To register for an Internet.com membership to receive newsletters and white papers, use the Register button ABOVE.
To participate in the message forums BELOW, click here


EIT Planet's Security News
 Security Vulnerabilities Prove Increasingly Costly
 IPS Market Approaches $1 Billion
 U.S. Named Top Spammer

Security Products
 Family Keylogger (Family Keylogger)
 modusGate (Vircom Inc.)
 Kernel Hotmail MSN Password Recovery (Nucleus Data Recovery)
 Outlook 2003 PST Password Recovery (PST Password Recovery)
 PST Password Remove (PST Password Remove)
 Zemana Anti Keylogger (Vickit, Inc.)


Go Back   Antionline Forums - Maximum Security for a Connected World > Security Discussions > Miscellaneous Security Discussions

Miscellaneous Security Discussions Discuss security issues related to everything else.

Reply
 
Thread Tools Display Modes
Old July 24th, 2003, 01:19 AM   #1
inf0streaker
Member
 
Join Date: Jul 2003
Posts: 99
inf0streaker is on a distinguished road
Weird Email

i got an email from my friend saying stuff about him that he wouldn't say or that were true.( it was sent to several different people). and he use dial up. and when i looked at the originating ip it wasn't a dial up ip so i know it wasn't sent from his computer.(but it was sent from his email account) i took the originating ip and i use the antionline Ip locator to see if it was local person who was doing it and it was. same city. so i wanted to know more about this email origination. any help would be great.
inf0streaker is offline   Reply With Quote
Old July 24th, 2003, 01:39 AM   #2
AciDriveHB
Senior Member
 
Join Date: Jan 2003
Posts: 686
AciDriveHB AciDriveHB AciDriveHB AciDriveHB AciDriveHB AciDriveHB AciDriveHB AciDriveHB AciDriveHB
Well how can you be sure that the IP address wasn't dial up? have you tried tracing your friends IP address from an email you know that came from him? That way you can make sure it came from two different places. Plus What kind of email account is it, a free type or an actual email account from an ISP provider like Adelphia or Earthlink or such?

Just a thought...
~AciD
__________________
[shadow]There is no right and wrong, only fun and boring...
Formatting my server because someone hacked into it sounds pretty boring to me...
That\'s why it\'s all about AntiOnline.com!
[/shadow]
AciDriveHB is offline   Reply With Quote
Old July 24th, 2003, 01:45 AM   #3
BD]Hobbit
Member
 
Join Date: Jul 2003
Posts: 80
BD]Hobbit will become famous soon enough
Question

Hmmmmm if he was using hotmail, yahoo, etc or any free e-mail service someone could've gaines access to his password.

and u said he has a dial up modem, a hacker could have got access to his dial up number


just a few thoughts

BD]Hobbit
__________________
http://www.AntiOnline.com/sig.php?imageid=442
You need people of intelligence on this sort of quest...
BD]Hobbit is offline   Reply With Quote
Old July 24th, 2003, 01:50 AM   #4
inf0streaker
Member
 
Join Date: Jul 2003
Posts: 99
inf0streaker is on a distinguished road
if an ip is like 24.000.00.000 it's none dial up. is that right? it was a free email account it was hotmail. and the originating ip was local. and his IP from other emails were 192.000.0.00 so it wasn't is computer.
inf0streaker is offline   Reply With Quote
Old July 24th, 2003, 02:31 AM   #5
fl34bit3
Senior Member
 
Join Date: Mar 2003
Posts: 301
fl34bit3 has a spectacular aura aboutfl34bit3 has a spectacular aura aboutfl34bit3 has a spectacular aura about
Do hotmail accounts send the originating ip or just the ip of hotmail servers? Havent had too much experience with hotmail nor would want to. Ip address has nothing to do with determining dialup the first one is a class A address and the 2nd is a class C if my memory is serving me. Some comfirmation on that little bit of info would be nice. Also the ip that you found that you said was local. are you sure it was local or the company that registered it was local? How much distance do they serve.

PeacE
-BoB
__________________
#!/usr/local/bin/perl -s-- -export-a-crypto-system-sig -RSA-in-3-lines-PERL
($k,$n)=@ARGV;$m=unpack(H.$w,$m.\"\\0\"x$w),$_=`echo \"16do$w 2+4Oi0$d*-^1[d2%
Sa2/d0<X+d*La1=z\\U$n%0]SX$k\"[$m*]\\EszlXx++p|dc`,s/^.|\\W//g,print pack(\'H*\'
,$_)while read(STDIN,$m,($w=2*$d-1+length($n||die\"$0 [-d] k n\\n\")&~1)/2)
fl34bit3 is offline   Reply With Quote
Old July 24th, 2003, 02:38 AM   #6
inf0streaker
Member
 
Join Date: Jul 2003
Posts: 99
inf0streaker is on a distinguished road
i dont really want to reveal the information or the ip but for obvious reasons. all i need to know is how to find out more about the ip or a more exact location. But the email was about a person who my friend knows and i know and most all my friends. but thats the most of what i want to reveal. i hope you understand.
inf0streaker is offline   Reply With Quote
Old July 24th, 2003, 03:04 AM   #7
fl34bit3
Senior Member
 
Join Date: Mar 2003
Posts: 301
fl34bit3 has a spectacular aura aboutfl34bit3 has a spectacular aura aboutfl34bit3 has a spectacular aura about
How many times has this subject been brought up in the last week. there is no way to "pinpoint" a location. As has been stated it will merely reveal the company that registered it. If you are really worried about it you could do a whois on the ip address and contact them about it. Also the ip address wont reveal anything personal about you or your friends just wanted to make that clear.

PeacE
-BoB
__________________
#!/usr/local/bin/perl -s-- -export-a-crypto-system-sig -RSA-in-3-lines-PERL
($k,$n)=@ARGV;$m=unpack(H.$w,$m.\"\\0\"x$w),$_=`echo \"16do$w 2+4Oi0$d*-^1[d2%
Sa2/d0<X+d*La1=z\\U$n%0]SX$k\"[$m*]\\EszlXx++p|dc`,s/^.|\\W//g,print pack(\'H*\'
,$_)while read(STDIN,$m,($w=2*$d-1+length($n||die\"$0 [-d] k n\\n\")&~1)/2)
fl34bit3 is offline   Reply With Quote
Old July 24th, 2003, 05:01 AM   #8
The3ntropy
Senior Member
 
Join Date: Mar 2002
Posts: 442
The3ntropy The3ntropy The3ntropy The3ntropy The3ntropy The3ntropy The3ntropy The3ntropy The3ntropy The3ntropy The3ntropy
Quote:
Do hotmail accounts send the originating ip or just the ip of hotmail servers?
X-Originating-IP: 366.366.366.366
Yes they do, hotmail is not anonymous.
The3ntropy is offline   Reply With Quote
Old July 24th, 2003, 05:05 AM   #9
phishphreek
AO übergeek
 
phishphreek's Avatar
 
Join Date: Jan 2002
Posts: 4,321
phishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond reputephishphreek has a reputation beyond repute
Quote:
X-Originating-IP: 366.366.366.366
Yes they do, hotmail is not anonymous.
I'd say that is accurate.

I would just like to add the obvious... if the sender was using a proxy or proxy chain... it is less likely that you will find the senders true address. You would instead see the proxies address...

It is not anonymous by itself.
__________________
Quitmzilla is a firefox extension that gives you stats on how long you have quit smoking, how much money you\'ve saved, how much you haven\'t smoked and recent milestones. Very helpful for people who quit smoking and used to smoke at their computers... Helps out with the urges.
phishphreek is offline   Reply With Quote
Old July 24th, 2003, 05:11 AM   #10
hypronix
Senior Member
 
Join Date: Jul 2003
Posts: 813
hypronix hypronix hypronix hypronix hypronix hypronix hypronix hypronix hypronix
Check the full headers in the e-mail. Read also:

http://astalavista.com/library/basic...mailHeader.zip

on how to interpret headers.
__________________
/\\
hypronix is offline   Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump


All times are GMT +1. The time now is 11:33 AM.












Acceptable Use Policy

Internet.com
The Network for Technology Professionals

Search:

About Internet.com

Legal Notices, Licensing, Permissions, Privacy Policy.
Advertise | Newsletters | E-mail Offers

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.