TrueTwit — Do I Look Like One?

by Administrator on February 5, 2010

I’ve been noticing that some of my Twitter follow requests have received direct messages asking me to validate my profile via a service called TrueTwit.

Some quick research showed me that I won’t be doing so any time soon.

Just a quick check on the domain name shows that it is registered via “Direct Privacy ID xxxxxx” to an address in the Cayman Islands.

So who is behind the service? What happens when I “verify” my profile or whatever? Is it going to request — or require — access to my profile? If so, what are they going to take, especially since the owner seems to be hiding behind a domain registration proxy service?

To my trained, professional, skeptical eye, this looks like an attempt to steal a bit of personal information and perhaps even take over my Twitter account and do not-so-nice things to my followers — and to do so anonymously and outside of the convenient reach of my government.

Yuck.

Hey, I’m all for systems that will help prevent the spread of spam (as regular readers of this blog know), but until I learn more, I’d have to be a TrueTwit to click on one of those links without knowing what’s on the other end.

So sorry, KipDurney (and anyone else using the service), but I won’t be a-clickin’ that link anytime soon. Hope you understand (and I do welcome your comments. This isn’t about disliking you; it’s about some service I’ve never heard of, registered to who-knows-what in a tax haven, and the security of my computer and Twitter profile).

In other words, it doesn’t look very “tweet” at all!

If you found this post to be helpful, you can say "thanks" and support this website by clicking here.

{ 0 comments }

Another Spammer Deflection Tactic: HR 1910

by Administrator on February 5, 2010

I just received another spam email, this one with the following disclaimer:

REMOVAL OPTION:
————————————————————————————-
Under Bill HR 1910 passed by the 106th US Congress on May 24, 1999, This message cannot be considered Spam as long as we include the way to be remove.Reply to youremoval@gmail.com and type “Unsubscribe”. All removal requests are handled immediately once received.Thank you.
————————————————————————————-

(Oops! forgot to remove another spammer email address… Enjoy, robots!)

Let’s make this one short and sweet. Your first hint that this spammer is blowing smoke up your “whatever” is the “HR”, which stands for “House Resolution”. As in “House of Representatives”. If it’s a “Resolution”, it isn’t a “Law”.

And this link very clearly shows that this particular “resolution” died in committee over 10 years ago.

Yes, this never became law due to “death by committee”.

In other words, there ain’t no such thing as Bill HR 1910, and it sure wasn’t passed EVER, much less on May 24, 1999 (that was the day it was introduced, in case you were keeping score). And the short title was “E-Mail User Protection Act”, which is included here for reference sake.

We won’t even talk about the poor grammar (i.e. “we include the way to be remove” — not that my grammar in this particular post is much better…) or the lack of spaces between sentences, which just SCREAMS “SPAM from a non-English speaker who thinks that any time somebody so much as farts in Congress it becomes law” (which isn’t the case, although if it were, it would explain some of the stuff that comes out of there…). However, this one seems to have originated in Los Angeles, which isn’t exactly a foreign country, so my guess is that the spammer had the script written overseas.

This bill called for a $50 penalty for each “unsolicited bulk electronic mail message”. CAN-SPAM — which did become law — is currently calling for $16,000 per “unsolicited bulk electronic mail message” (or UCE, or SPAM, or whatever you want to call the garbage).

So HR 1910 would have been a spammer’s dream when compared to CAN-SPAM, potentially saving a spammer $15,950 for each email sent. Some spammers could probably afford that, don’t you think? Pity it was never passed…

If you found this post to be helpful, you can say "thanks" and support this website by clicking here.

{ 0 comments }

New Data Protection Regulations And Affiliates – Are You Ready?

February 1, 2010

The Commonwealth of Massachusetts is about to begin enforcing some rather comprehensive data protection regulations on March 1, 2010. If you have customers in Massachusetts, then there are some things you will need to do.
The full document is available at http://www.mass.gov/Eoca/docs/idtheft/201CMR1700reg.pdf. I am most definitely not licensed to provide specific legal counsel to you, but [...]

Read the full article →

“You Want What Would You Be Good?”

January 28, 2010

As is my habit, I was cruising through my Gmail “spam” folder today when I came across this message:
Hello my dear. Hey, want to marry a Russian beauty? I want you, my good man. Come to my profile – you’ll get a surprise! You want what would you be good? Come to me.
(The link has [...]

Read the full article →

Fire Extinguishers: What You Need To Know

January 28, 2010

I’m doing an internal teleconference / training session this week for my company on various aspects of computer security. One of the topics I was assigned for my presentation was fire detection and suppression techniques. Much of what I’ll be presenting deals with systems for large computer rooms and server farms, but there’s also a [...]

Read the full article →

Your Business Isn’t Legal If The Bill Never Became A Law

January 22, 2010

Did you ever receive an email that contains language similar to the following:
This message is sent in full compliance of the new U.S. Federal e-mail bill S. 1618 Title III, Section 301, Paragraph (a)(2)(C)
This message cannot be considered SPAM as long as it includes:
1) Contact information, and
2) a way to be removed from future [...]

Read the full article →

Why PayPal / Gmail “Blasters” Are A Colossally Stupid Idea

January 21, 2010

In this post, I’m going to be just a bit more direct than normal (as can be deduced from reading the word “stupid” in the title). It amazes me that people actually believe the outright lies that are written in some spam emails.
Here’s the text of a spam email that hit my Inbox today:
Dear Website [...]

Read the full article →

Do You Have A Biometric Backup?

January 3, 2010

My wife uses a notebook computer. She usually has it set up on the dining room table, right in the middle of everything, in an area of the house from which she can “rule the household”, so to speak (in contrast, my computer — and office — are in the basement, which I alternately call [...]

Read the full article →

Website Hacked? This Might Explain It

December 30, 2009

Phishing is "To request confidential information over the Internet under false pretenses in order to fraudulently obtain credit card numbers, passwords, or other personal data.". And according to another blog post I read recently, some phishing emails have been sent out with the goal of getting website owners and webmasters to give up their cPanel [...]

Read the full article →

Where Is That Hyper-Link Taking You?

December 2, 2009

I just read a post in a private Google discussion group from the group’s moderator. He received an email that looked like it was from Google, telling him that there was a problem with his AdSense account. He was instructed to click on the link to correct the problem.
After clicking on the link, he alertly [...]

Read the full article →