Unoffical empeg BBS

Quick Links: Empeg FAQ | RioCar.Org | Hijack | BigDisk Builder | jEmplode | emphatic
Repairs: Repairs

Topic Options
#335573 - 29/07/2010 01:10 Kaspersky Lab WTF?
gbeer
carpal tunnel

Registered: 17/12/2000
Posts: 2665
Loc: Manteca, California
I received an email from [email protected]

I've never heard of them before receiving the email. Strangely a quick google, generates a page full of on target links for the company. Which I find to be abnormal for just typing in a company name.


Html:
Hello!

Thank you for registering your Kaspersky Lab product!

This email contains your personal ID and the Password to it.

Your current registration data is:

Your Personal ID: omit
Password: omit

To enter your Personal Cabinet, please use the following link:
https://support.kaspersky.com/PersonalCabinet

Do not lose your personal ID (Client ID) as you will need it in the future.

Contact Kaspersky Lab Technical Support at http://support.kaspersky.com to 
purchase additional product or to extend the current Kaspersky Lab product.

Sincerely yours,
Kaspersky Lab


Edited by gbeer (29/07/2010 23:06)
_________________________
Glenn

Top
#335585 - 29/07/2010 02:36 Re: Kaspersky Lab WTF? [Re: gbeer]
Shonky
pooh-bah

Registered: 12/01/2002
Posts: 2009
Loc: Brisbane, Australia
Kapersky Labs is actually a fairly well known anti virus vendor.

http://en.wikipedia.org/wiki/Kaspersky_Lab

I would guess that email is spam/phishing/malware related. Is it HTML? I would guess the link is to somewhere else.

Could also be someone trying to discredit them I guess.
_________________________
Christian
#40104192 120Gb (no longer in my E36 M3, won't fit the E46 M3)

Top
#335588 - 29/07/2010 02:48 Re: Kaspersky Lab WTF? [Re: Shonky]
tman
carpal tunnel

Registered: 24/12/2001
Posts: 5528
Phishing or somebody fat fingered entering their email address when they registered on the site.

Top
#335631 - 29/07/2010 22:52 Re: Kaspersky Lab WTF? [Re: Shonky]
gbeer
carpal tunnel

Registered: 17/12/2000
Posts: 2665
Loc: Manteca, California
Originally Posted By: Shonky
Kapersky Labs is actually a fairly well known anti virus vendor.

http://en.wikipedia.org/wiki/Kaspersky_Lab

I would guess that email is spam/phishing/malware related. Is it HTML? I would guess the link is to somewhere else.

Could also be someone trying to discredit them I guess.


Hard to say if it's html with gmail. Showing the source seems to show only text.

Code:
Delivered-To: gkbeer (at) gmail.com
Received: by 10.142.232.16 with SMTP id e16cs197419wfh;
        Wed, 28 Jul 2010 17:00:05 -0700 (PDT)
Received: by 10.14.126.198 with SMTP id b46mr2857300eei.34.1280361601961;
        Wed, 28 Jul 2010 17:00:01 -0700 (PDT)
Return-Path: <bounce (at) kaspersky.com>
Received: from webserver6.kaspersky-labs.com (webserver6.kaspersky-labs.com [62.213.110.130])
        by mx.google.com with ESMTP id z16si390758eeh.19.2010.07.28.17.00.01;
        Wed, 28 Jul 2010 17:00:01 -0700 (PDT)
Received-SPF: neutral (google.com: 62.213.110.130 is neither permitted nor denied by best guess record for domain of bounce (at) kaspersky.com) client-ip=62.213.110.130;
Authentication-Results: mx.google.com; spf=neutral (google.com: 62.213.110.130 is neither permitted nor denied by best guess record for domain of bounce (at) kaspersky.com) smtp.mail=bounce (at) kaspersky.com
Received: by webserver6.kaspersky-labs.com (Postfix, from userid 800)
	id 083D9154D; Thu, 29 Jul 2010 04:00:01 +0400 (MSD)
MIME-Version: 1.0
Content-Disposition: inline
Content-Transfer-Encoding: binary
Content-Type: text/plain; charset="utf-8"
X-Mailer: MIME::Lite 3.024 (F2.77; T1.27; A2.04; B3.08; Q3.08)
Date: Thu, 29 Jul 2010 03:55:13 +0400
From: online (at) kaspersky.com
To: gkbeer (at) gmail.com
Subject: Kaspersky Lab Online Activation
Message-Id: <[email protected]>




Edited by drakino (30/07/2010 00:19)
Edit Reason: removed @ to foil online e-mail harvestors
_________________________
Glenn

Top
#335632 - 29/07/2010 22:55 Re: Kaspersky Lab WTF? [Re: gbeer]
hybrid8
carpal tunnel

Registered: 12/11/2001
Posts: 7738
Loc: Toronto, CANADA
Someone likely used your email address on their site.
_________________________
Bruno
Twisted Melon : Fine Mac OS Software

Top
#335634 - 29/07/2010 23:06 Re: Kaspersky Lab WTF? [Re: hybrid8]
gbeer
carpal tunnel

Registered: 17/12/2000
Posts: 2665
Loc: Manteca, California
So if I was evil, I could have a copy of the software.

Not, I'm happy with NOD.
_________________________
Glenn

Top
#335635 - 29/07/2010 23:08 Re: Kaspersky Lab WTF? [Re: gbeer]
gbeer
carpal tunnel

Registered: 17/12/2000
Posts: 2665
Loc: Manteca, California
The earlier post blew the board width. I tried to edit the long line down. But the code frame stayed wide.
_________________________
Glenn

Top
#335636 - 29/07/2010 23:12 Re: Kaspersky Lab WTF? [Re: hybrid8]
tman
carpal tunnel

Registered: 24/12/2001
Posts: 5528
Looks legitimate and your email address isn't so unusual that nobody else in the world will have one similar at gmail.

Top
#335637 - 30/07/2010 00:07 Re: Kaspersky Lab WTF? [Re: tman]
Phoenix42
veteran

Registered: 21/03/2002
Posts: 1424
Loc: MA but Irish born
drakino - there is a second instance of Glenn's address third line from the bottom.

Top
#335638 - 30/07/2010 00:20 Re: Kaspersky Lab WTF? [Re: Phoenix42]
drakino
carpal tunnel

Registered: 08/06/1999
Posts: 7868
There we go, full search and replace this time. Still lots of bots that harvest e-mail addresses from web pages out there.

Top
#335639 - 30/07/2010 00:39 Re: Kaspersky Lab WTF? [Re: drakino]
Shonky
pooh-bah

Registered: 12/01/2002
Posts: 2009
Loc: Brisbane, Australia
The IP does resolve to Russia and reverse resolves a kaperskylabs.com address so it appears legit.

The username and password are strangely simple (and don't work - tried on a special VM I have).

The only other thing is if you click the link (don't!) and it takes you somewhere else. But given the legit source of the email I doubt it.

Strange one.
_________________________
Christian
#40104192 120Gb (no longer in my E36 M3, won't fit the E46 M3)

Top
#335643 - 30/07/2010 01:50 Re: Kaspersky Lab WTF? [Re: Shonky]
RobotCaleb
pooh-bah

Registered: 15/01/2002
Posts: 1866
Loc: Austin
Are you surprised that the username and password that he omitted (and indicated so) don't work? smile

Top
#335713 - 01/08/2010 02:20 Re: Kaspersky Lab WTF? [Re: RobotCaleb]
Shonky
pooh-bah

Registered: 12/01/2002
Posts: 2009
Loc: Brisbane, Australia
Oh yeah. Didn't click.
_________________________
Christian
#40104192 120Gb (no longer in my E36 M3, won't fit the E46 M3)

Top