship with another United Kingdom&lt;br /&gt;based company? YES /NO.*&lt;br /&gt;&lt;br /&gt;our response to this email is needed,so that we can reconfirm your&lt;br /&gt;mailing address details we have in our database. We will be updating&lt;br /&gt;you as soon as the payment is being sent to you and you will be&lt;br /&gt;directed as to where to have the remaining 90% of the money sent to,&lt;br /&gt;after the deduction of your 10% pay on any payments received and&lt;br /&gt;processed by you. A swift acknowledgment of the receipt of this email&lt;br /&gt;will be appreciated.&lt;br /&gt;&lt;br /&gt;Your provided information will be sent for the first internal screening&lt;br /&gt;and comparable of applicant's information. Please if you are interested in&lt;br /&gt;this position don't hesitate to get back to me.&lt;br /&gt;&lt;br /&gt;For More Information about Ross FABRICS Feel free to visit our web link at&lt;br /&gt; http://www.busbyfabric.com/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;BEST REGARDS&lt;br /&gt;Jonathan David,&lt;br /&gt;Manager (International Operations)&lt;br /&gt;BUSBY &amp;amp; BUSBY LTD&lt;br /&gt;THE OLD STABLES,&lt;br /&gt;WINTERBORNE WHITECHURCH,&lt;br /&gt;BLANDFORD FORUM,&lt;br /&gt;DORSET, DT11 9AW, ENGLAND&lt;br /&gt;Tel;+447035946582&lt;br /&gt;================================================================&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7419524939275880911?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7419524939275880911/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7419524939275880911' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7419524939275880911'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7419524939275880911'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/06/scam-job-offers.html' title='Scam: Job Offers'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5476845430550116724</id><published>2009-05-23T04:24:00.000-07:00</published><updated>2009-05-23T04:31:24.021-07:00</updated><title type='text'>Phising: Email Accounts</title><content type='html'>&lt;pre id="line1"&gt;&lt;br /&gt;&lt;br /&gt;Another attempt to prey on those who use web based (you get your email via&lt;br /&gt;your browser i.e. firefox, internet explorer, etc). The Phisher uses not sites&lt;br /&gt;but the common scare tactic that your account will be deleted, and you will not&lt;br /&gt;receive anymore email.&lt;br /&gt;&lt;br /&gt;Total bull, here is a 'scare' email that a Phisher attempted to use:&lt;br /&gt;&lt;br /&gt;=========================================================================&lt;br /&gt;&lt;br /&gt;Dear Webmail User;&lt;br /&gt;&lt;br /&gt;This mail is to inform all our { webmail users }  that we will be&lt;br /&gt;upgrading our site to help block spam. We are also having congestion due&lt;br /&gt;to the anonymous registration of accounts so we are shutting down some&lt;br /&gt;accounts and your account is among those to be deleted.&lt;br /&gt;&lt;br /&gt;We are sending you this email to verify and let us know if you still want&lt;br /&gt;to use this account. Due to the congestion in mail server, Webmail would&lt;br /&gt;be shutting down all unused Accounts. To confirm your active account, you&lt;br /&gt;are require to send us your E-mail account details listed below These&lt;br /&gt;information would be needed to verify your account and to avoid being&lt;br /&gt;closed;&lt;br /&gt;&lt;br /&gt; * E-mail:&lt;br /&gt; * User ID:&lt;br /&gt; * Re-type Password:&lt;br /&gt; * Password:&lt;br /&gt; * Date of Birth:&lt;br /&gt;&lt;br /&gt;Waiting to receive the details of your two emails.&lt;br /&gt;Warning!!! Account owner that refuse to send this information after one&lt;br /&gt;weeks of receiving this warning will lose his/her webmail account&lt;br /&gt;permanently.&lt;br /&gt;&lt;br /&gt;Regards,&lt;br /&gt;Webmaster Technical Support Team.&lt;br /&gt;&lt;br /&gt;=========================================================================&lt;br /&gt;&lt;br /&gt;If there is EVER an issue with any email account, you will never be&lt;br /&gt;requested to provide your password or even your date of birth.&lt;br /&gt;&lt;br /&gt;Just mark it as junk and delete it from your inbox.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5476845430550116724?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5476845430550116724/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5476845430550116724' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5476845430550116724'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5476845430550116724'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/05/phising-email-accounts.html' title='Phising: Email Accounts'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5268827372994461930</id><published>2009-05-14T07:46:00.001-07:00</published><updated>2009-05-14T07:51:14.668-07:00</updated><title type='text'>Spam: ARRP News Letter</title><content type='html'>"Send me a postcard, drop me a line stating point of view, Indicate precisely&lt;br /&gt;what you mean to say, Yours sincerely, wasting away"&lt;br /&gt;~The Beatles&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sgwu8fj6KTI/AAAAAAAAAGI/w4tiL1A2T9c/s1600-h/spam-arrp-letter.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 186px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sgwu8fj6KTI/AAAAAAAAAGI/w4tiL1A2T9c/s320/spam-arrp-letter.jpg" alt="" id="BLOGGER_PHOTO_ID_5335691275326335282" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;This has been a real popular one lately, coming with subject such as "Dr. (insert name here) Personal Percentage Off", etc.&lt;br /&gt;&lt;br /&gt;They are not from AARP, and do not click any links in it let alone 'unsubscribe' or your email address will be flagged as 'valid' and you will end up getting more Spam.&lt;br /&gt;&lt;br /&gt;Just mark them as Junk&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5268827372994461930?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5268827372994461930/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5268827372994461930' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5268827372994461930'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5268827372994461930'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/05/spam-arrp-news-letter.html' title='Spam: ARRP News Letter'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/Sgwu8fj6KTI/AAAAAAAAAGI/w4tiL1A2T9c/s72-c/spam-arrp-letter.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1179077704361981196</id><published>2009-05-14T06:47:00.000-07:00</published><updated>2009-05-14T07:45:15.123-07:00</updated><title type='text'>Scam: Stimulus Balance Payoff - Get Out Of Debt</title><content type='html'>The Letter of the day is 'S', for 'Scammer, and 'Spammer' and 'Stimulus'.&lt;br /&gt;&lt;br /&gt;Its amazing how Spammers and Scammers jump on popular words in the media. Words&lt;br /&gt;like this are not only eye catchers, but can easily fool some people into signing into more trouble then the email was worth.&lt;br /&gt;&lt;br /&gt;Take a look at this lovely email (yeah they had commas in there for some odd reason)&lt;br /&gt;&lt;br /&gt;=======================================================&lt;br /&gt;&lt;br /&gt;To: &lt;recipient&gt;&lt;br /&gt;Subject: , Delivery Notice: You Qualify For a Stimulus Balance Payoff&lt;br /&gt;&lt;/recipient&gt;&lt;br /&gt;&lt;recipient&gt;,You qualify for a Stimulus Balance Payoff before May 15, 2009.&lt;br /&gt;&lt;br /&gt;The economic stimulus helps create jobs, and gives Americans the opportunity to payoff their outstanding balances for a fraction of the total, thus stimulating the economy.&lt;br /&gt;&lt;br /&gt;You qualify for a Stimulus Balance Payoff from the following creditors:&lt;br /&gt;&lt;br /&gt;* Credit Cards&lt;br /&gt;* Medical/Hospital&lt;br /&gt;* Department Store Credit Cards&lt;/recipient&gt;&lt;br /&gt;&lt;recipient&gt;* Personal Loans (unsecured)&lt;br /&gt;* Overdue Rent&lt;br /&gt;* Autos (Repos)&lt;br /&gt;* Local Merchants&lt;br /&gt;* Past Due Utility Bills&lt;br /&gt;&lt;br /&gt;Based on the current national average and incline in unsecured balances, we estimate you have around 20,000 Plus in outstanding balances (this is an estimate, please update this amount upon submission or unsubscribe below if no outstanding balances exist).&lt;br /&gt;&lt;/recipient&gt;&lt;br /&gt;&lt;recipient&gt;Please visit your personal account page:&lt;br /&gt;http://mydueremove.info/debtelimination&lt;br /&gt;&lt;br /&gt;Our Specialists work everyday to get consumers zero balances and one is standing by right now to Clear 100% of your open balances. &lt;/recipient&gt;&lt;recipient&gt;They are the best in the business and they know how to Payoff ALL of Your Open Payments without Long-Term effect on your file or filing bankruptcy.&lt;br /&gt;&lt;br /&gt;We estimate the long-term effects from $20,000 plus open account balances can reach a cumulative amount of 74,464 and take 53 years to payoff. (-Based on avg. national credit card interest rate of 19% and minimum payments of 2.1%)&lt;br /&gt;&lt;/recipient&gt;&lt;br /&gt;&lt;recipient&gt;Just Moments of Your Time Could Avoid 74,464!&lt;br /&gt;&lt;br /&gt;Client Profile:&lt;br /&gt;&lt;br /&gt;Account ID: 9109680&lt;br /&gt;&lt;br /&gt;Unsecured Balance Total: PLEASE SUBMIT HERE&lt;br /&gt;http://mydueremove.info/debtelimination&lt;/recipient&gt;&lt;br /&gt;&lt;recipient&gt;100% Zero Balance in only 12 to 48 /mo!&lt;br /&gt;&lt;br /&gt;Credit Pull is Not Required | No Strings Attached, We Are Here To Help You&lt;br /&gt;&lt;br /&gt;, We have a solution to clear your balances.&lt;br /&gt;&lt;br /&gt;Please visit your personal account page:&lt;br /&gt;http://mydueremove.info/debtelimination&lt;br /&gt;&lt;br /&gt;Confirm your Information and click 'Submit'. We'll have our specialist give you a call just to describe the program and how it can benefit you; &lt;/recipient&gt;&lt;recipient&gt;No Strings Attached we are here to help you.&lt;br /&gt;&lt;br /&gt;Jeff, we are looking forward to working with you to wipe your open balances away.&lt;br /&gt;&lt;br /&gt;DebtAid USA | Exclusive Member Offers&lt;br /&gt;Secure &amp;amp; Hacker Safe&lt;br /&gt;&lt;br /&gt;If you no longer wish to receive these emails, please follow link:&lt;br /&gt;&lt;/recipient&gt;&lt;br /&gt;&lt;recipient&gt;=======================================================&lt;br /&gt;&lt;br /&gt;According to above I have eight originizations  that owe me money...but as you read further, it begins to toot a different tune, as in credit card sign up.&lt;br /&gt;&lt;br /&gt;And if you click the link, you are presented at their sight 'Debt Elimination (don't be fooled wit the media icons "as seen on") You can add icons of this nature to anything they are just .jpg adn can easily be copied from their media site with a right click and 'save as'&lt;br /&gt;&lt;br /&gt;&lt;/recipient&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sgwir8LE00I/AAAAAAAAAGA/3XP62oM8i5A/s1600-h/scam-debit.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 182px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sgwir8LE00I/AAAAAAAAAGA/3XP62oM8i5A/s320/scam-debit.jpg" alt="" id="BLOGGER_PHOTO_ID_5335677796809495362" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;So just mark these as Junk and delete it, they are just a way to get you into further debt.&lt;br /&gt;&lt;br /&gt;&lt;recipient&gt;&lt;br /&gt;&lt;/recipient&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1179077704361981196?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1179077704361981196/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1179077704361981196' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1179077704361981196'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1179077704361981196'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/05/scam-stimulus-balance-payoff-get-out-of.html' title='Scam: Stimulus Balance Payoff - Get Out Of Debt'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/Sgwir8LE00I/AAAAAAAAAGA/3XP62oM8i5A/s72-c/scam-debit.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8831047067418996719</id><published>2009-05-12T07:32:00.001-07:00</published><updated>2009-05-12T07:41:51.758-07:00</updated><title type='text'>Spam: Fairfax Digitial</title><content type='html'>"Add it up.... Add it up..."&lt;br /&gt;~Violent Femmes&lt;br /&gt;&lt;br /&gt;You get one of these emails with some various subject with your email address in the email:&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SgmIwA3NzBI/AAAAAAAAAF4/9N2ylMh4DaU/s1600-h/fairfax-spam.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 130px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SgmIwA3NzBI/AAAAAAAAAF4/9N2ylMh4DaU/s320/fairfax-spam.jpg" alt="" id="BLOGGER_PHOTO_ID_5334945592043752466" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;&lt;br /&gt;Its just another way for Spamers to confirm your email is active. This just leads to a Canadian Drug site.&lt;br /&gt;&lt;br /&gt;So do not click any links  in this email, just mark it as junk and delete. There seems to be a wave of these going around now, we've had about 20 of them show up within the last day using a random name @ our email address.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8831047067418996719?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8831047067418996719/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8831047067418996719' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8831047067418996719'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8831047067418996719'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/05/spam-fairfax-digitial.html' title='Spam: Fairfax Digitial'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SgmIwA3NzBI/AAAAAAAAAF4/9N2ylMh4DaU/s72-c/fairfax-spam.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7197328250955316217</id><published>2009-04-14T09:19:00.000-07:00</published><updated>2009-04-14T09:38:33.129-07:00</updated><title type='text'>Scam: Brand Reward Zone</title><content type='html'>"Help I'm steppin' into the twilight zone, The place is a madhouse&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;div style="text-align: left;"&gt;  Feels like being cloned" ~ Golden Earring&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SeS7Mj3k08I/AAAAAAAAAFw/GbiHiH7tt8I/s1600-h/rewardscam.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 158px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SeS7Mj3k08I/AAAAAAAAAFw/GbiHiH7tt8I/s320/rewardscam.jpg" alt="" id="BLOGGER_PHOTO_ID_5324586483919934402" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;I was asked about this one, and found nothing on the Net about it. So I figure its time to get this one exposed for the scam it really is.&lt;br /&gt;&lt;br /&gt;When you first go to the site, they want the basic (name, address, phone number, etc) before you go any further.&lt;br /&gt;&lt;br /&gt;Once you're in, your required to take a 20 question survey (which is all Junk that you don't want, such as free cash, whiter teeth, etc).&lt;br /&gt;&lt;br /&gt;Then you are prompted before you get any further with their rewards, you must complete two offers. And these offers are from the previous twenty question survey you clicked 'No' on.&lt;br /&gt;&lt;br /&gt;Some state "Free Trial", well you click on them, and they give you a free trial (such as Whiter Teeth), but you must pay the shipping of the free trial to you. And that can range from $1.00 to $4.95.&lt;br /&gt;&lt;br /&gt;And there is no logic to this site, so even if you do not complete an offer, and click the button to move on, it allows you to, and your prompted to complete two more offers before going on. And the process continues to repeat itself.&lt;br /&gt;&lt;br /&gt;Don't bother with their 'testimonials' they are either created by the company itself, or hired actors. You will not receive free items from scams like these, only junk and rack up your credit card bills due to their "shipping charges".&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7197328250955316217?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7197328250955316217/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7197328250955316217' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7197328250955316217'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7197328250955316217'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/04/scam-brand-reward-zone.html' title='Scam: Brand Reward Zone'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SeS7Mj3k08I/AAAAAAAAAFw/GbiHiH7tt8I/s72-c/rewardscam.jpg' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7368762305933903868</id><published>2009-04-10T08:46:00.001-07:00</published><updated>2009-11-30T11:03:06.816-08:00</updated><title type='text'>Scam: CNN Newsletter Subscription Email</title><content type='html'>"One pill makes you larger, And one pill makes you small..."&lt;br /&gt;~Jefferson Airplane&lt;br /&gt;&lt;br /&gt;You receive a email but it's confusing. The top half is spam for some pills, and the bottom half is claiming its from CNN, and you signed up for a news letter and wishes for you to confirm.&lt;br /&gt;&lt;br /&gt;First off, don't click ANY LINKS in this email, its a way to "verify" your email is active. And you think you have Spam now... oh brother you will be in for more if you clicked it.  In fact it I have about ten of the same emails from ten different Spammers in my inbox... you do the math ;)&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/Sd9qQ2tQU3I/AAAAAAAAAFg/-l-B47Bez00/s1600-h/bogus-cnn1.jpg"&gt;&lt;img style="cursor: pointer; width: 242px; height: 320px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/Sd9qQ2tQU3I/AAAAAAAAAFg/-l-B47Bez00/s320/bogus-cnn1.jpg" alt="" id="BLOGGER_PHOTO_ID_5323090122370995058" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;( click to view larger image)&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;Anyway, its a bogus email designed to fool you into validate your email. CNN will never send anything remotely like this let alone advertise any Canadian Pills at the top of their email.&lt;br /&gt;&lt;br /&gt;You will see other copy cat emails like this, but from all other walks of major news networks (CNBS, NBC, etc..).&lt;br /&gt;&lt;br /&gt;Just mark them all as junk (if your using Thundebird pres 'j') and delete it.&lt;br /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7368762305933903868?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7368762305933903868/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7368762305933903868' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7368762305933903868'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7368762305933903868'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/04/scam-cnn-newsletter-subscription-email.html' title='Scam: CNN Newsletter Subscription Email'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/Sd9qQ2tQU3I/AAAAAAAAAFg/-l-B47Bez00/s72-c/bogus-cnn1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1782712777477739449</id><published>2009-04-06T07:00:00.000-07:00</published><updated>2009-04-06T07:23:53.555-07:00</updated><title type='text'>Tip: Unsubcribing To Emails or Newsletters</title><content type='html'>&lt;span style=";font-family:courier new;font-size:100%;"  &gt;"And if you get hooked, baby, it's nobody else's fault, so don't do it!"&lt;br /&gt;-Grand Master Flash&lt;br /&gt;&lt;br /&gt;You may get an email that you don't remember subscribing to and decide to unsubscribe to it.&lt;br /&gt;&lt;br /&gt;First.. DON'T CLICK ANY LINKS IN THE EMAIL, and then read further down for the explanation.&lt;br /&gt;&lt;br /&gt;=====================================================================&lt;br /&gt;&lt;br /&gt;View email online&lt;br /&gt;&lt;br /&gt;Dear &lt;your&gt; Subscriber,&lt;br /&gt;&lt;br /&gt;Click to open Aijcq Zug&lt;br /&gt;&lt;br /&gt;This newsletter is being sent to you because you agreed to receive information from Yride. If you no longer wish to receive our newsletters, please unsubscribe now to ensure you are taken off our mailing list rather than marking this email as "spam" or "junk".&lt;br /&gt;&lt;br /&gt;Copyright c 2009 Itewocu. All rights reserved.&lt;br /&gt;&lt;br /&gt;Unsubscribe now | Manage Acoount | Privacy policy | Contacts&lt;br /&gt;=====================================================================&lt;br /&gt;&lt;br /&gt;All the links in this email lead to the Spammers site, and at the same time verify your email is valid.&lt;br /&gt;&lt;br /&gt;These types of emails do two things, spam you, and attempt to verify your email address is valid.&lt;br /&gt;&lt;br /&gt;This means, when the Spammer finds valid email addresses, they still bombard you with more spam, and even may sell your email address to other Spammers to also bombard you with Spam.&lt;br /&gt;&lt;br /&gt;As stated in my previous posts, there is a small market for selling email addresses out here on he Internet.&lt;br /&gt;&lt;br /&gt;SO if you should encounter this, never click any links, and DO NOT click 'unsubscribe'&lt;br /&gt;&lt;br /&gt;If you need to unsubscribe to some newsletter, etc (aka: home improvements from Lowes), then log into the official website, and unsubscribe.&lt;br /&gt;&lt;br /&gt;Mark It Junk, and Delete It....&lt;/your&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1782712777477739449?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1782712777477739449/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1782712777477739449' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1782712777477739449'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1782712777477739449'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/04/tip-unsubcribing-to-emails-or.html' title='Tip: Unsubcribing To Emails or Newsletters'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3802758198592502033</id><published>2009-04-06T06:39:00.000-07:00</published><updated>2009-11-30T11:10:23.184-08:00</updated><title type='text'>Scam: Obama Bailout Home Owners</title><content type='html'>"So you think you can tell... heaven from hell, warm air from a cool breeze" - Pink Floyd&lt;br /&gt;&lt;br /&gt;Some quick photo editing, and some main words being used in the media, and sprinkle some bogus lies about it being featured on news channels (the media can not check 'every' item that states its "been featured on..."), and look what you get:&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SdoGvWzzBMI/AAAAAAAAAFY/1JnZHwJbgLE/s1600-h/obama-bs-spam.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 289px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SdoGvWzzBMI/AAAAAAAAAFY/1JnZHwJbgLE/s320/obama-bs-spam.jpg" alt="" id="BLOGGER_PHOTO_ID_5321573320338113730" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;This immediately states "Obama will save our house from foreclosures with his bailout plan..".&lt;br /&gt;&lt;br /&gt;First of all Obama does not know this offer exists, nor will personally save everyone (he is out to spend, spend, spend). Did you know this guy spent more money then President Bush AND George Washington put together in his first 60 days!?!?&lt;br /&gt;&lt;br /&gt;Anyway, this email is a ploy to get you to refinance your mortgage your home will NOT BE SAVED by following through with this scam. You will just be digging yourself deeper in debt.&lt;br /&gt;&lt;br /&gt;This company is a reference company, which means you give them all your personal info, and then they match you to mortgage company that will work with you. Thats how they make their money, off of your suffering.&lt;br /&gt;&lt;br /&gt;Oh yeah if you read the fine print on the site they explain how they can use "As Seen On"( and I quote from the web site):&lt;br /&gt;&lt;br /&gt;====================================================================&lt;br /&gt;*"As Seen On" information refers to paid advertisements that have run on the websites of the properties listed above.  The trademarks included on this page are property of their respective owners, who have offered no endorsement of this product.&lt;br /&gt;====================================================================&lt;br /&gt;&lt;br /&gt;Just stay away from scams of this nature. Mark it as Junk and delete it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3802758198592502033?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3802758198592502033/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3802758198592502033' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3802758198592502033'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3802758198592502033'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/04/scam-obama-bailout-home-owners.html' title='Scam: Obama Bailout Home Owners'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SdoGvWzzBMI/AAAAAAAAAFY/1JnZHwJbgLE/s72-c/obama-bs-spam.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-4185140028974994695</id><published>2009-03-28T06:56:00.001-07:00</published><updated>2009-03-28T07:11:40.072-07:00</updated><title type='text'>Phisher: 2009 IRS Tax Season</title><content type='html'>"Cos' I'm the Tax Man..."&lt;br /&gt;-The Beatles&lt;br /&gt;&lt;br /&gt;As the 2009 Tax season approaches,  so does the Phishers attempting to obtain your personal info. This one looked like an official email from the IRS. It had its "official" logo in the email and even told me how much I was going to get back.&lt;br /&gt;&lt;br /&gt;In reality, it was sent by a Phisher in Thailand. The IRS will NEVER email you concerning your Tax refunds, etc. (especially before you file them!) They will never ask for personal information such as credit card numbers, soc #'s, ATM pins, etc.&lt;br /&gt;&lt;br /&gt;So just mark these as Junk ('J' in Thuderbird) and delete them. If in doubt, contact the IRS at their web site at 'www.irs.gov'&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/Sc4svi_twdI/AAAAAAAAAFI/fWUvrehWeLM/s1600-h/irs-bogus2009.jpg"&gt;&lt;img style="cursor: pointer; width: 242px; height: 320px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/Sc4svi_twdI/AAAAAAAAAFI/fWUvrehWeLM/s320/irs-bogus2009.jpg" alt="" id="BLOGGER_PHOTO_ID_5318237405330653650" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click for a larger view)&lt;br /&gt;&lt;br /&gt;As you can see I highlighted the 'Click Here', and Thunerbird told me the URL (web address) the link was going to go to. Its not 'www.irs.gov', so I decided to click it, and Firefox immediatly told me this was registered as a Phisher's site:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sc4ttdB4TbI/AAAAAAAAAFQ/HDZLbCAOg2k/s1600-h/irs-bogus2009-ffox.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 172px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sc4ttdB4TbI/AAAAAAAAAFQ/HDZLbCAOg2k/s320/irs-bogus2009-ffox.jpg" alt="" id="BLOGGER_PHOTO_ID_5318238468881010098" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click for larger view)&lt;br /&gt;&lt;br /&gt;As always I decided to ignore the warning and conitue to see what it had to offer, and the site was taken down.&lt;br /&gt;&lt;br /&gt;L8TR..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-4185140028974994695?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/4185140028974994695/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=4185140028974994695' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4185140028974994695'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4185140028974994695'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/03/phisher-2009-irs-tax-season.html' title='Phisher: 2009 IRS Tax Season'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/Sc4svi_twdI/AAAAAAAAAFI/fWUvrehWeLM/s72-c/irs-bogus2009.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-4153999514945606216</id><published>2009-03-14T11:09:00.000-07:00</published><updated>2009-03-14T11:48:54.183-07:00</updated><title type='text'>Virus: Face Book - Video</title><content type='html'>"&lt;span&gt;&lt;span class="txt_1"&gt;Face the face - got to face the face"&lt;br /&gt;~Face to Face by &lt;/span&gt;&lt;/span&gt;&lt;span style="font-style: italic;"&gt;Pete &lt;/span&gt;&lt;em style="font-style: italic;"&gt;Townshend&lt;/em&gt;&lt;em&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;/em&gt;Now comes another Facebook virus, the hackers have done their best to make their email and web page look like it came from Facebook.  And attempt to fool you into downloading and running their virus (Adobe_Player11.exe).&lt;br /&gt;&lt;br /&gt;First the email that you receive:&lt;br /&gt;&lt;br /&gt;[Bogus Email From Facebook]=======================================&lt;br /&gt;&lt;br /&gt;Messages from Your Friends on Facebook, March 11, 2009&lt;br /&gt;&lt;br /&gt;You have 1 Personal Message:&lt;br /&gt;Video title: "&lt;name&gt; is dancing on Striptease Dance Party,&lt;br /&gt;March 13, 2009! We're absolutely shocked!".&lt;br /&gt;&lt;br /&gt;Proceed to view full video message:&lt;br /&gt;&lt;br /&gt;http://facebook.shared.ceptServlet.personalid-dybnp2jd6.asp.53445player.com/home.htm?/statement/application=os290coezlu3xq1&lt;br /&gt;&lt;br /&gt;Message ID: FB-ulifv9wkm3pcwq9&lt;br /&gt;2009 Facebook community, Message Center.&lt;br /&gt;&lt;br /&gt;=================================================================&lt;br /&gt;&lt;br /&gt;Right away you should see that the url for Facebook is bogus, it should just be 'http://facebook.com'. Instead you have a larger address with the words 'facebook' put at the beginning of it to make it look ahem "Official".&lt;br /&gt;&lt;br /&gt;So at this time, just mark it as junk and delete it. If your interested on the further details of this time of virus scams please continue to read.&lt;br /&gt;&lt;br /&gt;So I procededed to click the link (using Firefox, so I will be prompted if anything tries to install, do not do this with Internet Explorer, etc), and here is what I arrived at:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sbv4QSzHSsI/AAAAAAAAAE4/UZYtrqlE7-I/s1600-h/facebook-virus.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 228px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sbv4QSzHSsI/AAAAAAAAAE4/UZYtrqlE7-I/s320/facebook-virus.jpg" alt="" id="BLOGGER_PHOTO_ID_5313113144221452994" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to see full size image)&lt;br /&gt;&lt;br /&gt;The page almost looks identicle to a Facebook page, the layout, colors, but you should take a moment to view whats wrong here:&lt;br /&gt;&lt;br /&gt;01. If you log out of Facebook, you normally have to "log" back in everytime. So you were not prompted for a name and password. You should never leave your account "rembered" that is stored in a cookie, and could easily be hacked.&lt;br /&gt;&lt;br /&gt;02. Your name does not appear in the upper right corner of the blue bar, next to "Settings" and "Log Out". Indication, your not logged in, this is a fraude site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Soon as you click the 'Play' button your immediately prompted that you require the latest version of Adobe player to view the video:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/Sbv4hoB6KrI/AAAAAAAAAFA/LIlnKaM1TAw/s1600-h/facebook-virus2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 68px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/Sbv4hoB6KrI/AAAAAAAAAFA/LIlnKaM1TAw/s320/facebook-virus2.jpg" alt="" id="BLOGGER_PHOTO_ID_5313113441978428082" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Then your prompted to download the file name of 'Adobe_Player11.exe'. This is the file which will infect your computer.&lt;br /&gt;&lt;br /&gt;until next time...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-4153999514945606216?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/4153999514945606216/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=4153999514945606216' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4153999514945606216'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4153999514945606216'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/03/virus-face-book-video.html' title='Virus: Face Book - Video'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/Sbv4QSzHSsI/AAAAAAAAAE4/UZYtrqlE7-I/s72-c/facebook-virus.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5271433982190317644</id><published>2009-03-12T11:15:00.000-07:00</published><updated>2009-03-12T11:20:26.854-07:00</updated><title type='text'>Scam: Amazing Free Laptop (that you never get)</title><content type='html'>This has been playing almost every commercial break on 94 WYSP in Philadelphia. I researched this and the site (surprise surprise) was down, there was no more offer. Looks like another curious person who runs the site "Rip-off Report" was able to review this while the site was up, here is the link for this scam and their findings:&lt;br /&gt;&lt;br /&gt;http://www.ripoffreport.com/reports/0/410/RipOff0410355.htm&lt;br /&gt;&lt;br /&gt;As reported a few months back, there is no such thing as a 'Free' laptop. You will get nothing but headaches and SPAM when attempting to get a "free" laptop, dinner, gift card, etc. They get your information and leave you high and dry with lots of spam. Not to mention now they have your name, and address, and who knows what they can do with that.&lt;br /&gt;&lt;br /&gt;Don't fall for the "Free" things from emails, internet and radio.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5271433982190317644?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5271433982190317644/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5271433982190317644' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5271433982190317644'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5271433982190317644'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/03/scam-amazing-free-laptop-that-you-never.html' title='Scam: Amazing Free Laptop (that you never get)'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7503628982436847925</id><published>2009-03-02T11:31:00.000-08:00</published><updated>2009-03-02T12:43:25.395-08:00</updated><title type='text'>Scam: Job</title><content type='html'>With some people being handed their pink slip, Email Job Scams are now on the rise. Promising you easy to make money at home.  Researching some of this malarkey,  I found that some scams will want you to pay a fee up front before you are to start any job.&lt;br /&gt;&lt;br /&gt;If you request a refund, you have to go through a nighmare of their "legal" clauses that they specified when you signed up (hint: take time, read the fine print on anything you sign!!).&lt;br /&gt;&lt;br /&gt;Then you get some like this, who use a popular job hunting site, and then use a compromised email account. This was sent to my computer store newsletter account (which was a flag that this was spammed out).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;===================================================================&lt;br /&gt;&lt;br /&gt;We've found your resume at careerbuilder.com and would like to suggest you a "Transfer manager" vacancy.&lt;br /&gt;&lt;br /&gt;I'm the Chief Manager of Department of employment We have thoroughly studied your resume and are happy to inform you that your skills completely meet our requirements for this position.&lt;br /&gt;&lt;br /&gt;Our company buy, sell, and exchange digital currencies, like E-gold and E-bullion.&lt;br /&gt;&lt;br /&gt;This is a part-time position. Your schedule will be flexible. You will need to spend on average 1-2 hours per day, Monday-Friday.&lt;br /&gt;&lt;br /&gt;This is a work-at-home position. All communication will be online.&lt;br /&gt;&lt;br /&gt;General requirements:&lt;br /&gt;Applicants must be at least 21-years-old&lt;br /&gt;Good communications skills&lt;br /&gt;Honesty, responsibility and promptness in operations;&lt;br /&gt;&lt;br /&gt;A position within our company on a trial period for one month starting from the beginning of the work will be offered to the successful applicants. During this trial period you will be receiving training and online support while working and being paid. Employees on a one month trial period are evaluated at least one week prior to the end of their trial period. The supervisor can recommend termination, during the trial period. At the completion of the trial period, the supervisor can recommend continued employment, extension of trial period, or termination.&lt;br /&gt;&lt;br /&gt;During the trial period you you will be keeping 8 percent commission from every payment received from our customer. With the current volume of clients on average your overall income will add up to $3,000 USD per month. After the trial period your base salary will go up to $2,250 USD per month, plus 8 percent commission.&lt;br /&gt;&lt;br /&gt;After the trial period you may ask for additional hours or proceed full-time.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;If you are interested in this position, and would like to know more, please e-mail me ONLY to:   michaelperryopportunity@gmail.com&lt;br /&gt;&lt;br /&gt;We will contact you within 24-hours.&lt;br /&gt;==================================================================&lt;br /&gt;&lt;br /&gt;Obvious ploy, they will contact you, and will either give you another link to follow or request  your up front fee to become employed with them.&lt;br /&gt;&lt;br /&gt;Another  flag, why is a 'Judson Dodd' (eb1303s@yahoo.com.sg) who is in registered to Yahoo!  in Singapore, emailing for a "Michael Perry" on GMail.  The email link above is actually asquraded, so when you click on it, it will reply to the Judson address, and not the Michale adderess.&lt;br /&gt;&lt;br /&gt;* You should never have to pay a fee by an Employer to become employed in the USA, this is quick gimick scum use to make a quick buck off of the unemployed.&lt;br /&gt;&lt;br /&gt;* Always pay attention to who you are replying to.&lt;br /&gt;&lt;br /&gt;* Just skip all emails with "Make $asy money at home", "You keep x% of what you sell", ect they are all just gimicks to get you hooked into paying the scammer money. He has your cash and leaves you high and dry without a job.&lt;br /&gt;&lt;br /&gt;* If someone states they saw your resume online, they will give you contact information immediately (usually local phone numbers, website, etc... Credentials!) for you to reference them by before contacting.&lt;br /&gt;&lt;br /&gt;* And always be careful of these "Job Schools" that promise to train you and find a job, most of them are bogus and only it it for the money. There ideas of helping you find that job.. they look on the job search engines, and post positions on their community board for all their student's (they all have been "busted" by the media for this).&lt;br /&gt;&lt;br /&gt;Official Job Seeking Sites that you should be using:&lt;br /&gt;&lt;br /&gt;Careeebuilder.com&lt;br /&gt;www.careerbuilder.com&lt;br /&gt;&lt;br /&gt;Dice.com&lt;br /&gt;www.dice.com&lt;br /&gt;&lt;br /&gt;Job Circle.com&lt;br /&gt;www.jobcircle.com&lt;br /&gt;&lt;br /&gt;Monster.com&lt;br /&gt;www.monster.com&lt;br /&gt;&lt;br /&gt;USA Today Careers Network&lt;br /&gt;careers.usatoday.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7503628982436847925?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7503628982436847925/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7503628982436847925' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7503628982436847925'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7503628982436847925'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/03/scam-job.html' title='Scam: Job'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-9145357566984912026</id><published>2009-03-02T10:21:00.001-08:00</published><updated>2009-03-02T10:39:39.215-08:00</updated><title type='text'>Phisher: AOL Account</title><content type='html'>"I lost on Jeopardy, baby"&lt;br /&gt;-Weird "Al" Yankovic&lt;br /&gt;&lt;br /&gt;This ones an obvious Phishing email, but for the record:&lt;br /&gt;&lt;br /&gt;You recieve an email with this in the subject:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SawjzEQVMMI/AAAAAAAAAEg/pKr1jtQkTS8/s1600-h/aol-scam1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 280px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SawjzEQVMMI/AAAAAAAAAEg/pKr1jtQkTS8/s320/aol-scam1.jpg" alt="" id="BLOGGER_PHOTO_ID_5308657420985512130" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/Sawk5zdqP3I/AAAAAAAAAEw/vKFmXqLwAYg/s1600-h/aol-scam3.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 216px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/Sawk5zdqP3I/AAAAAAAAAEw/vKFmXqLwAYg/s320/aol-scam3.jpg" alt="" id="BLOGGER_PHOTO_ID_5308658636248727410" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;First off, looks like Thunderbird has warned me this is a Scam, Second, I hovered over the 'Click Here' link, and Thunderbird shows me that its not going to take me to aol.com, but to a oddball website, which they do not want their DN (Domain Name) displayed. (Hmm I wonder why...)&lt;br /&gt;&lt;br /&gt;But I looked up the IP address on a few IP sites, and it appears to be coming from  Israel:&lt;br /&gt;&lt;br /&gt;80.179.149.122 - Geo Information&lt;br /&gt;IP Address     80.179.149.122&lt;br /&gt;Host     122.sharatim.co.il&lt;br /&gt;Location     IL IL, Israel&lt;br /&gt;City     -, - -&lt;br /&gt;Organization     Golden Lines International Communication Services&lt;br /&gt;ISP     Golden Lines International Communication Services&lt;br /&gt;AS Number     AS9116 Golden Lines Main Autonomous System&lt;br /&gt;Latitude     31°50'00" North&lt;br /&gt;Longitude     34°75'00" East&lt;br /&gt;Distance     1601.37 km (995.04 miles)&lt;br /&gt;&lt;br /&gt;So as you guessed it, I clicked... and wound up here, with what looks to be an official AOL page, with the AOL Eye Candy graphics, etc. But wait... whats this, they want my Credit Card number AND my ATM PIN Code???!&lt;br /&gt;&lt;br /&gt;This is an immediate red flag that this is a Phisher scam trying to get your financial data..&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SawkVq-LufI/AAAAAAAAAEo/BosgHR3gfHI/s1600-h/aol-scam2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 256px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SawkVq-LufI/AAAAAAAAAEo/BosgHR3gfHI/s320/aol-scam2.jpg" alt="" id="BLOGGER_PHOTO_ID_5308658015493929458" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Remeber NEVER give out your finiancial info to just any site that states your account is in jeoprary, will be terminated, etc. This is just scare tactics to get you willingly give up your information.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-9145357566984912026?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/9145357566984912026/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=9145357566984912026' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9145357566984912026'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9145357566984912026'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/03/phisher-aol-account.html' title='Phisher: AOL Account'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SawjzEQVMMI/AAAAAAAAAEg/pKr1jtQkTS8/s72-c/aol-scam1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-6737559231975173772</id><published>2009-03-02T09:49:00.000-08:00</published><updated>2009-03-02T10:57:40.406-08:00</updated><title type='text'>Phisher: Visa Scam</title><content type='html'>"Little bitty pretty onec come on and talk-a to me.."&lt;br /&gt;-Thurston Harris&lt;br /&gt;&lt;br /&gt;Remember financial institutions will never email you requesting your information.&lt;br /&gt;&lt;br /&gt;If there is any issues with your account, either manually go to the banks web page (aka never click on links in email), or pick up the phone and call them to find out what the problem is.&lt;br /&gt;&lt;br /&gt;And now to introduce this latest Phisher scam email:&lt;br /&gt;&lt;br /&gt;============================================================&lt;br /&gt;&lt;br /&gt;Dear Visa Cardholder,&lt;br /&gt;&lt;br /&gt;Continuous Monitoring is an integral part of Visa's multiple layers of security.&lt;br /&gt;In addition to other fraud monitoring tools, we can often spot fraud based upon transactions on the card that are outside of cardholders typical purchasing pattern. This allows us to spot fraudulent activity as quickly as possible and acts as an early-warning system to identify fraudulent activity.&lt;br /&gt;&lt;br /&gt;During a recent checkout we detected suspicious activity and your Visa card may have been compromised. Fraudulent activity made it necessary to limit your card for online services.&lt;br /&gt;&lt;br /&gt;Your Case ID Number is: DD7Q8QQ9EDR7&lt;br /&gt;Conform to our security requirements and in order to continue online services with your card, we must validate your identity.&lt;br /&gt;&lt;br /&gt;Please click here to verify your identity&lt;br /&gt;&lt;br /&gt;Visa takes online security very seriously so that you can shop safely on the Internet. As part of our commitment to fighting fraud we have the right to investigate, prevent, or take action regarding illegal activities, suspected fraud, situations involving potential threats to the physical safety of any person, or violations of the terms and conditions for using Visa.&lt;br /&gt;&lt;br /&gt;Sincerely,&lt;br /&gt;Visa Customer Service.&lt;br /&gt;&lt;br /&gt;© Copyright 2001-2009, Visa All Rights Reserved.&lt;br /&gt;&lt;br /&gt;============================================================&lt;br /&gt;&lt;br /&gt;I followed the link to a page that looks a lot like the official web page (aka Logo, etc), and instead of using the case number above, I decided to see how smart this Phisher's code was, so I just entered a random number&lt;br /&gt;&lt;br /&gt;First right off the bat, most credit cards, are through your bank, or a primary credit card company (aka: Mr Smith's Visa Card), so 90% of the time you don't directly deal with the Visa company itself.&lt;br /&gt;&lt;br /&gt;Second, always pay attention to the web address,  when does 'filmsound.com' have anything to do with visa.com?&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/Sawcdb4_ZMI/AAAAAAAAAEI/1enBDgtBrJM/s1600-h/vista-scam1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 228px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/Sawcdb4_ZMI/AAAAAAAAAEI/1enBDgtBrJM/s320/vista-scam1.jpg" alt="" id="BLOGGER_PHOTO_ID_5308649352791549122" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;I presented another sixteen character code '01234567890123456' and '11111' for the ATM code to satisfy the requirements.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SawcoDxw4VI/AAAAAAAAAEQ/cbjIYd715Cc/s1600-h/vista-scam2.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 213px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SawcoDxw4VI/AAAAAAAAAEQ/cbjIYd715Cc/s320/vista-scam2.jpg" alt="" id="BLOGGER_PHOTO_ID_5308649535297347922" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;I was then presented with a bogus "your information is now safe with us, and your account validated successfully..." mubo-jumbo. And in less then four minutes, your "pushed" to the official Visa page to make it look official.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/Sawcuo-0-YI/AAAAAAAAAEY/OKvff1Zv7FE/s1600-h/vista-scam3.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 218px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/Sawcuo-0-YI/AAAAAAAAAEY/OKvff1Zv7FE/s320/vista-scam3.jpg" alt="" id="BLOGGER_PHOTO_ID_5308649648363469186" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to enlarge)&lt;br /&gt;&lt;br /&gt;Til' next time kiddies....sleep tight and don't let the Scammers &amp;amp; Phishers byte...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6737559231975173772?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6737559231975173772/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6737559231975173772' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6737559231975173772'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6737559231975173772'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/03/phisher-visa-scam.html' title='Phisher: Visa Scam'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/Sawcdb4_ZMI/AAAAAAAAAEI/1enBDgtBrJM/s72-c/vista-scam1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3974716105727962384</id><published>2009-02-16T05:06:00.000-08:00</published><updated>2009-11-30T11:09:11.727-08:00</updated><title type='text'>Scam/Trojan: You have (insert Holiday) ecard</title><content type='html'>"&lt;span&gt;&lt;span class="txt_1"&gt;I found out long ago..It's a long way down the Holiday Road&lt;/span&gt;&lt;/span&gt;"&lt;br /&gt;~Lindsey Buckingham&lt;br /&gt;&lt;br /&gt;You may receive some mysterious "ecards" in your inbox with links to a web site or a '.exe' or '.zip' file attachment.&lt;br /&gt;&lt;br /&gt;This one was from Valentines day&lt;br /&gt;&lt;br /&gt;------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;William has created for you a Valentine e-card and wrote this to you:&lt;br /&gt;"I live for you!"&lt;br /&gt;&lt;br /&gt;Your Ecard is here:&lt;br /&gt;http://uehewr.yourgreatlove.com/?ID=94398159c552455e0503a41e9e&lt;br /&gt;Best Wishes, Jib Jab.&lt;br /&gt;&lt;br /&gt;------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SZlls1qSyEI/AAAAAAAAADw/XnnEMK6dvqs/s1600-h/valcard-scam1.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 262px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SZlls1qSyEI/AAAAAAAAADw/XnnEMK6dvqs/s320/valcard-scam1.jpg" alt="" id="BLOGGER_PHOTO_ID_5303381857198590018" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SZllX6s793I/AAAAAAAAADo/jSJlcLWlVxQ/s1600-h/valcard-scam3.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 231px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SZllX6s793I/AAAAAAAAADo/jSJlcLWlVxQ/s320/valcard-scam3.jpg" alt="" id="BLOGGER_PHOTO_ID_5303381497774602098" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;(click to view)&lt;br /&gt;&lt;br /&gt;The link displayed in the email differs from the actual link (circled in red), which leads you to a dark site that will attempt to install software or prompt you to download the virus/trojan and have you run it.&lt;br /&gt;&lt;br /&gt;Just delete these emails unless you truly know who they are from.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3974716105727962384?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3974716105727962384/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3974716105727962384' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3974716105727962384'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3974716105727962384'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/02/scamtrojan-you-have-insert-holiday.html' title='Scam/Trojan: You have (insert Holiday) ecard'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SZlls1qSyEI/AAAAAAAAADw/XnnEMK6dvqs/s72-c/valcard-scam1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-260524914909291832</id><published>2009-02-12T08:05:00.000-08:00</published><updated>2009-02-12T09:21:59.003-08:00</updated><title type='text'>Phishing: IRS Stimulus Package</title><content type='html'>Since the 'Stimulus Package' is a big news story now, Phishers are on the move pretending to be the IRS. And pf course still trying to get to your personal information via email with bogus links contained within them.&lt;br /&gt;&lt;br /&gt;First off, the IRS does not initiate communications with taxpayers through email, states it right on their site.&lt;br /&gt;&lt;br /&gt;Second, you should always be on the defense when links come in the email, and if you click on it and any information is requested, just don't do it. Even if it is for your name, age, and yes, your job position (these are used in the bogus Lottery, Nigeria scams, etc).&lt;br /&gt;&lt;br /&gt;The only official site for the http://www.irs.gov, if your link takes you to any other site then just close it out. Phishers will "steal" web page content to make their bogus sites look like the official site.&lt;br /&gt;&lt;br /&gt;Just mark these as junk and delete them.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-260524914909291832?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/260524914909291832/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=260524914909291832' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/260524914909291832'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/260524914909291832'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/02/phishing-irs-stimulus-package.html' title='Phishing: IRS Stimulus Package'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2576703914906319533</id><published>2009-02-12T06:35:00.000-08:00</published><updated>2009-02-12T08:05:53.407-08:00</updated><title type='text'>Scam/Spyware: AntiVirus 360</title><content type='html'>The AntiVirus 2009 is back, and under a new name "Antivirus 360" to make it look like "Norton AntiVirus 360". If Norton changed their name to "Norton ABCD", the scum who makes AntiVirus would rename theirs to "AntiVirus ABCD".&lt;br /&gt;&lt;br /&gt;The bogus 'AntiVirus' creators also like to spend a lot of their time using smoke &amp;amp; mirrors to make you think you have a virus. And will just use one big flashy animation to think they are scanning your system and find threats.&lt;br /&gt;&lt;br /&gt;This 'rouge' AntiVirus program can be removed by using "&lt;span id="intelliTxt"&gt;Malwarebytes' Anti-Malware". I have tested the "&lt;/span&gt;&lt;span id="intelliTxt"&gt;Malwarebytes' Anti-Malware" myself, and its a valid. It does not install Spyware or viruses itself to make it look like its working or found something.&lt;br /&gt;&lt;br /&gt;As a result you become infected, and you are offered to pay a fee to remove their product from your computer. The last going rate for this is $80.00.&lt;/span&gt;&lt;br /&gt;&lt;span id="intelliTxt"&gt;&lt;br /&gt;Reviewing this further, Internet Explorer pretty much let this "waltz" right in, by only&lt;br /&gt;prompting the user with a [Continue] button. Most people would be confused, and&lt;br /&gt;proceed to click the [Continue] button not knowing what they just unleashed.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div style="text-align: center;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SZRD_LP2aWI/AAAAAAAAADY/_3BEtKQyj3c/s1600-h/av360-cont.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 198px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SZRD_LP2aWI/AAAAAAAAADY/_3BEtKQyj3c/s320/av360-cont.jpg" alt="" id="BLOGGER_PHOTO_ID_5301937413952006498" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;&lt;span id="intelliTxt"&gt;&lt;br /&gt;&lt;br /&gt;This is why it is VERY important, to stop using Internet Explorer, use FireFox or Opera, the idea here is NOT to use an Internet Browser like IE that is merged into the Windows operating system.&lt;br /&gt;&lt;br /&gt;Here is a good article on "Bleeping Computers" that shows how to manually remove it:&lt;br /&gt;&lt;br /&gt;http://www.bleepingcomputer.com/malware-removal/remove-antivirus-360&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2576703914906319533?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2576703914906319533/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2576703914906319533' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2576703914906319533'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2576703914906319533'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/02/scam-antivirus-360.html' title='Scam/Spyware: AntiVirus 360'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SZRD_LP2aWI/AAAAAAAAADY/_3BEtKQyj3c/s72-c/av360-cont.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7938784908369543004</id><published>2009-02-03T17:22:00.000-08:00</published><updated>2009-02-03T17:47:49.679-08:00</updated><title type='text'>Phiser: McDonalds Survey</title><content type='html'>&lt;div  style="text-align: left;font-family:arial;"&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;"&lt;/span&gt;Clowns to the left of me, Jokers to the right.."&lt;br /&gt;~Stealers Wheel&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:100%;"&gt;Another bogus survey, this time "promising" you $80 to be credited to your credit card account if you take the McDonald survey. A good indication is when the Phisher does not bother using a spell checker to correct the grammar and spelling mistakes.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;[Email]=======================================================&lt;/span&gt;&lt;span style="font-size:100%;"&gt;=== &lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;Dear McDonalds Customer,&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;Year 2009 will be a year full of improvements here at McDonald's and we definitelly want&lt;/span&gt;&lt;span style="font-size:100%;"&gt; &lt;/span&gt;&lt;span style="font-size:100%;"&gt;our customers to enjoy our products more and more, for that we have started a selective&lt;/span&gt;&lt;span style="font-size:100%;"&gt; &lt;/span&gt;&lt;span style="font-size:100%;"&gt;$80 Reward Survey.&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;Take part to our quick survey and we will credit $8&lt;/span&gt;&lt;span style="font-size:100%;"&gt;0 to your account - &lt;strong&gt;Just for your time!&lt;/strong&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;                                   TO GET YOUR REWARD CLICK THE LINK BELLOW:&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;===============================================================&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;br /&gt;You are wisked away to&lt;/span&gt; "http://www.mcdonalds.com.go2voip.net&lt;span style="font-size:100%;"&gt;" instead of the official site which is "http://www.mcdonalds.com".&lt;br /&gt;&lt;br /&gt;Once there, you fill out a bogus survey, and then the McPhiser attempts to steal your data with the form below. Notice the bogus $80 has changed to $100 now.&lt;/span&gt;&lt;span style="font-size:100%;"&gt; (click on the picture for full size):&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SYjwDFeJ5NI/AAAAAAAAADQ/frraZPR5mII/s1600-h/Copy+of+mcphisher.jpg"&gt;&lt;img style="cursor: pointer; width: 386px; height: 292px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SYjwDFeJ5NI/AAAAAAAAADQ/frraZPR5mII/s320/Copy+of+mcphisher.jpg" alt="" id="BLOGGER_PHOTO_ID_5298748897400317138" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;A good indication is not only Ronald holding a Bomb, but also when Ronald wants your credit&lt;/span&gt; &lt;span style="font-size:100%;"&gt;card number, social security number, even your CIW (your credit card security code).&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;br /&gt;And yes the bogus $80 was suddenly changed to a bogus $100 credit.&lt;br /&gt;&lt;br /&gt;This phisher comes from France (yes insert the Conehead jokes now)..&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7938784908369543004?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7938784908369543004/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7938784908369543004' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7938784908369543004'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7938784908369543004'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/02/phiser-mcdonalds-survey.html' title='Phiser: McDonalds Survey'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SYjwDFeJ5NI/AAAAAAAAADQ/frraZPR5mII/s72-c/Copy+of+mcphisher.jpg' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-9038305634781526684</id><published>2009-02-02T06:56:00.000-08:00</published><updated>2009-02-02T07:13:43.466-08:00</updated><title type='text'>Scam: Cell Phone "Do Not Call List"</title><content type='html'>&lt;span style=";font-family:arial;font-size:100%;"  &gt;This one is starting up again, its been around for a few years now.&lt;br /&gt;&lt;br /&gt;It is originally started by a Telemarketer or company that wants to acquire your&lt;br /&gt;cell phone number for their evil use (sell it, etc).&lt;br /&gt;&lt;br /&gt;Just mark and delete these types of email.&lt;br /&gt;&lt;br /&gt;[Example]=============================================&lt;br /&gt;&lt;br /&gt;This just takes a minute and is good for 5 (five) years. You must call the Do Not Call number from your cell phone.&lt;br /&gt;&lt;br /&gt;THE FIRST WEEK OF [insert month], ALL CELL PHONE NUMBERS ARE BEING&lt;br /&gt;RELEASED TO TELEMARKETING COMPANIES AND YOU WILL START TO&lt;br /&gt;RECEIVE SALES CALLS........YOU WILL BE CHARGED FOR THESE CALLS......&lt;br /&gt;&lt;br /&gt;To prevent this, call the following number from your cell&lt;br /&gt;phone: [Phone number deleted] or visit this website: [Website&lt;br /&gt;address deleted]&lt;br /&gt;&lt;br /&gt;It is the National DO NOT CALL LIST. It will only takes a&lt;br /&gt;minute of your time and will block your number for 5 years.&lt;br /&gt;===========================================================&lt;br /&gt;&lt;br /&gt;The "official" do not call list, will never ask you to call, you can  access it from the web: &lt;a class="moz-txt-link-freetext" href="https://www.donotcall.gov/"&gt;https://www.donotcall.gov&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;There you can put in all your phone numbers, including your cell number.&lt;br /&gt;&lt;br /&gt;If you have registered already, it is normal for the "verification"  system to send you an email to show when you registered your phone number. &lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-9038305634781526684?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/9038305634781526684/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=9038305634781526684' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9038305634781526684'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/9038305634781526684'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/02/scam-cell-phone-do-not-call-list.html' title='Scam: Cell Phone &quot;Do Not Call List&quot;'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8735173206101462710</id><published>2009-02-02T06:37:00.000-08:00</published><updated>2009-02-02T06:56:34.734-08:00</updated><title type='text'>Phisher: Ebay Items</title><content type='html'>&lt;span style="font-family: times new roman;font-size:100%;" &gt;You received an email from eBay, stating you won a bid on something you don't remember bidding on. The first dead give away is the "Dear....", and its not, or nowhere near your name you would use on ebay. In this case "Dear &lt;b&gt;yakibo&lt;/b&gt;", where did they come come up with this one, from a hat with names in it?&lt;br /&gt;&lt;br /&gt;The Phisher is betting on you will log into eBay to see what is going on, and if you actually placed a bet. In this case, it was a brand new video game (which doesn't interest me at all), but never the less, they put a hot item everyone will go ga-ga for (example: Wii, Xbox, DVD, etc).&lt;br /&gt;&lt;br /&gt;And now the bogus email:&lt;br /&gt;============================================================&lt;br /&gt;&lt;span style=""&gt;Thank you for purchasing NEW Gears of War 2 C3U-00001.  Please leave feedback for me on eBay.  Take this opportunity now and help build a better eBay community.&lt;br /&gt;               &lt;br /&gt;                To leave feedback, just click on the link below:&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family: times new roman;font-size:100%;" &gt;&lt;span style=""&gt;Thank you for purchasing NEW Gears of War 2 C3U-00001.  Please leave feedback&lt;br /&gt;                for me on eBay.  Take this opportunity now and help build a better eBay community.&lt;br /&gt;               &lt;br /&gt;To leave feedback, just click on the link below: [link removed]&lt;br /&gt;&lt;span style="text-decoration: underline;"&gt;&lt;/span&gt;&lt;br /&gt;                Item title: NEW Gears of War 2 C3U-00001&lt;br /&gt;Web Address: [link points to a real item up for bid]&lt;br /&gt;Item number: 120330259294&lt;br /&gt;                Buyer User ID: yakibo&lt;br /&gt;                Seller User ID: buy&lt;br /&gt;                Total: $167.97&lt;br /&gt;               &lt;br /&gt;                Note: Every eBay user has a Feedback profile made up of comments from other eBay users.&lt;br /&gt;               &lt;br /&gt;                Thank you so much for your business.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class="fontfoot"&gt;Learn how you can protect yourself from spoof (fake) emails at:&lt;br /&gt; [link removed, pointing to real page at ebay.com to make it look legit]&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class="fontfoot"&gt;This eBay notice was sent to you from eBay. Your account is registered on [link removed]&lt;br /&gt;As outlined in our User Agreement, eBay will send you required notifications about the site and your transactions. If you would like to receive this email in text format, change your &lt;/span&gt;&lt;br /&gt;&lt;span style=""&gt;&lt;br /&gt;&lt;/span&gt;&lt;span class="fontfoot"&gt;Copyright © 2009 eBay, lnc. All Rights Reserved.&lt;br /&gt;                      Designated trademarks and brands are the property of their respective owners.&lt;br /&gt;                      eBay and the eBay logo are registered trademarks or trademarks of eBay, lnc. eBay is located at 2145 Hamilton Avenue, San Jose, CA 95125.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-family: times new roman;font-size:100%;" &gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-family: times new roman;font-size:100%;" &gt;============================================================&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8735173206101462710?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8735173206101462710/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8735173206101462710' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8735173206101462710'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8735173206101462710'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/02/phisher-ebay-items.html' title='Phisher: Ebay Items'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-440015774206213019</id><published>2009-01-14T12:40:00.000-08:00</published><updated>2009-11-30T11:09:56.342-08:00</updated><title type='text'>Scam: Nigerian</title><content type='html'>"He just smiled and gave me a Vegemite sandwich..."&lt;br /&gt;-&lt;span style="font-style: italic;"&gt;Men At Work ("Down Under")&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Ah the oldest of scams on  the Internet the "Nigeria" scam.&lt;br /&gt;&lt;br /&gt;This will end up costing you hundreds or even thousands of dollars, while exposing your personal info to uncountable number of people.&lt;br /&gt;&lt;br /&gt;It all revolves around some Nigerian prince, who has a boat load of money and he needs someone to help him. And If you help them you will be rewarded with an unimaginable fortune. In reality the "helper" is taken for everything they have.&lt;br /&gt;&lt;br /&gt;By the way, Thunderbird detected this as a scam...so just mark it and delete it.&lt;br /&gt;&lt;br /&gt;Example of one of many Nigeria Scam letters&lt;br /&gt;&lt;br /&gt;===================================================&lt;br /&gt;&lt;div class="moz-text-plain" wrap="true" quote="true" style="font-size: 16px;" lang="x-cyrillic"&gt;&lt;pre wrap=""&gt;FEDERAL REPUBLIC OF NIGERIA&lt;br /&gt;Special Duties/Logistics Department&lt;br /&gt;FOREIGN CONTRACT PAYMENT BUREAU&lt;br /&gt;Spear Heading Nigeria Debt Reconciliation Unit&lt;br /&gt;39 Grace church Street Victoria Island Lagos-Nigeria.&lt;br /&gt;Email : &lt;a class="moz-txt-link-abbreviated" href="mailto:senatepresidentnig1@gmail.com"&gt;senatepresidentnig1@gmail.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Attn: Sir/Ma ,&lt;br /&gt;&lt;br /&gt;This message is based on the letter United State Government received from the International Monetary Funds Agency  (I.M.F) and the G8 Summit headed last regarding the settlement of all our  contractors / beneficiaries debt, that is why the Secretary of the United State of America have decided to personally monitor this payment and make sure all U.S.A citizen and other related contractors/beneficiary that are concern received there payment without any delay.&lt;br /&gt;&lt;br /&gt;I, The  the Senate President ,Federal Republic of Nigeria , Dr Ken Nnamani (GCFR) and the Governor of Central Bank Of Nigeria , Prof Charles Soludo in Conjunction with the Board Of Directors , Sen., Ifeanyi Ararume held a meeting last week concerning contract payment , both foreign  and local contractors and some inheritance funds.&lt;br /&gt;&lt;br /&gt;On going through contractors file yesterday, we discovered that your file was dumped untreated, so at this juncture, we apologize for the delay of your contract payment and please stop communicating with any office now and attention to the appointed office below for you to receive your payment accordingly.&lt;br /&gt;&lt;br /&gt;Now you’re new Payment Reference No.-35460021, Allocation No: 674632 Password No : 339331 , Pin Code No: 55674 and your Certificate of Merit Payment No : 103 , CBN Released Code No: 0763; Immediate Telex confirmation No: -1114433 ; Secret Code No: XXTN013, Having received these vital payment number , therefore You are qualified now to received and confirm  Your payment with the Federal Government of Nigeria immediately within the next 24hrs .&lt;br /&gt;&lt;br /&gt;Now you are directed to contact the Office of the Paymaster General of Federation Nigeria Dr. Mike Obih   immediately so that he will pay you and fax you the payment Copy Slip and also you should reconfirm your Banking Details, Secret Code No: which is ( XXTN013), this is to avoid mistake while  transferring your overdue contract payment to you today .&lt;br /&gt;&lt;br /&gt;Contact Person:&lt;br /&gt;&lt;br /&gt;Dr. Mike Obih the Paymaster General,  Private Email &lt;a class="moz-txt-link-abbreviated" href="mailto:consultant101@live.com"&gt;consultant101@live.com&lt;/a&gt;, Tel: +234-803-056-1007.  Contact  him now and inform him that you received a  message from the Senate President Federal Republic Of Nigeria, Instructing you to contact him for immediate release of your contract payment and forward your Details to his office such as:&lt;br /&gt;&lt;br /&gt;1) Your Full Name:&lt;br /&gt;2) Phone, Fax And Mobile:&lt;br /&gt;3) Company Name, (if any) Position And Address:&lt;br /&gt;4) Bank Details:&lt;br /&gt;5) Profession, Age And Marital Status:&lt;br /&gt;6) Copy Of your Int'l Passport/Driving license&lt;br /&gt;&lt;br /&gt;NOTE : We have mounted our security network to monitor every in-coming calls and emails , if we still find out that you are still dealing with all those fraudsters that have been frustrating you for years , I shall stop and cancel your payment immediately .&lt;br /&gt;&lt;br /&gt;Best Regards   &lt;br /&gt;Sen. David Mark&lt;br /&gt;(Senate President Federal Republic Of Nigeria)&lt;br /&gt;==================================================================&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-440015774206213019?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/440015774206213019/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=440015774206213019' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/440015774206213019'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/440015774206213019'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/scam-nigerian.html' title='Scam: Nigerian'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2021793504779531705</id><published>2009-01-14T12:06:00.001-08:00</published><updated>2009-01-14T12:20:58.647-08:00</updated><title type='text'>Phisher: Pay Pal Account</title><content type='html'>"Go on take the money and run"&lt;br /&gt;-&lt;span style="font-style: italic;"&gt; The Steve Miller Band&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;PayPal is good, and also bad, due to it houses your money (like an online bank) to allow you to pay as cash online (example: eBay auctions, etc). So many Phishers try to obtain your PayPal account information (if you have one).&lt;br /&gt;&lt;br /&gt;If you don't, then you need not worry. And as always do not follow the link in these types of emails. You should always use your bookmark of the official PayPal site or call them to verify if their is an issue with your account.&lt;br /&gt;&lt;br /&gt;Oh, and think about gettiing Thunderbird, and use it as your primary email client, Thunderbird&lt;br /&gt;detected this as a Scam (see below). And gave me the option to change the status.&lt;br /&gt;&lt;span style="text-decoration: underline;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_WANKZoxNKS4/SW5GAV-nhjI/AAAAAAAAADI/cHMvdqYY_VM/s1600-h/phisher-paypal.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 320px; height: 213px;" src="http://1.bp.blogspot.com/_WANKZoxNKS4/SW5GAV-nhjI/AAAAAAAAADI/cHMvdqYY_VM/s320/phisher-paypal.jpg" alt="" id="BLOGGER_PHOTO_ID_5291243583920637490" border="0" /&gt;&lt;/a&gt;Just mark and delete these PayPal scam emails.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2021793504779531705?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2021793504779531705/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2021793504779531705' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2021793504779531705'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2021793504779531705'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/phisher-pay-pal-account.html' title='Phisher: Pay Pal Account'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_WANKZoxNKS4/SW5GAV-nhjI/AAAAAAAAADI/cHMvdqYY_VM/s72-c/phisher-paypal.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3666971097596458866</id><published>2009-01-14T11:20:00.000-08:00</published><updated>2009-11-30T10:24:17.371-08:00</updated><title type='text'>SCAM: AntiVirus 2009, 2008, 2007, etc</title><content type='html'>"I think I'm in Trouble...."&lt;br /&gt;-&lt;span style="font-style: italic;"&gt;Lindsey Buckingham&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;AntiVirus 2009 has been out for years, and of course various versions. An its main focus, to infect your system, and make you pay to remove the viruses it puts on your system. This is a basic tactic most bogus Security software companies do. Its all goes back to the old days of the Wild West Medicine men selling their "Snake Oil" off the back of their wagons which will cure any aliment.&lt;br /&gt;&lt;br /&gt;Meanwhile, back in the present day....&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SW47W7ukGhI/AAAAAAAAACI/_Hm1HQnny1o/s1600-h/browser-hoax-av2009.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 320px; height: 233px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SW47W7ukGhI/AAAAAAAAACI/_Hm1HQnny1o/s320/browser-hoax-av2009.jpg" alt="" id="BLOGGER_PHOTO_ID_5291231877383068178" border="0" /&gt;&lt;/a&gt;It first starts like a small window, warning you you have a virus like window pictured left.&lt;br /&gt;&lt;br /&gt;This is just a popup window with a .jpg or .gif picture in it, to make it seem "real". And states yuo 'need' to download AntiVirus 2009 to remove the threat (virus, trojan) from your computer.&lt;br /&gt;&lt;br /&gt;At this point you just want to close it and keep moving along.&lt;br /&gt;&lt;br /&gt;Meanwhile, armed with Firefox and AVG, I've&lt;br /&gt;decided to click [Continue] to see hat we get.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SW5BDdME0iI/AAAAAAAAADA/65hDHFRkIio/s1600-h/firefox-warning.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 320px; height: 137px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SW5BDdME0iI/AAAAAAAAADA/65hDHFRkIio/s320/firefox-warning.jpg" alt="" id="BLOGGER_PHOTO_ID_5291238139837600290" border="0" /&gt;&lt;/a&gt;Good 'ol Firefox looking out for me, most of the AntiVirus 2009 sites were registered with the search engines, and Firefox reads the database of the reported sites to warn you.&lt;br /&gt;&lt;br /&gt;I tried this with Internet Explorer, and it just let me right on through. Almost as if it didn't want to be bothered. (This is another good feature of Firefox for all your Internet Explorer users).&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SW4-E10WV1I/AAAAAAAAACo/rmy8xDVgcHk/s1600-h/browser-hoax-av2009-pt3.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 395px; height: 340px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SW4-E10WV1I/AAAAAAAAACo/rmy8xDVgcHk/s320/browser-hoax-av2009-pt3.jpg" alt="" id="BLOGGER_PHOTO_ID_5291234865093957458" border="0" /&gt;&lt;/a&gt;Afte telling Firefox to allow me to go, I was whisked faster away to the web site then a Pampered Chef whisker. And then the site begins  with its "smoke &amp;amp; mirrors" tricks showing me its scanning my system for viruses. But there is a small over site of the site.. I have 8 partitions, and I do not name my partitions "Local Disk" , etc.&lt;br /&gt;&lt;br /&gt;So I allowed it to continue with its parlor tricks, and much to my (not) surprise, it finds that I have Malware.&lt;br /&gt;&lt;br /&gt;I have two trojans, and 69 files are infected along with another infection. But it was nice and found and removed a threat.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;&lt;br /&gt;&lt;/div&gt;So I decided to leave the magic show, and I was greeted with another screen stating that I am still infected, and I was warned it has to be removed. No matter what button I clicked, I am presented wit the same Window to download their software to really Infect my system rather then cure it. Oh by the way now instead of two "Criticle" problems, I now only have one.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SW4_iv5nhDI/AAAAAAAAACw/B5ek7uMDYVA/s1600-h/browser-hoax-av2009-pt4.jpg"&gt;&lt;img style="cursor: pointer; width: 400px; height: 277px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SW4_iv5nhDI/AAAAAAAAACw/B5ek7uMDYVA/s400/browser-hoax-av2009-pt4.jpg" alt="" id="BLOGGER_PHOTO_ID_5291236478413145138" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div style="text-align: left;"&gt;(click to enlarge)&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;The Antivirus 200x site also plays havoic with your back buttons, when you try to go back, it will just reload (java trick). So at this point you just want to close down your browser and re-launch it.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;If you have been infected, here is a site that will get you on your way to remove this nasty, vial, piece of software:&lt;br /&gt;&lt;br /&gt;http://www.bleepingcomputer.com/malware-removal/uninstall-antivirus-2009&lt;br /&gt;&lt;br /&gt;Until next time...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3666971097596458866?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3666971097596458866/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3666971097596458866' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3666971097596458866'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3666971097596458866'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/scam-antivirus-2009-2008-2007-etc.html' title='SCAM: AntiVirus 2009, 2008, 2007, etc'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SW47W7ukGhI/AAAAAAAAACI/_Hm1HQnny1o/s72-c/browser-hoax-av2009.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-4733436342552347321</id><published>2009-01-09T11:05:00.000-08:00</published><updated>2009-01-09T11:27:09.401-08:00</updated><title type='text'>Trojan: News Video Footage</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_WANKZoxNKS4/SWehmoaGtfI/AAAAAAAAACA/haFKGjyk_n4/s1600-h/bogus-video.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 279px; height: 219px;" src="http://2.bp.blogspot.com/_WANKZoxNKS4/SWehmoaGtfI/AAAAAAAAACA/haFKGjyk_n4/s320/bogus-video.jpg" alt="" id="BLOGGER_PHOTO_ID_5289373972423947762" border="0" /&gt;&lt;/a&gt;And the Hackers play on trying to get you to infect yourself so they do not break the law of hacking your PC.&lt;br /&gt;&lt;br /&gt;You may receive an email from 'CNN News', 'NBC News', and 'News Media Centre', etc that some stories make you take a double take, while others are seeming rather truthful.&lt;br /&gt;&lt;br /&gt;First, the meida will never just send you an email without you subscribing to their service. And if your like me, you find it easier just  to hit their site and read news rather then it clogging up your inbox.&lt;br /&gt;&lt;br /&gt;Second, pay attention to the spelling of words in the email and from the sender, in this case the Hacker sent it from a bogus user named 'Media Centere' which is the European version of 'Center'.  This should send a flag up right away if it is from an American news media company.&lt;br /&gt;&lt;br /&gt;So I followed the link with my trusty armed with my trusty Firefox and AVG by myside to see what it offered. And as reported a few blogs it was a video that could not be played without downloading addtional software (see the 'Long Lost Classmates' blog entry). This attemptted to download the same file "Adobe_Player10.exe" which is a Trojan Horse and will infect and notify the Hacker basically "I'm here...come on in!".&lt;br /&gt;&lt;br /&gt;Just mark these as junk, and delete the email.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-4733436342552347321?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/4733436342552347321/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=4733436342552347321' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4733436342552347321'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/4733436342552347321'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/trojan-news-video-footage.html' title='Trojan: News Video Footage'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_WANKZoxNKS4/SWehmoaGtfI/AAAAAAAAACA/haFKGjyk_n4/s72-c/bogus-video.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-6437892004240374765</id><published>2009-01-07T09:12:00.000-08:00</published><updated>2009-01-08T11:03:00.141-08:00</updated><title type='text'>SCAM: Free Dinners</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SWZNGA-_lZI/AAAAAAAAAB4/nM__C_yALWA/s1600-h/freegrub.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 300px; height: 197px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SWZNGA-_lZI/AAAAAAAAAB4/nM__C_yALWA/s320/freegrub.jpg" alt="" id="BLOGGER_PHOTO_ID_5288999578131994002" border="0" /&gt;&lt;/a&gt;These scams come in as free dinners for RedLobster, Olive Garden, etc.&lt;br /&gt;&lt;br /&gt;And just as with the 'Free Laptop', they are out for your personal info and to populate your mailboxes with junk mail. Oh yeah, and you still don't get the free offer.&lt;br /&gt;&lt;br /&gt;This one had me go through 60 offers of selecting&lt;br /&gt;"yes" or "no", then I had to apply for two credit cards (with application fees of course) that had a early fee each for $49.95.&lt;br /&gt;&lt;br /&gt;Just mark these as junk, and if you encounter them on the web while surfing, just ignore or close the banner out and move on.&lt;br /&gt;&lt;br /&gt;Until next time...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6437892004240374765?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6437892004240374765/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6437892004240374765' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6437892004240374765'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6437892004240374765'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/scam-free-dinners.html' title='SCAM: Free Dinners'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SWZNGA-_lZI/AAAAAAAAAB4/nM__C_yALWA/s72-c/freegrub.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8862411380236576645</id><published>2009-01-07T06:45:00.000-08:00</published><updated>2009-01-07T09:01:12.380-08:00</updated><title type='text'>SCAM: Free Laptop</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SWTB4i-jnyI/AAAAAAAAABo/p05DhHvvlhk/s1600-h/freelaptop.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 191px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SWTB4i-jnyI/AAAAAAAAABo/p05DhHvvlhk/s320/freelaptop.jpg" alt="" id="BLOGGER_PHOTO_ID_5288565039645826850" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;WOW A Free Laptop!&lt;br /&gt;&lt;br /&gt;But wait, there are several catches, and some Phishing behind the colorful email picture, and of course, there is no free laptop, its just a gimmick to give up your information and for scamming company to make money off of you from marketing companies.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;First when you click on the email, it notifies back to the scaming company, that your email is an 'active email', keep sending these bogus emails.&lt;br /&gt;&lt;br /&gt;Next, your required to fill out your email address (so they can assure your address is correct from clicking above) to send you just more junk mail.&lt;br /&gt;&lt;br /&gt;Then you get you give them your street address for... yes you guessed it, more junk mail to fill up your home mailbox now.&lt;br /&gt;&lt;br /&gt;Then after sitting through clicking "no" on about 40 offers, your then told you have to complete two special offers below. And its the offers you just clicked 'No' on. Some other offers include siging up for a high APR credit card (some with yearly surcharges, etc).&lt;br /&gt;&lt;br /&gt;This who scam also applies to the following popular items of our time:&lt;br /&gt;&lt;br /&gt;xbox&lt;br /&gt;wii&lt;br /&gt;ipod&lt;br /&gt;cell phone&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8862411380236576645?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8862411380236576645/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8862411380236576645' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8862411380236576645'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8862411380236576645'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/scam-free-laptop.html' title='SCAM: Free Laptop'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SWTB4i-jnyI/AAAAAAAAABo/p05DhHvvlhk/s72-c/freelaptop.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5095144251445143734</id><published>2009-01-05T07:25:00.000-08:00</published><updated>2009-01-05T07:55:37.296-08:00</updated><title type='text'>SCAM: BlueHippo PC</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_WANKZoxNKS4/SWItQif1sXI/AAAAAAAAABg/yBzwH1pmjv4/s1600-h/01072008839m.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 181px; height: 142px;" src="http://4.bp.blogspot.com/_WANKZoxNKS4/SWItQif1sXI/AAAAAAAAABg/yBzwH1pmjv4/s320/01072008839m.jpg" alt="" id="BLOGGER_PHOTO_ID_5287838674647888242" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;It seems so simple, no matter what your credit is, good or bad, you can easily receive a PC from a company such as BlueHippo computers (this goes for the "other" scam companies of this nature too).&lt;br /&gt;&lt;br /&gt;But in reality, your getting yourself in to a finacial nightmare, and end up paying from three to five times the retail cost of the new computeter&lt;br /&gt;&lt;br /&gt;Also the systems they sell are the real low cost end, some are even outdated technology. For instance you woud end up paying $2,000 for a $400 system. And guess who gets the $1600.&lt;br /&gt;&lt;br /&gt;BlueHippo wants anywhere from $99.00 - $125.00 up front. Then makes payment arangements with you they end of changing without your knowledge. BluHippo offers 'low payments' of $100 a week for their product.&lt;br /&gt;&lt;br /&gt;And BlueHippo is bad on delivering the goods once payments are made. Customers have waited weeks (while still being charged) without any deliveries. But once threatened by the customer, BlueHippo suddenly shipped out their orders.&lt;br /&gt;&lt;br /&gt;These companies are just bad news, if you want a new computer, and and are credit challenged, your best bet is to start saving your pennies and go by one without any help from challenged computer companies such as BlueHippo.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5095144251445143734?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5095144251445143734/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5095144251445143734' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5095144251445143734'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5095144251445143734'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/scam-bluehippo-pc.html' title='SCAM: BlueHippo PC'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_WANKZoxNKS4/SWItQif1sXI/AAAAAAAAABg/yBzwH1pmjv4/s72-c/01072008839m.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-6986911955052831451</id><published>2009-01-05T07:00:00.000-08:00</published><updated>2009-01-05T08:03:25.994-08:00</updated><title type='text'>SCAM: TV "Fix PC" Commercials</title><content type='html'>You have seen these commercials for fixing your PC problems. These commercials are from "Finally Fast.com", and "StopSign.com" show flashy animations, and show people with computer problems.&lt;br /&gt;&lt;br /&gt;&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/l3YRBzz_4Hg&amp;amp;hl=en&amp;amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/l3YRBzz_4Hg&amp;amp;hl=en&amp;amp;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Well first off, they overlaid Bogus errors on the monitor screens of the commercials (for instance an Apple computer with a Microsoft Windows error screen).. So in general they are starting right away with the old smoke and mirrors.&lt;br /&gt;&lt;br /&gt;They have also notified that if any issues were found, you would have to purchase their software to remove/fix the issues. This is noted in the small fine white print that is pretty much unreadable at the bottom of the TV screen.&lt;br /&gt;&lt;br /&gt;It just gets worse folks....please continue to read.&lt;br /&gt;&lt;br /&gt;Going to their sites, they do not use your browser to check your PC for problems, instead they prompt you to download a program to install on your computer to check for issues.  In the case of&lt;br /&gt;'FinalyFast.com' it's named "ActiveSpeed_setup.exe".&lt;br /&gt;&lt;br /&gt;And even though they have a "Microsoft Certified" logo on the page, does not mean they are in this day in age, its just a picture that anyone can right click, and 'save as' and use.&lt;br /&gt;&lt;br /&gt;Now reviewing this executable problem "ActiveSpeed_setup.exe", contains SpyWare, and will be removed safely by AVG and some other AntiVirus aoftware.&lt;br /&gt;&lt;br /&gt;This program will also report false information, attempting to trick the user to quickyly purchase the product to remove the infection (that they installed!).&lt;br /&gt;&lt;br /&gt;Just stay clear of these scams, they just lead to complicate your computer issues much worse then they can be.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6986911955052831451?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6986911955052831451/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6986911955052831451' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6986911955052831451'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6986911955052831451'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2009/01/scam-tv-fix-pc-commercials.html' title='SCAM: TV &quot;Fix PC&quot; Commercials'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2842570013224013899</id><published>2008-12-31T08:53:00.000-08:00</published><updated>2008-12-31T09:08:00.713-08:00</updated><title type='text'>SCAM: The Check Is At FedEx</title><content type='html'>&lt;div class="moz-text-html" lang="x-western"&gt;&lt;p&gt;This one claims there is a check for 2.5 million dollars locked somewhere in a box that FedEx does not know the contents of. But in order to recieve it, you need to give them ALL of your personal information, including your picture....fake ID's anyone?&lt;/p&gt;&lt;p&gt;Dead giveaway, FedEx would not be using a 'yahoo.com' account for their email.&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;Just mark it as junk and delete it.&lt;/p&gt;&lt;p&gt;--------------------------------------------------------------------------------------------&lt;br /&gt;&lt;/p&gt; &lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;Hello Dear,&lt;br /&gt;I have Paid the fee for your Cheque Draft.but the manager of Eco Bank Benin told me that before the check will get to you that it will expire.So i told him to cash $2.5 Million all the necessary arrangement of delivering the $2.5 Million in cash was made with FEDEX COURIER COMPANY LTD.This in the information they need to delivery your package to you.&lt;/p&gt;  &lt;p&gt;ATTN: DR WILLIAMS BEN&lt;br /&gt;Tel: 009229-93-72-44-86&lt;br /&gt;EMAIL: (fedexdelivery.companylimited@yahoo.com)&lt;/p&gt;&lt;p&gt;Please, Send them your contacts information to able them locate you immediately they arrived in your country with your BOX .This is what they need from you.&lt;/p&gt; &lt;p&gt;And don't let them know the content to avoid delaying delivery ok.&lt;/p&gt; &lt;p&gt;1.YOUR FULL NAME:&lt;br /&gt;2.YOUR COUNTRY:&lt;br /&gt;3.YOUR HOME ADDRESS:&lt;br /&gt;4.YOUR CURRENT HOME TELEPHONE NUMBER:&lt;br /&gt;5.YOUR CURRENT OFFICE TELEPHONE:&lt;br /&gt;6.A COPY OF YOUR PICTURE&lt;br /&gt;7.COMPANY REGISTRATION NO EG58945&lt;br /&gt;8.CODE NUMBER 0140479&lt;/p&gt; &lt;p&gt;Please make sure you send this needed information to the Director general of FEDEX COURIER COMPANY LTD, DR WILLIAMS BEN&lt;/p&gt; &lt;p&gt;Note. The FEDEX COURIER COMPANY LTD don't know the contents of the Box.I registered it as a Box of an cloths.They don't know it contents money.this is to avoid them delaying with the Box. don't let them know that is money that is in that Box.I am waiting for your urgent response.You can even call the Director of FEDEX COURIER COMPANY LTD with this line 009229-93-72-44-86&lt;br /&gt;Thanks and Remain Blessed.&lt;/p&gt; &lt;p&gt;MR.PETER OBI.&lt;/p&gt;&lt;p&gt;--------------------------------------------------------------------------------------------&lt;br /&gt;&lt;/p&gt; &lt;p&gt;&lt;br /&gt;&lt;/p&gt; &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2842570013224013899?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2842570013224013899/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2842570013224013899' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2842570013224013899'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2842570013224013899'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/12/scam-check-is-at-fedex.html' title='SCAM: The Check Is At FedEx'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-312849945490756047</id><published>2008-12-31T08:23:00.000-08:00</published><updated>2008-12-31T08:41:15.753-08:00</updated><title type='text'>SCAM: AOL Billing Information</title><content type='html'>And now enter the AOL Scam to obtain your AOL account information.&lt;br /&gt;&lt;br /&gt;The Phisher (from Pakistan), uses a 'From:' address right, and sent it from 'updates@aoI.com' (duh!).&lt;br /&gt;&lt;br /&gt;This one was interesting, they provided a real '888' phone number to call, when called it was the old dial-up access number line from AOL (it informs you of telephone charges when using dial up lines with your modem... )... (ah the golden days of dialing up with modems..memories....)&lt;br /&gt;&lt;br /&gt;And then there is the [Click Here To Update Your Account], points to a news station web site in Pakistan, which the bogus AOL site no longer works.&lt;br /&gt;&lt;br /&gt;Remember, IF IN DOUBT about your account expiring, log into it and look for any official messages from AOL, Yahoo, etc.&lt;br /&gt;&lt;br /&gt;NEVER reply or click on shady links at the bottom of emails requesting you to change, or access your information.&lt;br /&gt;&lt;br /&gt;--------------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;Welcome To AOL Support&lt;br /&gt;&lt;p&gt;It has come to our attention that your AOL Billing Information records are out of date. That requires you to update the Billing Information. Failure to update your records will result in account termination. Please update your records within 24 hours. Once you have updated your account records, your AOL session will not be interrupted and will continue as normal. Failure to update will result in cancellation of service, Terms of Service (TOS) violations or future billing problems. You must click the link below and enter your login information on the following page to confirm your Billing Information records.. &lt;/p&gt;             &lt;p&gt;Thank You&lt;/p&gt;[click here to update your account]&lt;br /&gt;&lt;br /&gt;------------------------------------------------------------------------------------------------&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-312849945490756047?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/312849945490756047/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=312849945490756047' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/312849945490756047'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/312849945490756047'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/12/scam-aol-billing-information.html' title='SCAM: AOL Billing Information'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8847718271943920538</id><published>2008-12-31T07:54:00.001-08:00</published><updated>2008-12-31T08:21:28.558-08:00</updated><title type='text'>SCAM: Yahoo Account Termination</title><content type='html'>The wonders of how hackers try to confiscate your account info with the simple "update or it will be deleted" tactic.&lt;br /&gt;&lt;br /&gt;This one went out a few days ago, stating if you did not update your Yahoo! account, it would be deleted.&lt;br /&gt;&lt;br /&gt;If Yahoo was to purge any accounts, they certainly would not want your date of birth nor your zipcode, this is the first dead giveaway.&lt;br /&gt;&lt;br /&gt;And NEVER click the 'reply' button as indicated here, this is just handing over your personal information without any questions or credibility to the hacker.&lt;br /&gt;&lt;br /&gt;If you are in question about your account, always try to log in to Yahoo. If there is an issue you will generally see a message that pops up from Yahoo when loggin in.&lt;br /&gt;&lt;br /&gt;==============================================================&lt;br /&gt;Account Alert&lt;br /&gt;&lt;br /&gt;Dear Valued Member,&lt;br /&gt;&lt;br /&gt;Due to the congestion in all Yahoo users and removal of all unused Yahoo Accounts, Yahoo would be shutting down all unused Accounts,You will have to confirm your new password and E-mail by filling out your Login Information below after clicking the reply button, or your account will be suspended within 24 hours for security reasons.&lt;br /&gt;&lt;br /&gt;User Name:...........................&lt;br /&gt;&lt;br /&gt;Password:............................&lt;br /&gt;&lt;br /&gt;Date of Birth:..............................&lt;br /&gt;&lt;br /&gt;Country Or Territory Zip:........................&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;After following the instructions in the sheet, your account will not be interrupted and will continue as normal. Thanks for your attention to this request. We apologize for any inconvenience.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Warning!!!  Account owner that refuses to update his or her account before two weeks of receiving this warning will lose his or her account permanently&lt;br /&gt;&lt;br /&gt;Warning!!!&lt;br /&gt;==============================================================&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8847718271943920538?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8847718271943920538/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8847718271943920538' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8847718271943920538'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8847718271943920538'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/12/scam-yahoo-account-termination.html' title='SCAM: Yahoo Account Termination'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2848167221533818213</id><published>2008-12-10T08:10:00.000-08:00</published><updated>2008-12-10T08:13:33.796-08:00</updated><title type='text'>Scam: Bank Account Demo</title><content type='html'>This scam trying to get you to infect your own computer buy posing as a 'bank account demo' video, which you need to suddenly download additional ("correct flash movie player") software to view it.&lt;br /&gt;&lt;br /&gt;Then your prompted to save a file "Adobe_player10.exe" which is the file to infect your PC.&lt;br /&gt;&lt;br /&gt;Further research of the "Adobe_player10.exe" finds this is designed as a password/id stealer, and will log your keystrokes. Which are then sent back to its creator.&lt;br /&gt;&lt;br /&gt;Just mark it as junk and delete it.&lt;br /&gt;&lt;br /&gt;===========================================================================&lt;br /&gt;To: &lt;your@email.com&gt;&lt;br /&gt;Subject: Colonial Bank Log in to Online Banking&lt;br /&gt;From: Support Team &lt;provisor#69@colonialbank.com&gt;&lt;br /&gt;&lt;br /&gt;COLONIAL BANK CORPORATION NOTICE:&lt;br /&gt;&lt;br /&gt;Colonial Bank presents new Online Banking Organizer 2009.&lt;br /&gt;Colonial Bank Organizer 2009 is more efficient way of managing your bank&lt;br /&gt;accounts.&lt;br /&gt;You can discover it 24/7 365 days.&lt;br /&gt;&lt;br /&gt;Proceed to view Colonial Bank Online Banking Organizer 2009 Demo:&lt;br /&gt;&lt;br /&gt;&lt;internet&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;We always protect the confidentiality and privacy of our clients and&lt;br /&gt;participants.&lt;br /&gt;&lt;br /&gt;With best regards, Trey Lacy.&lt;br /&gt;Colonial Bank 2008. All Rights Reserved.&lt;br /&gt;========================================================================&lt;/internet&gt;&lt;/provisor#69@colonialbank.com&gt;&lt;/your@email.com&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2848167221533818213?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2848167221533818213/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2848167221533818213' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2848167221533818213'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2848167221533818213'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/12/this-scam-trying-to-get-you-to-infect.html' title='Scam: Bank Account Demo'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-8127401932356133256</id><published>2008-12-09T07:21:00.000-08:00</published><updated>2008-12-09T07:47:56.801-08:00</updated><title type='text'>Virus: "Your order from Allegiant Air N9575536"</title><content type='html'>Take to the skies with hackers trying to get you to launch bogus programs to print airline tickets.&lt;br /&gt;&lt;br /&gt;Your tricked into thinking you have a balance on your credit card for plane tickets (which are bogus), and you are told to execute the .exe file("print-ticket.zip")  that's included as an attachment.&lt;br /&gt;&lt;br /&gt;AVG found the attachment with the 'WIN32/Cryptor' virus. This virus if launched, will continuiously download Spyware to your system, and as a result bringing your system to its knees to to the amount of Spyware installed.&lt;br /&gt;&lt;br /&gt;Just mark it as junk and delete it.&lt;br /&gt;&lt;br /&gt;[Example Email]==================================================&lt;br /&gt;&lt;br /&gt;Dear client,&lt;br /&gt;We appreciate deeply your decision to get our new service Purchase your airplane ticket On-line&lt;br /&gt;You have just created your account:&lt;br /&gt;&lt;br /&gt;login: &lt;your&gt;&lt;br /&gt;password: PASS5QM7&lt;br /&gt;&lt;br /&gt;The balance of your credit card is $383.89.&lt;br /&gt;We are glad to inform you that each time you are getting flight tickets with the help of our site you are given a reduction of 10%!&lt;br /&gt;In the ZIP archive added to this letter you can find purchase Invoice and your airplane ticket. So just colour print the ticket and start your wonderful journey!&lt;br /&gt;&lt;br /&gt;Good luck,&lt;br /&gt;Allegiant Air&lt;br /&gt;&lt;br /&gt;========================================================&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-8127401932356133256?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/8127401932356133256/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=8127401932356133256' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8127401932356133256'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/8127401932356133256'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/12/virus-your-order-from-allegiant-air.html' title='Virus: &quot;Your order from Allegiant Air N9575536&quot;'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3932374923246081027</id><published>2008-12-02T07:03:00.000-08:00</published><updated>2008-12-02T09:00:24.082-08:00</updated><title type='text'>SCAM: Google Contract</title><content type='html'>&lt;pre wrap=""&gt;&lt;span style=";font-family:arial;font-size:85%;"  &gt;Again, Hackers attempting to have you unwillingly install trojans on yout system to allow them to gain access to it.&lt;br /&gt;&lt;br /&gt;This one comes as a bogus business proposition from Google, and wishes you to view the attached file (which contains a Trojan to infect your PC).&lt;br /&gt;&lt;br /&gt;===========================================&lt;br /&gt;&lt;br /&gt;Good morning&lt;br /&gt;&lt;br /&gt;We’ve drew up the contract taking into account those paragraphs you’d wanted.&lt;br /&gt;&lt;br /&gt;Our legal experts made some recasts on the last page of the contract. Please, get to know with it, and if everything is ok we are prepared to pay for the first lot on Friday The prepared contract is in the added file&lt;br /&gt;&lt;br /&gt;We also can send the contract by fax&lt;br /&gt;&lt;br /&gt;Waiting for your reply&lt;br /&gt;Kelsey Pickett&lt;br /&gt;Manager Google&lt;br /&gt;============================================&lt;br /&gt;&lt;br /&gt;Just mark it as junk and delete it.&lt;/span&gt;&lt;br /&gt;&lt;/pre&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3932374923246081027?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3932374923246081027/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3932374923246081027' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3932374923246081027'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3932374923246081027'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/12/scam-google-contract.html' title='SCAM: Google Contract'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2931160642627733129</id><published>2008-12-02T06:43:00.001-08:00</published><updated>2008-12-02T07:01:01.017-08:00</updated><title type='text'>Phisher: Account Accessed</title><content type='html'>Phishers will also try to set panic into you by stating they are a financial institution and that your account has been access by an unauthorized computer/person, and they need to suspend it if you ignore the request.&lt;br /&gt;&lt;br /&gt;If you get any types of emails like this, always call your financial institution and verify that things are okay. Otherwise you jeopardize your personal security.&lt;br /&gt;&lt;br /&gt;Below is a sample email from a Phisher trying to pose as Chase Bank&lt;br /&gt;&lt;br /&gt;Example Email&lt;br /&gt;==========================================================&lt;br /&gt;&lt;br /&gt;Dear JPMorgan Chase &amp;amp; Co. Bank Member,&lt;br /&gt;&lt;br /&gt;Chase Bank is devoted to keeping a safe environment for its community of consumers and producers. To guarantee the safety of your account, Chase Bank deploys some of the most&lt;br /&gt;advanced security measures in the world and our anti-fraud units regularly screen the Chase Bank database for suspicious activity.&lt;br /&gt;&lt;br /&gt;We recently have discovered that multiple computers have attempted to log into your JPMorgan Chase Online Banking account, and multiple password failures were presented before the logons. We now require you to re-validate your account information to us.&lt;br /&gt;&lt;br /&gt;If this is not completed by January 31, 2008, we will be forced to suspend your account&lt;br /&gt;indefinitely, as it may have been used for fraudulent purposes. We thank you for your cooperation in this manner. In order to confirm your Online Bank records, we may require&lt;br /&gt;some specific information from you.&lt;br /&gt;&lt;br /&gt;What you need to do:&lt;br /&gt;- [Click Here] to log in with your User ID and Password.&lt;br /&gt;- Enter the requested information and your online services will be reactivated.&lt;br /&gt;If you choose to ignore our request, you leave us no choice but to temporary suspend your account. Thank you for your prompt attention to this matter. Please understand that this is a security measure meant to help protect you and your account.&lt;br /&gt;&lt;br /&gt;We apologize for any inconvenience.&lt;br /&gt;&lt;br /&gt;Thank you for using JPMorgan Chase &amp;amp; Co. Bank&lt;br /&gt;&lt;br /&gt;=============================================================================&lt;br /&gt;&lt;br /&gt;And as you guessed it, the Phisher waits for you to input your id/password, and then its all over. They now have access to your bank account, and then either "push" you to the real website or leave you with a blank screen.&lt;br /&gt;&lt;br /&gt;Just mark this junk, and keep moving forward.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2931160642627733129?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2931160642627733129/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2931160642627733129' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2931160642627733129'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2931160642627733129'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/12/phisher-account-accessed.html' title='Phisher: Account Accessed'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-762700897776132603</id><published>2008-11-21T08:25:00.000-08:00</published><updated>2008-11-21T08:31:16.435-08:00</updated><title type='text'>Scam: $$ Payment via Wired Money</title><content type='html'>&lt;pre style="font-family: courier new;" wrap=""&gt;&lt;br /&gt;Scam trying to lure your info and have you pay for the wired money.&lt;br /&gt;&lt;br /&gt;Just mark it "junk"&lt;br /&gt;&lt;br /&gt;Example Email&lt;br /&gt;------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;My Dear&lt;br /&gt;&lt;br /&gt;Now we have arranged your payment of ($1,500.000.00) One Million Five hundred thousand united state dollars in atm card to be sent to you through western union money transfer payment:&lt;br /&gt;&lt;br /&gt;Your payment will sending to you by western union, the amount you will receive  per day is $7,000 the minister trust funds of Accra-Ghana will send you the currently standards track details you need to pick up your ($7,000) payment by western union, you will receive every days till you receive the $1,500.000.00 united state dollars, now no need to send you this atm card because you can not be able to withdraw the atm card due to the atm master card contain large money on it.&lt;br /&gt;&lt;br /&gt;The director administrtor trust funds have already signed your payment, now you are free to comply with payment office on this email: (email address removed)&lt;br /&gt;&lt;br /&gt;However, kindly contact the below person who is in position to release your payment by western union per $7,000 a day.&lt;br /&gt;&lt;br /&gt;Mr James Mark,&lt;br /&gt;E-mail: (email address removed)&lt;br /&gt;&lt;br /&gt;The financial western union payment canter has been mandated to issue out your  payment and you have to stop any further communication with any other person(s) or office(s) to avoid any hitches in receiving your payment.&lt;br /&gt;&lt;br /&gt;Note that the administrator payment need this details from you to process your payment:&lt;br /&gt;&lt;br /&gt;Receiver name---------------&lt;br /&gt;Country---------------------&lt;br /&gt;City------------------------&lt;br /&gt;Tel-------------------------&lt;br /&gt;Test question---------------&lt;br /&gt;Answer----------------------&lt;br /&gt;&lt;br /&gt;Kindly comply with him because as soon as you sent this required details to Mr James Mark he will start sending your payment.&lt;br /&gt;&lt;br /&gt;Regards,&lt;br /&gt;Michael Robert.&lt;br /&gt;&lt;br /&gt;------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-762700897776132603?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/762700897776132603/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=762700897776132603' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/762700897776132603'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/762700897776132603'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/scam-payment-via-wired-money.html' title='Scam: $$ Payment via Wired Money'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-184066677427975750</id><published>2008-11-19T12:07:00.001-08:00</published><updated>2008-11-19T12:11:46.328-08:00</updated><title type='text'>Scam: Crazy Fox</title><content type='html'>I found this review regarding the Crazy Fox commericals that have been airing recently (besides the obvious scam).&lt;br /&gt;&lt;br /&gt;==================================================================&lt;br /&gt;Crazyfox website and TV ad do not give any information on what the whole program is about.&lt;br /&gt;&lt;br /&gt;Crazy Fox is associated with Herbalife (which has been around for YEARS and recently was fined $150 000 by Canadian authorities for Illegal Pyramid-like scheme).&lt;br /&gt;&lt;br /&gt;Once you pay the $9.99 fee to Crazyfox - they send you the starter package, which isn't actually a package of any kind. It's a booklet telling you how great it would be to become financially free, to never have a boss again and so on...&lt;br /&gt;&lt;br /&gt;Then the real fun begins. You start getting calls from Herbalife representatives who are trying to sell all these amazing deals at $200, $500, $1000 and more. They tell you that you have made an amazing choice and you are on your way to wealth...&lt;br /&gt;&lt;br /&gt;Since crazyfox sells your personal information to third parties, you will also start getting calls from insurance brokers, credit card companies, telephone companies and many others. They will all tell you: "We have been notified that you are starting a home business, you might be interested in our new Business Telephone Line, Business Credit Card... etc - and it never ends, needless to say that you will not make single dime with these guys.&lt;br /&gt;&lt;br /&gt;Crazyfox Review sites pop up now and than, but crazy fox scam team tries to shut them down or at least make them look "fake". However, they never tell you about the fine print at the bottom of the screen which pops up for couple of second during the infomercial:&lt;br /&gt;&lt;br /&gt;"There are no guarantees of specific income nor are there any representations of actual income. Amounts stated are for illustrative purposes only and are not typical. Persons depicted are paid actors."&lt;br /&gt;&lt;br /&gt;Unfortunately most of the people do not read the tiny letters on the TV screen and fall for a good looking TV ad actor who claims to make $5 000 a day without putting in any effort.&lt;br /&gt;&lt;br /&gt;-Ezine @rticles&lt;br /&gt;&lt;br /&gt;==================================================================&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-184066677427975750?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/184066677427975750/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=184066677427975750' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/184066677427975750'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/184066677427975750'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/scam-crazy-fox.html' title='Scam: Crazy Fox'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3207171807155370125</id><published>2008-11-19T11:18:00.000-08:00</published><updated>2008-11-19T12:06:54.949-08:00</updated><title type='text'>Scam: Work At Home</title><content type='html'>They offer money without leaving your home, some state they can turn your PC into a money making machine, or crack the Internet code to make millions.  They have owners or clients that testify of having sports cars, large houses, and even playgrounds for their own kids.&lt;br /&gt;&lt;br /&gt;But wait! To take advantage of this wonderful money making plan, you must first pay them the $49.95 (or more) to start making money. Thats how they make their money, and in return you get a booklet stating how wonderful it would be make money on the Internet.&lt;br /&gt;&lt;br /&gt;Recent scams like this are:&lt;br /&gt;&lt;br /&gt;"Google Bailout" (they have no affiliation with Google, they use it because its a known name!)&lt;br /&gt;&lt;br /&gt;"Legitimate Work at Home" by David Kennedy&lt;br /&gt;&lt;br /&gt;"CrazyFox" (I'll post what I found about this one next)&lt;br /&gt;&lt;br /&gt;Also another golden rule on junk mail in general, NEVER respond to them or click the unsubscribe" link provided in the email. This will "verify" that the email address is a valid address, and you will just receive more and more junk.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3207171807155370125?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3207171807155370125/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3207171807155370125' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3207171807155370125'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3207171807155370125'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/scam-work-at-home.html' title='Scam: Work At Home'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-1533635381458231246</id><published>2008-11-19T10:54:00.000-08:00</published><updated>2008-11-19T11:11:40.568-08:00</updated><title type='text'>Scam: Dying and I have Lots of Money Stashed!</title><content type='html'>&lt;div class="moz-text-plain" wrap="true" quote="true" style="font-size: 16px;" lang="x-central-euro"&gt;&lt;pre wrap=""&gt;Now here is a email stating that the person is dying and they wish to give their large sum of money to you. All you need to do is just contact them through their email account.&lt;br /&gt;&lt;br /&gt;Below is an example I received:&lt;br /&gt;&lt;br /&gt;---------------------------------------------------------&lt;br /&gt;&lt;br /&gt;From:Mrs.Elinor.J.George&lt;br /&gt;Greetings Dearest One,&lt;br /&gt;With Due Respect And Humanity, I was compelled to write to you under a humanitarian ground. My is name Mrs. Elinor Jacob. I was born in Baltimore,Maryland, I am married to Mr. George Jacob director J.C Industries Cote d'Ivoire.We were married for 36 years without a child. He died after a Cardiac Arteries Operation.&lt;br /&gt;&lt;br /&gt;And Recently, My Doctor told me that I would not last for the next six months due to my cancer problem (cancer of the liver and stroke).Before my hutsband died last year there is this sum $4.8 Million Dollars hat he deposited with a Private Finance Company here In Ivory coast.Presently this money is still in the Vault of the Company.&lt;br /&gt;&lt;br /&gt;Having known my condition I decided to donate this fund to any good God fearing brother or sister that will utilize this fund the way I am going to instruct herein.I want somebody that will use this fund according to the desire of my late husband to help Lessprivilaged people, orphanages,widows and propagating the word of God.&lt;br /&gt;&lt;br /&gt;I took this decision because I don't have any child that will inherit this fund, And I don't want in away where this money will be used in an un Godly way.This is why I am taking this decision to hand you over this Fund. I am not afraid of death hence I know where I am going.I want you to always remember me in your daily prayers because of my up coming Cancer Surgery.&lt;br /&gt;Thank's and God bless you as you comply with me and please don't hesitate to get back to me through this Email id@(&lt;a class="moz-txt-link-abbreviated" href="mailto:gelinor52@yahoo.com"&gt;gelinor52@yahoo.com&lt;/a&gt;) because i don't really know how tommorrow might be because of my health but all my  believe is that death is for everyone besides i'm not praying for death but due to my present condition i can't predict if i will survive or not all i know is that God know's what tommorrow will tell.&lt;br /&gt;Best regards,&lt;br /&gt;Mrs.Elinor George&lt;br /&gt;&lt;br /&gt;--------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;Yes right off the top you see several spelling mistakes.&lt;br /&gt;&lt;br /&gt;And reviewing the email headers (CTR+U in Thunderbird) you see the the email is now coming from 'elinor_george001@centrum.sk' instead of the '@yahoo' address. Further you see its being sent from a server called 'mail09-sk.centrum.cz' the '.cz' implies it is located in Czech Republic.&lt;br /&gt;&lt;br /&gt;These scams are designed to get money out of you (aka money to wire the 8million dollars into your bank account, etc). They play on the mind, making you feel bad for the dying woman. Or they play on the greed part of others.&lt;br /&gt;&lt;br /&gt;As a result, just mark it junk and move on.&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-1533635381458231246?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/1533635381458231246/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=1533635381458231246' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1533635381458231246'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/1533635381458231246'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/scam-dying-and-i-have-lots-of-money.html' title='Scam: Dying and I have Lots of Money Stashed!'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-5175184907467045827</id><published>2008-11-17T10:57:00.000-08:00</published><updated>2009-11-30T11:14:18.573-08:00</updated><title type='text'>Hoax: Don't Open Your Email Your PC will ...</title><content type='html'>Another popular hoax is the "Don't open any emails with subject...", or "Don't Open your email at all on this date (days, weeks, etc)" or your computer will blow up, format the hard drive, etc.&lt;br /&gt;&lt;br /&gt;Some of the subjects used are:&lt;br /&gt;&lt;br /&gt;Fully Paid Trip to Disney for the year&lt;br /&gt;Osama                 Bin Laden Captured or Hanged&lt;br /&gt;...and the list goes on again.&lt;br /&gt;&lt;br /&gt;For starters, the only way an email can infect your computer is if you click on an attachment to launch it or follow the link provided in the email and download and run the software from the site it took you to.&lt;br /&gt;&lt;br /&gt;The "Osama" one was real, and it took the user to an undisclosed website (outside the email), and wanted the user to download executable files that were passed off to be pictures or some movie.  The virus infected your PC and it was removable by Anti Virus software such as AVG Free Edition.&lt;br /&gt;&lt;br /&gt;Opening an email to read will not infect your computer, in fact that email will remain out on the email server until you log into the server somehow (Thunderbird, Hotmail, ect) and delete it. Otherwise it will stay out there for as long as you have that email address.&lt;br /&gt;&lt;br /&gt;What puts more fuel to the fire is when it is massed emailed to everyone (without Bcc'ing the list of people), and then you have to scroll down pages at a time to get to  the bottom of the email.&lt;br /&gt;&lt;br /&gt;Whats worse, is when nobody stops to review the origins or the concrete evidence behind the scare (research the virus/hoax), before mass mailing out to everyone in their address book&lt;br /&gt;&lt;br /&gt;Follow these simple rules to avoid the embaresement and the hysteria that you may be contributing by just forwarding the email:&lt;br /&gt;&lt;br /&gt;#1 Be proactive, stop, and research that email first before sending it out to everyone in your address book. If its false, then just simply market junk and delete it.&lt;br /&gt;&lt;br /&gt;Do Not forward these emails "As is". Instead type up an email and the Bcc: option and warn people this is a hoax and to junk it. Do not set panic into people that their PC will explode, melt, or catch fire, or dogs and cats will start living together.&lt;br /&gt;&lt;br /&gt;Be PRO-ACTIVE... mean time this is how you should use the Bcc: function of email to prevent the massive listings of email:&lt;br /&gt;&lt;br /&gt;Example:&lt;br /&gt;&lt;br /&gt;--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;To: me@myself.com&lt;br /&gt;Bcc: uncle@bob.com, joe@schmoe.com,meat@loaf.com&lt;br /&gt;Title: Re: Mickey Mouse gives away free software Virus!&lt;br /&gt;&lt;br /&gt;The virus is a hoax... just mark it as junk and delete it, do not follow&lt;br /&gt;any links contained in the email.&lt;br /&gt;&lt;br /&gt;--------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;That's all for now...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-5175184907467045827?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/5175184907467045827/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=5175184907467045827' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5175184907467045827'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/5175184907467045827'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/hoax-dont-open-your-email-your-pc-will.html' title='Hoax: Don&apos;t Open Your Email Your PC will ...'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-76771339014141788</id><published>2008-11-17T08:41:00.001-08:00</published><updated>2008-12-02T09:17:04.834-08:00</updated><title type='text'>Trojan:"Click to Watch Video" email.</title><content type='html'>A recent wave of these "click here to watch video" emails have been surfacing.&lt;br /&gt;&lt;br /&gt;They so far have claimed the following subjects:&lt;br /&gt;&lt;br /&gt;Fellow Classmates have been looking for you&lt;br /&gt;Amazing Presidential Speech&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Favoirte female&lt;/span&gt; (actress, model, etc) naked&lt;br /&gt;..the list goes on and on, just to spark your interest.&lt;br /&gt;&lt;br /&gt;We'll take an example of one:&lt;br /&gt;&lt;br /&gt;[Email Example]-----------------------------------------------------------&lt;br /&gt;&lt;br /&gt;Barack Obama Elected 44th President of United States&lt;br /&gt;&lt;br /&gt;Barack Obama, unknown to most Americans just four years ago, will become  the 44th president and the first African-American president of the  United States.&lt;br /&gt;Watch His amazing speech at November 5!&lt;br /&gt;&lt;br /&gt;Proceed to the election results news page &gt;&gt;&lt;br /&gt;&lt;br /&gt;2008 American Government Official Website&lt;br /&gt;&lt;br /&gt;This site delivers information about current U.S. Foreign policy and  about American life and culture.&lt;br /&gt;&lt;br /&gt;------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;The hacker lures you to a bogus site with a .jpg (picture) that looks  like a videoplayer. When you&lt;br /&gt;try to play, your instructed to download the correct flash movie  converter. Then your prompted&lt;br /&gt;to save and run a file 'adobe_flash9.exe' which will infect your system.&lt;br /&gt;&lt;br /&gt;Simply mark this junk and move on.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-76771339014141788?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/76771339014141788/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=76771339014141788' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/76771339014141788'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/76771339014141788'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/trojanclick-to-watch-video-email.html' title='Trojan:&quot;Click to Watch Video&quot; email.'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-7857625113030668223</id><published>2008-11-17T08:34:00.000-08:00</published><updated>2008-12-02T09:18:17.263-08:00</updated><title type='text'>Hoax: Free (insert your favoirte object of desire)</title><content type='html'>These emails have been around for years, and yet still people continue to forward them to everyone in their address book.&lt;br /&gt;&lt;br /&gt;These emails promise "Free GAP clothing", "Bill Gates Giving Away Free Copies of Windows", "Free Baby Gap Clothing", etc.&lt;br /&gt;&lt;br /&gt;Here is the rain on your parade, it will never happen. Its a ploy set up  to see how many emails the originating sender can get. It either falls into the wrong hands of a  spammer, or the original sender eventually gets the email addreesses and sells them to spammers (yes  there are cd's sold with email addresses...&lt;br /&gt;&lt;br /&gt;Here is an example of a company who provides services to Spammers with all the email addresses they have collected on a nice CD set:&lt;br /&gt;&lt;br /&gt;&lt;a class="moz-txt-link-freetext" href="http://www.bio.net/bionet/mm/ag-forst/2002-September/017340.html"&gt;http://www.bio.net/bionet/mm/ag-forst/2002-September/017340.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;So if you get these "Free blah, blah blah", just delete them, they are an email hoax.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-7857625113030668223?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/7857625113030668223/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=7857625113030668223' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7857625113030668223'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/7857625113030668223'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/hoax-free-insert-your-favoirte-object.html' title='Hoax: Free (insert your favoirte object of desire)'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-6976471694557705800</id><published>2008-11-17T08:15:00.000-08:00</published><updated>2008-12-02T09:18:39.265-08:00</updated><title type='text'>Phishing: Survey Emails Offering Gift Cards</title><content type='html'>Here is one of many examples how a Phisher gets a hold of your  information, by posing as a store survey for a $100 gift certificate (which you never receive).&lt;br /&gt;&lt;br /&gt;[Sample eMail]---------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;You have been chosen to access the Walmart 2 steps survey,and win a 150.00$&lt;br /&gt;gift certificate.Please* click here  &lt;a class="moz-txt-link-rfc2396E" href="http://www.proymecingenieria.com/app.html"&gt;&lt;http: com="" html=""&gt;&lt;/http:&gt;&lt;/a&gt;* and complete the form to receive your reward.&lt;br /&gt;&lt;br /&gt;Thank you&lt;br /&gt;&lt;br /&gt;This is an automated message, you do not have to reply.&lt;br /&gt;&lt;br /&gt;Message id: NWD98102&lt;br /&gt;&lt;br /&gt;----------------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2 steps here.... First step,  make you think your filing a survey for a free  money, and 2nd step give up your Credit card information willingly.&lt;br /&gt;&lt;br /&gt;Upon clicking the "Click Here", your taken to a site thats hosted in  Taiwan (&lt;a class="moz-txt-link-freetext" href="http://mail.leader.edu.tw/"&gt;http://mail.leader.edu.tw&lt;/a&gt;) which turns out to be a mail server (quick access for the Phisher).&lt;br /&gt;&lt;br /&gt;So I filled out the survey today as "Herman Munster" with some bogus  info, upon clicking [Proceed] to file my survey, I was then greeted for my Credit Card Info (number, Exp.  Date, Verificattion code, and even my PIN  for the credit card). The reason for this is that the Phiser is  pretending that Walmart will put the gift on my credit card. Just filled in the 17 digit card number with 1's, and 1's  for everything else.&lt;br /&gt;&lt;br /&gt;I clicked on the button to file my credit card info, and then was  greeted with a "Thank you have a .nice day". Then I was pushed over to the real Walmart site to make it look  official transaction.&lt;br /&gt;&lt;br /&gt;The only "official" surveys I've seen are on  the paper receipts you receive from the store or confirmation email from online purchases.&lt;br /&gt;&lt;br /&gt;So with these types of emails, just delete them.&lt;br /&gt;&lt;br /&gt;While we are on the subject of "Surveys",  the advertising banners that you see while cruising the net (take a survey and win a free iPod,  X-box, Dinner at Red Lobster, etc). They are just ploys into getting you to sign up for very high percentage Credit Cards and or subscription services (magazine subscription, etc). They will never deliver the goods they promised.&lt;br /&gt;&lt;br /&gt;The first thing they want off the bat is your email address, this way they can hammer you with more spam. Then after giving them an address, you are then required to fullfill anywhere from two to three obligations (here is when you need to sign up for credit cards, or magazine subscriptions, etc), then a "thank you" and your left with nothing in your hand, and a over priced magazine subscription or high APR Credit Card (some that you now have to pay the signup fee of $49.95 for processing!!).&lt;br /&gt;&lt;br /&gt;These are individuals or comapanies who get paid on a commision on each signup they processes.&lt;br /&gt;&lt;br /&gt;Just mark these as junk and move on to the next email.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-6976471694557705800?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/6976471694557705800/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=6976471694557705800' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6976471694557705800'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/6976471694557705800'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/phishing-survey-emails-offering-gift.html' title='Phishing: Survey Emails Offering Gift Cards'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-3237109218654750375</id><published>2008-11-17T07:54:00.000-08:00</published><updated>2008-11-17T08:24:16.771-08:00</updated><title type='text'>Trojan: 123greetings.com eCard Emails</title><content type='html'>With the Holidays just around the corner hackers will be at it again  trying to get you to install their viruses/Trojans.&lt;br /&gt;&lt;br /&gt;A recent 'popular' one is the ecard awaiting you for you to dowload at  '123greetings.com'&lt;br /&gt;&lt;br /&gt;Sample eMail:&lt;br /&gt;==========================================================&lt;br /&gt;&lt;br /&gt;Good day.&lt;br /&gt;You have received an eCard&lt;br /&gt;&lt;br /&gt;To pick up your eCard, choose from any of the following options:&lt;br /&gt;Click on the following link (or copy &amp;amp; paste it into your web browser):&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;br /&gt;link to download the 'e-card.exe'&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Your card will be aviailable for pick-up beginning for the next 30 days.&lt;br /&gt;Please be sure to view your eCard before the days are up!&lt;br /&gt;&lt;br /&gt;We hope you enjoy you eCard.&lt;br /&gt;&lt;br /&gt;Thank You!&lt;br /&gt;&lt;br /&gt;&lt;a class="moz-txt-link-freetext" href="http://www.123greetings.com/"&gt;http://www.123greetings.com&lt;/a&gt; &lt;br /&gt;==========================================================&lt;br /&gt;&lt;br /&gt;Although the 'www.123greetings.com' is a legit site, the Hacker has masqueraded the link to download your "free" ecard from a loved one, to their site to download their infected '.exe' file.&lt;br /&gt;&lt;br /&gt;Some may even stated you need to install a program to view the eCard (a file to infect your computer).&lt;br /&gt;&lt;br /&gt;When you get these types of emails, just mark them as "junk".&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-3237109218654750375?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/3237109218654750375/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=3237109218654750375' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3237109218654750375'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/3237109218654750375'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/123greetingscom-ecard-emails.html' title='Trojan: 123greetings.com eCard Emails'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-2634219606396228017</id><published>2008-11-14T11:27:00.000-08:00</published><updated>2008-11-17T07:49:02.453-08:00</updated><title type='text'>Time for the Return....</title><content type='html'>&lt;div style="text-align: justify;"&gt;A year since the last post, its now time to start getting down to business and busting some email scams. It's disgusting to see how many scams that come through email anymore.&lt;br /&gt;&lt;br /&gt;So lets get down to the root of it and discuss eMail scams, we'll start with the Phisher.&lt;br /&gt;&lt;br /&gt;&lt;/div&gt;Phishing: An email that is designed to lure you to a site and willingly give up your personal information. These emails arrive everything from a Bank warning to Credit Card company issues.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;PHISHING &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;      "Phishers" (people who take the time to set up their site to look like a official site, to get your info), will do everything possible to get your info.&lt;br /&gt;&lt;br /&gt;Here is an example of an email sent to me from a Phisher trying to pass as "PayPal".  Thunderbird immediately caught this and tagged it as a scam:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_WANKZoxNKS4/SSGGjBzbbeI/AAAAAAAAAA4/fJJ7_9MlkgU/s1600-h/phisher-paypal.jpg"&gt;&lt;img style="cursor: pointer; width: 320px; height: 213px;" src="http://3.bp.blogspot.com/_WANKZoxNKS4/SSGGjBzbbeI/AAAAAAAAAA4/fJJ7_9MlkgU/s320/phisher-paypal.jpg" alt="" id="BLOGGER_PHOTO_ID_5269640975337876962" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;#1. If you suspect anything, always contact your bank, credit card co, etc. They will be able to assist you over the phone. Use Thunderbird, it has caught so many scams that have come my way.&lt;br /&gt;&lt;br /&gt;#2. If you clicked on the link to "update your account" in the email, pay attention to the address bar where the site is. The obvious sign is a financial institution will have  a very short web address (easy for their customers to remember, like www.bank.com) a Phisher will never be able to get that short of an address. But they will try to have the official name in the URL to make it look legit. Something like (www.phiser.edu\~blah\bank.com).&lt;br /&gt;&lt;br /&gt;This is a very important item to check, because some Phishers will try to steal your web site id and password, and make you log in before anything. Some will word their site to ask you for your credit card right up front to log further into the site.&lt;br /&gt;&lt;br /&gt;#3. If you logged in, and now your being prompted for information, do not go any further, stop and notify your financial institution that you have been Phished. Some Phishers will go to the legnths in asking you for ALL your personal information including Drivers License, MAC PIN, etc. They want as much info from you as they can get to steal your identity!&lt;br /&gt;&lt;br /&gt;#4. You can make anything look like something else in HTML format in email. You can easily find out where it is taking you by hovering over the link, and looking at the bottom of the email client. You will find it is a completely different address (DING!Phishing site). Also you can make any email appear from someone else.&lt;br /&gt;&lt;br /&gt;Phishers can not be "prosecuted" per say, this is where the law gets tricky. Yes they are out to steal your info, but they make you willingly give it up. They do not come into your computer and steal your info.&lt;br /&gt;&lt;br /&gt;Again if you suspect any funny business with an email requesting you to update your information due to an issue with your account ALWAYS contact the company to verify they sent the email before proceeding. Otherwise, you will be jeopardizing your personal info.&lt;br /&gt;&lt;br /&gt;Next up, the emails that state "you have a ecard from a loved one!" followed by the emails that have a link to a video... that you need to download another program to view it.&lt;br /&gt;&lt;br /&gt;... stay tuned!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-2634219606396228017?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/2634219606396228017/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=2634219606396228017' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2634219606396228017'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/2634219606396228017'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2008/11/time-for-return.html' title='Time for the Return....'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_WANKZoxNKS4/SSGGjBzbbeI/AAAAAAAAAA4/fJJ7_9MlkgU/s72-c/phisher-paypal.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-114744612395257198</id><published>2006-05-12T07:54:00.000-07:00</published><updated>2006-05-12T08:05:54.756-07:00</updated><title type='text'>AdBlocking w/FireFox</title><content type='html'>Firefox offers a nice Ad Blocking extention called 'AdBlock Plus' it will allow the user to right click on most advertisments and block them instantly and from showing up the next vist to the page.&lt;br /&gt;&lt;br /&gt;Although some of the web sites are getting sneaky and putting the urls within a java code to make the blocking of the advertisements not so easy. But again this can be overcome by reviewing the code, and getting the url which is still within the java code.&lt;br /&gt;&lt;br /&gt;After you get the url, simply manually add it into the AdBlock Plus filter list. Here is a few examples (common ones) that can be added:&lt;br /&gt;&lt;br /&gt;http://dynamic.fmpub.net/adserver/*&lt;br /&gt;http://as.casalemedia.com/*&lt;br /&gt;http://pagead2.googlesyndication.com/pagead/*&lt;br /&gt;&lt;br /&gt;With the '*' added to them this tells AdBlock not to display ANY thing from the url. &lt;br /&gt;&lt;br /&gt;Nice Eh?&lt;br /&gt;&lt;br /&gt;Firefox Users click here to install: &lt;a href="https://addons.mozilla.org/firefox/1865/"&gt;AdBlock Plus Extention&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;If you are a non firefox user... make the switch today!&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.getfirefox.com"&gt;Get Firefox Now&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-114744612395257198?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/114744612395257198/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=114744612395257198' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/114744612395257198'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/114744612395257198'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2006/05/adblocking-wfirefox.html' title='AdBlocking w/FireFox'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-113412262235538059</id><published>2005-12-09T01:16:00.000-08:00</published><updated>2005-12-09T02:09:42.383-08:00</updated><title type='text'>NewDotNet Is A Threat!</title><content type='html'>&lt;img src="http://photos1.blogger.com/blogger/7613/584/1600/newnet.gif" align="center"&gt; Got NewDotNet?&lt;br /&gt;&lt;br /&gt;Removed this pest enough times to add it into the Blog today. This is a common Spyware / HiJacker. It begins by offering it as a free application to allow you to access other domains then '.com' (.tv, .edu, etc).&lt;br /&gt;&lt;br /&gt;If you remove the Spyware from this application, it will detect it and kill your network access to your PC. This is due to it inserts itself between your PC and the network. The connection will be named as a modem brand to attempt to make it look legit.&lt;br /&gt;&lt;br /&gt;It also is secretly installed via Internet Explorer, you don't know you have it until its too late and you can't get onto any Networks. Other times, it is offered to you via an ActiveX Pop-up Security Box.&lt;br /&gt;&lt;br /&gt;Check to See If You Have It&lt;br /&gt;===========================&lt;br /&gt;Simply go into the 'Add/Remove' Windows application, and look for the logo above and or the name 'NewDotNet'.&lt;br /&gt;&lt;br /&gt;If found, highlight and remove it!&lt;br /&gt;&lt;br /&gt;You will need to reboot your machine, and possibility repair your network connection.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Just the FAQs Mam&lt;br /&gt;=================&lt;br /&gt;You do not need their software to access newer domains, that is controlled by your ISP's (Internet Service Provider) DNS (Domain Name Server). As the new domains are added they are added automatically into your ISP's DNS.&lt;br /&gt;&lt;br /&gt;Companies like NewDotNet take computer u&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-113412262235538059?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/113412262235538059/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=113412262235538059' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113412262235538059'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113412262235538059'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2005/12/newdotnet-is-threat.html' title='NewDotNet Is A Threat!'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-113177127874314432</id><published>2005-11-12T00:28:00.000-08:00</published><updated>2005-11-16T23:55:22.816-08:00</updated><title type='text'>Wireless Security</title><content type='html'>Recently I have been intrigued with Wireless technology and also the pros and cons of it. I found the OTB (Out of The Box) security is far beyond safe. Sure you have no problem sharing your network, but once the 'bad apple' gets in, they can lay havoc within your Wireless network.&lt;br /&gt;&lt;br /&gt;Below are a few terms you should be familar with and learn more about.&lt;br /&gt;&lt;br /&gt;&lt;span name="intelliTxt" id="intelliTxt"&gt;&lt;span style="font-weight: bold;"&gt;&lt;font color="cyan"&gt;Wi-Fi&lt;/font&gt;&lt;/span&gt; - Short for &lt;i&gt;&lt;b&gt;&lt;font color="cyan"&gt;wi&lt;/font&gt;&lt;/b&gt;reless &lt;b&gt;&lt;font color="cyan"&gt;fi&lt;/font&gt;&lt;/b&gt;delity&lt;/i&gt; and is meant to be used generically when referring of any type of 802.11 network.&lt;/span&gt;&lt;br /&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;b&gt;&lt;font color="cyan"&gt;Warchalking&lt;/font&gt;&lt;/b&gt; - the drawing of symbols in publick places to advertise an open Wi-Fi wireless network. Inspired by hobo symbols and publicised by Matt Jones who designed the set of icons.&lt;br /&gt;&lt;br /&gt;Standard warchalking chart:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/7613/584/1600/warchalking-754549.jpg"&gt;&lt;img style="cursor: pointer;" src="http://photos1.blogger.com/blogger/7613/584/320/warchalking-754549.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;font color="cyan"&gt;WiFi Driveby&lt;/font&gt; (aka &lt;font color="cyan"&gt;Wardriving&lt;/font&gt;)&lt;/b&gt; - Searching for Wi-Fi Wireless networks by automobile with a WiFi detecting device (PDA, Laptop, etc) on board. This is just like the movie "Wargames" which the kid used a modem to dial a phone numbers to find data lines.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;"The Low Rider drives a little slower.."&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;I decided to take my newly aquired knowledge of WiFi,  and first take a WiFi Driveby to see how many networks were broadcasting their SSIDs. In a half mile radius, I detected six networks.&lt;br /&gt;&lt;br /&gt;I then chose one of the six, and attempted to connect. In about two minutes I was assigned and IP and on their network. I then proceeded to test their security, they had none, I was in their router in a minute flat.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Ways To Protect Yourself!&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://compnetworking.about.com/od/wirelesssecurity/tp/wifisecurity.htm"&gt;About's: Top 8 Tips for Wireless Home Network Security&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.slate.com/id/2109941/fr/rss/"&gt;How to Steal Wi-Fi &amp;amp; How to Keep the Neighbors From Stealing Yours&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-113177127874314432?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/113177127874314432/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=113177127874314432' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113177127874314432'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113177127874314432'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2005/11/wireless-security.html' title='Wireless Security'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-113177834774713484</id><published>2005-11-11T22:44:00.000-08:00</published><updated>2005-11-11T22:57:58.793-08:00</updated><title type='text'>C= ommodore</title><content type='html'>"Everyone is breaking down my door to play my Commodore 64!"&lt;br /&gt;&lt;br /&gt;Yes the good old days of Commodore are back via Emulators for your system.&lt;br /&gt;&lt;br /&gt;Amiga -&gt; &lt;a href="http://www.winuae.net"&gt;http://www.winuae.net&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Emulate any amiga with any hardware configuration. You will though need to obtain the KickStart ROM images to get the emulator up and running. Along with that note you will also need to find a disk image of your favoirte game or application since you can not use Amiga 3.5" in an IBM 3.5".&lt;br /&gt;&lt;br /&gt;Commodore Systems -&gt; &lt;a href="http://www.viceteam.org"&gt;http://www.viceteam.org&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;It has the rest of the C= Systems Emulated (128, 64, VIC-20 and PET) everything is included except for your favorite game or application image.&lt;br /&gt;&lt;br /&gt;&lt;center&gt;&lt;table border="4"&gt;&lt;tr&gt;&lt;td&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/7613/584/1600/amibackagain.jpg"&gt;&lt;img style="cursor:pointer; cursor:hand;" src="http://photos1.blogger.com/blogger/7613/584/200/amibackagain.jpg" border="0" alt="" /&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/table&gt;&lt;/center&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-113177834774713484?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/113177834774713484/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=113177834774713484' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113177834774713484'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113177834774713484'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2005/11/c-ommodore.html' title='C= ommodore'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-113169746199572443</id><published>2005-11-11T00:19:00.000-08:00</published><updated>2005-11-11T23:00:55.063-08:00</updated><title type='text'>Garfield the Admin to the Rescue!</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/7613/584/1600/garfieldadmin.gif"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: cursor: pointer;" src="http://photos1.blogger.com/blogger/7613/584/320/garfieldadmin.gif" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Garfield has the right idea how to handle Users.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-113169746199572443?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/113169746199572443/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=113169746199572443' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113169746199572443'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113169746199572443'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2005/11/garfield-admin-to-rescue.html' title='Garfield the Admin to the Rescue!'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-8543415.post-113159952182304532</id><published>2005-11-10T22:11:00.000-08:00</published><updated>2005-12-09T02:11:23.060-08:00</updated><title type='text'>Protect yourself with FireFox</title><content type='html'>&lt;img src="http://photos1.blogger.com/blogger/7613/584/1600/lvback.gif" alt=""&gt;&lt;br /&gt;                                     &lt;br /&gt;Get It -&gt; &lt;a href="http://www.mozilla.com/firefox"&gt; www.mozilla.com/firefox&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Support for it here -&gt; &lt;a href="http://www.mozillazine.org"&gt;Mozillazine&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8543415-113159952182304532?l=astrotronix.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://astrotronix.blogspot.com/feeds/113159952182304532/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=8543415&amp;postID=113159952182304532' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113159952182304532'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8543415/posts/default/113159952182304532'/><link rel='alternate' type='text/html' href='http://astrotronix.blogspot.com/2005/11/protect-yourself-with-firefox.html' title='Protect yourself with FireFox'/><author><name>Astrotrain</name><uri>http://www.blogger.com/profile/00974152058419954136</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://3.bp.blogspot.com/_WANKZoxNKS4/SR3bi9oswCI/AAAAAAAAAAY/Xsjm7NYnJKA/S220/astro.jpg'/></author><thr:total>1</thr:total></entry></feed>
