Strange email

From: Jason Lewis (jlewisat_private)
Date: Tue May 15 2001 - 16:55:52 PDT

  • Next message: Thomas Roessler: "Re: DNS Floods to personal firewalls"

    I received this email today.  The headers show it being sent from a machine
    in Korea.  Everything in the headers is forged, but I just can't figure out
    what the motive is behind it.  Also, at the end of the email, there was a
    gif and I included the embedded html link.  Has anyone else seen this?    I
    have munged the IP's.
    
    
    
    Hi my name is Sarah Pricer, a CS graduate student at UC Berkeley.  I
    obtained your email address from www.arin.net when searching for the IP
    block(192.168.64.0 - 192.168.64.255 ) that you coordinate.
    
    I'm currently writing a thesis on the network topology and would very much
    appreciate your cooperation. I am trying to draw out a map of how the IPs
    are distributed geographically. I realize that the IP registration data
    often times have country/state/city information that are different from the
    actual physical location of where the IPs are used.
    
    Arin data currently shows that 192.168.64.0 - 192.168.64.255 is registered
    to:
    
    Country: US
    State: VA
    City: MCLEAN
    
    Can you please tell me if this is the actual physical location of the IPs?
    If not, can you please tell me the actual location?  Again, thank you for
    your cooperation.
    
    warm regards,
    Sarah P.
    
    <http://211.33.122.158/icons/1/cal_1506.gif>
    
    
    
    
    Jason Lewis
    http://www.packetnexus.com
    "All you can do is manage the risks. There is no security."
    



    This archive was generated by hypermail 2b30 : Wed May 16 2001 - 15:03:07 PDT