Tilted Forum Project Discussion Community  

Go Back   Tilted Forum Project Discussion Community > Interests > Tilted Technology


 
 
LinkBack Thread Tools
Old 01-22-2008, 06:23 AM   #1 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
My email has been hijacked!

Started yesterday afternoon (1/21/08), my grumpyolddude email address has been inundated with "delivery failure" and "bulk mail blocked" messages.... about a dozen yesterday... I woke up ro about 75 more, and they're still coming in... approaching a hundred. Nine more as I typed this.

I do not recognize any of the addressees. My "sent" mail shows no evidence that I sent the emails, but the data shows my email as the return address.

I've sent an abuse report to ATT/Yahoo, but I'm hoping someone here could offer some advice on other action I can take, short of closing the account and starting with a new ID. I fear that I'm on the verge of being labelled a spammer, while nothing could bve further from the truth.

Help me Obi Wan... You're my only hope!
grumpyolddude is offline  
Old 01-22-2008, 06:35 AM   #2 (permalink)
Soaring
 
PonyPotato's Avatar
 
Location: Ohio!
Have you changed your password yet?
__________________
"Without passion man is a mere latent force and possibility, like the flint which awaits the shock of the iron before it can give forth its spark."
— Henri-Frédéric Amiel
PonyPotato is offline  
Old 01-22-2008, 06:47 AM   #3 (permalink)
Darth Papa
 
ratbastid's Avatar
 
Location: Yonder
It happens. Your account hasn't been hijacked per se, but your email address has been used as the "From" or "Reply-To" address on a spam mailing. So all their bounces come to you.

They didn't have to get into your account or send those mail from anything to do with you--they literally filled in a field in THEIR mass-email program with YOUR email address. So you're not hacked or hijacked or in any real trouble except that you're in line for a whole lot of bounced email coming to you.

It's very irritating, but it happens, and it ought to be over fairly soon.
ratbastid is offline  
Old 01-22-2008, 06:51 AM   #4 (permalink)
Young Crumudgeon
 
Martian's Avatar
 
Location: Canada
ratbastid is right. It's a spoofed header and there's probably nothing you can do about it. It's a nuisance, but you just have to ride it out.
__________________
I wake up in the morning more tired than before I slept
I get through cryin' and I'm sadder than before I wept
I get through thinkin' now, and the thoughts have left my head
I get through speakin' and I can't remember, not a word that I said

- Ben Harper, Show Me A Little Shame
Martian is offline  
Old 01-22-2008, 07:32 AM   #5 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
I appreciate the quick responses!

I trust you guys, and I'll try to be patient and ride it out. It's a relief that I won't have to shut down my email. I've been Grumpy for a long time, and intend to stay that way!

Now, get off my lawn, damn kids!
grumpyolddude is offline  
Old 01-22-2008, 08:17 AM   #6 (permalink)
Tilted Cat Head
 
Cynthetiq's Avatar
 
Administrator
Location: Manhattan, NY
yeah it happens to people from time to time, it's looks like it was your turn in the barrel.
__________________
I don't care if you are black, white, purple, green, Chinese, Japanese, Korean, hippie, cop, bum, admin, user, English, Irish, French, Catholic, Protestant, Jewish, Buddhist, Muslim, indian, cowboy, tall, short, fat, skinny, emo, punk, mod, rocker, straight, gay, lesbian, jock, nerd, geek, Democrat, Republican, Libertarian, Independent, driver, pedestrian, or bicyclist, either you're an asshole or you're not.
Cynthetiq is offline  
Old 01-22-2008, 10:03 AM   #7 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
The notice count just blew past 150!

Now it's gonna get interesting watching how many I receive.
(Jeez, I need a life!)

BTW: is anyone here interested in 60% off Top Designer Shoes, by Gucci, Dior, Prada, Chanel and more.....?

Last edited by grumpyolddude; 01-22-2008 at 10:40 AM..
grumpyolddude is offline  
Old 01-22-2008, 11:24 AM   #8 (permalink)
Talk nerdy to me
 
God of Thunder's Avatar
 
Location: Flint, MI
It still wouldn't hurt to change your password.

Although, as usual, Ratbastid is probably right.
__________________
I reject your reality, and substitute my own

-- Adam Savage
God of Thunder is offline  
Old 01-22-2008, 11:35 AM   #9 (permalink)
zomgomgomgomgomgomg
 
telekinetic's Avatar
 
Location: Fauxenix, Azerona
Haha, I used to spoof support@aol.com emails to my friends back when I was 12 to get them to change their AIM password.

Anyways, if there's any sort of common thread in the bounced responses, (the words 'invalid' or 'not found' or the subject line) just set up a filter to either delete them or dump them in your spam filter, and then ignore.
__________________
twisted no more
telekinetic is offline  
Old 01-22-2008, 11:42 AM   #10 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
Yep, password is new.

180+ and counting!
grumpyolddude is offline  
Old 01-22-2008, 12:37 PM   #11 (permalink)
Aurally Fixated
 
allaboutmusic's Avatar
 
The world needs an email protocol that verifies senders.
allaboutmusic is offline  
Old 01-22-2008, 01:04 PM   #12 (permalink)
Darth Papa
 
ratbastid's Avatar
 
Location: Yonder
Quote:
Originally Posted by allaboutmusic
The world needs an email protocol that verifies senders.
Well, but how WOULD you verify senders? You going to double email bandwidth around the world and make every receiving SMTP server check the putative SMTP server of the "From" and "Reply-To" addresses and make sure they're deliverable? SMTP is designed to be a stateless, connection-time protocol. In theory, I should be able to take my SMTP server offline immediately after dispatching an email and it should get there fine.

And even if you were willing to do that, verifying the deliverability of an email address wouldn't help in this situation. It's the deliverability of that address that's the problem! So... Every email now needs to be MANUALLY checked with the actual person who sent it? That's secure, but imagine... if I sent you an email, and a few moments later when your SMTP server received it, it sends me a message to verify that I really was the one sending it. I then need to reply to that... Somehow it needs to trust that that message really did get to ME and not somebody PRETENDING to be me....

There's really NO good way to do this--every solution is a compromise on some level. Things like real-time blacklists and Bayesian filtering eliminate a whole lot of spam. Since I switched to routing all my mail through Gmail, I haven't seen much spam at all--and I've had my main address for six or seven years. My Gmail spam folder catches anywhere from 80 to 250 spams a day that I never have to see or deal with. Seems like that's an adequately good tool, to me. It doesn't save me from being spoofed as the sender of spam, but a simple filter will keep those from being annoying as well.
ratbastid is offline  
Old 01-22-2008, 02:16 PM   #13 (permalink)
Lover - Protector - Teacher
 
Jinn's Avatar
 
Location: Seattle, WA
Thank you rat, I was half way through a similar post when I gave up..
__________________
"I'm typing on a computer of science, which is being sent by science wires to a little science server where you can access it. I'm not typing on a computer of philosophy or religion or whatever other thing you think can be used to understand the universe because they're a poor substitute in the role of understanding the universe which exists independent from ourselves." - Willravel
Jinn is offline  
Old 01-23-2008, 06:54 AM   #14 (permalink)
Devoted
 
Redlemon's Avatar
 
Donor
Location: New England
Quote:
Originally Posted by ratbastid
You going to double email bandwidth around the world and make every receiving SMTP server check the putative SMTP server of the "From" and "Reply-To" addresses and make sure they're deliverable?
Well, isn't the current spam levels something like 90% of the email bandwidth? That should result in a bandwidth savings after a month or so.
__________________
I can't read your signature. Sorry.
Redlemon is offline  
Old 01-23-2008, 07:04 AM   #15 (permalink)
Darth Papa
 
ratbastid's Avatar
 
Location: Yonder
Okay, maybe so... But that's only the beginning of the technical hurdles. I refer you to the rest of my post.

Actually, last I heard spam is down worldwide. It's still the majority of mail volume, but it's down from the 90% it used to be.
ratbastid is offline  
Old 01-23-2008, 07:41 AM   #16 (permalink)
People in masks cannot be trusted
 
Xazy's Avatar
 
Location: NYC
Quote:
Originally Posted by grumpyolddude
Started yesterday afternoon (1/21/08), my grumpyolddude email address has been inundated with "delivery failure" and "bulk mail blocked" messages.... about a dozen yesterday... I woke up ro about 75 more, and they're still coming in... approaching a hundred. Nine more as I typed this.

I do not recognize any of the addressees. My "sent" mail shows no evidence that I sent the emails, but the data shows my email as the return address.

I've sent an abuse report to ATT/Yahoo, but I'm hoping someone here could offer some advice on other action I can take, short of closing the account and starting with a new ID. I fear that I'm on the verge of being labelled a spammer, while nothing could bve further from the truth.

Help me Obi Wan... You're my only hope!
I was going to ask why you keep emailing me about viagra, and penis enlargers.
Xazy is offline  
Old 01-23-2008, 11:23 AM   #17 (permalink)
Aurally Fixated
 
allaboutmusic's Avatar
 
I'm not a technical person and know nothing about the SMTP protocol (presumably it uses relaying rather than direct communication?), I'm sure there are technical hurdles, but a solution would be awesome.
allaboutmusic is offline  
Old 01-23-2008, 12:27 PM   #18 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
Quote:
Originally Posted by Xazy
I was going to ask why you keep emailing me about viagra, and penis enlargers.
I didn't realize that you were on my "targeted advertising" list

The trash count blew past 1000 early this afternoon... that's just the ones that got past the filters I set up.

Last edited by grumpyolddude; 01-23-2008 at 12:36 PM..
grumpyolddude is offline  
Old 01-23-2008, 06:46 PM   #19 (permalink)
Let's put a smile on that face
 
blahblah454's Avatar
 
Location: On the road...
Holy crap grumpy. Hope this gets kicked fast.
blahblah454 is offline  
Old 01-23-2008, 06:58 PM   #20 (permalink)
Mine is an evil laugh
 
spindles's Avatar
 
Location: Sydney, Australia
The only real problem with filtering the bounce messages, is that you will also filter out any REAL bounce messages as well. When you get a real one of these, you really want to get it...

On a side note - testing for validity by re-checking the originating server would be a pain - I have 4 different email addresses and (generally) use the local mail server to send (by and large ISPs don't require authentication on their mail servers when you are 'inside' that ISP). So while I regularly use two different mail servers to send, neither of them are the incoming mail server of my main email address. Bloody hard to verify that kind of thing...
__________________
who hid my keyboard's PANIC button?
spindles is offline  
Old 01-24-2008, 05:45 AM   #21 (permalink)
Darth Papa
 
ratbastid's Avatar
 
Location: Yonder
Quote:
Originally Posted by spindles
The only real problem with filtering the bounce messages, is that you will also filter out any REAL bounce messages as well. When you get a real one of these, you really want to get it...
Absolutely. I'd set up a filter to catch something unique about the bounces--given they're spam, they'll all say the same things and it should be easy to find a spammish phrase to catch them on.

Quote:
Originally Posted by spindles
On a side note - testing for validity by re-checking the originating server would be a pain - I have 4 different email addresses and (generally) use the local mail server to send (by and large ISPs don't require authentication on their mail servers when you are 'inside' that ISP). So while I regularly use two different mail servers to send, neither of them are the incoming mail server of my main email address. Bloody hard to verify that kind of thing...
Absolutely. SMTP is the single most ad-hocked protocol there is. I can't tell you how many conversations I've had with local techs about "how they do email here". There are myriad ways to set it up, and they're all more or less "right".
ratbastid is offline  
Old 01-24-2008, 08:53 AM   #22 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
Round two started today. Now it seems I'm offering "Christmas FREE BONUS!"
... could use one of those myself....

Since I set up some filters, I can longer give an accurate count. Damn!
grumpyolddude is offline  
Old 01-24-2008, 09:51 AM   #23 (permalink)
Sauce Puppet
 
kurty[B]'s Avatar
 
Another tip grumpyolddude. Contact your e-mail provider. If it's gmail, or an Internet Service Provider. There is not much they can do, but they can try and research it and at least attempt to stop the influx of messages bouncing back to you (especially if this goes on for days). The longer it goes on the more they can do, and maybe try and pinpoint where the messages are originating from. Usually, a SPAMmer will have moved onto masking their e-mail with a different e-mail address by now.
__________________
In the Absence of Information People Make Things Up.
kurty[B] is offline  
Old 01-24-2008, 10:41 AM   #24 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
Quote:
Originally Posted by kurty[B]
Another tip grumpyolddude. Contact your e-mail provider. If it's gmail, or an Internet Service Provider. There is not much they can do, but they can try and research it and at least attempt to stop the influx of messages bouncing back to you (especially if this goes on for days). The longer it goes on the more they can do, and maybe try and pinpoint where the messages are originating from. Usually, a SPAMmer will have moved onto masking their e-mail with a different e-mail address by now.
My first action was to call ATT/Yahoo, to which their initial response was to direct me to file an abuse report online. fI was told that the customer service reps in our meat world could not do a thing for me, except assure me that, at that time, I hadn't been reported as a serial spammer. In that abuse report, I included the headers from the first 90 or so bounces. I think that I'll send them the 1200+ that I've cached away since then.


**UPDATE**
Did the online chat thing with ATT/Yahoo tech support. "Larry" told me to do a bunch of things that I'd already done: passsword, filters, abuse report, yadda... Now it seems that I could only be helped with live vocal contact.
So, I call the tekkies, "Jay" this time. He's shocked that I hadn't been contacted by the abuse troubleshooters. It seems that they "Have Tools" that can get to the bottom of this. I am to expect a call from them in the next couple of days.
Yippie

Hey, thanks everyone for your input. This has sparked a livelier response that I expected

Last edited by grumpyolddude; 01-24-2008 at 08:44 PM..
grumpyolddude is offline  
Old 01-25-2008, 06:39 PM   #25 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
There's been a new development. Now there's porn being spam with my email address on it.

Yahoo technical support was going to call me... hasn't happened.

It occurred to me that, just maybe, some a-- hole might be trying to get me off my email address, so they can have it for themselves....

My paranoia is growing.
grumpyolddude is offline  
Old 01-25-2008, 06:50 PM   #26 (permalink)
pig
pigglet pigglet
 
pig's Avatar
 
Location: Locash
grumpy: if it's really bothering you...start a new email addy, and keep the old one. let this run its course. when it's done, forward emails from your new addy to your old one. you can set up automatic forwarding in your email. you get less hassle, and you don't lose your preferred email address.
__________________
You don't love me, you just love my piggy style
pig is offline  
Old 01-25-2008, 08:19 PM   #27 (permalink)
Tone.
 
shakran's Avatar
 
don't feel too bad Grumpy. This happened to me once, and I was deluged with a bunch of angry emails telling me never to try selling them penis enlargement pills again.
shakran is offline  
Old 01-26-2008, 05:42 AM   #28 (permalink)
Darth Papa
 
ratbastid's Avatar
 
Location: Yonder
No need to be paranoid. It's nothing personal at all. It's happened to me a couple times, and they were almost as persistent as your bastards are.
ratbastid is offline  
Old 01-26-2008, 08:07 AM   #29 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
Quote:
Originally Posted by pig
grumpy: if it's really bothering you...start a new email addy, and keep the old one. let this run its course. when it's done, forward emails from your new addy to your old one. you can set up automatic forwarding in your email. you get less hassle, and you don't lose your preferred email address.
You are absolutely right. Re-reading some of this... I'm turning into a real whiner, ain't I? Sometimes life sucks and one needs to just endure.

I have several alternate email addresses that serve different areas of interest. I can divert some of my important traffic.
grumpyolddude is offline  
Old 01-26-2008, 09:04 AM   #30 (permalink)
Aurally Fixated
 
allaboutmusic's Avatar
 
It's nothing personal by the way - spammers will use any email address to send spam. Sometimes they will use addresses from their spam email address database, but often just random or generated ones.
allaboutmusic is offline  
Old 02-02-2008, 04:22 PM   #31 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
They've done it... broken me! I survived selling women's shoes, knock-off wristwatches, straight orn, gay porn, viagra, penis enlargers, "mature" porn, milf porn... (your favorite perversion here) porn, and pretended to be a Russian tart named Mariana looking for a husband in Australia. What pushed me over the edge? Adjustable rate mortgages! I can't abide being viewed as vile enough to hustle ARM's!

Rushing headlong towards 30.000 spam rejections, and a brand new monicker... From now on, call me "Jimmy!"
grumpyolddude is offline  
Old 02-02-2008, 08:39 PM   #32 (permalink)
pig
pigglet pigglet
 
pig's Avatar
 
Location: Locash
nah dude...i wasn't saying you're a whiner by any means. i'd be pissed too. i'm just trained to try and solve problems. there's really not much you can do but ride it out. as long as your isp isn't going to screw you over it, you'll eventually get clean of this. i was just thinking in the meantime you could email the people you normally talk to and then switch them back once its over.

damnest thing: i was just looking for someone who could offer me an adjustable rate loan on shitload of viagra. wish i'd contacted you sooner.
__________________
You don't love me, you just love my piggy style
pig is offline  
Old 02-04-2008, 12:29 PM   #33 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
Problem solving in this case consists of working with Yahoo to identify the source. The extent of Yahoo's help has been to email several times with tips on blocking spam. Aptly named, those "yahoos" (lord help me if Microsoft takes over!)
__________________
"Regret can be a harder pill to swallow than failure .With failure you at least know you gave it a chance..." David Howard
grumpyolddude is offline  
Old 02-11-2008, 11:08 AM   #34 (permalink)
Currently sour but formerly Dlishs
 
dlish's Avatar
 
Super Moderator
Location: Australia/UAE
Quote:
Originally Posted by grumpyolddude
They've done it... broken me! I survived selling women's shoes, knock-off wristwatches, straight orn, gay porn, viagra, penis enlargers, "mature" porn, milf porn... (your favorite perversion here) porn, and pretended to be a Russian tart named Mariana looking for a husband in Australia.

did u say australia? ive always wanted the whole 4 wife thingi..im surprised you havent sent me an email yet??!?!!?!?
__________________
An injustice anywhere, is an injustice everywhere

I always sign my facebook comments with ()()===========(}. Does that make me gay?
- Filthy
dlish is offline  
Old 02-11-2008, 08:20 PM   #35 (permalink)
Deliberately unfocused
 
grumpyolddude's Avatar
 
Location: Amazon.com and CDBaby
Keep your eyes open, d. I'm expanding my stable. Ekaterina should be sending you a message any day now.

Odd thing, My collection of spam responses topped the 60,000 mark on Sunday. Monday morning, they folder had been dumped... only 1,100 messages (I did not delete them!). The pace hasn't slowed at all. By mid-afternoon I was back up to over 3,000... and growing.

I can only presume that Yahoo administration dumped my folder. They say I have unlimited message storage. Maybe they lie.
__________________
"Regret can be a harder pill to swallow than failure .With failure you at least know you gave it a chance..." David Howard
grumpyolddude is offline  
Old 02-11-2008, 08:32 PM   #36 (permalink)
The Griffin
 
Hanxter's Avatar
 
i get this shit that says an email i sent isn't deliverable... "uh... excuse me...?"

back door trojans will attach to your address book and...

oh... we know that already...

you get the one that says "your family wants you to rererereproduce" ?

laff my ass off!!!

Last edited by Hanxter; 02-11-2008 at 08:35 PM..
Hanxter is offline  
 

Tags
email, hijacked


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -8. The time now is 06:14 PM.

Tilted Forum Project

Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Search Engine Optimization by vBSEO 3.6.0 PL2
© 2002-2012 Tilted Forum Project

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360