Bitcoin Forum
December 10, 2019, 11:53:27 AM *
News: Latest Bitcoin Core release: 0.19.0.1 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: .  (Read 2081 times)
ingrownpocket
Legendary
*
Offline Offline

Activity: 952
Merit: 1000


View Profile
.
August 12, 2013, 03:52:49 PM
Last edit: January 12, 2018, 02:58:43 PM by Carlos L.
 #1

.
1575978807
Hero Member
*
Offline Offline

Posts: 1575978807

View Profile Personal Message (Offline)

Ignore
1575978807
Reply with quote  #2

1575978807
Report to moderator
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
1575978807
Hero Member
*
Offline Offline

Posts: 1575978807

View Profile Personal Message (Offline)

Ignore
1575978807
Reply with quote  #2

1575978807
Report to moderator
1575978807
Hero Member
*
Offline Offline

Posts: 1575978807

View Profile Personal Message (Offline)

Ignore
1575978807
Reply with quote  #2

1575978807
Report to moderator
1575978807
Hero Member
*
Offline Offline

Posts: 1575978807

View Profile Personal Message (Offline)

Ignore
1575978807
Reply with quote  #2

1575978807
Report to moderator
BurtW
Legendary
*
Offline Offline

Activity: 2590
Merit: 1064

All paid signature campaigns should be banned.


View Profile WWW
August 12, 2013, 03:54:01 PM
 #2

No.

Our family was terrorized by Homeland Security.  Read all about it here:  http://www.jmwagner.com/ and http://www.burtw.com/  Any donations to help us recover from the $300,000 in legal fees and forced donations to the Federal Asset Forfeiture slush fund are greatly appreciated!
John (John K.)
Global Troll-buster and
Legendary
*
Offline Offline

Activity: 1260
Merit: 1090


Will read PM's. Have more time lately


View Profile
August 12, 2013, 03:57:52 PM
 #3

LOL. Theymos sounds like my Nigerian prince promising me my own island!

My BTC Tip Jar: 1Pgvfy19uwtYe5o9dg3zZsAjgCPt3XZqz9 , GPG ID: B3AAEEB0 ,OTC ID: johnthedong
Escrow service is available on a case by case basis! (PM Me to verify I'm the escrow!)

Jan
Legendary
*
Offline Offline

Activity: 1043
Merit: 1000



View Profile
August 12, 2013, 04:07:35 PM
 #4

LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

Mycelium let's you hold your private keys private.
John (John K.)
Global Troll-buster and
Legendary
*
Offline Offline

Activity: 1260
Merit: 1090


Will read PM's. Have more time lately


View Profile
August 12, 2013, 04:09:28 PM
 #5

PS: Can you post the entire email header here (taking out your email addy if you want)


LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

What? Huh

My BTC Tip Jar: 1Pgvfy19uwtYe5o9dg3zZsAjgCPt3XZqz9 , GPG ID: B3AAEEB0 ,OTC ID: johnthedong
Escrow service is available on a case by case basis! (PM Me to verify I'm the escrow!)

pedrog
Legendary
*
Offline Offline

Activity: 2352
Merit: 1005



View Profile
August 12, 2013, 04:59:58 PM
 #6

I haven't receive it (yet), people who receive this email have their email address made public? Any reports of a database compromised or BitcoinTalk?

nimda
Hero Member
*****
Offline Offline

Activity: 784
Merit: 1000


0xFB0D8D1534241423


View Profile
August 12, 2013, 05:00:19 PM
 #7

Simple address spoof; not legitimate.

Also the forum is drowning in BTC right now.

I recommend asking me for a signature from my GPG key before doing a trade. I will NEVER deny such a request.
theymos
Administrator
Legendary
*
Offline Offline

Activity: 3598
Merit: 7354


View Profile
August 12, 2013, 05:43:29 PM
 #8

No, I didn't send that.

1NXYoJ5xU91Jp83XfVMHwwTUyZFK64BoAD
qwk
Donator
Legendary
*
Offline Offline

Activity: 2324
Merit: 2225


Shitcoin Minimalist


View Profile
August 12, 2013, 05:52:35 PM
 #9

That's one of the reasons why I'd not recommend making your email address public on a web forum.
IT just makes you an easy target for SCAM-SPAM.


CONTRIBUTOR BENEFITS
- 0.1+ BTC = Donors crown before nick (everywhere your username is shown)

A Donator's crown would suit me nice, though Cheesy

And while I'm dreaming, I'd like to have a pony.

All free men, wherever they may live, can use Bitcoin, and, therefore, as a free man, I take pride in the words "Ich bin ein Bitcoiner!"
theymos
Administrator
Legendary
*
Offline Offline

Activity: 3598
Merit: 7354


View Profile
August 12, 2013, 06:01:43 PM
 #10

Surprisingly, no one tried actually replying to the email. If they had, they would have reached me. (This is not a good way of contacting me, though -- I may disable theymos@bitcointalk.org in the future.)

1NXYoJ5xU91Jp83XfVMHwwTUyZFK64BoAD
escrow.ms
Legendary
*
Offline Offline

Activity: 1260
Merit: 1004

GPG Key-ID: B82BA7E1 | I don't use skype.


View Profile
August 12, 2013, 06:04:54 PM
 #11

If it's a mass mail, someone should send 0.00000001 without fees to that address with a warning note like "IT'S A SCAM" and this thread's link. Grin
vgo
Legendary
*
Offline Offline

Activity: 2072
Merit: 1014



View Profile
August 12, 2013, 09:41:47 PM
 #12

I've received in Gmail.
escrow.ms
Legendary
*
Offline Offline

Activity: 1260
Merit: 1004

GPG Key-ID: B82BA7E1 | I don't use skype.


View Profile
August 12, 2013, 10:06:43 PM
 #13

I've received in Gmail.
Because your email is on your profile.
vgo
Legendary
*
Offline Offline

Activity: 2072
Merit: 1014



View Profile
August 12, 2013, 10:42:54 PM
 #14

I've received in Gmail.
Because your email is on your profile.

Obvious.
Anduck
Legendary
*
Offline Offline

Activity: 1463
Merit: 1055


quack


View Profile
August 13, 2013, 04:47:09 AM
 #15

PS: Can you post the entire email header here (taking out your email addy if you want)


LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

What? Huh

I'm afraid you missed a joke...

Mike Hearn
Legendary
*
Offline Offline

Activity: 1526
Merit: 1008


View Profile
August 13, 2013, 01:54:34 PM
 #16

There's a simple way to shut down this kind of phish: implement DKIM and DMARC.

Firstly, you make sure all mail being sent by bitcointalk.org is DKIM signed. It just boils down to configuring your SMTP server and DNS, more or less. Then all mail is cryptographically signed automatically.

Secondly, add another DNS TXT record that specifies a DMARC policy:

http://www.dmarc.org/overview.html

That tells mail engines that understand the protocol that bitcointalk.org should only be sending DKIM signed mail. You can also request reporting. Once you have that configured, compliant mail systems (like gmail and yahoo mail) can be told to automatically spamfolder any forged mail and mail a copy back to you, so you find out about phishing attempts immediately.

WuLabsWuTecH
Sr. Member
****
Offline Offline

Activity: 252
Merit: 250


View Profile
August 15, 2013, 07:38:04 AM
 #17

I didn't realize we could contact theymos by email! (not that I would ever have occasion to)
HeroC
Legendary
*
Offline Offline

Activity: 862
Merit: 1000


GPG: FA122C1A | IRC: HeroCC


View Profile
August 15, 2013, 01:42:30 PM
 #18

I wish donator stats were that cheap.  Tongue
Raize
Donator
Legendary
*
Offline Offline

Activity: 1417
Merit: 1008


View Profile
August 15, 2013, 03:20:50 PM
 #19

Quote
Received: from wl23-f168.wedos.net (wl23-f168.wedos.net. [2a02:2b88:1:4::27])
        by mx.google.com with ESMTPS id t9si28084548eeo.35.2013.08.12.08.32.26
        for <info@carloslago.com>
        (version=TLSv1 cipher=RC4-SHA bits=128/128);
        Mon, 12 Aug 2013 08:32:26 -0700 (PDT)
Received-SPF: pass (google.com: best guess record for domain of w32382@wedos.net designates 2a02:2b88:1:4::27 as permitted sender) client-ip=2a02:2b88:1:4::27;
Authentication-Results: mx.google.com;
       spf=pass (google.com: best guess record for domain of w32382@wedos.net designates 2a02:2b88:1:4::27 as permitted sender) smtp.mail=w32382@wedos.net

Why is Google accepting a random IPv6 address as a legitimate sender for @bitcointalk.org when the spf record for bitcointalk.org only designates its MX servers (presumably IPv4 addresses) as valid?

Bitcointalk.org SPF:
Quote
v=spf1 mx a ~all

For what its worth, I didn't receive this email and I've checked my spam folders to verify.

Maybe this is an argument for going back to doing a hard fail using "-all" instead of the soft fail on "~all".

It's weird Google doesn't even consider this email the least bit suspicious though. It just says "spf-pass" like there's nothing wrong, using wedos.net as the authenticating domain even though the Reply-To: and From: are clearly from a domain NOT associated with wedos.net.

OrganofCorti's Neighbourhood Pool Watch - The most informative website on blockchain health
John (John K.)
Global Troll-buster and
Legendary
*
Offline Offline

Activity: 1260
Merit: 1090


Will read PM's. Have more time lately


View Profile
August 15, 2013, 03:44:27 PM
 #20

PS: Can you post the entire email header here (taking out your email addy if you want)


LOL. Theymos sounds like my Nigerian prince promising me my own island!
Hey you got the same donation address as me. Must be a coincidence related to the bad random generator on Android

What? Huh

I'm afraid you missed a joke...

Oops, was too tired when I posted this. Tongue

My BTC Tip Jar: 1Pgvfy19uwtYe5o9dg3zZsAjgCPt3XZqz9 , GPG ID: B3AAEEB0 ,OTC ID: johnthedong
Escrow service is available on a case by case basis! (PM Me to verify I'm the escrow!)

Pages: [1]
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!