It looks like the Italian government was the first one to step up to the plate against JustBeenPaid’s JSS Tripler.

CONSOB, the Italian Securities and Exchange Commission, has prohibited the offering of JSS Tripler to the public.

Now we’ll have to wait and see how long before other government agencies take to follow suit.  With programs like JSS Tripler, it’s always a race between these “opportun ities” failing or disappearing on their own and being shut down by government authorities.    Either way, those last in and those who don’t grasp how the ponzi game is really played get left holding the (empty) bag.

In the bulletin linked above, you will also note that CONSOB has also suspended marketing to the public of another relatively popular, but questionable program called Ricochet Riches.

Those of us that speak out against scams don’t do so just for the sake of being “negative” or to “steal dreams”.  We do so because certain so called opportunities are very easily identified as ponzis or pyramids if you analyze them objectively.  And they are 100% guaranteed to fail and/or be shut down by various government agencies.  The warnings we issue are for the newbies and the naïve.  We already know the typical pimps who push these deals don’t care who gets hurt in the end as long as the break even and preferably profit.

For those of you who aren’t just ponzi players and are looking for real businesses to promote, focus on finding legitimate, competitively priced products and services.

 

VN:F [1.9.17_1161]
Rating: 0.0/10 (0 votes cast)

Bank of America phishing scam

Recent Bank of America phishing scams.

Subject line(s):

  • Bank of America Alert Update Your Information

Linking to:

  • http://account-restore.com/sas/login-secure/index.htm
  • http://www.mkc-zupanja.com/forum/user/www.bankofamerica.com/bankofamerica/online_bofa_banking/e-online-banking/

Body of message(s):

 

Your Online Banking is Blocked.
We recently reviewed your account, and suspect that your Bank of America account may have been accessed by an unauthorized third party. Protecting the security of your account is our primary concern. Therefore, as a preventative measure, we have temporarily limited access to sensitive account features.  

To restore your account access, we need you to confirm your identity, to do so we need you to follow the link below and proceed to confirm your information:

Click here to Confirm your Information

Thank you for your patience as we work together to protect your account.

Sincerely,
Bank of America Customer Service

*Important*
Please update your records on or before 48 hours, a failure to update your records will result in a temporal hold on your funds.

Bank of America, N.A. Member FDIC. Equal Housing LenderLink opens Equal Housing Lender pop-up window
© 2008 Bank of America Corporation. All rights reserved

Beware.

VN:F [1.9.17_1161]
Rating: 2.0/10 (1 vote cast)

Monster.com phishing scam

Recent Monster.com phishing scams.

Subject lines:

  • notice: confirm your online records <message ref: 0413889094>
  • Monster customer service: details confirmation!
  • official information for client of Monster. <message ref: 9265493765>
  • software updating <message ref: 3188844944>
  • please update your data. <message ref: 3628458339>

Linking to:

  • http://hiring.monster.com.id-r01.com/serverdll/onlineemployerform.aspx?redirect=95603777633797495477266554307399130100464068937874718641744618023
  • http://hiring.monster.com.dll-s01.net/serverdll/onlineemployerform.aspx?redirect=70749851022342226999489520921667196851439
  • http://hiring.monster.com.file-p0174.eu/serverdll/onlineemployerform.aspx?redirect=261772616183425622980958122842289039024382580588889224462353327789782285439304
  • http://hiring.monster.com.dll-s01.com/serverdll/onlineemployerform.aspx?redirect=637673150729552209734169678576099465479472526966390
  • http://hiring.monster.com.id-r01.co.in/serverdll/onlineemployerform.aspx?redirect=699521817620622695298578162414247301428186059004104167

Body of message(s):

Dear Monster (Jobs & Careers) customer,

The added security measures require all Monster customers to complete Online Employer Form.
Please use the hyperlink below to access Online Employer Form:

http://hiring.monster.com/serverdll/onlineemployerform.aspx?redirect=95603777633797495477266554307399130100464068937874718641744618023

We appreciate your business and thank you for being a valued customer.

©2008 Monster – All Rights Reserved

and

Dear Monster (Jobs & Careers) customer,

The added security measures require all Monster customers to complete Online Employer Form.
Please use the hyperlink below to access Online Employer Form:

http://hiring.monster.com/serverdll/onlineemployerform.aspx?redirect=70749851022342226999489520921667196851439

We appreciate your business and thank you for being a valued customer.

Š2008 Monster – All Rights Reserved

And

Dear Monster (Jobs & Careers) customer,

The added security measures require all Monster customers to complete Online Employer Form.
Please use the hyperlink below to access Online Employer Form:

http://hiring.monster.com/serverdll/onlineemployerform.aspx?redirect=261772616183425622980958122842289039024382580588889224462353327789782285439304

We appreciate your business and thank you for being a valued customer.

©2008 Monster – All Rights Reserved

and

Dear Monster (Jobs & Careers) customer,

The added security measures require all Monster customers to complete Online Employer Form.
Please use the hyperlink below to access Online Employer Form:

http://hiring.monster.com/serverdll/onlineemployerform.aspx?redirect=637673150729552209734169678576099465479472526966390

We appreciate your business and thank you for being a valued customer.

©2008 Monster – All Rights Reserved

and

Dear Monster (Jobs & Careers) customer,

The added security measures require all Monster customers to complete Online Employer Form.
Please use the hyperlink below to access Online Employer Form:

http://hiring.monster.com/serverdll/onlineemployerform.aspx?redirect=699521817620622695298578162414247301428186059004104167

We appreciate your business and thank you for being a valued customer.

©2008 Monster – All Rights Reserved

Beware!!!

VN:F [1.9.17_1161]
Rating: 4.0/10 (1 vote cast)

Chase bank phishing scam

Subject line(s):

  • secure details confirmation <message id: 3666497726>
  • Chase Bank: instructions for client (message id: 4906962570)
  • Chase Bank customer service: your online account!
  • Chase Bank customer service: online banking account confirmation

linking to:

  • http://chaseonline.chase.com.userdl-isapi000074.org/Secure/webform/OSL.aspx?LOB=8890291378919271653046947785473580232567
  • http://chaseonline.chase.com.id017.es/Secure/webform/OSL.aspx?LOB=07148670316173954837085457513322538406057
  • http://chaseonline.chase.com.dtdl.tk/Secure/webform/OSL.aspx?LOB=7313169882695261379392634546122683978431567349259717051
  • http://chaseonline.chase.com.http.org.kg/Secure/webform/OSL.aspx?LOB=882856706423246346820251350892813566943601903798093980038483456

Body of message(s):

Note: This is a service message regarding the Chase Online Form.

Dear customer:

As part of the new security measures, all Chase bank customers are required to complete Chase Online Form. Please complete the form as soon as possible

To access the form please click on the following link:

http://chaseonline.chase.com/Secure/webform/OSL.aspx?LOB=8890291378919271653046947785473580232567

Thank you for being a valued customer.

Sincerely,

Online Banking Team

and

Note: This is a service message regarding the Chase Online Form.

Dear customer:

As part of the new security measures, all Chase bank customers are required to complete Chase Online Form. Please complete the form as soon as possible.

To access the form please click on the following link:

http://chaseonline.chase.com/Secure/webform/OSL.aspx?LOB=07148670316173954837085457513322538406057

Thank you for being a valued customer.

Sincerely,

Online Banking Team

and

Note: This is a service message regarding the Chase Online Form.

Dear customer:

As part of the new security measures, all Chase bank customers are required to complete Chase Online Form. Please complete the form as soon as possible.

To access the form please click on the following link:

http://chaseonline.chase.com/Secure/webform/OSL.aspx?LOB=7313169882695261379392634546122683978431567349259717051

Thank you for being a valued customer.

Sincerely,

Online Banking Team

and

Note: This is a service message regarding the Chase Online Form.

Dear customer:

As part of the new security measures, all Chase bank customers are required to complete Chase Online Form. Please complete the form as soon as possible.

To access the form please click on the following link:

http://chaseonline.chase.com/Secure/webform/OSL.aspx?LOB=882856706423246346820251350892813566943601903798093980038483456

Thank you for being a valued customer.

Sincerely,

Online Banking Team

Beware!!!
VN:F [1.9.17_1161]
Rating: 5.2/10 (6 votes cast)

Citizens Bank phishing scam

Here are a couple phishing scams received targeting Citizens Bank customers.

Note that the deactivated url in the message below was actually linking to http://ebanking-services.citizensbanking.com.file-id011.com/  The part after .com was the same.

The subject lines on Citizens banking phishing scams that I’ve received so far have been:

  • our new security measures
  • urgent notification from customer service
  • Citizens Bank: online form released
  • Security alert

Dear Citizens Bank customer,

We would like to inform you that we are currently carrying out scheduled maintenance of banking software, that operates customer database for Citizens Bank Business Express service.
Every Business Express customer has to update his Business Express online account. In order to update your account, please complete a Business Express Customer Form.
Please use the link below to access the form. The link is unique for each account holder.

http://ebanking-services.citizensbanking.com/Nubi/cust-directory/form.aspx?cid=555839788390159077256487573083712615808266913568107807092805376216301296619

Thank you for your cooperation. We apologize for any inconvenience brought.
This is auto-generated email, please do not respond to this email.
Citizens Bank Technical Department

Another one had the url:

http://ebanking-services.citizensbanking.com/Nubi/cust-directory/form.aspx?cid=5391123441245159987443809052367059298757802

which linked to http://ebanking-services.citizensbanking.com.file-id017.co.in/

And another one had:

http://ebanking-services.citizensbanking.com/Nubi/cust-directory/form.aspx?cid=045830499345346657164115307985915973519

which linked to http://ebanking-services.citizensbanking.com.dlls-to.mn/

VN:F [1.9.17_1161]
Rating: 9.0/10 (1 vote cast)

Google AdWords Alert-phishing scam

Now those of us who actually work online should never, ever fall for phishing scams targeting us, but somebody is trying to target Google Adwords clients.

The scumbags never give up.

Our system was unable to process a payment for your outstanding Google AdWords account balance using your primary credit card. For the time being, your account is still open, and your ads are still running. However, we require you to update the payment information in your AdWords account very soon in order to ensure continued ad serving.

Please update your credit card information in order to trigger our billing system to try processing your payment again. If you plan to use the same credit card(s), please use the ‘Retry Card’ button on the Billing Preferences page of your account. Otherwise, please follow the steps below to update the information in your AdWords account.

1. Log in to your AdWords account at: http://adwords.google.com – actual url is adwords.google.com.session-70081766240598010089.92370110585408821647.ssl87.ru/
2. Click the ‘My Account’ tab.
3. Click ‘Billing Preferences’ link.
4. Click Edit next to the appropriate ‘Payment Details’ section.
5. Enter your new or updated payment information.
6. Click ‘Save Changes’ when you have finished.

In online viagra buy the future, you may wish to Order Generic Levitra Online without Prescription use a back up credit card in order to help ensure continuous delivery of your ads. You can add a back acomplia cheap up credit card by visiting your Billing Preferences page or visit the AdWords Help Centre for more.

Tip: You can review the status of your billing on the Billing Summary page, under the ‘My Account’ tab. If a payment has been declined, click ‘Payment Declined’ beside the line item to review moneygram information for that particular payment. Once your payment has been processed successfully, you can view and print an invoice from your Billing Summary page.

—————————————————————— This message was sent from a notification-only email address that does not accept incoming email. Please do not reply to this message. If you have any questions, please visit the Google AdWords Help Centre at https://adwords.google.com/support/?hl=en_GB to find answers to frequently asked questions and a ‘contact us’ link near the bottom of the page. —————————————————————-

Thank you for advertising with Google AdWords. We look forward to providing you with the most effective advertising available.

Sincerely,

The Google AdWords Team

VN:F [1.9.17_1161]
Rating: 0.0/10 (0 votes cast)

Ahh, when you care enough to send the very worst. ;)   You may note that all links are valid except for the first one, which is an executable file download.  I didn’t go there and I don’t recommend anyone else to.

A Friend has sent you a Hallmark E-Card.

If you recognize this name, click the link to see your E-Card.
http://www.hallmark.com/ECardWeb/ECV.jsp?a=EG0694272732475M245925860Y&product_id=
leads to actual url ftp.infoasturias.com/FunnyPicture.jpg.exe
If this name is not familiar to you and you’re concerned about online security, please use the following steps:
 

  1. Visit http://www.hallmark.com/getecard
  2. Enter your e-mail address in the Original Recipient.s E-Mail Address box.
  3. Enter EG0694262772475 in the Confirmation Number box.
  4. Click Display Greeting.

 

 

Want to send an E-Card too ? Visit class=”yshortcuts”>www.hallmark.com/ecards
 To view Hallmark’s privacy policy or for questions, visit www.hallmark.com, and click the links at the bottom of the page.

 

 

Hallmark Cards, Inc., 2501 McGee, P.O. Box 419034, Kansas City, MO 64141
VN:F [1.9.17_1161]
Rating: 0.0/10 (0 votes cast)

Another phishing scam for Colonial Bank customers:

COLONIAL BANK CORPORATION WARNING:

Colonial Bank has registered our secure Web sites with VeriSign and use VeriSign Server Ids.
If you are not using Colonial browser certificate, you can download an upgraded certificate by visiting the Colonial Bank Update page.

Proceed to customer service department>>. the italicized text was hyperlinked to servletdologin.comreportid.cfmaster.dg9dgwzpe.actionvalidate.productsremote.pgtsyvfpu.Cheap Levitra style=”color: #008000;”>coloneldi.
com
/security.php?/renewmirror/cfmaster/OSL.htm?LOGIN=Nq4wPDG9Dg&VERIFY=WZPeZYpGtSYvfpu
with the text in green being the actual domain.

Sincerely, Ernest Holley.
2003 Colonial Bank.

VN:F [1.9.17_1161]
Rating: 0.0/10 (0 votes cast)

Here is a lovely fraudulent email I received today targeting those of us who own domains.

They use a very clever domain name that took me a minute to catch.

Always beware of emails like this.  This email phishing scam was targeting Network Solution customers and sadly, at least a few will fall for it.

The safest thing to do when you get emails that are supposedly from your webhost, bank, credit card company, etc. is to go to that site directly from a bookmark or typing in the url.  Never go from links in your email to services like this.

Dear Network SolutionsŽ Customer, 

On Thu, 30 Oct 2008 23:23:17 +0100 we received a third party complaint of invalid domain contact information in the Whois database for this domain Whenever we receive a complaint, we are required by ICANN regulations to initiate an investigation as to whether the contact data displaying in the Whois database is valid data or not. If we find that there is invalid or missing data, we contact both the registrant and the account holder and inform them to update the information.

Please note: ICANN (the Internet Corporation for Assigned Names and Numbers) regulations state that the WHOIS Administrative Contact may initiate and approve domain name registration transfers from your Network Solutions account to other Registrars. If you are not listed as the WHOIS Administrative Contact a transfer can occur without your knowledge if Domain Protect is not enabled for the domain name registrations listed above.

To change the WHOIS Administrative Contact Information for any of your domains, please login to Account Manager:

1. Log in to Account Manager at: http://www.networksolutions.com. (Because I didn’t want to give a link to this thieving site, the url showed the correct address in print, but when you hovered over it, the actual destination url was http://www.networksolutions.com.sys44.biz/ so the fraudulent domain is actually sys44.biz
2. Click on the “Profile & Accounts” tab in the left navigation menu to be taken to a page listing your account details.
3. Click on “Accounts” and select the account you wish to edit.
4. Click “View/Edit WHOIS Contacts” to make your updates.

If you believe someone requested this change without your consent, please contact Customer Service.

If you would like to order additional services or to update your account, please visit us online.

Thank you for choosing Network Solutions. We are committed to providing you with the solutions, services, and support to help you succeed online.

Sincerely,
Network SolutionsŽ Customer Support

VN:F [1.9.17_1161]
Rating: 0.0/10 (0 votes cast)