![]() |
|
|
|
Registered
Join Date: Jan 2002
Location: I'm out there.
Posts: 13,084
|
I need a reverse e-mail lookup. (Paypal security breach).
Yesterday I got a message from Paypal that I had added a new e-mail address to my account. Seconds later a new message stating that the new e-mail address was now the primary address.
I quickly accessed my Paypal account and discarded the new e-mail address and changed my password. The address that had been added to my account without authorization was rosimpson@yahoo.com. I'd like to get Mr. Simpsons address and phone number if possibe. He's got some 'splainin to do! Can anyone do a reverse e-mail lookup for me?
__________________
My work here is nearly finished.
|
||
![]() |
|
Licensed User
Join Date: Feb 2003
Location: ....down Highway 61
Posts: 6,506
|
Yahoo accounts are free and anonymous. They take about 30 seconds to establish. If you want to get in touch with him you will probably just have to send him an email.
|
||
![]() |
|
Registered
|
I don't think that's possible. The email resides on Yahoo servers and the info for the account is as good as what was originally entered. I'd guess that since this person is hijacking accounts there's not much there.
Yahoo would have to trace his IP. Or maybe there's some kind of tracking widget that can be attached to an Email. When he opens it reports back with his IP.
__________________
Warren & Ron, may you rest in Peace. |
||
![]() |
|
Gon fix it with me hammer
|
only Yahoo can do it, and they'll only do it in case of fraud
but not at the request of just about anybody, or else , anybody could get anybody's details you'll need Paypal to get on top of this or else file charges somewhere ( and fat chance that will get you anywhere) what you could do, is send an email, with a picture linked into hte message body and then you need a webserver, and the one ip that reads that picture, is the one however, you might just as well get an ip adress that's bogus or not identifiable... so it's no use whatsoever besides, mails with payloads trigger firewall, mail, virus protection and it would alert the mark how did you go to paypall when you got the message?? sounds to me like you just got phished, and followed their link, to a bogus site, and gave them your credentials
__________________
Stijn Vandamme EX911STARGA73EX92477EX94484EX944S8890MPHPINBALLMACHINEAKAEX987C2007 BIMDIESELBMW116D2019 |
||
![]() |
|
The Unsettler
|
If he is a scammer odds are he is spoofing the IP anyway.
I'm not a scammer but that is what I would do. If you are not using at least an 8 character password that is a combination of letters and numbers you are asking for trouble. Also you user name should be "unique". I almost had one of my servers shut down a couple of months ago. One of the users changed her mail login and password to "diana" and obviously a simple password. A bot out of Korea ran a dictionary attack on the mail port, got into her account and started blasting phising emails at the rate of 100,000 an hour. A dictionary attack is just what it sounds like, the bot will start hitting the server requesting access using a first name and will try 5 or 6 passwords then move onto the next name in the alphabet. It will do this forever unless you catch it. Scott
__________________
"I want my two dollars" "Goodbye and thanks for the fish" "Proud Member and Supporter of the YWL" "Brandon Won" |
||
![]() |
|
Senior Member
Join Date: Jun 2000
Location: N. Phoenix AZ USA
Posts: 28,943
|
Contact Yahoo and give them the info. They will work with it.
Also contact both PP and Ebay and tell them what is going on and to flag your account to watch for any futher changes. My account was taken over last fall and they tried to sell stolen basketball tickets with it. Ebay flagged it within hours and locked the account down. Took me 3 weeks to get it back under my control. As well like Scott mentioned above, make your password hard to bust. Mine has one capital, one space and one number in it. Not an easy one to hack.
__________________
2013 Jag XF, 2002 Dodge Ram 2500 Cummins (the workhorse), 1992 Jaguar XJ S-3 V-12 VDP (one of only 100 examples made), 1969 Jaguar XJ (been in the family since new), 1985 911 Targa backdated to 1973 RS specs with a 3.6 shoehorned in the back, 1959 Austin Healey Sprite (former SCCA H-Prod), 1995 BMW R1100RSL, 1971 & '72 BMW R75/5 "Toaster," Ural Tourist w/sidecar, 1949 Aeronca Sedan / QB |
||
![]() |
|
![]() |
Control Group
|
Just got an e-notice my paypal acct was changed, and I don't have one
__________________
She was the kindest person I ever met |
||
![]() |
|
Registered
|
Send him a virus.
__________________
1974 911s "It smelled like German heaven" http://www.youtube.com/watch?v=6ySt9SeZl9s |
||
![]() |
|
Feelin' Solexy
Join Date: Oct 2003
Location: WA
Posts: 3,788
|
Quote:
Moses, are you sure that the account you logged in to was legitimately Paypal (i.e. not another site made to look like paypal)? Common phishing tactic is to scare someone into "logging in" to change something, but the login page is actually a dummy and you are entering your legit credentials.
__________________
Grant In the stable: 1938 Buick Special model 41, 1963 Solex 2200, 1973 Vespa Primavera 125, 1974 Vespa Rally 200, 1986 VW Vanagon Syncro Westfalia, 1989 VW Doka Tristar, 2011 Pursuit 315 OS, 2022 Tesla Y Gone but not forgotten: 1973 VW Beetle, 1989 Porsche 944, 2008 R56 Mini Cooper S |
||
![]() |
|
Back in the saddle again
Join Date: Oct 2001
Location: Central TX west of Houston
Posts: 55,956
|
Quote:
__________________
Steve '08 Boxster RS60 Spyder #0099/1960 - never named a car before, but this is Charlotte. '88 targa ![]() |
||
![]() |
|
Registered
Join Date: Apr 2001
Location: Linn County, Oregon
Posts: 48,518
|
Quote:
__________________
"Now, to put a water-cooled engine in the rear and to have a radiator in the front, that's not very intelligent." -Ferry Porsche (PANO, Oct. '73) (I, Paul D. have loved this quote since 1973. It will remain as long as I post here.) |
||
![]() |
|
Registered
Join Date: Jan 2002
Location: I'm out there.
Posts: 13,084
|
I'll bet itwas a "dictionary hack". I've changed to a complicated password.
I never click on links in e-mail unless they are from Pelican Parts or a known friend. I've e-mailed Paypal and I will contact Yahoo.
__________________
My work here is nearly finished.
|
||
![]() |
|
![]() |
Registered
Join Date: May 2007
Location: Westmont, IL
Posts: 113
|
Moses,
My guess is that it isn't just a simple dictionary hack. Paypal doesn't have a fast enough response rate for someone to sit and try passwords all day long using some kind of automated tool. Also I'm nearly positive that this activity would get flagged and a sysadmin at paypal would see it and disable the account. If you are sure you didn't somehow get phished, ie you always manually type in the URL to paypal in the browser, then something more serious happened. Other phishing / social engineering methods are fake emails with call back numbers. So people think they are safe by not using the URL in the email and instead call the phone number in the email... Serious as in they got your paypal password directly because some computer which you use to log into paypal is compromised. If you use a PC then this is highly likely. If it was a dictionary hack then it probably was done on some password file instead of directly trying to log into your paypal account. If your paypal account was compromised then they probably have access to the bank account or credit card attached to the paypal account. Also if one of your computers was compromised then they would also have access to many other things. My advice is to change everything and act as your "wallet" was taken. Better to be safe then sorry.
__________________
_ |imothy Farrar '69 911E +webers +906 cams -- in peaces S-10 +straight-cut gears +LSD -- daily driver WRX -- wife's car |
||
![]() |
|
Registered
Join Date: May 2007
Location: Westmont, IL
Posts: 113
|
Also, on the topic of emails, they can easily be made un-trackable. Unless the hacker was a complete idiot (hopefully this is the case), trying to trace someone via email or an IP address is a complete waste of time.
__________________
_ |imothy Farrar '69 911E +webers +906 cams -- in peaces S-10 +straight-cut gears +LSD -- daily driver WRX -- wife's car |
||
![]() |
|
canna change law physics
|
Having a password of 20+ digits helps, no words
__________________
James The pessimist complains about the wind; the optimist expects it to change; the engineer adjusts the sails.- William Arthur Ward (1921-1994) Red-beard for President, 2020 |
||
![]() |
|
Registered
|
"sounds to me like you just got phished," - I agree. Best to go directly to paypal and change your info. What looks like a legitimate link can often lead you somewhere else.
__________________
2001 911 Cabriolet |
||
![]() |
|
Senior Member
Join Date: Jun 2000
Location: N. Phoenix AZ USA
Posts: 28,943
|
Just got this 2 minutes ago...
~~~~~~~~~~~~~~~ Dear Value Member, We are writing to alert you that your balance is not paid, because your debit card issuer declined eBay's attempt to charge your card with your monthly invoice amount. To speed up this process, you are required to verify your personal information. e B a y C u s t o m e r S e r v i c e As a courtesy, eBay will automatically make a second attempt to charge your card. This attempt will take place in about 3 to 5 days. Regards, Faith Wise Customer Department. eBay Inc. ~~~~~~~~~~~~~~ If you click on the supposed link to "Ebay" it will take you here: http://www.wmsu.edu.ph/test2/images/mindex.php?email_from=joeaksa@XXXXXXXXXX.net%20CWZ 2KCvTkkHXdGD8Bcii5Yz9mFRzgIWcH6PhDe19G7E8AksnIanIk fzyOvknHZYeYyuZKhTHWtaMQlxRaYIyLTCXGDh7nELgD8cvkTl h9PsIMcN1J9M&http://signin.ebay.com/eBayISAPI.dll?page=login&e_mail=joeaksa@XXXXXXXXX.net&ssPageName=?87jnFrS That takes you here: http://www.businessinfinitude.com/smartsourcenews/Pass%20drug%20test,%20pass%20drug%20test%20urine,% 20Pass%20hair%20saliva%20drug%20test,_files/g0%20go/module.dll.php?customerid=&co_partnerId=2&siteid=0&ru=&pp=pass&pageType=708XeMWZllWXS3AlBX+VShqAhQRfhgTDrf=https://signin.ebay.com/ws/eBayISAPI.dll?SignIn&UsingSSL=1&pUserId=&co_partnerId=2&siteid=0&ru=&pp=&pageType=708&MfcISAPICommand=ConfirmRegistration&708XeMWZllWXS3AlBXVShqAhQRfhgTDrfQRfhgTDrfA I have replaced my email address in the link with XXX to keep things safe but you guys get the idea of how the "phisher" bounces around. He is linking off of a website in the PI, Mindanao, then a drug testing site. They wanted me to log in and that way get my password... AND my credit card number. It would help if they would learn basic spelling and punctuation first...
__________________
2013 Jag XF, 2002 Dodge Ram 2500 Cummins (the workhorse), 1992 Jaguar XJ S-3 V-12 VDP (one of only 100 examples made), 1969 Jaguar XJ (been in the family since new), 1985 911 Targa backdated to 1973 RS specs with a 3.6 shoehorned in the back, 1959 Austin Healey Sprite (former SCCA H-Prod), 1995 BMW R1100RSL, 1971 & '72 BMW R75/5 "Toaster," Ural Tourist w/sidecar, 1949 Aeronca Sedan / QB Last edited by Joeaksa; 06-20-2007 at 03:44 AM.. |
||
![]() |
|
Back in the saddle again
Join Date: Oct 2001
Location: Central TX west of Houston
Posts: 55,956
|
Quote:
__________________
Steve '08 Boxster RS60 Spyder #0099/1960 - never named a car before, but this is Charlotte. '88 targa ![]() |
||
![]() |
|
Registered
Join Date: Jan 2002
Location: I'm out there.
Posts: 13,084
|
I've never clicked on a link in an e-mail unless it's from Pelican BBS or a trusted friend. The guy never changed my password or attempted to charge anything on my Paypal account. I wonder if it was a computer glitch? Nah. Better checck my bank account again today.
__________________
My work here is nearly finished.
|
||
![]() |
|
Senior Member
Join Date: Jun 2000
Location: N. Phoenix AZ USA
Posts: 28,943
|
Quote:
![]()
__________________
2013 Jag XF, 2002 Dodge Ram 2500 Cummins (the workhorse), 1992 Jaguar XJ S-3 V-12 VDP (one of only 100 examples made), 1969 Jaguar XJ (been in the family since new), 1985 911 Targa backdated to 1973 RS specs with a 3.6 shoehorned in the back, 1959 Austin Healey Sprite (former SCCA H-Prod), 1995 BMW R1100RSL, 1971 & '72 BMW R75/5 "Toaster," Ural Tourist w/sidecar, 1949 Aeronca Sedan / QB |
||
![]() |
|
![]() |
Thread Tools | |
Rate This Thread | |
|