Enough is Enough

Dec 28, 2007 in Stuff That Annoys Me

StopAlright, enough is enough. I expect spam. I expect odd spam. I even expect lots of odd spam. But enough with the tramadol for dogs links.

Seriously. Tramadol for dogs. Hundreds of them each day. Day after day.

I don’t think I get a lot of dogs reading this. Maybe I do. After all, on the Internet no one knows you’re a dog and Google Reader is pretty easy to use. Even if I do have a large canine readership, I somehow doubt that a high percentage of them are canine junkies and/or have a credit card to order more smack. Even if they did, how much of that stuff could the average junkie dog go through?

A kinder, gentler bot

Mar 26, 2007 in Observations, Security

happy botYesterday mixed in with my normal run of spam I saw something that made me stop and laugh. A spambot actually apologized for what it was about to do. It started out “Sorry for this” and then proceeded to post a dozen links. And then it did it 5 more times.

I guess it’s the thought that counts.

How not to spam

Feb 26, 2007 in Observations, Security, Stuff That Annoys Me

?I saw this in with my normal run of comment spam today…

Xenical online….

Xenical lawsuits. Xenical. How long for results xenical. Cheap prices on xenical. Cheap xenical. Cheap xenical diet pills. Xenical tablets….

OK, I’m by no means a marketing guru, but it would seem to me that when you are trying to con persuade people to buy your product, you probably should not open the sales pitch by mentioning lawsuits.
Yeah, I know it’s all about blackhat SEO, but asuming they were able to spam their way up Google, I still think that opening the con sales pitch with the word lawsuit is a dumb idea. Yet another reason I wouldn’t make a good spammer. Well, that and the fact that I couldn’t possibly match the 7346 words of my most recent spam comment. Seriously. 7346 words, 46140 characters. That’s impressive.

The Creativity of Spammers

Feb 02, 2007 in Digg, Security, Stuff That Annoys Me

BotAh, comment spam. The everlasting quest for a clickthru or, even better, the sacred backlink. I look through the garbage that Askimet catches and shake my head. They aren’t even trying anymore. It’s just brute force. Throw a dozen comments out there with twenty or thirty links in it and see what sticks. Where’s the finesse? Where’s the ingenuity? Well last night I found it. Or rather it found me.

I posted this story to Digg. In a short time, I noticed the story had one comment posted to it. I opened the comment section and found a bit of creative comment spam. The comments are gone now, but I did get a screenshot. Screenshot

Someone cleverly got there bot to grab the username from the story posting and generate a link to the Oh So Cute website. I looked at the profile for this user ikffhf (which is now deleted) and saw that the bot was posting similar comments to other stories. Always grabbing the username of the original poster and generating a link to the fake newspaper. I have seen the same trick on a couple of blogs this morning as well.

So on this one, I am going to have to give the spammer a +1 for creativity. But I’m still going to give them a -1,000,000 for spam.

Do spam bots do recon?

Jan 06, 2007 in Security, Stuff That Annoys Me

botI installed Coppermine on my site a few weeks ago. I just wanted to try it out to get a feel and see if it was something I really wanted to use. Since I didn’t really have much of a purpose in mind, I left most of the settings at their default, uploaded a few pics I had floating around, and pretty much ignored it for a couple of weeks figuring I would get around to finding a use for it some day.

One of the features of Coppermine is the ability for users to rate the pictures and add comments. Sounds like good idea in theory. Theory and real world application, as usual, don’t agree. The default setting is to allow anyone and anything to posts comments and this is where things got interesting. Somehow a bot herder found my little site that gets next to zero traffic. Unfortunately I hadn’t ever gotten around to installing any kind of analytics code in the gallery so I wasn’t able to get much detail on what happened next.

(more…)