Slashdot Mirror


Fighting The Spammers Down Under

An Anonymous Coward writes: "The Sydney Morning Herald is running an interesting article about fighting spammers. It mentions that "Most of today's email spam, however, comes from a handful of culprits, described by Barry and others as &quotknown criminals&quot." Does anybody else wonder who these people are, and what are the odds of having them shut down for good?"

25 of 274 comments (clear)

  1. Final Solution by Renraku · · Score: 3, Funny

    A good solution for spammers is to track them down, post their addresses for everyone to see, and hold spam bashing parties, in which many, many people make a roadtrip to 'encourage' the spammer not to spam anymore. Such encouragements could be things like, VX, a sock with a cueball in it, small rabid animals, and herpes.

    --
    Job? I don't have time to get a job! Who will sit around and bitch about being broke and unemployed then?
  2. "These People" by Bender_ · · Score: 5, Interesting

    www.spamhaus.org has a list of spammers and the ISPs supporting them. They also have some quite interesting articles on this topic.

  3. Block Lists by hkhanna · · Score: 3, Interesting

    In my humble opinion, the problem with spam block lists as they are today is that

    1) they are not consolidated which means your network may end up being wrongfully isolated from one or two networks and you'll never know why your legitimate e-mail isn't reaching its destination and

    2) if you get added to a list, some people aren't responsible enough to keep them updated. So if for example you had open-relaying on by accident (a common problem alleviated in the recent versions of sendmail) you may end up being "blacklisted" and if you try to contact the maintainers of those lists, you get no response and your domain is forever banished from the internet.

    I heard the FCC (or one of those acronyms...maybe the FDA) is starting to create a national "blacklist" maintained by the government. I don't know if that's true, but that might actually not be a bad idea.

    Just my US$0.02.. Hargun

    --

    Think nothing is impossible? Try slamming a revolving door.
  4. it has to be profitable... by uberkuba · · Score: 4, Insightful

    Everyone always goes on about SPAM and how bad it is and how we don't like to get it....... The real problem is that it must be profitable for some individuals to do it otherwise it wouldn't happen (save the handful of ppl who just like to do it for fun, similar to graffiti). I have a some contact with the advertising and marketing industries here in Aus and I can tell you that from the pure marketing point of view it does look attractive. The marketing ppl rarely consider the annoyance factor, they just want nice numbers... ie "so you can send this out to 1000s of people, Great! How much per person.... what's that, its a LOT cheaper then mail, WOW put me down for 50000"... and so the corporate world pays for what we hate. Sure there might be exceptions, but I bet that this is the norm, esp in cases when the marketing department has 0 exposure to technology and so doesn't suffer like the rest of us.

    1. Re:it has to be profitable... by darkonc · · Score: 5, Interesting
      Every once in a while I get spam from someone who gives an '800 number to fax orders to....

      I send them off a nice fax, on a 50% grey scale, full page background which orders them to stop spamming..

      Why 50% grey scale? Because it's near worst-case for fax compression (which expects mostly blocks of white then smaller blocks of black). Faxing a 1 page grey scale at 1200 baud can take 90 minutes (800 number, remember? It's on their quarter).

      I'll usually do a voice callback first to make sure I'm not responding to someone who's being smurfed by an enemy.

      --
      Sometimes boldness is in fashion. Sometimes only the brave will be bold.
    2. Re:it has to be profitable... by coyote-san · · Score: 3, Interesting

      This points to the only long-term solution to spam - take out the profit motive.

      But this is tied to the question of strong authentication of the sender (at least at the ISP level), and all of the privacy concerns that raises. E.g., a good way to kill spam is to require each message provide non-trivial e-postage. Perhaps USD0.25 per 20kb block. (After getting over 15MB in less than our from a misconfigured spambot with a huge payload, I am *not* willing to accept "one price for all" scheme!)

      If the recipient found the message worthwhile, they could send an ack to their ISP and release the money back to the sender. Or they could let a reaonable time elapse, say 2 weeks, and the money would be released back to the sender. This could probably even be automated for explicitly named friends and mailing lists.

      But if the recipient said it was spam, they keep the postage.

      At USD0.25 per message, there's no profit motive in me lying whether a message is spam. But at USD0.25 per message, it's a safe bet that few businesses will send out 10,000 messages (USD2500) to snare a single response.

      --
      For every complex problem there is an answer that is clear, simple, and wrong. -- H L Mencken
    3. Re:it has to be profitable... by hyrdra · · Score: 3, Funny

      Did it ever occur to you these clowns are using an e-mail fax service, which bills by page amount and not time? So you're actually costing the innocent fax service money, not the spammer.

      Now 50 pages of greyscale might be interesting ;-)

      --


      "I'll just chip in a bit for RedHat: I actually have that installed on my university machine." - Linus, '95
    4. Re:it has to be profitable... by darkonc · · Score: 3, Interesting
      something like that happened once, accidently..

      I originally came up with the idea when I got assigned a phone # that used to be some business' fax number. Well, even though it's illegal, fax spammers would try to send me faxes at, like, 4:00am, so I started replying with these 50% grey faxes from my mac.

      (un)fourtunately, my fax modem and fax software had this wierd bug with some fax machines where, after sending the page, the page acknowledgement would get lost and the program would abort --- to try again. I had the software set to retry 10 times...

      One day I sent off a grey-scale fax to a company before I ran off to work. It got hit by the bug, and repeatedly tried sending the fax... It succeeded on the 5th or so try, tying up their fax machine until the early evening to get that one page fax through.
      hehe.

      BTW. Part of the reason for using the 50% grey scale is that it minimizes paper waste while getting in maximum time. A single grey-scale page at 1200 baud takes the same amount of time as 90 pages of regular text. an 8 page fax will take almost 12 hours.

      --
      Sometimes boldness is in fashion. Sometimes only the brave will be bold.
  5. targetted email marketing by ciole · · Score: 3, Insightful

    Spam is "spam" until registrations, licenses, warranty agreements, etc, require a valid email address and/or an opt-in to that company's "news". Then it becomes legit. i get plenty of unsolicited email from companies legitly possessing my addy, even email with opt-out links. if every company i interact with sends me just one of these, that's still a lot of undesirable, often image- and HTML-laden emails to have show up.

    That's why i don't think spam will cease to be a problem for end-users, even if the signal-to-porn ratio improves.

  6. Sue a Spammer! by thecarson · · Score: 3, Funny

    What you can do:

    Go to war!
    Sue!
    And win!
    or...
    Join them!

  7. maybe i'm alone in this world by kraada · · Score: 3, Insightful

    but i'd rather hit delete a few times per day (i don't get more than 10 spam mails a day) and know the internet is still relatively free. yes, they're sleaze, but if you're going to start blocking them, it's not that hard for a few other domains to be slipped in there. the potential for censorship seems too great to me *shrug*
    so i'll continue deleting my 10 mails per day.
    Kraada

  8. Weak market forces control spam by Philbert+Desenex · · Score: 5, Insightful

    Sure, spam is probably profitable: it transfers most of the cost of advertising to the (probably unwilling) receipiant, and nobody ever went broke underestimating the Good Taste of the American public.

    The problem with spam is that the dirty details of spam disassociates it from market forces, unlike other, more conventional forms of advertising.

    In just about every other form of ad (radio or Tee Vee commercial, newspaper ad, billboard, etc) the advertiser pays for the ad up front, before you make a decision to buy the advertised product or not. So, if the ad is particularly repulsive, ("Ring around the collar!") the consumer can make a decision to not buy the product. The advertiser is out the cost of the ad. Of course, the cost of any advertised product is higher than an unadvertised product, so the consumers who chose to buy an advertised product ultimately pay for a portion of the advertising.

    Contrast this with a spammed ad: the consumer has paid for his or her network time to receive the ad, the disk space to store the ad and the CPU cycles it took to process the email ad before getting a chance to decide whether to buy the spamvertised product or not. No matter how repugnant, stupid, wasteful, or dumb the ad is, the consumer ends up paying for the spamertising. Only very weak market forces control spamvertising. That's the real problem with spam.

    Email spamming is theft, plain and simple. Email spammers must be punished.

  9. Yes, fight them down under! by Dr.+Awktagon · · Score: 5, Funny

    Finally, someone has come to recognized my preferred solution to fight spammers: kick them in the genitals.

    Or did you mean something else by "Fighting The Spammers Down Under"?

  10. Support the FTC by SomeoneYouDontKnow · · Score: 5, Interesting

    If the FTC is really serious about going after spam, then we need to give them our support. More than that, we need to make them do their job with this. If most spam is fraudulent, and if most spam is sent by a relatively small group of people, then it stands to reason that getting rid of these hard-core spammers will go a long way toward reducing the spam problem.

    Now don't get me wrong here. I'm not naive enough to believe that this is going to be easy. Spammers are slippery little worms, and stopping them for good won't be easy. However, there's nothing like a court order to give someone an attitude adjustment.

    So here's the deal. The FTC wants to receive spam at uce@ftc.gov, so send it. My guess is that they like getting all spam, but bear in mind that they don't have jurisdiction over spam per se, just spam selling fraudulent goods and services. This is something they can latch onto and run with because they are empowered to stop fraud. If you send, be sure to include full headers so messages can be tracked back to the source. That way, if a spammer hops from ISP to ISP, it may be possible to construct a pattern that can be used to find and nail him.

    As I said, I don't count on this to work, but if the FTC really is serious, then let's give them the evidence they need to bust some balls.

    --
    That light you see at the end of the tunnel might be from an oncoming train.
  11. 99/1 rule on spammers by chongo · · Score: 5, Informative
    Over the past 2 years we have noticed that more than 99% of the repeat spam comes from less than 1% of the sites.

    In addition to the usual anti-spam methods:

    one can block IP addresses that attempt to spam on a regular basis. Tools such

    can be configured to block frequent spammer IP addresses from your SMTP ports.

    The following is a list of IP addresses that we have observed spamming on a regular basis. Blocking these sites won't solve your spam problem. On the other hand blocking common spam locations as part of an overall anti-spam system will help.

    12.30.205.0/24 24.2.10.0/24 24.88.20.0/24 61.13.0.0/16 61.30.0.0/16 61.129.0.0/16 61.177.0.0/16 63.100.231.32/28 63.184.200.0/24 64.14.218.128/28 64.65.0.0/18 64.80.216.0/22 64.80.220.0/23 64.208.134.0/15 64.239.0.0/18 66.33.0.0/17 66.72.98.10/32 128.18.0.0/16 128.121.126.220/32 142.154.0.0/16 161.58.0.0/16 192.147.174.0/24 194.91.230.0/24 195.53.155.0/24 195.153.207.128/27 202.9.128.0/19 202.181.196.120/29 205.141.192.0/19 205.141.224.0/21 206.173.16.0/21 206.173.24.0/22 208.50.155.0/24 208.165.228.0/22 208.187.17.192/27 209.38.216.0/22 209.69.0.0/16 209.239.0.0/19 209.239.192.0/19 209.249.0.0/16 210.52.0.0/24 210.85.0.0/16 210.201.0.0/18 210.226.0.0/15 210.228.0.0/14 210.241.0.0/17 211.20.180.0/22 211.21.0.0/16 211.32.0.0/13 211.51.63.171/32 211.226.126.0/24 212.49.192.0/24 212.174.0.0/15 212.216.0.0/16 216.41.0.0/16 216.42.0.0/16 216.53.128.0/17 216.79.0.0/16 216.87.64.0/19 216.122.0.0/16 216.143.68.0/22 216.143.72.0/22 216.143.76.0/24 216.167.0.0/17 216.174.192.0/18 216.183.206.64/28

    Sorry if your IP address is in the above list. If you are not a spammer then it could be that you happen to be using an ISP that tolerates spammers (or is unable/unwilling to block them), or you work for a company that spam, or you are near a poorly configured and poorly maintained site that is abused as an open relay.

    --
    chongo (was here) /\oo/\
    1. Re:99/1 rule on spammers by pne · · Score: 5, Funny

      I get a lot of spam from the 127.0.0.0/8 netblock from some weirdo telling me I'm a spammer myself. I keep complaining but it doesn't seem to help.

      --
      Esli epei etot cumprenan, shris soa Sfaha.
    2. Re:99/1 rule on spammers by Erasmus+Darwin · · Score: 3, Interesting
      "If you are not a spammer then it could be that you happen to be using an ISP that tolerates spammers (or is unable/unwilling to block them), or you work for a company that spam, or you are near a poorly configured and poorly maintained site that is abused as an open relay."

      ...or you've got an IP address that at one point in the past belonged to a spammer. The problem with a static list such as this is that there's no procedure to get an address removed from it, even if the original ISP eventually kicks the spammer off or even if the ISP goes out of business.

      Consider, for example, the position of PaeTec Communications. They've been unable to kick a spammer off (Monsterhut), as said spammer was able to obtain a temporary injunction. When the case is resolved, PaeTec will presumably win. Until then, however, the address range they lease to Monsterhut is getting added to numerous blacklists. I see no reason to why that address range shouldn't be removed after PaeTec succeeds in ridding themself of this spammer -- at some point in the future, that address will get reassigned to a new customer. But if the people blacklisting that address are using an uncommented, static, ad hoc list that the snarfed from Slashdot, there's a decent chance that that listing'll be around indefinitely.

      In summary, I strong encourage sysadmins to stick to well-maintained lists when it comes to spam blacklisting. They should carefully evaluate both the criteria that gets a site listed and the criteria that gets a site unlisted.

  12. Re:Other types of spam by MartinB · · Score: 3, Informative

    This is where I gloat a wee bit about living in the UK. We have a lovely service called the Telephone Preference Service. Anyone making unsolicited commercial calls must cleanse their lists against the TPS list, or be guilty of a criminal offence.

    Since registering a year ago, we've maybe had five calls, all of whom hang up really quickly once you start asking them for their details to report them to the TPS.

    --

    The only thing you can accurately describe as "Scotch" is a sticky tape made by 3M. And it's

  13. Beware all opt-out lists.. by jcr · · Score: 5, Interesting

    The Direct Marketing Association has this little checkbox on their page, which says "notify me when my listing expires".

    EXPIRES? WHAT THE FUCK?

    If I were naïve enough to belive that any of the sleazebags in the DMA would actually honor this list for *any* amount of time, I'd be pretty pissed off when the spam started flooding in when their database says my "leave me alone" notice has expired.

    I trust these people about as far as I can throw them.

    -jcr

    --
    The only title of honor that a tyrant can grant is "Enemy of the State."
  14. The other evil of Spam by Cybertect · · Score: 5, Informative

    A friend of mine here in the UK has recently suffered a nasty fate at the hands of some very active spammers... they faked a reply-to address in his domain (summerisle.demon.co.uk).

    The result was that, for a period of about two and a half weeks in January, David was receiving over 1000 bounced emails a day, effectively mailbombing his account. With a pay-per-minute 56K modem as his only internet access, it wasn't a pretty sight.

    The spammers that sends this stuff out, who identify themselves as 'Global Advertising Systems' and 'Universal Advertising Systems' claim to be based in Billings, MT. You may have seen some of their handiwork in your own mailbox with subjects like 'Increase energy levels', 'Become a Judgement Processing Professional', 'Child Support-Investigator'. They're very effective at covering their tracks - the only contact information is PO Box, telephone and fax numbers in the US, plus disposable eMail address and a snail-mail PO box in Aruba if you want to be 'removed'. All the mail originates in the Phillippines (with the obligatory faked additional headers added) then gets punted out through open relays around the world. Complaints to the ISPs in the Phillipines get no reply or bounced.

    Fortunately, I'm lucky enough to have DSL, so I was able to filter the stuff out and forward it on to another account - OK if you've got the bandwidth, but not a proper solution.

    The scary bit is that it seems like there's no other defence against this kind of activity. The ISP hosting the domain's POP box sympathised, but said they couldn't do anything to delete this incoming junk before it was delivered. UK & Billings, MT police and the FBI said no crime had been committed and taking private legal action across the Atlantic is a bit out of the reach of a one-man recording studio. My friend's frustrated reaction to another attack this week has been to dump the domain and move elsewhere with a new .com.

    If anyone else has any more information on these b*st*rds or ideas for wreaking revenge I'd be interested to hear.

  15. Spam spam spam etc by Merovign · · Score: 3, Interesting

    Well, I think asking the government for help here is a little counterproductive. Given the Government Nature, the solution will be shortsighted, intrusive, expensive, and will exclude rational thought. In short, they'll probably:

    Declare a national moratorium on e-mail while a congressional steering committee holds a conference to determine the nature and extent of the problem.

    Industry and Community Leaders who have never actually sent or recieved an e-mail will be called in to consult, as well as a couple of Hollywood Celebrities.

    A proposal will be made to Nationalize e-mail under the State Department.

    Objections from Civil Liberties Profiteers Inc. will lead to a "compromise" proposal to place control of e-mail services with that well-known private organization, The Post Office.

    New "Spam Free" e-mail will cost $0.34 each, and take 3-5 days to deliver, but you can pay $3.00 and have a guarantee of delivery... in 3-5 days.

    A new congressional committee will congratulate the Post Office and themselves for eliminating SPAM!!! And hold hearings to examine the new problem of "unsolicited e-mail."

    Okay, that's a _slight_ exaggeration.

    But seriously, the obvious ways to help are:

    1. Very Public Boycotts of companies that use Spam tactics.

    2. Encourage use of Digitally Signed E-mail.

    3. Encourage efforts by ISPs to block e-mail from "repeat offender" sites.

    4. Encourage the "securing" of open relays.

    None of these methods involve letting politicians write laws which include new taxes, new power, or new public swimming pools named after them.

    And by the way, given the nature of Enya's music and Eminem's "anti-music," I imagine that if they were to actually meet, the resulting music-anti-music reaction could deafen an entire medium-sized city.

    1. Re:Spam spam spam etc by Peyna · · Score: 4, Insightful
      1. Very Public Boycotts of companies that use Spam tactics.

      I have yet to receive SPAM from a company I could even Boycott. Since I don't regular buy goods or services from Jerry's Triangle Scheme, or Joe-Bob's Porn site, a boycott isn't going to do much. Maybe if Subway started spamming me I'd stop going there, but I don't get any SPAM from any companies I've ever even heard of before.

      Actually, I think all the SPAM I get can be put into a few categories:

      There's your get-rich-quick SPAM, covering a myriad of pryamid schemes and others. Then there's your 'insider information' SPAM telling you what stock to buy. 'Porno SPAM' speaks for itself. 'Weight loss and Sexual medicine' group has to be one of my favorites. You can lump the rest into 'actual seems like they're trying to sell me something' group or the 'wtf is this?' group.

      --
      What?
  16. Effective fighting against spam... by quigonn · · Score: 5, Informative

    No matter who they are, fight them with razor! razor is a distributed, collaborative spam detection and filtering network, and it rocks. I hardly get any spam anymore, and if I get one, I can report it to the network, and other razor users won't see that email anymore.

    --
    A monkey is doing the real work for me.
  17. Wait till you get the latest mobile phones by mattr · · Score: 4, Insightful
    Don't know how big phone spam is in the West, but in Japan it is so bad, the government is trying to make a law against it.

    You see, mobile phones ring or vibrate when they get spammed. It's worse than ordinary spam because email addresses are usually the same as your phone number, giving an easy target to spam programs.

    My friend has two phones registered with slightly different names, and they ring within 10 seconds of each other, about once an hour or so. His FOMA (3G, streaming video) phone is real special. It does a pirouette on his desk because it is vibrating so strongly.

    Imagine it. Everyone who has these phones (millions) gets this ringing all the time, even in the middle of the night. DoCoMo recently offered custom mail addresses to combat it but still..

  18. Re:I have an idea.... by nstrom · · Score: 4, Insightful

    It's already being done. If you're interested, run one yourself -- every spam message trapped by a honeypot is a spam message that doesn't get to its recipients. Brad Madison runs one on a university VAX machine and Michael Tokarev runs one in Russia. Both are fairly heavily trafficed by spammers.

    See Brad's page Fighting Relay Spam for more information on running your own SMTP relay honeypot.
    See posts like this one to see that these honeypots are working.