Web Hosting Talk







View Full Version : new Spam mehtode ??


mercury
06-28-2002, 12:13 PM
just recive the following e-mail.
Anyone else recived this e-mail to ?
-------------------

Greetings.

You are being contacted because you are listed as an Internic contact for the domain
referred to.

Alldas.org is a non-profit, hobby web site that monitors computer crime on the
internet. In the past few minutes, we have been notified that your domain was hacked,
and your web page defaced. This means that the intruder has edited your web page in
some way. Due to this, it is quite likely that one or all of the machines on your
network are compromised. You may wish to take immediate action to correct this
problem and respond to the intrusion.

One of the free services Alldas.org offers is mirroring defaced pages to aid in
statistics on computer crime. The various archives of information we maintain is used
by security professionals and law enforcement every day. We comply with all law
enforcement subpoenas for information related to the intrusion.

We want to assure you that we had no advanced knowledge of the intrusion. Any
reference to Alldas.org (66.21.117.5 & 66.21.117.10) in your logs is due to our mirroring
utility. Any greeting or reference to Alldas.org on the actual web page is beyond our
control. We send out over 2000 mails like this every month.

You should contact the appropriate CERT and law enforcement agency with follow-up
information.
They can provide recommendations for recovering and dealing with this incident.

If you receive any additional mail from a security company or vendor, we'd like to
state up front that we are in no way affiliated with them. We have found out that
some security companies prey on victims of web defacement to solicit their products
or services. If you receive such mail, please forward the full text with headers to
us so that we can confront them.

Please feel free to mail us if you have any questions or would like assistance.

For more on security and incident response:
http://www.ciac.org/ciac/

For more on computer forensics and preservation of evidence:
http://www.forensics-intl.com/info.html

Contacting Law Enforcement
http://www.fbi.gov/contact/fo/fo.htm

For the latest on vulnerabilities and good security practice:
http://www.securityfocus.com

Explanation of our mirroring Utility:
http://defaced.alldas.org/?FAQ=admin

The Alldas Mirror:
http://defaced.alldas.org

For the latest patches and mailing lists
http://security.alldas.org/patches/

Contacting us:
abuse@alldas.org

Drewcifer
06-28-2002, 12:18 PM
That's not spam. Alldas is contacting you because someone posted your domain to the defacement archive, most likely. Did someone deface your page?

mercury
06-28-2002, 12:46 PM
no, all seems fine with my account...

:eek: