Gendcom.info?

Moderators: Elvis, DrVolin, Jeff

Gendcom.info?

Postby Rigorous Intuition » Wed Apr 05, 2006 8:04 pm

Signing onto my blog email account just now, I got the message that an attempt was being made to send information to <!--EZCODE LINK START--><a href="http://gendcom.info/">gendcom.info</a><!--EZCODE LINK END--> of the Gendarme Nationale.<br><br>Any ideas? What should I think is the hell up with that? Is this likely a generalized web-trawler like we see from the DoD or is this something else? <p></p><i>Edited by: <A HREF=http://p216.ezboard.com/brigorousintuition.showUserPublicProfile?gid=rigorousintuition>Rigorous Intuition</A> at: 4/5/06 6:09 pm<br></i>
Rigorous Intuition
 
Posts: 1744
Joined: Fri Apr 22, 2005 3:36 pm
Blog: View Blog (0)

Re: Gendcom.info?

Postby chiggerbit » Wed Apr 05, 2006 8:07 pm

First I get the "Page cannot be displayed" page, then it automatically moves to some sort of geneology search page. Very weird. <p></p><i></i>
chiggerbit
 
Posts: 8594
Joined: Tue May 10, 2005 12:23 pm
Blog: View Blog (0)

very strange

Postby Rigorous Intuition » Wed Apr 05, 2006 8:10 pm

The link doesn't work for me either, but I cut and pasted it from the address field on my browser where it works fine. (Did it twice to make sure I hadn't made a mistake.) <p></p><i></i>
Rigorous Intuition
 
Posts: 1744
Joined: Fri Apr 22, 2005 3:36 pm
Blog: View Blog (0)

Re: very strange

Postby Dreams End » Wed Apr 05, 2006 8:37 pm

Hello. I went to the site and you need to register to get in. I managed to...ahem....um...well, anyway, I got in.<br><br>Well, sort of. The user name and password allow me into some of the site but not other parts...and I don't read french too well, though it looks like a site for gendarmarie vets to keep up with each other and the doings of that institution. Here's a cut and paste of the entire front page. <br><br><!--EZCODE QUOTE START--><blockquote><strong><em>Quote:</em></strong><hr>À LA UNE !<br> Cliquez pour voir le détail Décès militaire de l'arme en service <br>Le samedi 1er avril 2006, le gendarme Cyril THEVENET est décédé dans les locaux de la brigade territoriale de proximité de CHANTONNAY (Vendée).<br> Cliquez pour voir le détail Rénovation des parcours professionnels des sous-officiers CSTAGN. <br>Dans le cadre de la rénovation des parcours professionnels des sous-officiers des CSTAGN, la sous-direction du personnel (Bureau PSOCA) a constitué un groupe de réflexion et d’échange dont voici le compte-rendu des débats du 14 mars dernier.<br> Cliquez pour voir le détail Mercredi 5 Avril <br>... lues sur le Net et dans la presse, parues au journal officiel, communications de la direction générale …<br> Cliquez pour voir le détail Quinzaine des appels à volontaires <br>10 appels à volontaires pour les semaines 12 et 13.<br> La suite... <br>ZOOM SUR...<br> Cliquez pour voir le détail Pistolet à impulsions électroniques (PIE) <br>Le service des opérations et de l'emploi de la direction générale de la gendarmerie nationale propose une présentation et un point de situation sur l'emploi du Pistolet à impulsions électriques (PIE).<br> Cliquez pour voir le détail GIR, bilans d'activités <br>Créés depuis quatre ans, les Groupes d'intervention régionaux (GIR) ont été réunis en séminaire les 1 et 2 mars 2006. Le bilan de leur action a été dressé à cette occasion. L'ouverture du séminaire s'est déroulée en présence de madame Martine MONTEIL, directeur central de la police judiciaire pour la police nationale et du général Serge CAILLET sous-directeur de la police judiciaire pour la gendarmerie nationale. Mr Michel GAUDIN, directeur général de la police nationale s’est adressé aux chefs de GIR, le jeudi 2 mars à 9h00, et la clôture du séminaire a été effectuée en fin d’après-midi en présence du général d'armée Guy PARAYRE, directeur général de la gendarmerie nationale.<br> La suite... <hr></blockquote><!--EZCODE QUOTE END--><br><br>I can't get most of the links to work, the authentication fails. If you want to try it yourselves, go to the page to get an account and make up numbers of 8 or 9 digits and put them in the No Nigend field and the charte professionelle field. Took me one try, but I don't remember the numbers I used. The first one, for no reason, I put a dash before the last number. So it let me in but only for part of the site.<br><br>I assume that this site itself is not relevant but that this domain name is also in use for emails. In fact, I know that is true as they list the email address as:<br><br>info@gendarmerie.defense.gouv.fr<br><br>Don't know if that helps. <p></p><i></i>
Dreams End
 

Re: very strange

Postby chiggerbit » Wed Apr 05, 2006 9:05 pm

Veryweird. This is what I get:<br><br>Sponsored Links<br><br>Genealogy Info<br>Research Our Genealogical Community Over 3.5 Billion Names. Free Access<br>Ancestry.com<br><br>Family History<br>Find and research your family history online - Free Trial!<br>www.OneGreatFamily.com<br><br>Genealogy Software Review<br>Reviews, analysis, recommendations Compare and buy genealogy software<br>www.consumersearch.com<br><br>Gedcom Tools<br>Browse Gedcom file, Convert to HTML Easy to Use, Download Now!<br>www.genopro.com<br><br>Free Genealogy Search<br>Looking for your Genealogy? Billions of Names. 15 Decades.<br>www.free-samples-online.com<br><br>Free Elegant Family Tree<br>GEDCOM to Html With Photos. Download Unregistered Version Now!<br>www.GedHTree.com<br><br>Genealogy Gateway<br>Free genealogy website! Extensive databases<br>www.gengateway.com/<br><br>Genealogical Search<br>Find ancestors and family. Search Public and private record databases<br>www.CourtsOnline.org<br><br>Need Gedcom<br>Find gedcom online Comprehensive list of manufacturers<br>www.SourceTool.com<br><br>genealogy<br>Free Vital Court Record Access! Search Millions of Public Documents<br>www.records.com<br><br>Web results Powered by Ask.com <br><br>Sorry, no Web results were found <br><br> <p></p><i></i>
chiggerbit
 
Posts: 8594
Joined: Tue May 10, 2005 12:23 pm
Blog: View Blog (0)

Re: very strange

Postby Dreams End » Wed Apr 05, 2006 9:44 pm

It's "gendcom" not "gedcom".<br><br>I think gedcom is some kind of geneology program. Or maybe Jeff's ancestors are trying to tell him something?<br> <p></p><i></i>
Dreams End
 

Re: Gendcom.info?

Postby Hugh Manatee Wins » Wed Apr 05, 2006 10:24 pm

This is more related to the thread called "Am I Tagged?" but is another odd redirection case from around two weeks ago.<br><br>In the thread called "How to Not be Diverted, Demoralized, or Diffused" I put a link to an article Gary Webb did about the US army's use of a first-shooter video game for recruiting.<br><br>I'd also put two jpg's from the article up and when I noticed they were missing I clicked on the link I'd posted to see of the source article was still there.<br><br>I saw the correct url for a flash in my address toolbar and then it changed to a webpage at Fighting Father Dave's website (he purports to be an Aussie working with drug addicts and 'friends with Mordechi Vanunnu'...hmm...) with him staring from the page and the caption 'Let me send you some information.'<br><br>Hmm. Not too subtle a message.<br><br>When I went back to the RI thread where I'd put the link, it had somehow been changed into plain text instead of a click-on hyperlink.<br><br>Hmm.<br><br>So I was redirected to an implied nasty message and my Gary Webb link about military recruiting apparently hacked and broken here at RI.<br><br>Gee, who would do that, I wonder? <p></p><i></i>
User avatar
Hugh Manatee Wins
 
Posts: 9869
Joined: Wed Nov 23, 2005 6:51 pm
Location: in context
Blog: View Blog (0)

Re: Gendcom.info?

Postby chiggerbit » Wed Apr 05, 2006 11:01 pm

What's weird for me is that I have never had one of those "That page cannot be displayed" pages automatically connect to a different page. <p></p><i></i>
chiggerbit
 
Posts: 8594
Joined: Tue May 10, 2005 12:23 pm
Blog: View Blog (0)

Re: Gendcom.info?

Postby Dreams End » Wed Apr 05, 2006 11:04 pm

Highly doubtful explanation, Hugh. If they broke the link, why go to all the trouble to hack your post in order to turn it to text only? Related to that, I notice that the "automatically convert url's to links" feature doesn't seem to work anymore.<br><br>Jeff,<br><br>What do you use to check "blogger email". Is it just a separate email account or one that is done via web and via blogger? <br><br>Trying to determine if the issue was your computer or your blogger account on THEIR server.<br> <p></p><i></i>
Dreams End
 

Re: Gendcom.info?

Postby Hugh Manatee Wins » Wed Apr 05, 2006 11:33 pm

<!--EZCODE QUOTE START--><blockquote><strong><em>Quote:</em></strong><hr>If they broke the link, why go to all the trouble to hack your post in order to turn it to text only? <hr></blockquote><!--EZCODE QUOTE END--><br><br>The Pentagon is pretty desperate about recruiting. <br><!--EZCODE BOLD START--><strong>Recruits prevented reduces the ranks just the same as soldiers killed.</strong><!--EZCODE BOLD END--><br><br>I'm sure that's why the surveillance of cookie-baking Quakers is going on as depicted by Michael Moore in Farenheit 911.<br><br>I'd expect the Pentagon's Total Spectrum Dominance doctrine to include domestic infowar 'stoploss' tactics like slowing up access to info about them and weighing in on discussion boards, too, which they've declared they will do.<br><br>Just an educated guess. <p></p><i></i>
User avatar
Hugh Manatee Wins
 
Posts: 9869
Joined: Wed Nov 23, 2005 6:51 pm
Location: in context
Blog: View Blog (0)

email

Postby Rigorous Intuition » Thu Apr 06, 2006 12:17 am

It's my hotmail account: rigorousintuition@hotmail.com.<br><br>Never had a warning like this pop up before when I've tried to access it. <p></p><i></i>
Rigorous Intuition
 
Posts: 1744
Joined: Fri Apr 22, 2005 3:36 pm
Blog: View Blog (0)

Re: it might be adware

Postby hmm » Thu Apr 06, 2006 6:43 am

if you get a popup when opening a webpage that normally does not have a popup then 9 times out of 10 you are infected with adware.<br>At the moment there is a flaw in internet explorer for which there is no update that is exploitable.<br><br>i recommend a firewall other than the standard microsoft firewall and the use of spybot search&destroy to immunise your pc against adware.<br><br>spybot search&destroy (freeware)<br><!--EZCODE AUTOLINK START--><a href="http://www.safer-networking.org/en/index.html">www.safer-networking.org/en/index.html</a><!--EZCODE AUTOLINK END--><br><br>high quality firewall (free for personal use)<br><br><!--EZCODE AUTOLINK START--><a href="http://www.sunbelt-software.com/Kerio-Download.cfm">www.sunbelt-software.com/...wnload.cfm</a><!--EZCODE AUTOLINK END--><br><br>the kerio people say its a 30 day trial but after 30 days it works in "limited mode".<br>this limited mode is a fully featured firewall. <p></p><i></i>
hmm
 
Posts: 521
Joined: Thu Jul 07, 2005 7:22 pm
Blog: View Blog (0)

Re: do NOT try this at home, seriously!

Postby hmm » Thu Apr 06, 2006 7:05 am

this is a really bad idea.<br>as soon as there is a authentication system,and you attempt to bypass it, even if its just inputting random data, it could be seen as a crime.<br><br>The 2001 patriot act even has provisions for this activity if i recall correctly (computer trespassers) although this was a sunset clause meant to end on dec. 2005 so im not sure as to its current status. (some provisions were recently renewed?)<br><br>doing this on a site that claims to be law enforcement...<br><br>in the "real world", if you saw a building with a sign saying police and it had padlocks on all the gates and the doors were locked, would you walk around jiggling each lock with a stick until you could find a way in?<br><br>i would even suggest you edit that last post..<br><br><!--EZCODE AUTOLINK START--><a href="http://www.ncsl.org/programs/lis/CIP/hacklaw.htm">www.ncsl.org/programs/lis...acklaw.htm</a><!--EZCODE AUTOLINK END--><br><br><!--EZCODE QUOTE START--><blockquote><strong><em>Quote:</em></strong><hr>Hacking is breaking into computer systems, frequently with intentions to alter or modify existing settings. Sometimes malicious in nature, these break-ins may cause damage or disruption to computer systems or networks. People with malevolent intent are often referred to as "crackers"--as in "cracking" into computers.<br><br>"Unauthorized access" entails <!--EZCODE BOLD START--><strong>approaching</strong><!--EZCODE BOLD END-->, trespassing within, <!--EZCODE BOLD START--><strong>communicating with</strong><!--EZCODE BOLD END-->, storing data in, retrieving data from, or otherwise intercepting and changing <!--EZCODE BOLD START--><strong>computer resources without consent.</strong><!--EZCODE BOLD END--> These laws relate to either or both, or any other actions that interfere with computers, systems, programs or networks. <hr></blockquote><!--EZCODE QUOTE END--> <p></p><i></i>
hmm
 
Posts: 521
Joined: Thu Jul 07, 2005 7:22 pm
Blog: View Blog (0)

Re: it might be adware

Postby Rigorous Intuition » Thu Apr 06, 2006 8:36 am

<!--EZCODE ITALIC START--><em>9 times out of 10 you are infected with adware.<br>At the moment there is a flaw in internet explorer for which there is no update that is exploitable.</em><!--EZCODE ITALIC END--><br><br>I don't use explorer, and I'm clean for adware and spyware. Have a good firewall, too. <p></p><i></i>
Rigorous Intuition
 
Posts: 1744
Joined: Fri Apr 22, 2005 3:36 pm
Blog: View Blog (0)

Re: its a strange site,claims to be french police extranet

Postby hmm » Thu Apr 06, 2006 9:11 am

a extranet is normally the part of the network for teleworkers or for offsite access to sensitive data.<br>Due to the security dangers inherent to having a extranet these are often the most secure and heavily monitored networks.<br><br>i had a look at the registration data for the site, and one associated with it, and at first glance it looks legitimate (or a well concealed fake), although i must admit my french is terrible.<br><br>the only other reasonable explanation i can think of is that if you looked at a email with html formating this could trigger a popup from that email.<br>If someone sent a email like that to millions of people this would cause millions of hits to the server(s) at gendcom.info and could crash the server or make it impossible for legitimate users to access the extranet.<br>This is called a DOS attack (Denial Of Service), loved by pranksters and likely useful as a tool of covert warfare. <p></p><i></i>
hmm
 
Posts: 521
Joined: Thu Jul 07, 2005 7:22 pm
Blog: View Blog (0)

Next

Return to Media and Information Technology

Who is online

Users browsing this forum: No registered users and 8 guests