I’m not sure how many times I have said “Be careful with messages (Instant Message, Email, Facebook, etc) don’t trust them even if they say they are from someone you know”. The following email is supposed to be from a family member** of mine. I talked to them about the email and they didnt realize that when they received the email from someone they knew and clicked on the link in the email that the email had automatically forwarded itself, even making it look like the family member was the one sending it. (**I did ask for permission from this relative prior to using his email) 
Malware writers have been using these social engineering tricks for years in an attempt to get people to drop there guard and click on email links or download attachments. In real life, we hear news stories of bad guys dressing up as city employee’s or law enforcement and then tricking home owners into letting them in, where the bad guys then proceed to steal from the home owner (Here is a release by the Chicago Police Department concerning crooks who use fake uniforms for access http://www.chicagopolice.org/MailingList/PressAttachment/YourCastle.pdf (http://www NULL.chicagopolice NULL.org/MailingList/PressAttachment/YourCastle NULL.pdf)). This email (and those like like it) can be considered the cyber equivalent of the fake cop or fake city worker.
In real life we understand that if you aren’t expecting the gas company or phone company and someone shows up at your door asking to check something in your home, that you question them, check there uniform, ID, see if they have a company vehicle, and even call the business that they are claiming to be from to make sure that the person at your door is actually from where they say they are. In cyber space, it seems because no one really understand how things work (TGM is working hard to change that), that most people just assume if it has someone’s name on it that they know that “it must be from them”. Well Nope and lets go over a few things in this email that clearly show it wasn’t from my relative –
- “To:” – Its not addressed to me, since To: is blank even though it is supposed to be an email from someone I know to me.
- “Was bored so planned to write you” – I know my relative and there are 2 points here.
- 1 – He knows English and knows how to write in complete sentences
- 2 – He would not say something like “Was bored so planned to write you”.
“i’m pretty sure your gonna smile after checking it…….:) ” – I know my family member, if they were going to send me a link or attachment would say something about it and try and explain what it is they are sending me, not just tell me hey check this out.
“It’s easy, secure and free / Try it now” – Again what am I trying. Would you go to a store and my a food product without a label to tell you what it is, simply on the idea that its a food product in a store, so it must be good? I dont think you would (would you?)
“Yours Truly” – This is supposed to be a family member, that a little formal dont you think?
Ok with that being said, again as always, in cyberspace act the same as you would if you were somewhere outside of your home in real life, pay attention to your surrounding, and for pete-sake if you run into someone on a street corner selling you Jack’s Magic Beans, dont buy them.
Be Sociable, Share!
- (http://twitter NULL.com/intent/tweet?text=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21%20-%20http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F%20 )
- (http://www NULL.facebook NULL.com/share NULL.php?u=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&t=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21)
- (https://mail NULL.google NULL.com/mail/?view=cm&fs=1&to&su=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21&body=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&ui=2&tf=1&shva=1)
- (http://www NULL.stumbleupon NULL.com/submit?url=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&title=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21)
- (http://delicious NULL.com/post?url=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&title=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21¬es=I%E2%80%99m%20not%20sure%20how%20many%20times%20I%20have%20said%20%E2%80%9CBe%20careful%20with%20messages%20%28Instant%20Message%2C%20Email%2C%20Facebook%2C%20etc%29%20don%E2%80%99t%20trust%20them%20even%20if%20they%20say%20they%20are%20from%20someone%20you%20know%E2%80%9D NULL.)
- (http://www NULL.google NULL.com/reader/link?url=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&title=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21&srcURL=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&srcTitle=Tech+Geek+and+More+Technology+Explained+for+All)
- (http://www NULL.linkedin NULL.com/shareArticle?mini=true&url=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&title=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21&source=Tech+Geek+and+More+Technology+Explained+for+All&summary=I%E2%80%99m%20not%20sure%20how%20many%20times%20I%20have%20said%20%E2%80%9CBe%20careful%20with%20messages%20%28Instant%20Message%2C%20Email%2C%20Facebook%2C%20etc%29%20don%E2%80%99t%20trust%20them%20even%20if%20they%20say%20they%20are%20from%20someone%20you%20know%E2%80%9D NULL.)
- (http://www NULL.blinklist NULL.com/index NULL.php?Action=Blink/addblink NULL.php&Url=http%3A%2F%2Fwww NULL.techgeekandmore NULL.com%2F2009%2F11%2F04%2Falert-hiya-email-just-another-attempt-to-get-you-to-click-on-a-link-that-you-really-should-not%2F&Title=Alert%3A%20Hiya%3A%29%20Email%20%26%238211%3B%20Just%20another%20attempt%20to%20get%20you%20to%20click%20on%20a%20link%20that%20you%20REALLY%20SHOULD%20NOT%21)

. 16 Yrs. of professional experience in Technology. Experience with technology implementation and systems management at numerous 5 Star Hotels, and Stadiums across North America. Head of Tech Geek and More since 2009
Pingback/Trackback
Software: What every Windows pc user should have installed to secure their pc – Part 1 Anti-Virus « TechGeekandMore Blog (http://techgeekandmore NULL.com/2009/11/05/software-what-every-windows-pc-user-should-have-installed-to-secure-their-pc-part-1-anti-virus/)
Luis Novelo
says:
Hey cuz, I’m glad to see you posted what happened to me. Hopefully it won’t happen to anyone else. After reading what you wrote I feel kind of silly for opening the email. I should have seen the signs that it was a bogus email. In any case, thanks for helping me out with that. Is there any way you can post the links that you gave me so that anyone who might fall for this trap can get rid of this “spyware” or whatever it is?
Thanks,
Luis N.
Anna
says:
If my hotmail account has sent out these messages, how do I stop it?
Or is it just a one-time thing?
Alex Novelo
says:
The only thing you can do if you are using the web to get to your hotmail (or yahoo or Google or any other email you get via a website), is change your password and use a much stronger password…..a good password should look like this P@55w0rd1 (In this example the a = @, s = 5, o = 0 letter = number). And after that continue to monitor to see if your account still shows like you are sending things outside of your control. It probably will stop, however if it doesnt then Microsoft (since they run hotmail, or whomever runs the email service) would need to be notified.