Targeting Spam > Inside The Malicious World of Blog Comment Spam
[Offensive Computing - Community Malicious code research and analysis] Abstract - This paper describes the code, behavior and infrastructure of a blog comment spam attack. The particular blog spam attack explained here uses HTTP/javascript obfuscation and redirection to pass the victims browser through several websites, ultimately infecting the victims host using a handful of exploits.
Some related posts from Technorati and Google.
[TrendLabs | Malware Blog - by Trend Micro] Web Form Spam Alive and Kicking: Again, this is a reminder for Web admins to enforce some kind of input sanitization to, at the very least, disallow the use of scripts and HTML tags in Web forms, or to use one of the many secure form-to-email scripts available online. Some require users to decode a CAPTCHA code before being allowed to submit the filled-up form.
[Valentino's tiny webserver] Stopping blog spam or Why I started to block Internet Explorer 6: Since many of this bots are using infected Windows PCs from normal ISP subnets, blocking the well known blog spam IP address ranges did not help much. Blocking all IP addresses of the spam machines was also no solution as this addresses are used be legitimate visitors later on when the address gets re-assigned.
[WordPress Web 2.0 Spot-Er] Keep Your Blog in Tip Top Shape: I’ve noticed that whenever I surf off of my blog and then press the back-button, the entire thing reloads - would you have any suggestions as to why that happens (ie, it doesn’t get put into cache)?
[mxlab - all about anti virus and anti spam] UPS Tracking number trojan - another variant and Hallmark e-card: When reading the comments on this blog and also on other resources and web site, I am amazed how many people have double clicked the attachment and have indeed infected their computer.
[Computers slow down and may become infected with.] To prove youre a person not a spam script type the security: You can skip to the end and leave a response. Help propel Dmso dimethyl Zanaflex used for into the lead.
[Andrew A. Peterson and Ramping Up] Blank Screen of Death WordPress Nefarious Invisible Plugin: Recently while troubleshooting an old WordPress 2.1.3 blog, I found that when trying publish a new post, the next page would fail to load and only get to a blank screen. Also, while looking around in the dashboard, I noticed that the default upload directory (for uploading images etc), was set to:
[trendlabs | Malware Blog - by Trend Micro] New Nuwar Spam Brings Best AntiSpyware Solution: Users should update their anti-spam and anti-malware programs to filter out spam and detect the NUWAR variants. Trend Micro Smart Protection Network is able to block this attack at various points of the infection chain.
[Alex's Blog] Captchas Back! w00t!: Basically, as you might remember, I said I was going to try IP banning as a spam solution since it would pose no inconvenience to the vast majority of my tiny readerbase (the exception being Ben, who regularly ends up in China and .
[trendlabs | Malware Blog - by Trend Micro] Infectious Music, Malware-Style: The said malware is also capable of converting files such as MP2 and MP3 into Windows Media Audio (WMA) format. When a user tries to play an infected file, a popup message is displayed, asking the user to download a certain codec in order to play the file.
Reflected tags on Technorati: Blog, Comment SPAM: Blogs, Photos, Videos And More On Technorati, Spam Protect: Blogs, Photos, Videos And More On Technorati, Anti-spam: Blogs, Photos, Videos And More On Technorati, Anti Spam Software: Blogs, Photos, Videos And More On Technorati, Spam Bots: Blogs, Photos, Videos And More On Technorati, Targeting Spam