https://buy-zithromax.online buy kamagra usa https://antibiotics.top buy stromectol online https://deutschland-doxycycline.com https://ivermectin-apotheke.com kaufen cialis https://2-pharmaceuticals.com buy antibiotics online Online Pharmacy vermectin apotheke buy stromectol europe buy zithromax online https://kaufen-cialis.com levitra usa https://stromectol-apotheke.com buy doxycycline online https://buy-ivermectin.online https://stromectol-europe.com stromectol apotheke https://buyamoxil24x7.online deutschland doxycycline https://buy-stromectol.online https://doxycycline365.online https://levitra-usa.com buy ivermectin online buy amoxil online https://buykamagrausa.net

Die, Doron, Die!

I hate being bothered. I have enough bother in my life, that someone going out of their way to bother me — or, worse, bothering me in a completely negligent…

I hate being bothered. I have enough bother in my life, that someone going out of their way to bother me — or, worse, bothering me in a completely negligent and in-passing fashion — is seriously irksome.

I have a wiki, and I have some wiki pages from my late, lamented spy RPG. I do not want to take them down, and refuse to do so in other than my own good time.

Wikis are easily editable, so occasionally some spammer will get a wiki page and throw crap up there. No problem. They are trivially easy to revert to previous form and to write protect. I should write-protect the whole site, but that’s another story …

So usually it’s a one-off kind of thing.

Not with Doron.

Doron put bad stuff on my wiki.

I took it off.

Doron kept trying.

Doron kept doing it as what was clearly some sort of bot which had been set up. Nothing personal to him/her. Very personal to me.

Even after the page was blocked from edit, Doron kept trying.

And the really irksome parts were (a) it was obviously automated, so Doron had no personal stake in the effort, and (b) even though the page was edit-protected, the wiki software would still register the (unsuccessful) attempt to write to the page. Which means that if I want to keep track of any edits to my wiki (yes) I need ot keep seeing mostly Doron’s failed attempts. Two or three or four notifications a day.

Rrg.

So I finally went to the trouble of investigating the IP address used, combing through the access logs.

Aha. And it’s consistent.

Blocked.

Aaaaand … within a few hours, same (futile) attempt, but from another address. And neither address resolves to the ISP, so there’s a good chance it’s being spoofed, too.

Irksome. Highly irksome.

Google for Blogs, Part II

Lots of folks are saying this is the End for Technorati, since the idea of having a search engine of blogs that’s not Google when Google is now doing it…

Lots of folks are saying this is the End for Technorati, since the idea of having a search engine of blogs that’s not Google when Google is now doing it is kind of silly, plus Technorati’s performance has been truly sucky for some time.

Maybe so. Technorati does have the ostensible advantage of instant access (when it’s up and responding), but, well, Google is Google.

I do expect, at some point when I have a few spare minutes, to delete the Technorati links here and modify the Google ones to use the new Google blog stuff.

I did find something … interesting, as I played with the Google Blog search. I put in my blog URL to see what came up as links to it.

Interestingly enough, there are a number of obviously commercial/spam Blogger sites that have quotes from posts of mine and links back to them, e.g., this one.

Hmmm.

Obviously they’re trying to get lots of links on bottled water for some nefarious purpose. But what does quoting my blog and linking to an entry of mine give them (aside from a touch of class)? Does the link keep it from looking like a link farm to spam hunters? Does the text make it look more legit?

It is a puzzlement. And there are several of them. Should I be worried? And, if so, what should I do about it?

Spam, spam, spam, spam …

While we’re on the subject of graphs, the one here shows MT Blacklist’s stats on spam at the various blogs I host here. The big drop in the angle of…

While we’re on the subject of graphs, the one here shows MT Blacklist’s stats on spam at the various blogs I host here.

The big drop in the angle of increase in April is when I went to TypeKey authentication on comments. All of a sudden, a lot of stuff that would have gotten through to MTBL was never entering in the first place. I have had, since then, a single spam comment get through.

Of course, Trackback spam remains a problem (and the bulk of both the “Moderated” and “Blocked” items that have continued grow the graph), since TypeKey doesn’t address it. I end up cleaning Trackback stuff two or three times a week from here, which is annoying, but MTBL clearly is still doing most of the work. MT 3.2 is supposed to increase control over Trackback, which should seriously ease the problem here.

And why do I keep Trackback? Frankly, so that I can see things like what’s above — where Les or Scott or someone else has found a post here of value and interest and linked to it. That was the promise of Trackback, and, with a bit of effort, it remains, I think, viable.

And if the problem gets worse? There’s still the whole SpamLookup toolkit I haven’t deployed yet — but will, depending on what happens with 3.2.

Sympathy for the Devil

Okay, murder is bad. Beating someone to death is grotesque and icky and not to be condoned. That said, I’ve yet to hear anyone react to this story without at…

Okay, murder is bad. Beating someone to death is grotesque and icky and not to be condoned.

That said, I’ve yet to hear anyone react to this story without at least a small, morbid chuckle. Including myself.

Spammer Beaten To Death

The director of an English language center and one of the country?s most notorious spammers was found beaten to death in his apartment in central Moscow, police said Monday.

[…] Andrei Kashutin, the managing director of IT Dvizhenia, an industry association of nearly 7,000 IT students and young professionals, said Kushnir and his company were the most well-known spammers in Russia, sending millions of unsolicited e-mail messages offering English classes at the American Language Center. “Anybody who regularly uses e-mail has come across their spam,” Kashutin said.

It is probably unlikely that his killing was actually associated with his spamming activities — unless one wants to posit the efficacy of prayer, of course.

On the other hand, there’s all that old-fashioned spam

While I’ve joked about how amusing it is to get messages from “officialsoundingusername@hill-kleerup.org” warning me that my account has expired, been suspended, has a new password, etc., it’s also gotten…

While I’ve joked about how amusing it is to get messages from “officialsoundingusername@hill-kleerup.org” warning me that my account has expired, been suspended, has a new password, etc., it’s also gotten really annoying, as I get 100-200 of them daily. Which takes time, of course, during the download (and as I open each folder in Thunderbird), but which also makes checking my e-mail via mail2web, etc., a lot less feasible (the per-screen signal-to-noise ratio drops close to zero).

Rrg. I have to see if there’s something I can set on the cpanel level to strip that crap out.

UPDATE: Well, yes, I can in fact filter out all the “admin@” and “info@” and “webmaster@” addresses for this domain. So there.

Comment spam update

And since we’re talking about freedom of expression, let’s chat about spam. Actually, comment/trackback spam has been nearly flat on this site since I implemented Typekey as well as MT-Blacklist….

And since we’re talking about freedom of expression, let’s chat about spam.

Actually, comment/trackback spam has been nearly flat on this site since I implemented Typekey as well as MT-Blacklist. Which means, despite the added inconvenience, comment registration has done its job (and MT-BL has been doing its thing as well for the trackback side of the house) — all without, evidently, breaking the hosting servers.

Actually, the first thing that actually got through in a while happened today — some trackback spam from a gambling site masquerading under the URL “united in christ church.org” (without the spaces) — which is probably going to incur some additional Wrath beyond that ordinarily expressed by mere mortals toward spammers. Not that I expect it to daunt the spammers.

Which brought me over to Jay Allen’s site for the first time in a few weeks, where he talks about … MovableType 3.2. Yowzers! Among the features he highlights:

  • Trackback moderation/editing. This may be too late, since it seems the majority of sites that had Trackback running have turned it off (this blog being an exception), but it may also make it safer for folks to come back into the water and make use of this powerful interlinking tool.
  • A feedback rating system, which will work on a variety of rules and previous feedback info to let you do … stuff. Anti-spam stuff is mentioned, but presumably other sorts of results can come for good scores on comments/trackbacks. This one will take some reviewing.
  • A junk folder. You can set things up (like the feedback rating system) to push stuff into Junk, where it will, by default, get deleted after 14 days (rather than having a ton of unmoderated comments/trackbacks sit out there forever).
  • A system overview control panel. Now you can see most recent comments/trackbacks/posts across all blogs in your installation. Very handy in some cases.

And more. This is being touted as a feature-driven release, vs. a code-cleanup release like the original 3.x and even 3.1 were. Nifty.

Current thoughts are that 3.2 should be out by the end of the month.

Go phish

Phishing is the attempt to get you to tell folks your userids and passwords and similar identity-thievable items, usually by tricking you. The classic is the false bank (or credit…

Phishing is the attempt to get you to tell folks your userids and passwords and similar identity-thievable items, usually by tricking you.

The classic is the false bank (or credit card, or PayPal) security notice — “Your account has possibly been violated. Visit our site [click here] and confirm your account identity.” And, when you click on the link, that looks like a real bank/credit card site, you get redirected to something that looks very valid but which, in fact, is not, at which point you enter your account info … and someone else has it.

Heh.

I’m pretty immune to most of these, to the point of not even opening most. But, hey, who could refuse an e-mail “eBay Outbid Notice: NIP NIKE Golf Tiger Woods Driven Poster (Item #4523317189)”? Not I?

Of course, before I click on any links in that e-mail, I noticed that the key link pointed an IP address, not to anything eBayish. But it was darned clever (and likely to take in still more people) …

War is Peace, Ignorance is Strength, Prevention is Permission

On the heels of the oh-so-effective CAN-SPAM Act of a year or two ago (the one that (a) didn’t do a thing to stop real spam, but (b) gave vendors…

On the heels of the oh-so-effective CAN-SPAM Act of a year or two ago (the one that (a) didn’t do a thing to stop real spam, but (b) gave vendors rules they could use to legally spam people), we now have the Junk Fax Prevention Act of 2005 (S.714).

The purpose of this bill is to fix a bad FCC ruling. We agree with the purpose and the approach.

But in the process of “restoring,” they are adding a brand new “exemption” to the TCPA that was never there before to allow advertisers to legally send you advertising by fax WITHOUT your prior consent. They thought they had this before and now 14 years later discovered that they hadn’t had it so they want it to cover themselves even though none of the witnesses that testified at the committee hearing on this bill have ever been sued (e.g., the person from NAR with 1.2 million members says they send faxes to member, the members send faxes to their client, etc. and nobody has ever been sued).

The way they are doing this is to allow unlimited faxing of ads (until you get sick enough of it to complain and your complaint meets certain requirements) if you have an “Existing Business Relationship,” but the definition of an EBR is so loose that it will be trivial for junk faxers to establish an EBR with virtually any business or consumer. A spammer can establish an EBR with your company just by visiting your website, calling your phone, or sending an email (provided someone replies, even an auto-responder). That gives them the right to LEGALLY send advertising to your fax machine.

Not only that, the current bill creates a never-ending EBR, so they can junkfax you forever until you opt out. So someone who spoke with you 20 years ago can legally send you junk faxes as soon as this bill passes. And, like spam, once you’ve opted out, you’ve just proven that it’s a real fax number and you look at your faxes … now your number is more valuable to sell to others.

Want to be that there will be an exception for the US Government (or at least Congress) to that particular exemption?

(via J-Walk)

Comment spam update

Odd. So, 24 hours after implementing TypeKey on all the blogs here (and deleting some old ones), the number of spam hits has plateaued … … but not vanished. I’m…

Odd.

So, 24 hours after implementing TypeKey on all the blogs here (and deleting some old ones), the number of spam hits has plateaued …

… but not vanished. I’m still seeing, in the MT-BL log, a smattering of “MT-Blacklist comment denial on ‘Margie’s Kitchen’.” Are these (bogus e-mails of the “grey_goose/absinth” variety) actually registered in TypeKey? Or is there another way to access MT comments that gets past the TypeKey restriction?

Not a problem, and wildly less in number than before, but still … worrisome.

UPDATE: Aha! Jeez, what was I thinking when I set up Margie’s blog. Dang thing still used pop-up windows for comments, thus bypassing all the carefully crafted TypeKey-locked-down stuff. I think. Anyway, that’s where all the blacklist hits were hitting. I’ve fixed that, and, hopefully, that should all go away now …

Encoding e-mail addresses with Enkoder

I’ve long used the Enkoder program to obscure my e-mail addresses listed here on this blog. The program takes an e-mail address and what the text the mailto link should…

I’ve long used the Enkoder program to obscure my e-mail addresses listed here on this blog. The program takes an e-mail address and what the text the mailto link should use, and, via Java, create a human-readable and mouse-clickable mailto link that can’t be harvested by spambots.

Problem is, as I was tweaking the code here for comment registration, I discovered that the old Hiveware Enkoder form, which you find posted all over the Net, is no longer available. There’s a similar stand-alone package … for Mac users … but I wasn’t able to find something to do this again for some new text.

Oh, well, I thought, e-mail addy harvesting is so passe, I doubt it’s a problem any more. So I put a “contact me in case of comment problems” mailto link on the comment page in clear …

… and immediately started getting spam to it. Dammit.

Fortunately, I’ve found a new site to do the Enkoder work, and have corrected the comment page link. And decided to post it here, for your edification (as well as to help me remember it).

Comment Registration … the next chapter

So since I turned on Comment Registration here on DDTB and on the Blog of Heroes, comment spam there has been blocked. Unfortunately, it’s made visible the amount I’m still…

So since I turned on Comment Registration here on DDTB and on the Blog of Heroes, comment spam there has been blocked.

Unfortunately, it’s made visible the amount I’m still getting on Margie’s Kitchen, as well as on other blogs now defunct but still in place.

So I need to put comment registration on Margie’s Kitchen. And I need to archive off, in some fashion, the blogs not currently in use.

Chain of custody

There’s an old saying that you’re not just having sex with a particular person, but with all the people that person has had sex with. (We’re speaking from a public…

There’s an old saying that you’re not just having sex with a particular person, but with all the people that person has had sex with. (We’re speaking from a public health standpoint, only, though one could make similar arguments in other arenas).

The same, it turns out, is true in the world of software installation, where you’re not only clicking to accept the EULA (End User License Agreement) of the software you’re installing, but of all the software that they’ve okay to also install, and so on, and so on. Hilarity (of a sort) can ensue.

3D Desktop’s Flying Icons screensaver is initially presented to the user as shareware available for a 15-day free trial. Only by scrolling down in the little text window to the end of the EULA does the user find a hint that there’s another component to the deal. If you install the software, you’re also agreeing to the terms of something called Blazefind. The only way to find out what that means is to follow a link to Blazefind’s EULA.

When Edelman followed that link, the Blazefind license turned out to be the EULA for “Windows ControlAd” software from CDT. Of course, in order “to give surfers a rich Internet experience,” CDT was going to install programs from 180Solutions and others. And by agreeing to the CDT EULA, one in turn is also agreeing to the license terms and privacy policies for 180search Assistant, Internet Optimizer, TopRebates.com, and Target Saver. (The Blazefind license and the mix of programs it says it will download have changed slightly since Edelman conducted his research, perhaps due in part to 180Solutions’ takeover of CDT.) So, with just one click, one “contractually” agrees to not only the 3D Desktop license but six different EULAs and the installation of a whole bunch of spyware. Or adware, if you think there’s a difference.

It probably won’t come as a surprise to you that Edelman found that those four weren’t the only programs that were loaded on his computer in the process. But that’s covered too, since the CDT EULA grants the company permission “to install new applications, at any time, in its sole discretion with or without your knowledge and/or interaction.” And, just to add to our growing list of outrageous terms, Edelman pointed out this little gem in the arbitration section: “You also agree to pay CDT $300 per hour to attend arbitration including transport time.”

In other words, click OK to a shareware screensaver’s cryptic little license, and you have given away control of your computer and your privacy. It’s your fault you didn’t spend hours and hours typing in URL after URL to read thousands and thousands of obfuscating words to decipher who and what you’re really dealing with. And if you were to try to get some redress, well, you have to pay them more for their time then you could possibly win.

Ain’t that swell?

One can argue that such terms couldn’t possibly hold up in court — but that hasn’t kept the companies making them from fighting that. After all, they argue, you consented to these terms by pressing that one little “I agree” button. Be it on your head …

The Comment Registration Act of 2005

Dammit. Another burst of comment spam today. Nothing that showed up on the front page, but because the URL was innocuous (which is a bad sign of spammers getting smarter),…

Dammit. Another burst of comment spam today. Nothing that showed up on the front page, but because the URL was innocuous (which is a bad sign of spammers getting smarter), MT-Blacklist didn’t block them outright, but instead threw them into Moderation due to the comments going against an old post. Which is better than nothing by a long shot, but hardly ideal (since it means I still have to clean out the bad comments, and there’s still the risk of some of it coming through if it updates a recent post).

(MT-DSBL caught a goodly number of these, but by no means all of them.)

So I’m going to be looking more seriously at added protection, either the SpamLookup package announced the other day, or MT-Approval, or both.

Or, conversely (and most easily) I could turn on comment registration through TypeKey.

Okay, let’s do a poll on the latter.

Comment registration would require a commenter to, before commenting the first time, register (name and password, and an e-mail to confirm it by) with TypeKey (there are other mechanisms, but this one’s already built into MT, and it’s free and straightforward). If the person already has a TypeKey account, no registration would be needed.

Thereafter, when you went to comment on something here, you’d need to (through a simple on-screen mechanism) be signed into TypeKey. (it’s not clear whether this is a per-boot or per-browser-session or per-visit basis) before you could put in a comment.

I’ve been reluctant to turn it on here because some folks dislike doing sign-ins of this sort. Others, no matter how anonymous the service is meant to be, cavil at registering in any fashion. But I’m inclined to give it a try because:

  1. Comment registration is generally regarded as one of the most effective ways to block automated spamming techniques. While it’s possible that someone would create a TypeKey account and then spam through that, I’ve not heard of this happening on a widespread basis.
  2. It’s the easiest and simplest and least intrusive tool (for me) to put in. No plug-ins or hacks necessary.

  3. I think it has the least burden on the host servers — determining the state of TypeKey sign-in should be trivial, and should cut off invocation of the comment module very quickly (unlike, say, MT-Blacklist, where the comment is fully entered and processed before its contents are parsed for blacklisted URLs and strings, or for age of the underlying post). I think this is the case, and, if so, that’s a big argument in favor, since I’m sensitive to host burden.

  4. The burden on commenters is not significantly higher (once registered) than other accepted mechanisms (captchas, preview-then-approve), and, in fact, is lower for folks who comment on multiple posts.

So, hit the poll (and, secondarily, the comments). If I get major push-back on registration, I’ll reconsider, but, failing that, I’ll likely implement it this weekend, at least as a test (it’s easy to turn back off, too).

Spam ponderings

Comment and trackback spam continue to be a problem here, accumulating at a manageable but annoying pace. Now comes a new approach (hat tip Les) from Brad Choate, SpamLookup. And…

Comment and trackback spam continue to be a problem here, accumulating at a manageable but annoying pace.

Now comes a new approach (hat tip Les) from Brad Choate, SpamLookup. And it’s being highly touted by Jay Allen of MT-Blacklist fame.

Seriously looking at this one, though I want to get a feel for what sort of burden it puts on the host system (vs a mostly-just-MT-BL approach; I am running MT-DSBL, the precursor to this, as well) before I move forward.

The one thing Choate recommends that I’ve not gone forward with is turning on user registration for comments. I’d really rather not, if I can avoid it, and I’ve been able to thus far (though I’m tempted to for Margie’s blog, since her comment count vs. spam count is relatively low). We’ll see.

Spam and yeggs

Big uptick in comment spam over the last few days. A couple slipped through, many got bounced into moderation, most never made it past the starting gate. Guess Spring Break…

Big uptick in comment spam over the last few days. A couple slipped through, many got bounced into moderation, most never made it past the starting gate.

Guess Spring Break is a chance to earn some extra bucks spamming.

As opposed to, say, heavy caliber firearms or machetes

A nice set of tools for fighting spam and similar ick — mostly research for tracking down the miscreants involved. (via Spam Huntress)…

A nice set of tools for fighting spam and similar ick — mostly research for tracking down the miscreants involved.

(via Spam Huntress)

Biblical impotence

Okay, I must confess I’m really interested in opening up the “Biblical impotence pi11s” spam I just received at the office. I mean, conceptually, I’d love to see how they…

Okay, I must confess I’m really interested in opening up the “Biblical impotence pi11s” spam I just received at the office. I mean, conceptually, I’d love to see how they spin that.

(after a few moments …)

How disappointing. No references to chastising rods or anything else like that. Just interesting spelling for “Vicodin” and “Pill,” and a note that “this product is a 43 year definite product.”

Ah, well.

Spam, spam, spam and Thunderbird

Interesting article from Adot about how it’s possible to over-train Thunderbird’s spam filter, by repeating too much of the same spam (presumably so that new patterns are overwhelmed by the…

Interesting article from Adot about how it’s possible to over-train Thunderbird’s spam filter, by repeating too much of the same spam (presumably so that new patterns are overwhelmed by the number of old ones).

The cost of success

Now that Firefox has gained so much market share from IE — it’s being targeted more by spyware and pop-up ad writers. Great. The upshot of spyware writers’ newfound attraction…

Now that Firefox has gained so much market share from IE — it’s being targeted more by spyware and pop-up ad writers. Great.

The upshot of spyware writers’ newfound attraction to Mozilla, Arrott predicts, will be that in the next six months or so computer security guides will stop recommending that people switch from IE to halt intrusions.

It’s not just spyware that users of alternate browsers are complaining about. Much-reviled pop-up and pop-under ads are also making it past blocking software, a trend that Matina Fresenius, chairman and CEO of ad-blocking software developer Panicware, attributed to the fact that most older programs were made with IE in mind. “I’m not sure if it’s specifically that advertisers are finding ways to sneak by ad blockers in alternate browsers. I think it’s just that most ad blockers don’t support the alternate browsers,” said Fresenius, whose company launched a pop-up stopper last week that is designed to work with both IE and alternate browsers like Mozilla, Opera and Netscape.

Mac users are also complaining about a rise in intrusive advertising. In the past few months in particular, Mac users have reported a dramatically higher incidence of unwanted pop-up and pop-under ads, said Ben Wilson, senior editor of the Mac site MacFixIt. Typically, Wilson said, Mac users are subjected to fewer unwanted pop-up and pop-under ads than PC users. He attributes this tendency to security features in Mac OS X’s architecture and to its smaller market share.

Still, Wilson said, a handful of ad delivery firms openly boast about their ability to subvert traditional blocking systems, and Mac users are feeling the effects of some aggressive advertiser tactics.

Now what will be interesting is how quickly the FF development community responds to the problem. On the bright side, it can’t be any slower than Micro$oft …

Spam update

Large number of comment spams flying in over the last few days. All but one or two spattered harmlessly against the windshield (where, moderated, I had to actually clean them…

Large number of comment spams flying in over the last few days. All but one or two spattered harmlessly against the windshield (where, moderated, I had to actually clean them up, but it all stayed behind the scenes). Seeing some different strategies on URLs being tried, which is why fewer are being outright blocked and more are being tossed into “old post” moderation. On the other hand, once particular URLs are caught (check early, check often), I’m then astonished to see multi-hundred block counts rack up in a few days.

I do need to clear off some of the old, unused blogs I have here — they’re no more vulnerable than the currently maintained ones, but they’re one more place to maintain the defenses around.

On a related note, there’s e-mail spam, which seems almost quaintly archaic any more. But, jeez, it still comes in. I get about 20-30 a day, of which Thunderbird catches about 3/4. That still leaves plenty that I need to manually delete, which is annoying — but, at the same token, has become so routine that I almost don’t notice it any more. It’s akin to going to the mailbox and sorting out the stuff to dump in the trash can on the way back inside. Sad, that.