Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » What's Behind the Penny Stock Spam Surge » Uhm..
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
Users are the problem »
« Vontage?  
AuthorAll Replies


nixen
Rockin' the Boxen
Premium
join:2002-10-04
Alexandria, VA
·Cox HSI
·Speakeasy

reply to Kibbles
Re: Uhm..

said by Kibbles See Profile :

It maybe nothing new...but as to why we still have so many compromized PC's in the US is odd...and yes I have been receiving a lot more spam lately..with a spam filter off 14-20 a day...with a spam filter on...2-3 a day.
Meh... With spam filters off, I'd be at several thousand a day; with them on, still getting a few dozen of the "Hi, It's Stan" (and the like) emails.

They post a message that's about 80% "real" text, and then the stock pump is a single JPEG or GIF image in the message. So, most of the Bayesian filters just give it a pass. If it weren't for all of the MS mail users, I'd simply reject HTML email altogether.

-tom
--
"Experience should teach us to be most on our guard to protect liberty when the government's purposes are beneficial. The greatest dangers to liberty lurk in insidious encroachment by men of zeal, well meaning but without understanding." -Louis D Brandeis


sporkme
drop the crantini and move it, sister
Premium,MVM
join:2000-07-01
Morristown, NJ
·Optimum Online

said by nixen See Profile :

They post a message that's about 80% "real" text, and then the stock pump is a single JPEG or GIF image in the message. So, most of the Bayesian filters just give it a pass. If it weren't for all of the MS mail users, I'd simply reject HTML email altogether.
SpamAssassin is getting pretty good at catching the quirks that seperate these messages from real mail.

One thing that really helps is automating "sa-update" to grab the latest rules from the SpamAss folks. I didn't even no about that until a few weeks ago - previously they released new rules with each version of spamass, but now the rules are continuously updated.

I would imagine if you greylist and use spamass, you don't see too much of this crap.

I wonder how long it will be until they have botnet clients that are compliant enough to make their way through greylisting (ie: include a queue)? I mean if they can generate a unique image for each email, queueing sounds pretty darn simple in comparison.


nixen
Rockin' the Boxen
Premium
join:2002-10-04
Alexandria, VA
·Cox HSI
·Speakeasy

said by sporkme See Profile :

SpamAssassin is getting pretty good at catching the quirks that seperate these messages from real mail.

One thing that really helps is automating "sa-update" to grab the latest rules from the SpamAss folks. I didn't even no about that until a few weeks ago - previously they released new rules with each version of spamass, but now the rules are continuously updated.
Hmm... perhaps it would be helpful if I read the Release Notes to see these new tools? Just ran it in debug mode. Nifty tool. I got it croned now.

said by sporkme See Profile :

I would imagine if you greylist and use spamass, you don't see too much of this crap.
Yeah, I use a greylist daemon. However, the bot-nets are getting a bit more sophisticated. They aren't just attempting single delivery any more.

-tom
--
"Experience should teach us to be most on our guard to protect liberty when the government's purposes are beneficial. The greatest dangers to liberty lurk in insidious encroachment by men of zeal, well meaning but without understanding." -Louis D Brandeis
Forums » What's Behind the Penny Stock Spam SurgeUsers are the problem »
« Vontage?  


Tuesday, 24-Nov 09:20:37 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [93] New AT&T Ad Campaign Hits Back At Verizon
· [64] New Bill Takes Aim At Higher Verizon ETFs
· [30] Earthlink Suffers From Major E-mail Outage
· [30] AT&T Offers New Prepaid Wireless plans
· [27] Frontier Increases Modem Rental Fee
· [13] Vivendi In Way Of Comcast's NBC Desires
· [13] Charter Still Fighting With Creditors
· [7] Monday Morning Links
· [2] Senators Want ACTA Made Public
· [2] Time Warner Dallas Customers Get WiMax December 1
Most people now reading
· Windows 7 boot manager editing questions [Microsoft Help]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Getting ready to pull the trigger, still have cold feet. [VOIP Tech Chat]
· Firearms: Ammo question. [General Questions]
· CTV & Canwest ask CRTC to order blocking of U.S. programs [TekSavvy]
· Big Bank Alternative to Bank of America? [General Questions]
· hawaii in thanksgiving [General Questions]
· iNum and 911 [VOIP Tech Chat]
· DIR-655 1.32 firmware - DNS relay issue (fixed) [D-Link]
· openSUSE 11.2 problems and solutions? [All Things Unix]