The Glade 4.0

"Turn the lights down, the party just got wilder."
It is currently Sun Nov 24, 2024 3:38 am

All times are UTC - 6 hours [ DST ]




Post new topic Reply to topic  [ 16 posts ] 
Author Message
 Post subject: Dear Email Spammers,
PostPosted: Mon Nov 18, 2013 8:10 pm 
Offline
User avatar

Joined: Thu Sep 03, 2009 3:08 am
Posts: 6465
Location: The Lab
Image


Top
 Profile  
Reply with quote  
 Post subject: Re: Dear Email Spammers,
PostPosted: Mon Nov 18, 2013 10:34 pm 
Offline
pbp Hack
User avatar

Joined: Wed Sep 02, 2009 8:45 pm
Posts: 7585
Ill take "Welcome to the Internet , you must be new here" for $100, Alex.

_________________
I prefer to think of them as "Fighting evil in another dimension"


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Tue Nov 19, 2013 3:08 am 
Offline
User avatar

Joined: Thu Sep 03, 2009 3:08 am
Posts: 6465
Location: The Lab
Rorinthas wrote:
Ill take "Welcome to the Internet , you must be new here" for $100, Alex.


*sigh :?

I've been dealing with the general asininery of email spam successfully for a long time.. longer than I've been on this board.

The particular situation I'm dealing with now is supremely frustrating...

Spammers are sending their emails with a spoofed source email address (MINE!), which results in me getting thousands upon thousands of MAILER-REPLY/Undeliverable/GO-TO-HELL-DO-NOT-PASS-GO reply messages....

It's an email address that I use for the majority of my online purchases (Amazon order receipts, etc...).

There really isn't anything I can do about it, other than to abandon the address and have it added to a blacklist.

Doing that, I risk losing the entire domain, which many of my family members have active mailboxes on.

This happened once before with the same address, but eventually stopped when one of the big euro spam houses was shut down. I suspect one of their old lists is actively being used again.


Top
 Profile  
Reply with quote  
 Post subject: Re: Dear Email Spammers,
PostPosted: Tue Nov 19, 2013 6:34 am 
Offline
pbp Hack
User avatar

Joined: Wed Sep 02, 2009 8:45 pm
Posts: 7585
Well that is kind of different. As long a you don't send a lot of undeliverable mail yourself you could put in a rule that would send those emails to a certain folder.

_________________
I prefer to think of them as "Fighting evil in another dimension"


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Tue Nov 19, 2013 9:56 am 
Offline

Joined: Wed Sep 02, 2009 10:49 pm
Posts: 3455
Location: St. Louis, MO
Ah, joejobbing.

_________________
Image


Top
 Profile  
Reply with quote  
 Post subject: Re:
PostPosted: Tue Nov 19, 2013 4:24 pm 
Offline
User avatar

Joined: Thu Sep 03, 2009 3:08 am
Posts: 6465
Location: The Lab
shuyung wrote:
Ah, joejobbing.


Vad betyder det här?


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Tue Nov 19, 2013 4:53 pm 
Offline

Joined: Wed Sep 02, 2009 10:49 pm
Posts: 3455
Location: St. Louis, MO
You've been dealing with the general assininery of email spam successfully for a long time, but you don't know what a joe job is?
1+1=3

_________________
Image


Top
 Profile  
Reply with quote  
 Post subject: Re: Dear Email Spammers,
PostPosted: Tue Nov 19, 2013 7:05 pm 
Offline
User avatar

Joined: Fri Feb 05, 2010 11:59 am
Posts: 3879
Location: 63368
I've been in systems administration in one form or another since the late 70's and never heard of a "joe job".

_________________
In time, this too shall pass.


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Tue Nov 19, 2013 7:51 pm 
Offline

Joined: Wed Sep 02, 2009 10:49 pm
Posts: 3455
Location: St. Louis, MO
The eponymous joe job was in 1997, so I guess we have a demarcation point for when you ceased learning new things.

_________________
Image


Top
 Profile  
Reply with quote  
 Post subject: Re: Dear Email Spammers,
PostPosted: Tue Nov 19, 2013 8:27 pm 
Offline
I got nothin.
User avatar

Joined: Thu Sep 03, 2009 7:15 pm
Posts: 11160
Location: Arafys, AKA El Müso Guapo!
Taskiss wrote:
I've been in systems administration in one form or another since the late 70's and never heard of a "joe job".


I've been in IT since the late 90's, and have never heard the term either.

_________________
Image
Holy shitsnacks!


Top
 Profile  
Reply with quote  
 Post subject: Re: Dear Email Spammers,
PostPosted: Tue Nov 19, 2013 9:30 pm 
Offline
Web Ninja
User avatar

Joined: Wed Sep 02, 2009 8:32 pm
Posts: 8248
Location: The Tunt Mansion
http://appletreemediaworks.com/blog/201 ... a-joe-job/


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Tue Nov 19, 2013 9:40 pm 
Offline
User avatar

Joined: Thu Sep 03, 2009 3:08 am
Posts: 6465
Location: The Lab
i can honestly say I've never heard that term.

Here is some more info on the terms origin.
http://en.wikipedia.org/wiki/Joe_job

Edit:
In my case, I'm not being personally attacked. They are just using random From addresses to dilute the heuristics of the spam filters, and my address is on the list.

I suspect this happened when I purchased a Raspberry Pi from Alibaba. I don't usually use my 'primary' email addresses for questionable sites. I have throwaway/catchall mailboxes I usually use for this. Lesson learned...

The emails that are going out using my email address (with someone else's proper name) contain a variety of things.... primarily links to phishing sites, and the occasional infected download.

Sadly, there really isn't anything I can do about it, other than migrate all of my legitimate email off it it and have it blacklisted (or just ignore it and let it fill up).


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Wed Nov 20, 2013 4:08 pm 
Offline
Lean, Mean, Googling Machine
User avatar

Joined: Thu Sep 03, 2009 9:35 am
Posts: 2903
Location: Maze of twisty little passages, all alike
What you're dealing with is backscatter. Well-structured spam filters either reject the message outright at delivery time or else silently drop the message. Badly written spam filters use accept-and-bounce, which spews NDRs to innocent bystanders.

Obviously you can't fix other people's broken spam filters, but you can set an SPF record for your domain with a hardfail (FAIL) default for non-matching clients. That is, make the rule end with "-all". This will give other people's spam filters absolute certainty that the emails in question are fraudulent (unless they really do originate from your mail servers). Hopefully that will kick the message into a more severe filtering category that gets rejected or silently dropped instead of mindlessly backscattered.

_________________
Sail forth! steer for the deep waters only!
Reckless, O soul, exploring, I with thee, and thou with me;
For we are bound where mariner has not yet dared to go,
And we will risk the ship, ourselves and all.


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Wed Nov 20, 2013 4:47 pm 
Offline
User avatar

Joined: Thu Sep 03, 2009 3:08 am
Posts: 6465
Location: The Lab
I only examined a few of the headers, but they were all over the map. The Spammers are using a series of open relays to further obscure their origin.

The domain is currently hosted with a large hosting company, and some percentage (not sure how much) is originating from their own servers. I have zero control over the mail server configurations.

My current tack is to ignore it and hope it goes away, while I'm slowing migrating the site registrations to a different address.


Top
 Profile  
Reply with quote  
 Post subject:
PostPosted: Wed Nov 20, 2013 7:54 pm 
Offline
Lean, Mean, Googling Machine
User avatar

Joined: Thu Sep 03, 2009 9:35 am
Posts: 2903
Location: Maze of twisty little passages, all alike
Do you have control over the domain registration? Most DNS hosts will let you create an SPF record and/or a custom TXT record. SPF can use either. This doesn't have anything to do with the mail server configuration -- it's basically just the inverse of an MX record.

_________________
Sail forth! steer for the deep waters only!
Reckless, O soul, exploring, I with thee, and thou with me;
For we are bound where mariner has not yet dared to go,
And we will risk the ship, ourselves and all.


Top
 Profile  
Reply with quote  
 Post subject: Re:
PostPosted: Wed Nov 20, 2013 10:15 pm 
Offline
User avatar

Joined: Thu Sep 03, 2009 3:08 am
Posts: 6465
Location: The Lab
Stathol wrote:
Do you have control over the domain registration? Most DNS hosts will let you create an SPF record and/or a custom TXT record. SPF can use either. This doesn't have anything to do with the mail server configuration -- it's basically just the inverse of an MX record.


Thanks Stathol... unfortunately I don't. This is just a personal mailbox (although one I've been using for years).

I went through today and changed most my registered email addresses (the ones I care about anyway) to a different mailbox on a different domain (on a different hosting provider). I'll get the rest of them as I come across them.

/meh


Top
 Profile  
Reply with quote  
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 16 posts ] 

All times are UTC - 6 hours [ DST ]


Who is online

Users browsing this forum: Bing [Bot] and 154 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group