Faking an email

GEC: Discuss gaming, computers and electronics and venture into the bizarre world of STGODs.

Moderator: Thanas

Post Reply
IRG CommandoJoe
Sith Devotee
Posts: 3481
Joined: 2002-07-09 12:51pm

Faking an email

Post by IRG CommandoJoe »

Is it possible to "fake" an email? I got a crazy email from an unlikely domain and I was wondering if my friend was just dicking me around. It uses a domain I'm pretty sure he couldn't have access to, but is it possible to create an email with a "return" email address that is not in fact your own? For example, if my address was "abc@mail.com" I could make the return address "xyz@aol.com."
Who's the more foolish, the fool or the fool who follows him? -Obi-Wan Kenobi

"In the unlikely event that someone comes here, hates everything we stand for, and then donates a big chunk of money anyway, I will thank him for his stupidity." -Darth Wong, Lord of the Sith

Proud member of the Brotherhood of the Monkey.
User avatar
General Zod
Never Shuts Up
Posts: 29211
Joined: 2003-11-18 03:08pm
Location: The Clearance Rack
Contact:

Post by General Zod »

It is possible. Spammers spoof emails all the time. If you want specifics on how you'll have to look elsewhere.
"It's you Americans. There's something about nipples you hate. If this were Germany, we'd be romping around naked on the stage here."
IRG CommandoJoe
Sith Devotee
Posts: 3481
Joined: 2002-07-09 12:51pm

Post by IRG CommandoJoe »

So that means that they could use the exact domain name and not one that's close to it? Because the domain name I see is exactly the same as the legitimate one.
Who's the more foolish, the fool or the fool who follows him? -Obi-Wan Kenobi

"In the unlikely event that someone comes here, hates everything we stand for, and then donates a big chunk of money anyway, I will thank him for his stupidity." -Darth Wong, Lord of the Sith

Proud member of the Brotherhood of the Monkey.
IRG CommandoJoe
Sith Devotee
Posts: 3481
Joined: 2002-07-09 12:51pm

Post by IRG CommandoJoe »

Ok, I turned on the "show all headers" option (which I never knew existed until now) and found the X-Originating-IPs of my friend's IP and the IP in question and everything matched up except the last digit:

xxx.xxx.x.xx9
xxx.xxx.x.xx9

I'm pretty sure it was him just trying to dick me around.

That bastard. :)
Who's the more foolish, the fool or the fool who follows him? -Obi-Wan Kenobi

"In the unlikely event that someone comes here, hates everything we stand for, and then donates a big chunk of money anyway, I will thank him for his stupidity." -Darth Wong, Lord of the Sith

Proud member of the Brotherhood of the Monkey.
IRG CommandoJoe
Sith Devotee
Posts: 3481
Joined: 2002-07-09 12:51pm

Post by IRG CommandoJoe »

What if I replied to the fake email address? Would it get rerouted back to my friend's email address? I want to lead him on and make him think I fell for it.
Who's the more foolish, the fool or the fool who follows him? -Obi-Wan Kenobi

"In the unlikely event that someone comes here, hates everything we stand for, and then donates a big chunk of money anyway, I will thank him for his stupidity." -Darth Wong, Lord of the Sith

Proud member of the Brotherhood of the Monkey.
User avatar
GrandMasterTerwynn
Emperor's Hand
Posts: 6787
Joined: 2002-07-29 06:14pm
Location: Somewhere on Earth.

Post by GrandMasterTerwynn »

IRG CommandoJoe wrote:What if I replied to the fake email address? Would it get rerouted back to my friend's email address? I want to lead him on and make him think I fell for it.
No. If you replied to the fake e-mail address, your poor e-mail server will do its solemn best to get your mail to whatever address you specified (i.e. the fake address.) If there's someone who actually does have that address, they'll be wondering why you're spamming them.
IRG CommandoJoe
Sith Devotee
Posts: 3481
Joined: 2002-07-09 12:51pm

Post by IRG CommandoJoe »

Damn it! Too bad, I would have had fun with that.
Who's the more foolish, the fool or the fool who follows him? -Obi-Wan Kenobi

"In the unlikely event that someone comes here, hates everything we stand for, and then donates a big chunk of money anyway, I will thank him for his stupidity." -Darth Wong, Lord of the Sith

Proud member of the Brotherhood of the Monkey.
User avatar
Praxis
Sith Acolyte
Posts: 6012
Joined: 2002-12-22 04:02pm
Contact:

Post by Praxis »

Yeah, I've done it before when I was maybe 13 years old to try to prank my father. Didn't work, though I'm sure I could come up with something much better today if I was still immature enough to try those kinds of pranks.

You can change the email headers to appear to be coming from anyone you want, if you can find an email server that doesn't do the appropriate checks. IIRC Comcast's email servers used to work for that if your IP address originated from within their network.

However, they can't capture email coming back. So if you reply, the reply goes to the legit email address.
User avatar
Rogue 9
Scrapping TIEs since 1997
Posts: 18679
Joined: 2003-11-12 01:10pm
Location: Classified
Contact:

Post by Rogue 9 »

I've received e-mails supposedly from myself before that I know I didn't send. (Why would a spammer do that, by the way? I mean, I'm going to know if I e-mail myself an advertisement for Viagra. :roll: )
It's Rogue, not Rouge!

HAB | KotL | VRWC/ELC/CDA | TRotR | The Anti-Confederate | Sluggite | Gamer | Blogger | Staff Reporter | Student | Musician
User avatar
Edi
Dragonlord
Dragonlord
Posts: 12461
Joined: 2002-07-11 12:27am
Location: Helsinki, Finland

Post by Edi »

It's common for trojans and other such malware to swipe an Outlook Express address book and use it to send each name in the list email with the same name in the from field. Other variants would be using the first name or a random name from the list as sender to send to everyone on the list. So if one of your buddies fucks up, you start getting spam from "thm" and from "yourself".
Warwolf Urban Combat Specialist

Why is it so goddamned hard to get little assholes like you to admit it when you fuck up? Is it pride? What gives you the right to have any pride?
–Darth Wong to vivftp

GOP message? Why don't they just come out of the closet: FASCISTS R' US –Patrick Degan

The GOP has a problem with anyone coming out of the closet. –18-till-I-die
User avatar
Ariphaos
Jedi Council Member
Posts: 1739
Joined: 2005-10-21 02:48am
Location: Twin Cities, MN, USA
Contact:

Post by Ariphaos »

I know a fair amount of spam gets sent out under my business website's name. It's mildly annoying since occasionally a spamblocker actually thinks it's from me.

I did have a bit of fun with a christian e-mailing him from god@heaven.org. Naturally he replied to me ("I don't know anyone else who could do this, so...").
Post Reply