Hello everyone,

We just received one of the usual messages about logging into our e-gold
accounts , or else... (comp. below)
The interesting twist on this one is that we got exactly as many messages
as we have e-gold accounts (group-wide) and to make things really
interesting the headers are forged. Meaning, the message claims to come
from ReviewAcctBot and from e-gold, which is nothing special, BUT the
source shows that the message was in fact sent from our own machine -
which the server logs show to be incorrect.
The question is, did anyone else get the messages and do the headers in
those show that the origin was us - or alternatively your own server?
If so, then this is the first time that someone with some network knowhow
is giving it a shot and it's likely to be a matter of time for him/them to
figure ot how to spoof headers that match e-gold's own - which then *IS* a
reason for concern.
Of course, there are still a lot of items that show the message as being
forged (notably the fact that they don't know how to spell "e-gold" and
the fact that the URL misses the 'S' at http), but they are getting
better...

Message follows below, tech comments are welcome ;o)
Cheers,
Robert.

    CYBERFRONTIER U2NETWORKS
----------------------------------------
privacy domain and website hosting
     http://www.cyberica.net
financial online business services
    http://www.cyfrocash.com
----------------------------------------

Dear Valued e-Gold member, 
 
    Because of the abuse of e-Gold accounts used as Fraudulent
Transactions in year 2002, we checked our database and
we are regarding that you access your e-Gold account in the next 24
hours,otherwise your account will be probabily deleted  or inaccesible.
To complete this process, please follow these instructions: 
1.Log In to your e-Gold account using ONLY this link: 
 
              http://www.e-gold.com/accts/reviewAcct 
 
2.Review your e-Gold account 
3.We will contact you in the next 24 hours for confirmation



---
You are currently subscribed to e-gold-list as: [EMAIL PROTECTED]
To unsubscribe send a blank email to [EMAIL PROTECTED]

Use e-gold's Secure Randomized Keyboard (SRK) when accessing your e-gold account(s) 
via the web and shopping cart interfaces to help thwart keystroke loggers and common 
viruses.

Reply via email to