<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-21127528</id><updated>2011-12-01T18:41:38.703-08:00</updated><category term='Ritz'/><category term='Reynolds'/><category term='rizler'/><category term='whack-a-mole'/><category term='tools'/><category term='spamhaus'/><category term='sms'/><category term='SLAPP'/><category term='Zango'/><category term='mainsleaze'/><category term='security'/><category term='419'/><category term='legal'/><category term='virtumundo'/><category term='ddos'/><category term='phish'/><category term='Reynolds_v_Falk'/><category term='Ameriquest'/><category term='Sanford Wallace'/><category term='Soloway'/><category term='CAN-SPAM'/><category term='Ralsky'/><category term='virus'/><category term='spyware'/><category term='dnsbl'/><category term='scam'/><category term='scambaiter'/><category term='E360'/><category term='NetBlue'/><title type='text'>The Spam Diaries</title><subtitle type='html'>News and musings about the fight against spam.&lt;br&gt;&amp;nbsp;by Edward Falk</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default?start-index=101&amp;max-results=100'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>500</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-21127528.post-1953048063218663727</id><published>2011-12-01T18:24:00.000-08:00</published><updated>2011-12-01T18:41:38.709-08:00</updated><title type='text'>Michelle Bachmann campaign -- spammers</title><content type='html'>&lt;p&gt;An article from the Iowa Republican: &lt;a href="http://theiowarepublican.com/2011/bachmann-campaign-in-hot-water-over-stolen-homeschooler-email-list/"&gt;Bachmann Campaign In Hot Water Over Misuse of Homeschooler Email List&lt;/a&gt;&lt;/p&gt;&lt;p&gt;In a nutshell, the Bachman campaign downloaded the email contact list of the Network of Iowa Christian Home Educators (NICHE) without NICHE's knowledge or permission and used to to send political spam to its members.&lt;/p&gt;&lt;p&gt;Interestingly, campaign laws may now require NICHE to make its mailing list available to any other political candidate that wants to use it.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1953048063218663727?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1953048063218663727/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1953048063218663727' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1953048063218663727'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1953048063218663727'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2011/12/michelle-bachmann-campaign-spammers.html' title='Michelle Bachmann campaign -- spammers'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1332581518127466984</id><published>2011-10-21T19:42:00.000-07:00</published><updated>2011-10-21T19:44:04.543-07:00</updated><title type='text'>Shout out to "MainSleaze" anti-spam web site</title><content type='html'>Just a quick pointer to a new blog run by Catherine Jefferson: &lt;a href="http://mainsleaze.spambouncer.org/"&gt;MainSleeze&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The title pretty much says it all, it's a blog devoted to naming and shaming mainstream companies that use Spam in their advertising.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1332581518127466984?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://mainsleaze.spambouncer.org/' title='Shout out to &quot;MainSleaze&quot; anti-spam web site'/><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1332581518127466984/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1332581518127466984' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1332581518127466984'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1332581518127466984'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2011/10/shout-out-to-new-anti-spam-web-site.html' title='Shout out to &quot;MainSleaze&quot; anti-spam web site'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-3880449734056805377</id><published>2011-07-10T13:45:00.000-07:00</published><updated>2011-07-10T13:48:21.184-07:00</updated><title type='text'>Name and shame: CDR Outlet sells me out</title><content type='html'>A tagged address I gave only to CDR Outlet has just received spam, ostensibly for some McDonald's coupons, but probably really a virus.&lt;br /&gt;&lt;br /&gt;Now, whether CDR Outlet deliberately sold my email address, or a rogue employee sold a copy of the email list, or a rogue email service provider sold it, it's impossible to tell, but whichever it was, shame on CDR Outlet for not protecting my email better.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-3880449734056805377?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/3880449734056805377/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=3880449734056805377' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3880449734056805377'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3880449734056805377'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2011/07/name-and-shame-cdr-outlet-sells-me-out.html' title='Name and shame: CDR Outlet sells me out'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7380525259499532931</id><published>2011-06-09T19:59:00.000-07:00</published><updated>2011-06-09T20:02:04.343-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='spamhaus'/><title type='text'>Quick news from the E360 case</title><content type='html'>(via usenet)&lt;br /&gt;&lt;br /&gt;The audio transcript of the damages hearing in the E360 case is available as an mp3 file: http://www.ca7.uscourts.gov/tmp/8K0VUL4K.mp3&lt;br /&gt;&lt;br /&gt;The money quote at 19:20 into the recording:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;I have never seen such an incompetent presentation of a damages case, it's not only incompetent, it's grotesque. You've got damages jumping around from 11 million to 130 million to 122 million to 33 million. In fact the damages are probably zero&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7380525259499532931?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7380525259499532931/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7380525259499532931' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7380525259499532931'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7380525259499532931'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2011/06/quick-news-from-e360-case.html' title='Quick news from the E360 case'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5647787872597084486</id><published>2011-05-19T22:31:00.000-07:00</published><updated>2011-05-19T22:53:39.678-07:00</updated><title type='text'>A true Final Ultimate Solution to the Spam Problem?</title><content type='html'>A common acronym in spam-fighting is &lt;a href="http://www.rhyolite.com/anti-spam/you-might-be.html"&gt;FUSSP&lt;/a&gt; — Final Ultimate Solution to the Spam Problem. It's used (usually derisively) to describe the latest proposed scheme to end spam once and for all. Usually these schemes are based on false assumptions or have already been tried with no results.&lt;br /&gt;&lt;br /&gt;This time — be still, my beating heart — it looks like some researchers at the University of California might really be on to something.&lt;br /&gt;&lt;br /&gt;According to the &lt;a href="http://www.nytimes.com/2011/05/20/technology/20spam.html?_r=1"&gt;New York Times&lt;/a&gt;, researchers have discovered that 95% of drug and herbal remedy credit card transactions are handled through just three financial companies in Azerbaijan,  Denmark and the West Indies.  Presumably, if these companies could be persuaded to stop supporting spammers, then the money supply which drives spam would dry up, and the spammers would be forced to close shop.&lt;br /&gt;&lt;br /&gt;The UC paper is available &lt;a href="http://cseweb.ucsd.edu/%7Esavage/papers/Oakland11.pdf"&gt;here&lt;/a&gt; (pdf).&lt;br /&gt;&lt;br /&gt;I've said before that spam exists because ISPs tolerate it.  This seems to hold true for financial institutions as well.  If the financial institutions stopped abetting spammers, the theory goes, then spam would be significantly curtailed.&lt;br /&gt;&lt;br /&gt;Of course, I don't have any illusions that this is the &lt;span style="font-style: italic;"&gt;final&lt;/span&gt; solution to the spam problem.  There will always be spam as the spammers find ways around the shut-down of their credit card processing suppliers.  But as the shut-downs of major botnet command-and-contol centers in the past have shown, you &lt;span style="font-style: italic;"&gt;can&lt;/span&gt; fight spam, if you're just willing to do it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5647787872597084486?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5647787872597084486/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5647787872597084486' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5647787872597084486'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5647787872597084486'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2011/05/true-final-ultimate-solution-to-spam.html' title='A true Final Ultimate Solution to the Spam Problem?'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5295043695912988087</id><published>2010-05-07T11:59:00.000-07:00</published><updated>2010-05-07T12:02:14.033-07:00</updated><title type='text'>Shame on Waiter.com for giving my email address to spammers</title><content type='html'>And as a follow-up to my previous post, the "Thank you for buying iTunes Gift Certificate!" virus spam I received yesterday was sent to a tagged address I created for use with waiter.com.&lt;br /&gt;&lt;br /&gt;So shame on waiter.com for either selling my email address to spammers, or at the very least, for having sloppy security.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5295043695912988087?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5295043695912988087/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5295043695912988087' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5295043695912988087'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5295043695912988087'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/05/shame-on-waitercom-for-giving-my-email.html' title='Shame on Waiter.com for giving my email address to spammers'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4398833205476858981</id><published>2010-05-07T11:51:00.001-07:00</published><updated>2010-05-07T11:59:19.206-07:00</updated><title type='text'>Just to be clear, no you didn't buy an iTunes gift certificate and forget</title><content type='html'>I've gotten a couple of these in the last couple days.  "Thank you for buying iTunes Gift Certificate!" followed by the usual yada-yada telling you to open the enclosed zip file.&lt;br /&gt;&lt;br /&gt;The only thing in the zip file is a .exe file, and I don't think I need to warn you about running .exe files from strangers.&lt;br /&gt;&lt;br /&gt;y'all be careful out there.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4398833205476858981?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4398833205476858981/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4398833205476858981' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4398833205476858981'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4398833205476858981'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/05/just-to-be-clear-no-you-didnt-buy.html' title='Just to be clear, no you didn&apos;t buy an iTunes gift certificate and forget'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5549848138969269410</id><published>2010-03-18T22:36:00.000-07:00</published><updated>2010-03-18T23:04:51.153-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Big win for California spam law</title><content type='html'>Big news from California:&lt;br /&gt;&lt;h3&gt;Court Holds Recipients of Unlawful “Spam” Are Entitled  to $1,000 Per Email&lt;/h3&gt;&lt;br /&gt;Last week, Superior Court judge Marie Weiner ruled that Dan Balsam was entitled to $7000 damages plus attorneys' fees and costs from Trancos Inc., of Redwood City.&lt;br /&gt;&lt;br /&gt;This is huge news for two reasons:  First, it's the first time an anti-spam case has been won by an individual instead of a major ISP.&lt;br /&gt;&lt;br /&gt;But more importantly, the judge has ruled that the CAN-SPAM act does &lt;span style="font-weight: bold;"&gt;not&lt;/span&gt; pre-empt the California anti-spam law, California Business &amp;amp; Professions Code § 17529.5.&lt;br /&gt;&lt;br /&gt;The judge ruled that the use of generic words in the From: line such as "Paid Survey" and "Your Business" were deceptive, along with their use of multiple domain names, the use of unregistered fictitious business names, and a box at the UPS store were intentionally misleading.&lt;br /&gt;&lt;br /&gt;Full details at &lt;a href="http://www.danhatesspam.com/trancos.html"&gt;http://www.DanHatesSpam.com/trancos.html&lt;/a&gt; (pdf).&lt;br /&gt;&lt;br /&gt;More coverage can be found at the San Francisco Chronicle: &lt;a href="http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2010/03/17/BANA1CGPFF.DTL"&gt;SF lawyer awarded $7,000 from email spammer&lt;/a&gt;, and SlashDot: &lt;a href="http://yro.slashdot.org/story/10/03/18/2237230/1st-Trial-Under-California-Spam-Law-Slams-Spammer"&gt; 1st Trial Under California Spam Law Slams Spammer&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5549848138969269410?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5549848138969269410/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5549848138969269410' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5549848138969269410'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5549848138969269410'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/03/big-win-for-california-spam-law.html' title='Big win for California spam law'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2477361749613691760</id><published>2010-03-16T15:40:00.000-07:00</published><updated>2010-03-16T15:51:05.246-07:00</updated><title type='text'>Waledac botnet goes down</title><content type='html'>Another triumph in the "yes, you can fight spam" category:  Kaspersky lab's &lt;cite&gt;Thread Post&lt;/cite&gt; newsletter is &lt;a href="http://threatpost.com/en_us/blogs/waledac-botnet-now-completely-dead-experts-say-031610"&gt;reporting&lt;/a&gt; that the Waledac botnet has been knocked nearly completely off line and is sending almost zero spam.&lt;br /&gt;&lt;br /&gt;I briefly mentioned the Waledac botnet in an &lt;a href="http://thespamdiaries.blogspot.com/2010/03/another-botnet-goes-down.html"&gt;earlier post&lt;/a&gt; in which I reported that Microsoft had significantly damaged the botnet's command-and-control servers via court order.&lt;br /&gt;&lt;br /&gt;More details can be found on Microsoft's security blog in the article &lt;a href="http://blogs.technet.com/mmpc/archive/2010/03/15/what-we-know-and-learned-from-the-waledac-takedown.aspx"&gt;What we know (and learned) from the Waledac takedown&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2477361749613691760?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2477361749613691760/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2477361749613691760' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2477361749613691760'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2477361749613691760'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/03/waledac-botnet-goes-down.html' title='Waledac botnet goes down'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8341680893195428530</id><published>2010-03-10T18:09:00.000-08:00</published><updated>2010-03-10T18:20:35.203-08:00</updated><title type='text'>And another botnet goes down</title><content type='html'>Via &lt;a href="http://tech.slashdot.org/story/10/03/10/2255252/Zeus-Botnet-Dealt-a-Blow-As-ISPs-Troyak-Group-3-Knocked-Out?art_pos=2"&gt;Slashdot&lt;/a&gt;: &lt;cite&gt;IT World&lt;/cite&gt; &lt;a href="http://www.itworld.com/government/100020/zeus-botnet-dealt-blow-isp-troyak-knocked-out"&gt;reports&lt;/a&gt; that the Zeus botnet was partially knocked offline when its supporting ISPs, Troyak and Group 3, were disconnected by their upstream servers.  IT World is reporting that the Zeus botnet lost a third of its command-and-control servers overnight.&lt;br /&gt;&lt;br /&gt;According to IT World, the Zeus botnet was responsible for a wave of financial fraud that caused hundreds of millions in losses over the past year.&lt;br /&gt;&lt;br /&gt;The first and most effective such takedown ocurred just over a year ago when McColo was &lt;a href="http://thespamdiaries.blogspot.com/search?q=you+can+fight+spam"&gt;taken down&lt;/a&gt; by its upstream providers.  The Rustock and other botnets were knocked offline, resulting in a 60-70% drop in spam overnight.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8341680893195428530?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8341680893195428530/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8341680893195428530' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8341680893195428530'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8341680893195428530'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/03/and-another-botnet-goes-down.html' title='And another botnet goes down'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8321008538430009870</id><published>2010-03-06T12:28:00.000-08:00</published><updated>2010-03-06T12:36:16.243-08:00</updated><title type='text'>More problems for Cryptome</title><content type='html'>Last week, I &lt;a href="http://thespamdiaries.blogspot.com/2010/02/dont-register-or-host-your-domain-in-us.html"&gt;wrote&lt;/a&gt; about the whistle-blowing website &lt;a href="http://cryptome.org/"&gt;Cryptome&lt;/a&gt;, which was shut down by Network Solutions after a DMCA complaint from Microsoft.  Microsoft relented under the bad publicity and withdrew their complaint and Cryptome is now back on the air.&lt;br /&gt;&lt;br /&gt;Today, it seems that Cryptome's problems are not over yet.  As reported by &lt;a href="http://yro.slashdot.org/story/10/03/06/1828217/PayPal-Freezes-Cryptomes-Account?art_pos=1"&gt;SlashDot&lt;/a&gt;, Paypal has taken it upon themselves to &lt;a href="http://cryptome.org/0001/cryptome-sar.htm"&gt;freeze Cryptome's accounts&lt;/a&gt; in preparation for dropping them completely.&lt;br /&gt;&lt;br /&gt;I guess the moral of the story is: if your site is at all controversial, don't depend on Paypal.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8321008538430009870?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8321008538430009870/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8321008538430009870' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8321008538430009870'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8321008538430009870'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/03/more-problems-for-cryptome.html' title='More problems for Cryptome'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7411245959485275719</id><published>2010-03-03T13:02:00.000-08:00</published><updated>2010-03-03T13:09:10.491-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ralsky'/><title type='text'>Another spammer in the slammer: Alan Ralsky</title><content type='html'>Long-time spammer &lt;a href="http://www.rahul.net/falk/quickrefh.html#alan_ralsky"&gt;Alan Ralsky&lt;/a&gt; reported to the Morgantown federal pen yesterday.  He was &lt;a href="http://thespamdiaries.blogspot.com/2009/11/alan-ralsky-gets-more-than-four-years.html"&gt;sentenced&lt;/a&gt; to more than four years last November.&lt;br /&gt;&lt;br /&gt;Always &lt;a href="http://www.nytimes.com/2003/12/30/technology/30spam.html"&gt;unrepentant&lt;/a&gt;, Ralsky may or may not re-evaluate his career choice, but at least we'll be free of his spam for the next few years.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7411245959485275719?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7411245959485275719/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7411245959485275719' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7411245959485275719'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7411245959485275719'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/03/another-spammer-in-slammer-alan-ralsky.html' title='Another spammer in the slammer: Alan Ralsky'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5757511555952931748</id><published>2010-03-03T10:35:00.000-08:00</published><updated>2010-03-04T10:56:11.027-08:00</updated><title type='text'>Another botnet goes down</title><content type='html'>Via &lt;a href="http://hosted.ap.org/dynamic/stories/U/US_TEC_BOTNET_BUSTED"&gt;Associated Press&lt;/a&gt; and other sources, three alleged ringleaders of the Mariposa botnet (aka &lt;a href="http://www.symantec.com/business/security_response/writeup.jsp?docid=2009-093006-0442-99"&gt;W32.Pilleuz&lt;/a&gt;) have been arrested, with more arrests expected soon.  The arrests were of three Spanish citizens with no previous records.  Their names have not yet been released.  They face up to six years in prison.&lt;br /&gt;&lt;br /&gt;The Mariposa botnet is reported to have infected upwards of 12.7 million computers, including those belonging to 40 major banks and &lt;a href="http://www.marketwire.com/press-release/Half-of-Fortune-100-Companies-Compromised-by-New-Information-Stealing-Trojan-1051006.htm"&gt;half of the Fortune 100&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;The infection vectors included instant messaging of malicous links to contacts found on compromised computers, various P2P protocols, and one of my old favorites: infected thumb drives.&lt;br /&gt;&lt;br /&gt;Much more detail can be found in &lt;a href="http://www.symantec.com/connect/blogs/jailing-butterfly"&gt;Symantec's security blog&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update&lt;/span&gt;: worth reading: two weeks ago Microsoft was able take down the "Waledac" botnet which was responsible for 1.5 billion spams/day.  See &lt;cite&gt;PC Pro&lt;/cite&gt; article &lt;a href="http://www.pcpro.co.uk/news/security/355852/microsoft-secretly-beheads-notorious-botnet"&gt;Microsoft secretly beheads notorious botnet&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5757511555952931748?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5757511555952931748/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5757511555952931748' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5757511555952931748'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5757511555952931748'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/03/another-botnet-goes-down.html' title='Another botnet goes down'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4281398644328149906</id><published>2010-02-24T18:26:00.000-08:00</published><updated>2010-03-03T10:35:13.531-08:00</updated><title type='text'>Don't register or host your domain in the U.S. if it's controversial — part 3</title><content type='html'>I wrote about this issue previously in &lt;a href="http://thespamdiaries.blogspot.com/2008/03/dont-register-or-host-your-domain-in-us.html"&gt;2008&lt;/a&gt; and again in &lt;a href="http://thespamdiaries.blogspot.com/2009/12/dont-register-or-host-your-domain-in-us.html"&gt;2009&lt;/a&gt;.  If your web site is at all controversial, have it both registered and hosted offshore.  Whistle-blowing site &lt;a href="http://wikileaks.org/"&gt;Wikileaks&lt;/a&gt; learned this the hard way in 2008 when Swiss Bank &lt;a href="http://en.wikipedia.org/wiki/Bank_Julius_Baer"&gt;Julius Baer&lt;/a&gt;, was able to seize their domain registration in court after Wikileaks published information that was embarassing to the bank.&lt;br /&gt;&lt;br /&gt;This week, Microsoft and Network Solutions locked the domain name of another whistle-blower site, Cryptome.org.  Cryptome had published some embarassing Microsoft documents.  Microsoft retaliated by filing a DMCA case against Cryptome.  By law, Cryptome is allowed to file a counter-claim, at which point the service provider is required to restore the controversial material and the case needs to go to court to be settled.  But when Cryptome filed their counter-claim, Network Solutions shut down their domain.&lt;br /&gt;&lt;br /&gt;For the full story, see &lt;a href="http://www.geekosystem.com/cryptome-leaks-microsofts-online-surveillance-guide-ms-demands-takedown/"&gt;Site Leaks Microsoft Online Surveillance Guide, MS Demands Takedown Under Copyright Law&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For now, the forbidden documents are &lt;a href="http://file.wikileaks.org/files/microsoft-spy.pdf"&gt;hosted&lt;/a&gt; at WikiLeaks.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4281398644328149906?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4281398644328149906/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4281398644328149906' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4281398644328149906'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4281398644328149906'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/02/dont-register-or-host-your-domain-in-us.html' title='Don&apos;t register or host your domain in the U.S. if it&apos;s controversial — part 3'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2785268778141055138</id><published>2010-01-10T09:28:00.000-08:00</published><updated>2010-01-10T09:51:20.110-08:00</updated><title type='text'>Who's the worst source of spam?  It's a horse race now</title><content type='html'>It used to be that you could always &lt;a href="http://thespamdiaries.blogspot.com/2006/11/us-1-spam-nation.html"&gt;count on the U.S.&lt;/a&gt; to be the worst source of spam in the world, with maybe China or Brazil coming in a distant second.&lt;br /&gt;&lt;br /&gt;But things seem to be changing.  In early December, a number of articles were published in &lt;a href="http://www.esecurityplanet.com/features/article.phpr/3851931/Cisco-US-No-Longer-the-Spam-Leader.htm"&gt;eSecurity Planet&lt;/a&gt; and other sources about a report from Cisco that Brazil had finally overtaken the U.S. as the spam leader.  The U.S. had a peak of 8.3 trillion spam messages (more than one thousand for every man, woman, and child on the planet) in 2008.  But thanks to U.S. ISPs finally getting at least a little bit serious about the spam problem, as in the &lt;a href="http://thespamdiaries.blogspot.com/2008/11/yes-you-can-fight-spam-part-1.html"&gt;takedown of McColo&lt;/a&gt; last year, the number declined to a mere 6.6 trillion in 2009.&lt;br /&gt;&lt;br /&gt;Meanwhile, Brazil managed to climb to 7.7 trillion, edging out the U.S. as the spam king of the planet.&lt;br /&gt;&lt;br /&gt;But wait, there's more.  According to a &lt;cite&gt;Network Box&lt;/cite&gt; article in 2009, &lt;a href="http://www.network-box.com/aboutus/news/vietnam-was-primary-source-spam-november"&gt;Vietnam had become the world spam leader&lt;/a&gt;, producing 10.9% of all spam worldwide, with Brazil in second place at 8.3%.  CircleId has also &lt;a href="http://www.circleid.com/posts/vietnam_primary_source_of_spam_in_november/"&gt;picked up the story&lt;/a&gt;, although &lt;cite&gt;Business Week&lt;/cite&gt; has &lt;a href="http://images.businessweek.com/ss/09/02/0211_spam_countries/6.htm"&gt;Vietnam in 16th place at 1.7% of all spam&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;So who's really in first place?  Perhaps Network Box and Cisco are counting in different ways (Network Box seems to be counting spam separately from phishing and viruses, while perhaps Cisco is combining them.  And where is China in all this?  And what can the U.S. do to regain its preeminent position?&lt;br /&gt;&lt;br /&gt;There's one more point to ponder:  Vietnam, China, and Brazil may be the places where most of the spam is delivered from, but I think if you follow the trails (and follow the money), you'll find that it all leads back to the U.S.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2785268778141055138?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2785268778141055138/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2785268778141055138' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2785268778141055138'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2785268778141055138'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2010/01/whos-worst-source-of-spam-its-horse.html' title='Who&apos;s the worst source of spam?  It&apos;s a horse race now'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7154848859530242244</id><published>2009-12-29T09:22:00.000-08:00</published><updated>2010-01-07T12:34:58.598-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Don't register or host your domain in the U.S. if it's controversial — part 2</title><content type='html'>Last year, I &lt;a href="http://thespamdiaries.blogspot.com/2008/03/dont-register-or-host-your-domain-in-us.html"&gt;wrote&lt;/a&gt; that you should never host or register your web site in the U.S. if it's at all controversial.&lt;br /&gt;&lt;br /&gt;The problem is this:  someone who wants to shut you down — whether it's someone whose business you interfere with, or the government itself — can usually find a judge somewhere who will be happy to issue a court order seizing your domain name or ordering your hosting provider to shut you down.  Hosting your domain and servers overseas gives you a considerable amount of cushion against such abuses of the legal system.&lt;br /&gt;&lt;br /&gt;In this week's news, we learn of a judge in New Jersey who has &lt;a href="http://www.computerworld.com/s/article/9142806/Court_orders_three_H_1B_sites_disabled"&gt;ordered three web sites shut down&lt;/a&gt; [ComputerWorld] because they oppose the H-1B visa system.&lt;br /&gt;&lt;br /&gt;Judge James Hurley has ordered the three web sites shut down because of a lawsuit by Apex Technology Group Inc., which is suing the three sites for libel, based apparently on anonymous comments left on the sites.&lt;br /&gt;&lt;br /&gt;In addition, there is some brouhaha about leaked documents.  The leakers should have known to send the documents to wikileaks, who have a history of surviving such legal challenges.  (Although, when I just now checked their &lt;a href="http://wikileaks.org/"&gt;web site&lt;/a&gt;, they've suspended operations while they look for more funding. I think they're a good cause, you might consider contributing.)&lt;br /&gt;&lt;br /&gt;You can also &lt;a href="http://www.vdare.com/sanchez/091227_tunnel_rat.htm"&gt;read more &lt;/a&gt;at vdare.com, another anti-immigrant website.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Related news:&lt;/span&gt;  According to SlashDot, political parody group "The Yes Men" have had their parody site &lt;a href="http://yro.slashdot.org/story/09/12/29/1921257/Canadian-Censorship-Takes-Down-4500-Sites"&gt;pulled off line&lt;/a&gt; by the Canadian Government.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7154848859530242244?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7154848859530242244/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7154848859530242244' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7154848859530242244'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7154848859530242244'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/12/dont-register-or-host-your-domain-in-us.html' title='Don&apos;t register or host your domain in the U.S. if it&apos;s controversial &amp;mdash; part 2'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7885715970699577218</id><published>2009-12-22T17:54:00.000-08:00</published><updated>2009-12-22T18:02:45.674-08:00</updated><title type='text'>New anti-slapp law under consideration</title><content type='html'>Thanks to commenter Samantha J. Brown, Legislative Director of the &lt;a href="http://www.anti-slapp.org/"&gt;Federal Anti-SLAPP Projec&lt;/a&gt;t, I've learned about proposed federal law &lt;a href="http://www.anti-slapp.org/?q=node/71"&gt;H.R.4364&lt;/a&gt; which was introduced last week by Rep. Steve Cohen.&lt;br /&gt;&lt;br /&gt;The importance of a good anti-SLAPP law to free speech cannot be stressed enough.  For decades, bad actors with deep pockets have abused the legal system to stifle free speech.  While there are individual states with anti-SLAPP laws, the lack of a federal law has allowed the abusers to "venue shop" for a court that would be friendly to their brand of harassment.&lt;br /&gt;&lt;br /&gt;I've already &lt;a href="http://thespamdiaries.blogspot.com/2006/04/slapp-lawsuits-by-jerry-reynolds.html"&gt;said enough&lt;/a&gt; about my own experiences with the legal system, so I'll simply urge you to read the news item about &lt;a href="http://www.anti-slapp.org/?q=node/71"&gt;H.R.4364&lt;/a&gt; for yourselves.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7885715970699577218?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7885715970699577218/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7885715970699577218' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7885715970699577218'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7885715970699577218'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/12/new-anti-slapp-law-under-consideration.html' title='New anti-slapp law under consideration'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4353804727063163573</id><published>2009-12-13T15:30:00.000-08:00</published><updated>2009-12-13T15:44:35.644-08:00</updated><title type='text'>Tactera vs MAAWG</title><content type='html'>The other day, I &lt;a href="http://thespamdiaries.blogspot.com/2009/12/tactera-added-to-spamhaus.html"&gt;wrote&lt;/a&gt; about &lt;a href="http://www.rahul.net/falk/quickrefs.html#tactera"&gt;Tactera&lt;/a&gt;, the snowshoe spammer which had finally earned its place in the Spamhaus &lt;a href="http://www.spamhaus.org/rokso/listing.lasso?-op=cn&amp;amp;spammer=Tactara"&gt;ROKSO&lt;/a&gt; list.  More stories about Tactera have been brought to my attention recently.  Today's interesting tidbit is that on their "&lt;a href="http://www.tactara.com/about.aspx"&gt;about us&lt;/a&gt;" page, Tactera strongly tries to imply that they are members of  the &lt;a href="http://www.maawg.org/"&gt;Messaging Anti-Abuse Working Group                             (MAAWG)&lt;/a&gt; and the &lt;a href="http://www.espcoalition.org/"&gt; Email Sender &amp;amp; Provider Coalition (ESPC)&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;A little checking has shown that Tactera is a member of neither group.  You can read a little more about it in this &lt;a href="http://groups.google.com/group/news.admin.net-abuse.email/msg/2967b776c5d46eca"&gt;usenet post&lt;/a&gt;.  It should be interesting to see what happens when MAAWG's lawyers see this.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4353804727063163573?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4353804727063163573/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4353804727063163573' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4353804727063163573'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4353804727063163573'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/12/tactera-vs-maawg.html' title='Tactera vs MAAWG'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2528738550850626649</id><published>2009-12-10T09:27:00.000-08:00</published><updated>2009-12-10T09:35:31.564-08:00</updated><title type='text'>Woman sues Burger King over text message spam</title><content type='html'>At the Miami Times is a &lt;a href="http://blogs.miaminewtimes.com/riptide/2009/12/whopper_of_a_suit_woman_wants.php"&gt;report&lt;/a&gt; of a woman who is trying to file a class-action lawsuit against Burger King over spam texts sent to her cell phone (and presumably to thousands or millions of other cell phones.)&lt;br /&gt;&lt;br /&gt;Unlike email spam, text message spam is very clearly forbidden under USC 47, so it looks like she may have a strong case.  Especially since she contacted them and asked them to stop spamming her.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2528738550850626649?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2528738550850626649/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2528738550850626649' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2528738550850626649'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2528738550850626649'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/12/woman-sues-burger-king-over-text.html' title='Woman sues Burger King over text message spam'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-993292252525406312</id><published>2009-12-10T07:40:00.000-08:00</published><updated>2009-12-10T07:47:51.860-08:00</updated><title type='text'>Tactera added to SpamHaus</title><content type='html'>Here's one for the record books &amp;mdash; or the patent office anyway.  Long-time snowshoe spammer &lt;a href="http://www.rahul.net/falk/quickrefs.html#tactera"&gt;Tactera&lt;/a&gt; has finally been &lt;a href="http://www.spamhaus.org/rokso/listing.lasso?-op=cn&amp;amp;spammer=Tactara"&gt;added&lt;/a&gt; to the Spamhaus Registry Of Known Spamming Operations (ROKSO).  Because you need to be kicked off by three internet providers to join ROKSO, and Tactera usually operates under assumed names, it took a long time for them to qualify.&lt;br /&gt;&lt;br /&gt;Why do I mention the patent office?  Because in reading the ROKSO record, I was surprised to see that Tactera actually has a U.S. patent on showshoe spamming:   &lt;a href="http://patft.uspto.gov/netacgi/nph-Parser?Sect2=PTO1&amp;amp;Sect2=HITOFF&amp;amp;p=1&amp;amp;u=%2Fnetahtml%2FPTO%2Fsearch-bool.html&amp;amp;r=1&amp;amp;f=G&amp;amp;l=50&amp;amp;d=PALL&amp;amp;RefSrch=yes&amp;amp;Query=PN%2F7594035"&gt;7,594,035&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-993292252525406312?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/993292252525406312/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=993292252525406312' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/993292252525406312'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/993292252525406312'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/12/tactera-added-to-spamhaus.html' title='Tactera added to SpamHaus'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-338579754625655749</id><published>2009-11-23T21:06:00.000-08:00</published><updated>2009-11-23T22:03:15.974-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ralsky'/><title type='text'>Alan Ralsky gets more than four years</title><content type='html'>This just in:  The &lt;a href="http://www.freep.com/article/20091123/NEWS05/91123066/1318/Spam-King-gets-4-years-for-fraud"&gt;Detroit Free Press&lt;/a&gt; and the &lt;a href="http://www.detnews.com/article/20091123/METRO/911230388/1013/Mich.-junk-e-mail-king-gets-prison-in-penny-stock-scam"&gt;Detroit News&lt;/a&gt; are both reporting that &lt;a href="http://www.rahul.net/falk/quickrefh.html#alan_ralsky"&gt;Alan Ralsky&lt;/a&gt; has been sentenced to over four years for stock fraud involving a &lt;a href="http://www.rahul.net/falk/glossary.html#pumpndump"&gt;pump-n-dump&lt;/a&gt; scheme, as well as money laundering.&lt;br /&gt;&lt;br /&gt;I previously &lt;a href="http://thespamdiaries.blogspot.com/2009/06/meanwhile-ralsky-apparently-gets-to.html"&gt;wrote&lt;/a&gt; about Ralsky in June, when I mentioned that he was facing up to 3½ years.&lt;br /&gt;&lt;br /&gt;The sentence was even longer than prosecutors had asked for.  Prosecutors had recommended leniency based on Ralsky's cooperation, but the judge saw it differently, citing Ralsky's two previous fraudulent schemes.&lt;br /&gt;&lt;br /&gt;Prosecutors estimated that Ralsky made between $400,000 and $1,000,000 on the scheme, meaning that there could be as much as $600,000 unaccounted for.  The Free Press estimates that Ralsky made $2.7 million, so there could be far more money unaccounted for.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-338579754625655749?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/338579754625655749/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=338579754625655749' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/338579754625655749'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/338579754625655749'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/11/alan-ralsky-gets-more-than-four-years.html' title='Alan Ralsky gets more than four years'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5639810261661158144</id><published>2009-10-28T12:02:00.000-07:00</published><updated>2009-10-29T12:21:24.976-07:00</updated><title type='text'>Beware of "password reset" emails</title><content type='html'>I've been getting a lot of these lately, and I suspect everybody else is too.  Typically, you get an email from Facebook or some other social networking site telling you that your password has been reset, and please unpack the enclosed .zip file if you want to do something about it.&lt;br /&gt;&lt;br /&gt;Obviously, this is just a very crude attempt at propagating a virus, and I know that nobody reading this would be foolish enough to open it, but please pass the word to your more gullible friends and relatives.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Update:&lt;/span&gt; ZDNet is &lt;a href="http://blogs.zdnet.com/security/?p=4724&amp;amp;tag=nl.e550"&gt;reporting&lt;/a&gt; that the Facebook-specific spam is coming from the Bredolab botnet.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Update: &lt;/span&gt;Brian Krebs at &lt;span style="font-style: italic;"&gt;Security Fix&lt;/span&gt; is &lt;a href="http://voices.washingtonpost.com/securityfix/2009/10/nastygram_spoofed_fdic_bank_fa.html?wprss=securityfix"&gt;reporting&lt;/a&gt; that the fake FDIC emails telling you your bank has failed are coming from the Zeus/Zbot password-stealing Trojan.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5639810261661158144?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5639810261661158144/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5639810261661158144' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5639810261661158144'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5639810261661158144'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/10/beware-of-password-reset-emails.html' title='Beware of &quot;password reset&quot; emails'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5946046065090266974</id><published>2009-09-27T10:47:00.000-07:00</published><updated>2009-09-27T10:58:02.215-07:00</updated><title type='text'>Adventures at a food conference</title><content type='html'>The vagaries of fate caused me to attend a &lt;a href="http://www.blogher.com/blogher_conference/conf/11/agenda/4"&gt;food blogging conference&lt;/a&gt; over the weekend.  They asked for the name of my blog on the registration, and so I put down The Spam Diaries.&lt;br /&gt;&lt;br /&gt;I didn't realize it at the time, but this information wound up on my name badge.&lt;br /&gt;&lt;br /&gt;This resulted in several people walking up to me, reading my name tag and exclaiming "Oh!  You're the Spam guy.  I love Spam.".&lt;br /&gt;&lt;br /&gt;And I'm all "Wow, I didn't know I was so famous."  And them I'm all "Wait, what?".  It wasn't until someone asked me what my favorite Spam recipe was that I figured out what was going on.&lt;br /&gt;&lt;br /&gt;Anyway, a good time was had by all, and I learned a bit about food photography.  I don't think I've ever walked away from a conference with so much swag.  It got to the point where conversations went like this:  "Excuse me, would you like a 20-lb bar of free gourmet chocolate?"  "Oh, no thanks, I already have some."  "Oh, one more bar wouldn't hurt; here take a couple."  "No!  Get away from me!"&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5946046065090266974?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5946046065090266974/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5946046065090266974' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5946046065090266974'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5946046065090266974'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/09/adventures-at-food-conference.html' title='Adventures at a food conference'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-663567414982932723</id><published>2009-07-09T21:51:00.000-07:00</published><updated>2010-02-16T01:15:01.028-08:00</updated><title type='text'>Tagged.com ups the ante, phishes more aggressively</title><content type='html'>Two years ago, I &lt;a href="http://thespamdiaries.blogspot.com/2007/04/taggedcom-phishing-site.html"&gt;wrote&lt;/a&gt; about the social networking site tagged.com and the way they were phishing for users' email accounts and passwords in order to rope more users into signing up on their site so they could phish for &lt;span style="font-style: italic;"&gt;their&lt;/span&gt; email accounts and passwords and so on and so forth.&lt;br /&gt;&lt;br /&gt;The article received a fair bit of buzz and it looks like the problem is still ongoing.&lt;br /&gt;&lt;br /&gt;A month ago, a Time Magazine reporter &lt;a href="http://www.time.com/time/business/article/0,8599,1903810,00.html"&gt;wrote&lt;/a&gt; about how he had been duped into visiting Tagged by a false email supposedly from a former colleague claiming that the colleague had posted photos on Tagged.  The reporter logged onto Tagged and was phished of his email credentials. The photos he had come to see had never existed.  Subsequently everybody on his contact list was then sent more fake emails inviting them to look at more non-existent photos.&lt;br /&gt;&lt;br /&gt;Yesterday, ABC News had an &lt;a href="http://abcnews.go.com/Politics/Story?id=8040822&amp;amp;page=1"&gt;article&lt;/a&gt; reporting that the New York attorney general's office is now investigating Tagged for identity theft in violation of New York state law.&lt;br /&gt;&lt;br /&gt;From the article:&lt;br /&gt;&lt;blockquote&gt;[Deputy counselor and special assistant to New York Attorney General] Benjamin Lawsky told ABC News that the attorney general's office believes Tagged.com's messages constitute a "really virulent form of spam" and that the actions were not likely a mistake -- and, he says, even if they were, the activity went on for more than three months and had the blessing of the company's CEO, even after the site received complaints.&lt;/blockquote&gt;Tagged is now on notice that it will be sued by the attorney general's office unless they can come up with a good reason why they shouldn't be.&lt;br /&gt;&lt;br /&gt;Meanwhile, Tagged CEO Greg Tseng has posted a &lt;a href="http://blog.tagged.com/?p=4"&gt; blog article&lt;/a&gt; assuring their readers that they would never, ever do something like this on purpose, that it was all a terrible mistake which they corrected as soon as they were notified.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update:&lt;/span&gt; The Attorney General's office has a &lt;a href="http://www.oag.state.ny.us/media_center/2009/july/july9a_09.html"&gt;press release&lt;/a&gt;.  In the AG's words:&lt;br /&gt;&lt;blockquote&gt;Between April and June this year, Tagged sent tens of millions of misleading emails to unsuspecting recipients stating that Tagged members had posted private photos online for their friends to view.  In reality, no such photos existed and the email was not from their friends.  When recipients of these fraudulent emails tried to access the photos, they were forced to become a new member of Tagged.  The company would then illegally gain access to their personal email contacts to send more fraudulent invitations.&lt;br /&gt;...&lt;br /&gt;Tagged made their invitational emails appear to have been sent directly from members’ personal email accounts, instead of from Tagged.com.  The emails falsely stated that “[name] sent you photos on Tagged.”  If a member had added a personal image to the website, Tagged also included that picture in these fraudulent email solicitations.  Many consumers were unaware that Tagged accessed their email contact lists.&lt;br /&gt;&lt;/blockquote&gt;Greg Tseng, founder of Tagged has &lt;a href="http://blog.tagged.com/?p=71"&gt;responded&lt;/a&gt; on his blog again:&lt;br /&gt;&lt;blockquote&gt;... In no instance did Tagged access a person’s personal address book without their consent and no emails were sent without the person giving us permission. We realize that some were confused and accidentally agreed to invite their friends. We are truly sorry for any inconvenience or frustration that these people experienced&lt;/blockquote&gt;It's not entirely clear to me how Tagged plans to explain the fake "so-and-so posted a photo for you" emails, when no such photo even exists.  I look forward to hearing their explanation for it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-663567414982932723?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/663567414982932723/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=663567414982932723' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/663567414982932723'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/663567414982932723'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/07/taggedcom-ups-ante-phishes-more.html' title='Tagged.com ups the ante, phishes more aggressively'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1617072614035736462</id><published>2009-06-30T22:56:00.000-07:00</published><updated>2009-06-30T23:30:59.747-07:00</updated><title type='text'>Spanish Prisoner scam on the rise</title><content type='html'>Just a heads-up; a variant of the Spanish Prisoner scam has been on the rise lately.&lt;br /&gt;&lt;br /&gt;To recap:  in the Spanish Prisoner scam, someone writes to you claiming to be a prisoner in a Spanish prison (the scam is said to goes back to the 1500's).  If you send bail money, riches will be yours once he returns to freedom.&lt;br /&gt;&lt;br /&gt;In the modern variant, the offer either arrives via random spam, or targeted directly to you through the compromised email account of a friend.&lt;br /&gt;&lt;br /&gt;The latter form is the most insidious.  The email actually comes from someone you know, claiming to be in dire straights of some sort or another.  Typically your friend is traveling abroad, the email will say, and has been robbed of cash, credit cards, and ID.  You are begged to send cash as quickly as possible so your poor friend doesn't wind up jailed as a vagrant or some other terrible thing.&lt;br /&gt;&lt;br /&gt;If you're sharp, you might notice that your friend isn't calling you by your name.  Or you might remember that your friend isn't traveling anywhere at all, and in fact you had poker night with them just last night.&lt;br /&gt;&lt;br /&gt;If you're a little bit slow on the uptake, you might actually send some money.  If that happens, expect to get requests for more (oops, too late, he got arrested for vagrancy and now needs bail money).&lt;br /&gt;&lt;br /&gt;The requests for money will continue until you catch on or run out of money to send.&lt;br /&gt;&lt;br /&gt;For a good account of the scam, read Gadi Evron's article &lt;a href="http://darkreading.com/blog/archives/2009/06/facebook_419_im.html"&gt;Facebook Scam: I'm Stranded In London. Send Money!&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;So remember to be on the lookout.  If you get email from a friend asking for emergency money, always double-check via some other channel.  A phone call is best.&lt;br /&gt;&lt;br /&gt;And if you're the one whose email, facebook, or other account has been used for a scam like this, be sure to contact everybody on your contacts list and warn them.  Chances are, the scammer has been hitting every name on the list.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1617072614035736462?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1617072614035736462/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1617072614035736462' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1617072614035736462'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1617072614035736462'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/06/spanish-prisoner-scan-on-rise.html' title='Spanish Prisoner scam on the rise'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5801672578101933206</id><published>2009-06-24T22:19:00.000-07:00</published><updated>2009-11-23T22:02:38.074-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ralsky'/><title type='text'>Meanwhile, Ralsky apparently gets to keep most of the money</title><content type='html'>Yesterday, I &lt;a href="http://thespamdiaries.blogspot.com/2009/06/alan-ralsky-pleads-guilty-in-spam-scam.html"&gt;wrote&lt;/a&gt; that spammer Alan Ralsky had pled guilty to a number of charges, and was facing roughly 3½ years in prison.  The latest word comes from an &lt;a href="http://detroit.fbi.gov/dojpressrel/pressrel09/de062209.htm"&gt;FBI press release&lt;/a&gt; which indicates that Ralsky is also facing a $1 million fine.&lt;br /&gt;&lt;br /&gt;However, Ralsky is said to have made $3 million on his various scams.&lt;br /&gt;&lt;br /&gt;Hmm, let's see ... $3 million minus $1 million — carry the eleven — is wow, a whole lot of money.  Not bad wages for 3½ years.&lt;br /&gt;&lt;br /&gt;I'll leave it to my readers to draw their own conclusions about the U.S. justice system.  I've already &lt;a href="http://thespamdiaries.blogspot.com/2008/01/apalling-judgement-in-david-ritz-case.html"&gt;drawn mine&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5801672578101933206?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5801672578101933206/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5801672578101933206' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5801672578101933206'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5801672578101933206'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/06/meanwhile-ralsky-apparently-gets-to.html' title='Meanwhile, Ralsky apparently gets to keep most of the money'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4422749106347349176</id><published>2009-06-24T21:56:00.000-07:00</published><updated>2009-06-29T10:19:51.622-07:00</updated><title type='text'>Spammer Ronnie Scelson arrested, charged with molesting teenage girl</title><content type='html'>Long-time spammer and all-around scuzzball &lt;a href="http://www.rahul.net/falk/quickrefs.html#ronnie_scelson"&gt;Ronnie Scelson&lt;/a&gt; has been arrested in Slidell, LA and charged with&lt;span class="vitstorybody"&gt;&lt;span class="vitstorybody"&gt; molestation of a juvenile, forcible rape, possession of marijuana, possession of drug paraphernalia and possession of a weapon while in possession of narcotics&lt;/span&gt;&lt;/span&gt;.  See WWLTV news article &lt;a href="http://www.wwltv.com/topstories/stories/wwl062409cbslidellpornarrest.292b575.html"&gt;Man arrested after allegedly cuffing teen to chair, molesting her&lt;/a&gt; for the full story.&lt;br /&gt;&lt;br /&gt;Scelson, you may remember, is known for sending out &lt;a href="http://www.rahul.net/falk/Files/scelson-911.html"&gt;spam&lt;/a&gt; capitalizing on the 9/11 attacks (see &lt;a href="http://web.archive.org/web/20040616021459/www.mercurynews.com/mld/mercurynews/3107708.htm"&gt;Mercury News&lt;/a&gt;), then defending himself in this &lt;a href="http://groups.google.com/group/news.admin.net-abuse.email/browse_frm/thread/e353172d3c9ad17d/daaf8372b0f1c441?&amp;amp;hl=en#daaf8372b0f1c441"&gt;usenet thread&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update:&lt;/span&gt; The &lt;cite&gt;Times Picayune&lt;/cite&gt; has &lt;a href="http://blog.nola.com/tpnorthshore/2009/06/slidell_man_booked_with_molest.html"&gt;more on the story&lt;/a&gt;, adding a rape accusation involving a 15-year-old-girl.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4422749106347349176?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4422749106347349176/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4422749106347349176' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4422749106347349176'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4422749106347349176'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/06/spammer-ronnie-scelson-arested-for.html' title='Spammer Ronnie Scelson arrested, charged with molesting teenage girl'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7564006075666085418</id><published>2009-06-23T07:28:00.000-07:00</published><updated>2009-11-23T22:04:25.293-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ralsky'/><title type='text'>Alan Ralsky pleads guilty in spam scam</title><content type='html'>A perennial name in spam, &lt;a href="http://www.rahul.net/falk/quickrefh.html#alan_ralsky"&gt;Alan Ralsky&lt;/a&gt;, has pled guilty to conspiracy, fraud, and money laundering, along with several other defendants.  I first &lt;a href="http://thespamdiaries.blogspot.com/2008/01/hammer-drops-ralsky-indicted.html"&gt;mentioned&lt;/a&gt; this case in January of last year, when Ralsky was indicted along with his son-in-law and nine other people.&lt;br /&gt;&lt;br /&gt;Among other things, Ralsky is said to have made $3 million in a &lt;a href="http://www.rahul.net/falk/glossary.html#pumpndump"&gt;pump-n-dump&lt;/a&gt; scheme involving the Chinese stock market.  He faces up to 3½ years in prison.  It's not known if he gets to keep the $3 million.&lt;br /&gt;&lt;br /&gt;See &lt;span style="font-style: italic;"&gt;San Jose Mercury News&lt;/span&gt; story &lt;a href="http://www.mercurynews.com/breakingnews/ci_12666471"&gt;Man who led spam scam pleads guilty in Detroit&lt;/a&gt; for the full details.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7564006075666085418?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7564006075666085418/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7564006075666085418' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7564006075666085418'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7564006075666085418'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/06/alan-ralsky-pleads-guilty-in-spam-scam.html' title='Alan Ralsky pleads guilty in spam scam'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-341777704724472088</id><published>2009-06-16T07:55:00.000-07:00</published><updated>2009-06-16T08:16:58.086-07:00</updated><title type='text'>Still more on the car warranty scam</title><content type='html'>Fox News has put names and faces on some more of the car warranty scammers.  They are:&lt;br /&gt;&lt;br /&gt;Christopher D. Cowart, of Fort Lauderdale, FL.  He owns Transcontinental Warranty.&lt;br /&gt;&lt;br /&gt;James A. Dunne, of Daytona Beach, FL.  He owns Voice Touch along with his wife, Maureen.&lt;br /&gt;&lt;br /&gt;Maureen E. Dunne, James Dunne's wife.&lt;br /&gt;&lt;br /&gt;Christopher Cowart, of Boca Raton, FL.  He owns Transcontinental Warranty.&lt;br /&gt;&lt;br /&gt;Damian P. Kohlfeld, of Valparaiso, IN.  He is the owner of Network Foundations, which among other things, produced the device used to falsify caller id.&lt;br /&gt;&lt;br /&gt;Dunne and Kohlfeld have prior criminal records.  All claim to be innocent, insisting what they were doing was legal, or that they were just following orders.  The scam brought in between ten and forty million dollars.&lt;br /&gt;&lt;br /&gt;It is still unclear what, if any, punishment they will face.  My guess is that they'll be fined less than they made in the scam and face no jail time.&lt;br /&gt;&lt;br /&gt;Read more:  &lt;a href="http://www.foxnews.com/story/0,2933,526357,00.html?mrp"&gt;Behind a Massive Robocall Scam, Four Human Faces&lt;/a&gt; and &lt;a href="http://www.foxnews.com/story/0,2933,526358,00.html"&gt;A Peek Inside One Telemarketing Firm Ensnared in FTC Lawsuit&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-341777704724472088?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/341777704724472088/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=341777704724472088' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/341777704724472088'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/341777704724472088'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/06/still-more-on-car-warranty-scam.html' title='Still more on the car warranty scam'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1962674071890810899</id><published>2009-05-13T21:43:00.000-07:00</published><updated>2009-05-13T22:02:43.211-07:00</updated><title type='text'>More on the car warranty scam</title><content type='html'>More from 10news.com: &lt;a href="http://www.10news.com/video/19444601/index.html"&gt;Automated calls from Del Mar-based company.&lt;/a&gt;  According to the video, the calls come from one Mark Miller, aka Mark Moneymaker, of Del Mar, California.  This contradicts &lt;a href="http://thespamdiaries.blogspot.com/2009/04/this-is-your-second-notice-that-your.html"&gt;earlier reports&lt;/a&gt; that they come from a company in Wentzville, MO.  It's possible that there are two different entities performing similar scams.&lt;br /&gt;&lt;br /&gt;More info on Moneymaker can be found at the &lt;a href="http://www.indystar.com/apps/pbcs.dll/article?AID=2009305060006"&gt;Indiana Star&lt;/a&gt;, &lt;a href="http://consumerist.com/5243228/auto-warranty-robocallers-call-indiana-attorney-general-at-home"&gt;Consumerist.com&lt;/a&gt; (they actually robo-called the Indiana Attorney General at home), &lt;a href="http://abcnews.go.com/Business/Story?id=7542747&amp;amp;page=3"&gt;ABC News&lt;/a&gt;, and several other news outfits (just search for "Mike Moneymaker warrenty" on the search engine of your choice.)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1962674071890810899?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1962674071890810899/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1962674071890810899' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1962674071890810899'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1962674071890810899'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/05/more-on-car-warranty-scam.html' title='More on the car warranty scam'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8526150073333367015</id><published>2009-04-20T21:29:00.000-07:00</published><updated>2009-04-20T21:31:32.280-07:00</updated><title type='text'>THIS IS NOT SPAM! {recipiants_name}</title><content type='html'>Sometimes the title just speaks for itself.  Spam received just now — to a tagged address &amp;mdash; started with the above text.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8526150073333367015?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8526150073333367015/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8526150073333367015' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8526150073333367015'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8526150073333367015'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/04/this-is-not-spam-recipiantsname.html' title='THIS IS NOT SPAM! {recipiants_name}'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-956070455392316099</id><published>2009-04-19T19:54:00.000-07:00</published><updated>2009-04-20T22:14:44.840-07:00</updated><title type='text'>This is your second notice that your factory warranty is about to expire</title><content type='html'>If you have a cell phone, you've probably gotten this call.  A recorded voice tells you that your factory warranty is about to expire, and please press 1 to buy a new one.&lt;br /&gt;&lt;br /&gt;These calls violate &lt;a href="http://www.law.cornell.edu/uscode/47/227.html"&gt;USC 47&lt;/a&gt; in at least two ways that I can think of.  First, it's against the law to make a recorded phone call that isn't at least introduced by a live human, and second, it's against the law to make &lt;span style="font-style: italic;"&gt;any&lt;/span&gt; sales call to a cell phone.&lt;br /&gt;&lt;br /&gt;However the telemarketers have discovered something that the spammers already knew:  Nobody's enforcing the law.&lt;br /&gt;&lt;br /&gt;It started with mortgage companies, and quickly spread to other less-than-upright business models.  Now, the telemarketers dial away with impunity.&lt;br /&gt;&lt;br /&gt;Going after the telemarketers via the courts is a losing proposition.  First, tracking them to the source is a near-impossible task — the minute you ask them who they are and how they got your number, they just hang up.  Caller ID is useless because they use technologies that allow them to hide or even spoof the numbers.  Calling back and yelling at whoever answers the phone only results in some poor innocent person being harassed.  Googling for the phone number only gets you messages from other victims asking who it was who called them.  Oh, and "press 2 to be removed from the list" doesn't work either.&lt;br /&gt;&lt;br /&gt;Even if you do track them down, small claims courts have shown themselves unsympathetic, either not understanding the law or not caring.&lt;br /&gt;&lt;br /&gt;But despair not.  I stumbled across an informative &lt;a href="http://www.reddit.com/r/reddit.com/comments/8dcfk/this_is_the_second_notice_that_your_factory/"&gt;post on reddit&lt;/a&gt; the other day.&lt;br /&gt;&lt;br /&gt;Although I can't personally vouch for the information, it seems that one of the commenters has managed to track the car warranty spam to National Auto Warranty Services, Inc., aka US Fidelis, Inc., of Wentzville, MO.  According to the post, Verizon, AT&amp;amp;T, and the Missouri Attorney General have all sued them, although the calls keep coming.&lt;br /&gt;&lt;br /&gt;Googling for "National Auto Warranty Services" reveals quite a bit of information on them, not the least of which is that they're a scam as well as a nuisance.  The web site National Auto Warranty.com contains a very simple landing page which says, in essence, "if you're trying to complain about telemarketing calls, it wasn't us.  You're looking for&lt;br /&gt;&lt;blockquote&gt;National Auto Warranty Service, Inc.&lt;br /&gt;100 Mall Parkway&lt;br /&gt;Wentzville, Missouri, 63385&lt;br /&gt;U.S.A.&lt;br /&gt;Phone:  800-649-1856&lt;/blockquote&gt;The post on Reddit includes this same address, as well as a number of phone numbers and email addresses of relevant government agencies, such as the FTC, where you can lodge a complaint.  I suggest you bookmark this page for the next time you get one of those calls.  I know I will.&lt;br /&gt;&lt;br /&gt;More information can also be found at &lt;a href="http://www.complaintsboard.com/complaints/national-auto-warranty-service-c73231.html"&gt;complaintsboard.com&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-956070455392316099?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/956070455392316099/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=956070455392316099' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/956070455392316099'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/956070455392316099'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/04/this-is-your-second-notice-that-your.html' title='This is your second notice that your factory warranty is about to expire'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-395124226250893402</id><published>2009-02-03T16:20:00.000-08:00</published><updated>2009-02-03T16:25:22.372-08:00</updated><title type='text'>Another spamming "social networking" site — Yaari</title><content type='html'>Got an email from a friend the other day, asking me to connect to her in the social networking site "Yaari".  Never heard of it before.  Figured, it was yet &lt;span style="font-style: italic;"&gt;another&lt;/span&gt; social networking site that fools you into signing up, steals your address book, and then sends a bunch of fake invites that look like they came from you.&lt;br /&gt;&lt;br /&gt;Two days later, I get this:&lt;br /&gt;&lt;pre&gt;Subject: Don't click on Yaari!&lt;br /&gt;&lt;div&gt;&lt;strong&gt;&lt;/strong&gt;&lt;/div&gt;Attention....    &lt;br /&gt;&lt;br /&gt;   If you recieve a mail from me about Yaari, please DON't click on it!!&lt;br /&gt;   That is a SPAM  that I hit on!&lt;br /&gt;&lt;br /&gt;       Sorry.... &lt;/pre&gt;&lt;div&gt;&lt;strong&gt;&lt;/strong&gt;&lt;/div&gt;&lt;br /&gt;Well, no surprises there.  Remember kids, &lt;span style="font-weight: bold;"&gt;don't&lt;/span&gt; give your passwords out to strange web sites.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-395124226250893402?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/395124226250893402/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=395124226250893402' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/395124226250893402'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/395124226250893402'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/02/another-spamming-social-networking-site.html' title='Another spamming &quot;social networking&quot; site &amp;mdash; Yaari'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2176837941985572032</id><published>2009-01-04T21:52:00.001-08:00</published><updated>2009-01-05T08:50:28.571-08:00</updated><title type='text'>Phishing attacks reach Twitter</title><content type='html'>&lt;img style="margin: 0pt 0px 10px 10pt; float: right;" src="http://4.bp.blogspot.com/_E8ZD85Wzu9E/SWFGUclXfBI/AAAAAAAAAiI/G--aqkPOPyo/s400/watch_out.png" alt="" border="0" /&gt;&lt;br /&gt;Social networking site &lt;a href="http://twitter.com/"&gt;Twitter&lt;/a&gt; is experiencing a bad round of phishing, prompting admins there to publish a &lt;a href="http://blog.twitter.com/2009/01/gone-phishing.html"&gt;warning&lt;/a&gt; on line.&lt;br /&gt;&lt;br /&gt;How it works:&lt;br /&gt;&lt;br /&gt;In short, spammers get your Twitter ID in any one of a number of ways, and send you a direct message — which twitter forwards to you via email — or perhaps simply send you an email constructed to look like it came from Twitter.&lt;br /&gt;&lt;br /&gt;The email is a typical phishing email which invites you to log onto Twitter and directs you to a Twitter look-alike web site (e.g. twitter.access-login.com) which then steals your Twitter login and password.&lt;br /&gt;&lt;br /&gt;Your Twitter account is then used to send more phishing direct messages to all of your contacts, and the process continues.&lt;br /&gt;&lt;br /&gt;One more complication:  Normally, direct messages can only be sent between accounts which have mutually followed each other.  In other words, before the phisher can send you a direct message, they somehow have to get you to follow them back on Twitter.&lt;br /&gt;&lt;br /&gt;One way this is accomplished is by simply following you and hoping you'll blindly follow them back.  Yet another way is by exploiting various "auto-follow" systems.  The way auto-follow works is that you can contact the Twitter support team and ask that auto-follow be enabled for your account.  Then, anytime someone follows you, you wind up following them back — and becoming a target for phishing messages — without having taken any positive steps to do so.  There are also third-party services such as &lt;a href="http://www.askdavetaylor.com/how_to_auto-follow_twitter_followers.html"&gt;Tweet Later&lt;/a&gt; which provide auto-following as a sideline tool.&lt;br /&gt;&lt;br /&gt;It's not yet known what the goal of the phishers is.  It could all just be a juvenile prank, or perhaps the phishers are waiting until they've compromised enough accounts before they start swamping Twitter with advertisements.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;What you can do:&lt;/span&gt;  First and foremost, never enter your login information into a web page which you reached by clicking a link in an email.  Or if you must, double and triple-check the url in the browser to make sure that it's really the web site you think it is.&lt;br /&gt;&lt;br /&gt;Never be fooled into thinking that your favorite web site has inexplicably set up a different domain name to handle logins (it's actually harder to do it that way, not easier, because of the way cookies work.)&lt;br /&gt;&lt;br /&gt;In fact, it's best to type in the domain name yourself, or use a bookmark you've previously created, rather than trust any url you saw in an email.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update:&lt;/span&gt; Computerworld has an article as well: &lt;a href="http://blogs.computerworld.com/twitter_phishing"&gt;Twitter phishing scams: Not so tweet&lt;/a&gt;.  It discusses more possible motivations for the phishers and has more details on how the phish works.&lt;br /&gt;&lt;br /&gt;Also, one commenter made a point which is very significant:  Even if your twitter login isn't very valuable on twitter, many people use the same credentials on a variety of sites.  You might want to consider a policy of using different passwords on different sites.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2176837941985572032?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2176837941985572032/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2176837941985572032' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2176837941985572032'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2176837941985572032'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2009/01/phishing-attacks-reach-twitter.html' title='Phishing attacks reach Twitter'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_E8ZD85Wzu9E/SWFGUclXfBI/AAAAAAAAAiI/G--aqkPOPyo/s72-c/watch_out.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8633818085714821961</id><published>2008-11-18T23:37:00.000-08:00</published><updated>2008-11-19T00:12:54.194-08:00</updated><title type='text'>Yes, you can fight spam — part 1</title><content type='html'>Last week, I &lt;a href="http://thespamdiaries.blogspot.com/2008/11/researchers-hijack-storm-worm-to-track.html"&gt;wrote&lt;/a&gt; about a study conducted by researchers at the University of California on the economics of spam. They had determined that the spammers were obtaining a conversion rate of less than one in twelve million from their botnet-sourced spam. That is, the spammers had to send twelve million spam emails for every customer they snagged.&lt;br /&gt;&lt;br /&gt;I concluded that "just hit delete", educating the users, improved filters, or trying to use the legal system just were not going to work to stop spam.&lt;br /&gt;&lt;br /&gt;This week, I'm going to talk about something that apparently &lt;span style="font-style: italic;"&gt;does&lt;/span&gt; work:  not tolerating the bad actors responsible.&lt;br /&gt;&lt;br /&gt;If you follow spam issues in the news, then you may have heard of the takedown of a black-hat ISP in San Jose, California known as "McColo". You can read all about it in Brian Kreb's &lt;cite&gt;Washington Post&lt;/cite&gt; article &lt;a href="http://voices.washingtonpost.com/securityfix/2008/11/major_source_of_online_scams_a.html"&gt;Major Source of Online Scams and Spams Knocked Offline&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;In a nutshell, McColo was one of the prime bad-guys of the internet. Child porn, phishing, credit-card processing for criminals, you name it. We're talking the Dr. Moriarty of the internet here. As part of all that, they were knowingly hosting the command-and-control centers for major &lt;a href="http://www.rahul.net/falk/glossary.html#botnet"&gt;botnets&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;McColo had been well-known to a number of internet security experts and spam-fighters.  Attempts to get them disconnected by their upstream providers, Hurricane Electric and Global Crossing had long fallen on deaf ears.  Finally, it reached the point where their support of McColo was going to reach a wider audience.  Faced with a public shaming, they finally did the right thing and gave McColo the boot.&lt;br /&gt;&lt;br /&gt;Here's what's significant:  The shutdown of McColo resulted in a &lt;b&gt;60-70% drop in spam worldwide overnight.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;Let me say that again:  &lt;b&gt;A 60-70% drop in spam overnight.&lt;/b&gt;  Worldwide. From disconnecting just one bad actor.&lt;br /&gt;&lt;br /&gt;This chart, courtesy of &lt;a href="http://www.spamcop.net/spamgraph.shtml?spamweek"&gt;SpamCop&lt;/a&gt; shows it best:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/_4BiMcCFIfck/SR8o7uMcXKI/AAAAAAAAAqA/VVdWyt6uQxs/s1600-h/spamweek.gif"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 320px; height: 222px;" src="http://4.bp.blogspot.com/_4BiMcCFIfck/SR8o7uMcXKI/AAAAAAAAAqA/VVdWyt6uQxs/s320/spamweek.gif" alt="" id="BLOGGER_PHOTO_ID_5268975095524383906" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Other spam-tracking sources are reporting similar reductions in spam. It is reported that detections of the Srizbi botnet (the biggest, at 60 billion spams/day) are down by up to 95%. Similar reductions in activity have been seen in several other botnets, including Mega-D, Bobax, Rustock and possibly Asprox.&lt;br /&gt;&lt;br /&gt;I don't have any illusions that this drop is permanent. The spammers and bot-herders will be looking to rebuild their networks almost immediately. I've already noticed an increase in virus spam lately, as have others.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;(Note:&lt;/span&gt; This may be a good time to remind your friends and relatives not to click on any attachments they receive — especially anything in a .zip file.)&lt;br /&gt;&lt;br /&gt;Also unfortunately, McColo had a backup plan in the form of Swedish internet service provider &lt;a href="http://www.teliasonera.com/" target="_blank"&gt;TeliaSonera&lt;/a&gt; who, not knowing what was going on, left McColo connected to the internet.  McColo was savvy enough to wait until the weekend before taking advantage of their backup connection.  The problem was discovered within hours, but getting them disconnected again required CEO approval, which took even more time.  All told, McColo was back online for about twelve hours.  Enough time, unfortunately, to transmit botnet control updates to servers in Russia.  More details can be found in the &lt;a href="http://www.theregister.co.uk/2008/11/18/short_mccolo_resurrection/"&gt;U.K. Register&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;It will probably take time for the spammers to get the botnet up and running, but we should see spam levels begin to rise again shortly.&lt;br /&gt;&lt;br /&gt;Other articles on this takedown:&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Washington Post: &lt;a href="http://voices.washingtonpost.com/securityfix/2008/11/major_source_of_online_scams_a.html"&gt;Major Source of Online Scams and Spams Knocked Offline&lt;/a&gt;&lt;/li&gt;&lt;li&gt;Washington Post: &lt;a href="http://voices.washingtonpost.com/securityfix/2008/11/the_badness_that_was_mccolo.html"&gt;A Closer Look at McColo&lt;/a&gt;&lt;/li&gt;&lt;li&gt;HostExploit: &lt;a href="http://hostexploit.com/downloads/Hostexploit%20Cyber%20Crime%20USA%20v%202.0%201108.pdf"&gt;McColo Cyber Crime USA&lt;/a&gt; (pdf)&lt;br /&gt;&lt;/li&gt;&lt;li&gt;HostExploit: &lt;a href="http://hostexploit.com/downloads/Hostexploit_McColo_supplement_111808.pdf"&gt;McColo Supplement&lt;/a&gt; (pdf) — details McColo's reconnection and Russian connections.&lt;/li&gt;&lt;li&gt;Washington Post: &lt;a href="http://voices.washingtonpost.com/securityfix/2008/11/spam_volumes_drop_by_23_after.html"&gt;Spam Volumes Drop by Two-Thirds After Firm Goes Offline&lt;/a&gt;&lt;/li&gt;&lt;li&gt;Washington Post: &lt;a href="http://www.washingtonpost.com/wp-dyn/content/article/2008/11/18/AR2008111801120.html"&gt;Answers Trickle Out as Spammer Networks Remain Compromised&lt;/a&gt;&lt;/li&gt;&lt;li&gt;UK Register: &lt;a href="http://www.theregister.co.uk/2008/11/18/short_mccolo_resurrection/"&gt;Dead network provider arms Rustock botnet from the hereafter&lt;/a&gt; &amp;mdash; article about McColo's brief reconnection via Telia Sonera.&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt; Next: You can fight spam by disconnecting bad actors&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8633818085714821961?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8633818085714821961/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8633818085714821961' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8633818085714821961'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8633818085714821961'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/11/yes-you-can-fight-spam-part-1.html' title='Yes, you &lt;i&gt;can&lt;/i&gt; fight spam &amp;mdash; part 1'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_4BiMcCFIfck/SR8o7uMcXKI/AAAAAAAAAqA/VVdWyt6uQxs/s72-c/spamweek.gif' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6254414730664173708</id><published>2008-11-12T09:27:00.000-08:00</published><updated>2008-11-12T09:48:31.438-08:00</updated><title type='text'>Classmates.com sued for false advertising</title><content type='html'>You've seen the ads for classmates.com, I'm sure.  Banners at the top of seemingly every web page on the internet that say "She married &lt;span style="font-style: italic;"&gt;him&lt;/span&gt;?  Catch up on the latest petty gossip at Classmates.com".  Or something like that.&lt;br /&gt;&lt;br /&gt;Today's &lt;cite&gt;Wired&lt;/cite&gt; magazine has an article entitled &lt;a href="http://www.wired.com/politics/law/news/2008/11/classmates"&gt;Classmates.com User Sues; Schoolmates Weren't Really Looking for Him&lt;/a&gt;.  The headline pretty much says it all.  Anthony Michaels of San Diego, CA received a message from classmates.com telling him his old high school chums were looking for him.  He paid $15 for a premium membership and found out &amp;mdash; get ready for it &amp;mdash; they lied.  Nobody was looking for him.  Now he's &lt;a href="http://blog.wired.com/27bstroke6/files/classmates_summons_and_complaint_00054685_2.pdf"&gt;suing&lt;/a&gt; (scanned pdf, 20 pages) for false advertising and hoping for class action status.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6254414730664173708?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6254414730664173708/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6254414730664173708' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6254414730664173708'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6254414730664173708'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/11/classmatescom-sued-for-false.html' title='Classmates.com sued for false advertising'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-356667957278930526</id><published>2008-11-07T10:31:00.000-08:00</published><updated>2008-11-10T10:23:11.088-08:00</updated><title type='text'>Researchers Hijack Storm Worm to Track Profits</title><content type='html'>Always good for information on the spam economy, Brian Krebs of the Washington Post has just published a truly fascinating article:  &lt;a href="http://voices.washingtonpost.com/securityfix/2008/11/study_spam_still_profitable_at.html"&gt;Researchers Hijack Storm Worm to Track Profits&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Bottom line:  a one-in-twelve-million conversion rate of spam to sales seems to be enough to keep the spam economy going.&lt;br /&gt;&lt;br /&gt;The article covers a project by researchers at UC San Diego and UC Berkeley, who managed to infiltrate the Storm Worm bot network and take over a small portion of it.&lt;br /&gt;&lt;br /&gt;They then redirected some of the spam payloads to fake websites which had been set up to mimic the actual websites advertised in the spam.  Would-be customers would go to the fake web sites and try to order their penis pills and become another statistic for the researchers.  (At which point the sale fails to go through — the researchers were fishing for statistics, not credit card info.)&lt;br /&gt;&lt;br /&gt;All told, 350 million spams over 26 days resulted in 28 sales, for a total of just over $2700.  Researchers estimate that they took over just 1.5% of the Storm Worm network, meaning that the network sends about — let's see, carry the one — just under 900 million spam emails &lt;span style="font-weight: bold;"&gt;per day&lt;/span&gt;, with a revenue of just about $7000 per day.&lt;br /&gt;&lt;br /&gt;That's it.  There's your math.  $7000/day pays for something like 20% of the total spam load we all endure, day after day.  And the vast majority of it going to penis pills that don't even work.&lt;br /&gt;&lt;br /&gt;One more piece of math:  The worm propagates as a virus mailed from victim to victim. Researchers discovered that a whopping one in ten people will click on the link and download the virus.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;So what does this mean in terms of fighting spam?&lt;br /&gt;&lt;br /&gt;Well, first of all, educating people about spam, or getting them to sign the &lt;a href="http://en.wikipedia.org/wiki/Roger_Ebert#Boulder_Pledge"&gt;Boulder Pledge&lt;/a&gt; to not buy anything advertised via spam, is hopeless.  You'll never convince everybody.  If the spammers only have to reach one person in twelve million spams, then educating 99% of the people, or 99.99% of the people, or even 99.9999% of the people just isn't enough.&lt;br /&gt;&lt;br /&gt;In other words, Just Hit Delete won't work.&lt;br /&gt;&lt;br /&gt;Technological means?  So far, no good.  We build better filters, spammers add more entropy to their message text to bypass them.  I'm sitting behind at least three good filters at home, and I'm flooded with the stuff.&lt;br /&gt;&lt;br /&gt;Legal means?   Not very effective so far, mainly thanks to CAN-SPAM, which protects spammers from almost all legal remedies.  Only state governments and the very largest ISPs have been able to take legal actions against spammers, and the spammers generally make themselves judgement-proof well before it comes to that.&lt;br /&gt;&lt;br /&gt;The Federal government can theoretically put a spammer in jail, but I'm unaware of any such cases except when other crimes such as wire fraud are involved, in which case CAN-SPAM violations are added on the side.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Other questions about this research present themselves.  Such as, if the researchers could take over a small portion of Storm Worm, why can't they take all of it over and shut it down?&lt;br /&gt;&lt;br /&gt;Can Storm Worm be repurposed for good?  Maybe launch a popup on the user's screen when it's installed, saying "hey dumbass what did you think you were doing when you clicked on that link?" or "are you really so stupid that you believed a Nigerian prince wanted your help laundering a vast fortune out of the country?"  Sheesh.&lt;br /&gt;&lt;br /&gt;I've always dreamed that someone would write a virus that takes over the victim's system and installs all the necessary security updates.  Or maybe upgrade them to Linux.  It would be a public service.&lt;br /&gt;&lt;br /&gt;Here's a thought:  credit card companies should run fake sites like this, and use it as a way to educate consumers who get caught in the net — or maybe just take their credit cards away and do us all a favor.&lt;br /&gt;&lt;br /&gt;More seriously, I would have liked to see some effort by the researchers to track the worm to its source, but I think it's likely that they tried without success.  It's believed that the bulk of this spam originates from Russia, where there is little or no hope of getting any real information on the spammers.  Given that restriction, I think the researchers were forced to be satisfied with the information they were able to collect.&lt;br /&gt;&lt;br /&gt;The academic paper is available from &lt;a href="http://www.icsi.berkeley.edu/pubs/networking/2008-ccs-spamalytics.pdf"&gt;Berkeley's International Computer Science Institute&lt;/a&gt; (pdf).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update:&lt;/span&gt; This morning, the BBC had a good &lt;a href="http://news.bbc.co.uk/2/hi/technology/7719281.stm"&gt;article&lt;/a&gt; on the report.  In it, they made one very good point:  the conversion rate is so low, and the profit margin so slim, that this suggests some avenues of attack on the spammers.&lt;br /&gt;&lt;br /&gt;As for myself, I'm not convinced.  My first thought was that the old idea of charging postage for email might be worth pursuing.  At a conversion rate of less than $1 per hundred thousand emails, an e-postage rate of 1/100 of a penny per email would pose no burden on ordinary consumers, but break the economic back of spam.  However, I quickly dismissed this idea upon realizing that since the majority of spam is sent by 'bots, it's the consumers who will be paying the postage, and not the spammers.  Further, the postage would be so cheap that most victims wouldn't be charged enough money to motivate them to do something about the problem, and certainly not enough to make law enforcement &amp;mdash; who don't even get out of bed for anything less than grand theft &amp;mdash; take any notice.&lt;br /&gt;&lt;br /&gt;Is there any other way to pass the economic burden spam &amp;mdash; any economic burden at all? &amp;mdash; to spammers?  If there is, word of it has yet to reach my ears.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-356667957278930526?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/356667957278930526/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=356667957278930526' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/356667957278930526'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/356667957278930526'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/11/researchers-hijack-storm-worm-to-track.html' title='Researchers Hijack Storm Worm to Track Profits'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-3890958257764846637</id><published>2008-10-29T14:51:00.000-07:00</published><updated>2008-11-10T00:59:40.192-08:00</updated><title type='text'>Pissedconsumer.com: spammers and more</title><content type='html'>In July, I &lt;a href="http://thespamdiaries.blogspot.com/2008/07/pissedconsumercom-spammers-and-maybe.html"&gt;wrote&lt;/a&gt; about a "reputation" web site which had been link-spamming this blog.  I suspected that part of their business model would be to blackmail businesses into removing negative reviews.  Comments on my article tended to back that up.&lt;br /&gt;&lt;br /&gt;Today,  alert reader Chad pointed out a couple of articles on PissedConsumer.  In particular, &lt;a href="http://www.seomoz.org/ugc/pissedconsumer-link-farm-dominating-google-serps"&gt;YOUmoz&lt;/a&gt; blog is reporting that a reader has discovered that PissedConsumer seemed to be running a link farm in order to artificially boost their page rank and drive traffic.  The comments are worth reading as well; one commenter claims that PissedConsumer was stealing content from his review site in order to populate their link farm.  (Commenter also mentions that the DMCA complaint went ignored — this may be worth investigating on its own.)&lt;br /&gt;&lt;br /&gt;Best of all is the comment from Google's Matt Cutts, who wrote in essense "they're nuked now".  Way to go!&lt;br /&gt;&lt;br /&gt;You can read more at &lt;a href="http://forums.digitalpoint.com/showthread.php?p=9652251"&gt;Digital Point&lt;/a&gt;.  Of interest is the first article in the thread, in which the author mentioned that PissedConsumer wanted nearly $2000 to remove bogus reviews.  It looks like my suspicion of reputation blackmail was correct.&lt;br /&gt;&lt;br /&gt;See also "Sockmonkey's" article &lt;a href="http://www.sockmoney.com/2008/09/how-to-game-google-serps.html"&gt;How To Game Google SERPS&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-3890958257764846637?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/3890958257764846637/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=3890958257764846637' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3890958257764846637'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3890958257764846637'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/10/pissedconsumercom-spammers-and-more.html' title='Pissedconsumer.com: spammers and more'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2221955316179522889</id><published>2008-10-14T00:20:00.000-07:00</published><updated>2008-10-14T00:52:40.778-07:00</updated><title type='text'>Quick heads-up, spams containing zip files</title><content type='html'>In case you haven't noticed, there's a new scam making the rounds, in which the payload is a zip file.  The zip file contains a single executable whose name is in the form of (for example) e-ticket.doc.exe.&lt;br /&gt;&lt;br /&gt;The spammers are obviously hoping that the operating system will remove the ".exe" before showing you the filename, at which point you think it's a harmless doc file and click on it.&lt;br /&gt;&lt;br /&gt;The emails themselves come with a variety of enticing subject lines, and I have to give the spammers credit for creativity.  The latest round come with the subject line "Your Online Flight Ticket" (plus a &lt;a href="http://www.rahul.net/falk/glossary.html#hashbuster"&gt;hash-buster&lt;/a&gt;), while previous rounds have come with subject lines suggesting that there's a FedEx delivery waiting for you, trouble with your credit card or something of a similar nature that demands your attention.&lt;br /&gt;&lt;br /&gt;The enclosed zip file contains a virus of course.  Most of you reading this are smart enough not to click on random attachments in email&lt;span title="As for the rest of you, get a Mac."&gt;*&lt;/span&gt;, but do pass the word please.&lt;br /&gt;&lt;br /&gt;&lt;cite&gt;eWeek&lt;/cite&gt; has a short article on the subject: &lt;a href="http://www.eweek.com/c/a/Security/Malware-in-Email-Rose-Dramatically-in-September-Security-Pros-Report/"&gt;Malware in E-Mail Rose Dramatically in September, Security Pros Report&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2221955316179522889?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2221955316179522889/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2221955316179522889' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2221955316179522889'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2221955316179522889'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/10/quick-heads-up-spams-containing-zip.html' title='Quick heads-up, spams containing zip files'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1816038334023931809</id><published>2008-09-23T14:37:00.000-07:00</published><updated>2008-09-23T14:43:52.913-07:00</updated><title type='text'>Kentucky seizes 141 internet domains connected to internet gambling</title><content type='html'>Back in March, I wrote an article entitled "&lt;a href="http://thespamdiaries.blogspot.com/2008/03/dont-register-or-host-your-domain-in-us.html"&gt;Don't register or host your domain in the U.S. if it's controversial&lt;/a&gt;" in which I showed the various ways in which either the government or private parties could use the legal system to seize your domain name and shut you down.&lt;br /&gt;&lt;br /&gt;Today, I read an article in the &lt;cite&gt;Lexington Herald-Leader&lt;/cite&gt; which tells of how the state of Kentucky comandeered 141 domain names belonging to internet gambling sites.  Interestingly enough, the major gripe Kentucky seems to have with online gambling is that it competes with Kentucky's own state-sponsored gambling.&lt;br /&gt;&lt;br /&gt;At any rate, Kentucky seems to have obtained a court order from Circuit Judge Thomas Wingate ordering the domains in question be transferred to the state of Kentucky.  It is unclear from the article exactly whom the order was sent to.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1816038334023931809?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1816038334023931809/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1816038334023931809' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1816038334023931809'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1816038334023931809'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/09/kentucky-seizes-141-internet-domains.html' title='Kentucky seizes 141 internet domains connected to internet gambling'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2015659598195315569</id><published>2008-09-22T14:51:00.000-07:00</published><updated>2008-09-23T14:37:00.562-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Soloway'/><title type='text'>Soloway comes clean — "Pure greed" made him do it</title><content type='html'>From MSNBC: &lt;a href="http://www.msnbc.msn.com/id/26797741/from/ET/"&gt;‘Pure greed’ led spammer to bombard inboxes&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;One last interview before Soloway goes to prison.  He comes clean about his motivation (greed), how many emails he wound up sending (over 10 Trillion), how he felt about flooding the inboxes of all those people (just hit delete), and how much he made ($20,000 a day).&lt;br /&gt;&lt;br /&gt;No pity on my part for most of the people who lost money to Soloway — they were spammers too, and if I was in charge, I'd be thinking about bringing charges against them as well.&lt;br /&gt;&lt;br /&gt;In contrast to this article, see an interview from last month in the Seattle PI:&lt;a href="http://seattlepi.nwsource.com/local/373497_spamking05.html"&gt; 'Spam King' once felt 'invincible'&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2015659598195315569?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2015659598195315569/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2015659598195315569' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2015659598195315569'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2015659598195315569'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/09/soloway-comes-clean-pure-greed-made-him.html' title='Soloway comes clean &amp;mdash; &quot;Pure greed&quot; made him do it'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5803578937634149766</id><published>2008-09-12T11:30:00.000-07:00</published><updated>2008-09-12T11:57:46.161-07:00</updated><title type='text'>Virginia Supreme Court strikes down Virginia anti-spam law; Jeremy Jaynes will possibly go free</title><content type='html'>This just in from the Washington Post:  &lt;a href="http://www.washingtonpost.com/wp-dyn/content/article/2008/09/12/AR2008091201211_pf.html"&gt;Va. Supreme Court Strikes Down State's Anti-Spam Law&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Background:   In 2006, I &lt;a href="http://thespamdiaries.blogspot.com/2006/09/jeremy-jaynes-loses-appeal-off-to.html"&gt;reported&lt;/a&gt; (prematurely, it turns out) that porn and fraud spammer &lt;a href="http://www.rahul.net/falk/quickrefh.html#jeremy_jaynes"&gt;Jeremy Jaynes&lt;/a&gt; had &lt;a href="http://www.internetnews.com/xSP/article.php/3630356"&gt;lost his appeal&lt;/a&gt; after having been convicted under the Virginia anti-spam law which prohibited fradulent header information in spam.&lt;br /&gt;&lt;br /&gt;Today, the Washington Post story reports that the Virginia supreme court has ruled that a person's constitutional right to anonymity overrides the anti-spam law.&lt;br /&gt;&lt;br /&gt;Does this mean Jaynes will go free?  It's too early to tell; it may still be possible to prosecute him for stock and other fraud.&lt;br /&gt;&lt;br /&gt;More importantly, what does this do to other anti-spam laws, including CAN SPAM?  It's too early to tell, and I'm not a lawyer anyway, but it seems to me that this could have repercussions on the provisions of CAN SPAM which require that the spammer provide truthful contact information.&lt;br /&gt;&lt;span style="font-size:+2;"&gt;&lt;b&gt;&lt;/b&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5803578937634149766?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5803578937634149766/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5803578937634149766' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5803578937634149766'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5803578937634149766'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/09/virginia-supreme-court-strikes-down.html' title='Virginia Supreme Court strikes down Virginia anti-spam law; Jeremy Jaynes will possibly go free'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7394918677356079433</id><published>2008-08-19T12:59:00.000-07:00</published><updated>2008-08-21T16:36:48.193-07:00</updated><title type='text'>New variants on the advance fee fraud hitting Craig's List</title><content type='html'>A couple of years ago, I &lt;a href="http://thespamdiaries.blogspot.com/2006/03/new-kind-of-phishing-scam.html"&gt;wrote&lt;/a&gt; about a scam where you have something to sell, and someone from overseas (usually Africa) buys it but pays too much and asks you to refund the difference.  In the end, the check they sent you turns out to be bad and you're out the refund money.  This very commonly happens to people with rental property, who get emails from someone from overseas planning to visit the area and who puts down too large a deposit and ask the landlord to forward the difference to their travel agent.&lt;br /&gt;&lt;br /&gt;The more recent variant involves someone who advertises a nice place to rent on Craig's List and then absconds with the deposit.  Read more about it at &lt;a href="http://spamfighter666.blogspot.com/2008/08/one-of-these-things-is-not-like-other.html"&gt;An Unread Blog&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;In general, take the Craig's List &lt;a href="http://www.craigslist.org/about/scams.html"&gt;warnings&lt;/a&gt; about dealing with strangers very seriously.&lt;br /&gt;&lt;br /&gt;Related scams:  You're looking for a &lt;a href="http://taint.org/2008/07/10/112146a.html"&gt;roommate&lt;/a&gt;, and the interested party sends too big a deposit.  The blog &lt;a href="http://activerain.com/blogsview/199990/Beware-Rental-Scams-Operating"&gt;Active Rain&lt;/a&gt; has a good analysis involving a college student looking for a roommate, and a scammer willing to take the student's college fund.&lt;br /&gt;&lt;br /&gt;Wikipedia has a good &lt;a href="http://en.wikipedia.org/wiki/Advance_fee_fraud"&gt;compendium&lt;/a&gt; of advance fee frauds.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7394918677356079433?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7394918677356079433/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7394918677356079433' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7394918677356079433'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7394918677356079433'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/08/new-variants-on-advance-fee-fraud.html' title='New variants on the advance fee fraud hitting Craig&apos;s List'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-779537972433337869</id><published>2008-08-14T20:28:00.000-07:00</published><updated>2008-08-14T20:41:34.821-07:00</updated><title type='text'>Another spammer in the slammer — Michael Dolan</title><content type='html'>While all the world's attention has been on &lt;a href="http://thespamdiaries.blogspot.com/search/label/Soloway"&gt;Robert Soloway&lt;/a&gt;, other spammers have been quietly getting their comeuppance.&lt;br /&gt;&lt;br /&gt;Today's story concerns Michael Dolan who's just been sentenced to seven years in jail plus three years of supervised release.  He's pled guilty to fraud and aggravated identity theft.&lt;br /&gt;&lt;br /&gt;His scheme, along with five other people, was to troll AOL chat rooms for user ids.  Those user's then would receive "greeting card" spam which quietly installed malware on the victim's computers.  The next time the victim attempted to log onto AOL, the malware would ask for credit card numbers, bank accounts, and other personal info.  If the user refused to cough up, the malware prevented them from logging in.&lt;br /&gt;&lt;br /&gt;There were also more traditional email phishes asking for AOL billing details.&lt;br /&gt;&lt;br /&gt;On top of all of this, Dolan engaged in various forms of witness tampering, including a death threat, and had violated a previous probation for computer crime.&lt;br /&gt;&lt;br /&gt;Dolan's scam brought in over $400,000 from 250 victims.  As might be expected, his lawyer tried to use the insanity defense, as was the case with Soloway.&lt;br /&gt;&lt;br /&gt;Full coverage at &lt;a href="http://arstechnica.com/news.ars/post/20080814-youve-got-jail-aol-spammer-sentenced-to-seven-years.html"&gt;ars technica&lt;/a&gt; and &lt;a href="http://www.infoworld.com/article/08/08/14/AOL_phisher_gets_seven_year_sentence_1.html?source=rss&amp;amp;url=http://www.infoworld.com/article/08/08/14/AOL_phisher_gets_seven_year_sentence_1.html"&gt;InfoWorld&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-779537972433337869?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/779537972433337869/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=779537972433337869' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/779537972433337869'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/779537972433337869'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/08/another-spammer-in-slammer-michael.html' title='Another spammer in the slammer &amp;mdash; Michael Dolan'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7250490244983836005</id><published>2008-08-14T17:09:00.000-07:00</published><updated>2008-08-14T17:14:14.265-07:00</updated><title type='text'>Eight ways to get yourself blacklisted</title><content type='html'>Good article today by Esther Schindler on Cio.com:  &lt;a href="http://www.cio.com/article/443866"&gt;Eight Quick Ways to Get Your Site Blacklisted&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;It's a quick overview of bad email practices that can get you and/or your ISP on the anti-spam lists.  If your business involves sending emails in any way, you should read it.&lt;br /&gt;&lt;br /&gt;See also &lt;a href="http://slashdot.org/firehose.pl?op=view&amp;amp;id=825119"&gt;Slashdot coverage&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7250490244983836005?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7250490244983836005/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7250490244983836005' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7250490244983836005'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7250490244983836005'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/08/eight-ways-to-get-yourself-blacklisted.html' title='Eight ways to get yourself blacklisted'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-910321376750306645</id><published>2008-07-24T15:47:00.000-07:00</published><updated>2008-07-24T16:10:32.437-07:00</updated><title type='text'>Eddie Davidson kills family and then self.</title><content type='html'>I waited until multiple news sources had this story up before posting it, but it looks like it's true.  Pump-n-dump spammer Eddie Davidson, who &lt;a href="http://thespamdiaries.blogspot.com/2008/07/spammer-on-lam.html"&gt;escaped from prison&lt;/a&gt; a few days ago, has killed his wife, his three-year-old-daughter, and himself.  Two other children survived.&lt;br /&gt;&lt;br /&gt;Media coverage:  &lt;a href="http://cbs4denver.com/crime/Edward.Davidson.dead.2.779131.html"&gt;cbs4denver.com&lt;/a&gt;, &lt;a href="http://www.denverpost.com/dnc/ci_9985333"&gt;Denver Post&lt;/a&gt;, &lt;a href="http://www.9news.com/news/article.aspx?storyid=96383"&gt;9NEWS.com&lt;/a&gt;, &lt;a href="http://www.myfoxcolorado.com/myfox/pages/News/Detail?contentId=7057349&amp;amp;version=10&amp;amp;locale=EN-US&amp;amp;layoutCode=TSTY&amp;amp;pageId=3.2.1"&gt;Fox News Colorado&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-910321376750306645?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/910321376750306645/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=910321376750306645' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/910321376750306645'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/910321376750306645'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/eddie-davidson-kills-family-and-then.html' title='Eddie Davidson kills family and then self.'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7866438983531073951</id><published>2008-07-22T15:51:00.000-07:00</published><updated>2008-07-22T16:05:12.526-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Soloway'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Another spammer in the slammer</title><content type='html'>As if there's a strange conservation law in effect to counteract Eddie Davidson's escape, Robert Soloway has been given four years in prison for mail fraud, electronic mail fraud, and failing to file a tax return.&lt;br /&gt;&lt;br /&gt;While it's less than the prosecution was asking for, it's more than just a slap on the wrist, and with a little luck he won't return to spamming when he's out.&lt;br /&gt;&lt;br /&gt;He will also have to pay $700,004 in restitution, which very likely &lt;span style="font-style: italic;"&gt;is&lt;/span&gt; a slap on the wrist.  First, he almost surely has the bulk of his ill-gotten gains safely hidden away and so $700k is a fraction of what he actually made, and secondly, I would bet that the $700k never actually gets paid.&lt;br /&gt;&lt;br /&gt;Soloway will be allowed to roam free for sixty days before serving his sentence.  The government considers him a significant flight risk, so it will be interesting to see if he actually reports to prison when expected.&lt;br /&gt;&lt;br /&gt;Coverage:  &lt;cite&gt;KOMO&lt;/cite&gt; tv: &lt;a href="http://www.komonews.com/news/local/25774004.html"&gt;'Spam King' gets 4 years in prison&lt;/a&gt;.  &lt;cite&gt;SpamSuite&lt;/cite&gt;: &lt;a href="http://www.spamsuite.com/node/128"&gt;Sentencing Hearing&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7866438983531073951?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7866438983531073951/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7866438983531073951' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7866438983531073951'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7866438983531073951'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/another-spammer-in-slammer.html' title='Another spammer in the slammer'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5597344177279145901</id><published>2008-07-22T15:45:00.000-07:00</published><updated>2008-07-22T15:51:22.092-07:00</updated><title type='text'>Spammer on the lam</title><content type='html'>A strange story from Colorado today:  Pump-n-dump spammer "Fast Eddie" Davidson who was serving 21 months in a minimum security prison in Florence, Colorado simply walked away from the prison camp and is now at large.&lt;br /&gt;&lt;br /&gt;The full story can be found at &lt;cite&gt;DenverChannel.com&lt;/cite&gt;: &lt;a href="http://www.thedenverchannel.com/news/16956866/detail.html"&gt;'Spam King' Escapes From Prison&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5597344177279145901?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5597344177279145901/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5597344177279145901' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5597344177279145901'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5597344177279145901'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/spammer-on-lam.html' title='Spammer on the lam'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7383504368126798418</id><published>2008-07-15T16:48:00.000-07:00</published><updated>2008-07-16T13:33:46.974-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Soloway'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Word from the Soloway sentencing hearing</title><content type='html'>Robert Soloway's sentencing hearing has begun, with the hearing already gone to two days and a third day scheduled for next week.  It's unusual for a sentencing hearing to go on for more than a single day, and  they're still not finished.&lt;br /&gt;&lt;br /&gt;The government's &lt;a href="http://www.spamsuite.com/node/407"&gt;sentencing recommendations&lt;/a&gt; and Soloway's &lt;a href="http://www.spamsuite.com/node/408"&gt;response&lt;/a&gt; can be found at Spamsuite.&lt;br /&gt;&lt;br /&gt;In a nutshell, the government lays out what Soloway did (spamming, header forgery, fraud, tax evasion, etc.)  They have so many victims it would take weeks for them to all testify.  That Soloway has never paid a penny in the judgements against him won by Microsoft and Robert Braver.  That Soloway bragged that the law couldn't touch him and none of the plaintiffs would ever see a cent.&lt;br /&gt;&lt;br /&gt;The government asks for nine years in prison, three years probation, complete forfeiture of everything Soloway ever made from spamming, 624 hours of community service, and that Soloway be barred from the internet until his sentence is complete.&lt;br /&gt;&lt;br /&gt;Soloway's response — or more precisely, his laywer's response — is a more interesting read.  Paraphrased, it says:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;They admit that Soloway was a spammer, but say in essence "hey, it's just a little spam".&lt;/li&gt;&lt;li&gt;They say he only spammed for charity, and if some non-charities took him up on his offer, well, that's not his fault.&lt;/li&gt;&lt;li&gt;He never spammed for himself, so he obviously didn't make any money from spamming.&lt;/li&gt;&lt;li&gt;The commercial email kit which he sold received more thanks than complaints.&lt;/li&gt;&lt;li&gt;Those people who said they didn't get the refunds he promised were just a misunderstanding, and it wasn't all that many anyway.&lt;/li&gt;&lt;li&gt;He meant to file his taxes, and was filling out the forms when he was arrested.&lt;/li&gt;&lt;li&gt;Spamming wasn't even against the law until 2004 so who cares that he was spamming since 1999.&lt;/li&gt;&lt;li&gt;Soloway wasn't really forging the email because the only forgery was putting the recipients own name in the "From" line, and once you opened the email you could see who it was really from.&lt;/li&gt;&lt;li&gt;All those customers who ultimately got blacklisted by their own ISPs brought it on themselves; they should have read the instructions more carefully.&lt;/li&gt;&lt;li&gt;It's not Soloway's fault that some ISPs have anti-spam policies.&lt;/li&gt;&lt;li&gt;&lt;i&gt;Dark Mailer&lt;/i&gt; isn't spam software; don't believe what Wikipedia says about it.&lt;/li&gt;&lt;li&gt;Don't call them "zombies", call them "proxies".&lt;/li&gt;&lt;li&gt;You can't prove those servers really sent 120 million emails.&lt;/li&gt;&lt;li&gt;Soloway doesn't have any hidden assets.&lt;/li&gt;&lt;li&gt;Soloway was framed by other spammers using his business name.&lt;/li&gt;&lt;li&gt;Only a few of the complaints mentioned actual monetary loss and most of them don't provide any proof.&lt;/li&gt;&lt;li&gt;Soloway denies that he deliberately increased the amount of spam sent to people who asked to be removed.&lt;/li&gt;&lt;li&gt;Spam filters are cheap.&lt;/li&gt;&lt;li&gt;Soloway didn't harvest any email addresses [he bought them fair and square?].&lt;/li&gt;&lt;li&gt;Don't listen to Robert Braver, he's sued more than 240 people for spamming.&lt;/li&gt;&lt;li&gt;Ignore Braver's and Microsoft's lawsuits; they were default judgements.&lt;/li&gt;&lt;li&gt;Soloway never claimed the email list was opt-in.&lt;/li&gt;&lt;li&gt;At least he didn't send any porn.&lt;/li&gt;&lt;li&gt;It's not fraud because there was only a 1% complaint rate.&lt;/li&gt;&lt;li&gt;All those people who received the spam should be forced to prove their losses.&lt;/li&gt;&lt;li&gt;Soloway only made $400,000 in those four years of spamming he's charged with, so the total losses can't possibly be more than $400,000.&lt;/li&gt;&lt;li&gt;Putting someone's name in the "From" field isn't identity theft [&lt;span style="font-style: italic;"&gt;I'm inclined to agree with this one - ef&lt;/span&gt;]&lt;/li&gt;&lt;li&gt;This is Soloway's first brush with the criminal justice system [ignoring all his brushes with the civil system, and the times he fled jurisdiction on both California and Oregon], so the court should go easy on him.&lt;/li&gt;&lt;li&gt;It's not his fault, he has Tourette Syndrome.  He won't be able to get his meds in jail.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;He offered to cooperate with law enforcement after he was arrested.&lt;/li&gt;&lt;li&gt;He's certainly learned his lesson now, yessiree.  You can be sure he won't do it again.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Most of the people responsible for the Enron scandal got shorter sentences than the government is asking for here; it's not fair.  Other spammers got shorter sentences.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;And hey, it was just a little spam.&lt;/li&gt;&lt;/ul&gt;Well, that pretty much sums up the defense's case.&lt;br /&gt;&lt;br /&gt;Various spam-fighters have been asked to testify at the sentencing hearing, but they're being sequestered before speaking so they don't have much to report outside of their own testimony.  Apparently Soloway's mommy is there, scowling at everybody.&lt;br /&gt;&lt;br /&gt;Other press on the story:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;&lt;cite&gt;CIO.com&lt;/cite&gt;: &lt;a href="http://www.cio.com/article/437742/Soloway_Case_Reveals_Big_Business_Behind_Spam"&gt;Soloway Case Reveals Big Business Behind Spam&lt;/a&gt; — discusses spam botmaster Adam Sweaney's testimony of how he sold botnet access to Soloway, how the cost of getting into the spam business has shut out all but the big-time spammers, how much spam costs the ISP industry, and how one Soloway customer lost his internet access after using Soloway's software and the losses he suffered as a result.&lt;/li&gt;&lt;li&gt;&lt;cite&gt;KOMO&lt;/cite&gt; &lt;a href="http://www.komonews.com/news/24546654.html"&gt;Victims testify at Spam King's sentencing&lt;/a&gt; — discusses the challenges the judge will have assessing damages.  (Why does the press call every spammer a "Spam King")?  Includes link to video with footage of Soloway and interviews with various figures in the story.&lt;/li&gt;&lt;li&gt;&lt;cite&gt;Computer World&lt;/cite&gt;: &lt;a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;amp;articleId=9110138"&gt;Judge delays 'spam king' sentencing&lt;/a&gt;.  The third day of testimony in the sentencing hearing has been scheduled for 22 July.&lt;/li&gt;&lt;li&gt;&lt;cite&gt;Seattle PI:&lt;/cite&gt; &lt;a href="http://seattlepi.nwsource.com/local/370341_spamking11.html"&gt;'Spam King' defied Feds, now faces up to 20 years&lt;/a&gt;&lt;cite&gt;.&lt;br /&gt;&lt;/cite&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7383504368126798418?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7383504368126798418/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7383504368126798418' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7383504368126798418'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7383504368126798418'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/word-from-soloway-sentencing-hearing_15.html' title='Word from the Soloway sentencing hearing'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6430554032419169508</id><published>2008-07-08T23:54:00.000-07:00</published><updated>2008-07-09T00:09:20.556-07:00</updated><title type='text'>Zombies on my network?  It's more likely than you think.</title><content type='html'>Just a quick link to John Levine's blog post &lt;a href="http://weblog.johnlevine.com/Email/champ.html?seemore=y"&gt;Yes, you really have a zombie on your network&lt;/a&gt;.  The article covers a discussion we had on a technical mailing list involving someone who was having a hard time believing that his network was really infected by spam-bots.&lt;br /&gt;&lt;br /&gt;In the post, John forwards a good summary of the problem and what to do about it, written by Steve Champeon.&lt;br /&gt;&lt;br /&gt;The key points in the article:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Don't look for clues in your mailserver's logs; chances are the spam is coming from infected machines with their own SMTP engines and aren't using your servers to relay in the first place. And even if they are, you won't find anything useful in the headers.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Shut down unauthorized port 25 outbound connections, and put a sniffer on your network to find out where they're coming from.  In fact, do it now, before you find yourself listed somewhere.&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Don't assume the blocklists have made a mistake; look to yourself first.&lt;/li&gt;&lt;/ul&gt;Remember, for every well-known published blocklist which will remove you once the problem is solved, there are a thousand privately-managed blocklists whose admins won't be bothered to periodically re-check to see if you should be removed.  Entry into one of those blocklists is for life.  So don't wait until you find out you've been listed somewhere before you take action to prevent outgoing spam.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6430554032419169508?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6430554032419169508/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6430554032419169508' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6430554032419169508'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6430554032419169508'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/zombies-on-my-network-its-more-likely.html' title='Zombies on my network?  It&apos;s more likely than you think.'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-777956407702306718</id><published>2008-07-05T18:50:00.000-07:00</published><updated>2008-07-05T18:52:30.120-07:00</updated><title type='text'>Et tu, Easyjet?</title><content type='html'>We call it "mainsleeze".  That's when an otherwise mainstream company advertises via spam.  Today's mainsleeze spam came from EasyJet, a discount airline in europe similar to Jet Blue, except with terrible service.&lt;br /&gt;&lt;br /&gt;I probably never would have flown EasyJet again after my last experience, but they've just made it official.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-777956407702306718?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/777956407702306718/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=777956407702306718' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/777956407702306718'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/777956407702306718'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/et-tu-easyjet.html' title='Et tu, Easyjet?'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5161590214974977029</id><published>2008-07-05T12:43:00.000-07:00</published><updated>2008-07-08T23:54:33.213-07:00</updated><title type='text'>Pissedconsumer.com: spammers and maybe more</title><content type='html'>Just a quick vent:  lately, a new website, pissedconsumer.com, has been spamming this blog with advertisements for their site.  I've been spending too much of my valuable time deleting their spam as they post it.&lt;br /&gt;&lt;br /&gt;A simple whois shows they're registered anonymously, which is commonly the mark of a less-than-legitimate organization.&lt;br /&gt;&lt;br /&gt;I tried out their site myself.  It's basically a place to vent your frustration.  It's unlikely anybody will ever read what you have to write.  After you've entered your complaint, you're given the opportunity to pay a fee and get preferential placement, which I suppose means you get placed at the top of the search results that nobody will ever be searching for anyway.&lt;br /&gt;&lt;br /&gt;It remains to be seen what else they're up to.  Similar review sites have been known to try to blackmail businesses with threats of negative reviews or censorship of positive reviews, or to charge fees to have negative reviews removed, and so on.  I'll be watching for further news of them.&lt;br /&gt;&lt;br /&gt;Meanwhile, if you really want to post a review of a business, positive or negative, then I suggest either &lt;a href="http://www.resellerratings.com/"&gt;ResellerRatings&lt;/a&gt; or &lt;a href="http://www.yelp.com/"&gt;Yelp&lt;/a&gt;, both of which are popular, honest, and well-established web sites.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5161590214974977029?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5161590214974977029/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5161590214974977029' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5161590214974977029'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5161590214974977029'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/pissedconsumercom-spammers-and-maybe.html' title='Pissedconsumer.com: spammers and maybe more'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6048190341341558542</id><published>2008-07-02T19:11:00.000-07:00</published><updated>2008-07-02T19:40:43.578-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Judge rejects Linhardt's request to be dismissed from Comcast lawsuit</title><content type='html'>&lt;span style="font-size:100%;"&gt;When a judge's ruling starts with "I have before me a largely misguided motion...", you know it's a bad day for whoever filed it.&lt;br /&gt;&lt;br /&gt;In January, E360 filed a lawsuit against Comcast in the hopes that they could force Comcast to accept E360's spam.  E360 &lt;a href="http://thespamdiaries.blogspot.com/2008/04/bad-day-for-e360-but-good-one-for-rest.html"&gt;lost&lt;/a&gt; that suit.&lt;br /&gt;&lt;br /&gt;In March, Comcast &lt;a href="http://thespamdiaries.blogspot.com/2008/03/comcast-strikes-back-against-e360.html"&gt;counter-sued&lt;/a&gt; E360 and its owner Dave Linhardt for spamming.  This suit is still ongoing.&lt;br /&gt;&lt;br /&gt;In April, E360 filed a &lt;a href="http://www.spamsuite.com/node/392"&gt;motion to dismiss&lt;/a&gt;, asking among other things, that Linhardt be dismissed from the suit under the theory that he was only doing his job as officer of the corporation, and only the corporation should be held liable.&lt;br /&gt;&lt;br /&gt;Today, Judge Zagel &lt;a href="http://www.spamsuite.com/node/406"&gt;ruled against&lt;/a&gt; E360 on almost every single point.  Most significantly, Linhardt will remain part of the lawsuit:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;This leaves the final point, which seeks dismissal of the only natural person among the Counter-Defendants, Linhardt. What is offered to support his dismissal from the claims is the rule which protects corporate officers from personal liability for misdeeds of the corporation. However, this rule does not cover corporate officers who are alleged to direct and control the corporation. It is difficult to seek shelter in this rule when one is alleged to be the whole owner and controller of the all the corporations involved, as is the case here. And there are allegations of specific actions by Linhardt which would establish his liability, i.e., that he deliberately lied to Comcast when he orally stated that all intended e-mail recipients have opted in to receive the emails and that he ordered the abuse of process.&lt;span style="font-size:100%;"&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;The only piece of the lawsuit the judge was willing to dismiss was Comcast's "unjust enrichment" claim which E360 asked to have dismissed and which Comcast didn't even bother to argue.  The judge has dismissed this claim, but mentioned — practically invited — that Comcast was free to re-plead this count after discovery.&lt;br /&gt;&lt;br /&gt;Also of interest is the Judge's reference to Linhardt's habit of repeatedly dropping and re-filing lawsuits.  This is a judge who knows E360 for what they are and won't be letting them get away with any bullshit.&lt;br /&gt;&lt;br /&gt;If only Susan Gunn and David Ritz had had judges with this much clue.  But then, Comcast is very rich and Gunn and Ritz are not, and in the legal system, you get what you pay for.&lt;br /&gt;&lt;br /&gt;(Speaking of which, I would like to take this opportunity to mention that David's legal battles are not over yet, and you can donate to his defense fund &lt;a href="http://sfldf.org/donations.html"&gt;here&lt;/a&gt;.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6048190341341558542?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6048190341341558542/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6048190341341558542' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6048190341341558542'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6048190341341558542'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/07/judge-rejects-linhardts-request-to-be.html' title='Judge rejects Linhardt&apos;s request to be dismissed from Comcast lawsuit'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6216970314532558877</id><published>2008-06-24T09:33:00.000-07:00</published><updated>2008-06-24T09:34:35.341-07:00</updated><title type='text'>Boneheaded spam from Netflix</title><content type='html'>I just got spam from Netflix, offering me a trial offer.  The spam was sent to the account which I used to join Netflix several months ago.  Morons.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6216970314532558877?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6216970314532558877/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6216970314532558877' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6216970314532558877'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6216970314532558877'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/06/boneheaded-spam-from-netflix.html' title='Boneheaded spam from Netflix'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8140883520454242049</id><published>2008-06-18T21:52:00.000-07:00</published><updated>2008-06-19T15:39:54.747-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='spamhaus'/><title type='text'>Linhardt drops the other shoe</title><content type='html'>Or the fourth shoe.  Whatever.  Who's counting?&lt;br /&gt;&lt;br /&gt;Two weeks ago, I &lt;a href="http://thespamdiaries.blogspot.com/2008/06/e360-drops-lawsuit-against-feguson-gunn.html"&gt;wrote&lt;/a&gt; about how E360 had dropped their third SLAPP lawsuit against Susan Gunn, Mark Ferguson, and Kelly Chien.  E360's tactic seems to be to file unwinnable but expensive nuisance lawsuits against Gunn et al, and then drop the lawsuit at the last minute, allowing them the ability to file yet again later on.  The theory being, I suppose, that you can hurt your victims more by dragging them into court repeatedly than by dragging them into court once and seeing it through to the end.&lt;br /&gt;&lt;br /&gt;At the time, I speculated as to what Linhardt had planned for the next time.&lt;br /&gt;&lt;br /&gt;I didn't have long to wait, as within days, Linhardt slapped Gunn with yet another subpeona.  At Susan's request, I've not mentioned it until now, but her lawyer has given her the go-ahead and so you may now read it in her &lt;a href="http://groups.google.com/group/news.admin.net-abuse.email/msg/aa31a172b7205349"&gt;post on usenet&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;I'll let you read it for yourselves, but in a nutshell, they demand that she cough up everthing she knows and every piece of documentation she has on the inner workings of Spamhaus.&lt;br /&gt;&lt;br /&gt;The subpeona seems to be void on jurisdictional grounds, so it's unlikely that E360 will be getting anything from Susan.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8140883520454242049?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8140883520454242049/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8140883520454242049' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8140883520454242049'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8140883520454242049'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/06/linhardt-drops-other-shoe.html' title='Linhardt drops the other shoe'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5577366300115101113</id><published>2008-06-17T12:36:00.000-07:00</published><updated>2008-06-17T13:08:00.900-07:00</updated><title type='text'>The IRS isn't sending refunds to you by email</title><content type='html'>Especially not if your refund is $252.&lt;br /&gt;&lt;br /&gt;Since it's tax refund time, there's been a lot of IRS phishing going around lately.  Whoever is sending it isn't interested in giving you $252, they're interested in your social security number and your banking information.  Also, the IRS doesn't use servers in Hong Kong.  Stay frosty out there.&lt;br /&gt;&lt;br /&gt;It's probably pointless to point these out, since the majority of my readership is probably too savvy to fall for it anyway, but do pass this on to your more gullible friends and relatives.&lt;br /&gt;&lt;br /&gt;Oh, and while I'm on the subject, you didn't win any lottery you don't remember entering.  There's been a lot of that going on lately too.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5577366300115101113?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5577366300115101113/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5577366300115101113' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5577366300115101113'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5577366300115101113'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/06/irs-isnt-sending-refunds-to-you-by.html' title='The IRS isn&apos;t sending refunds to you by email'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-9137942120752882875</id><published>2008-06-06T15:45:00.000-07:00</published><updated>2008-06-06T16:17:18.369-07:00</updated><title type='text'>A rising new threat: ransom-ware</title><content type='html'>Reported the other day by &lt;a href="http://usa.kaspersky.com/about-us/news-press-releases.php?smnr_id=900000131"&gt;Kapersky Lab&lt;/a&gt;:  A new variant of Gpcode, known as Virus.Win32.Gpcode.ak has been classified.&lt;br /&gt;&lt;br /&gt;This virus selects some files on the victim's computer, encrypts them, and then offers to sell the decryption program for a price.&lt;br /&gt;&lt;br /&gt;The Gpcode virus is not new, but previous versions had used a weak enough encryption that it could be broken.  The new version uses a 1024-bit key and fixes previous flaws in the encryption althorithm.&lt;br /&gt;&lt;br /&gt;For obvious reasons, victims are strongly encouraged not to pay the ransom or otherwise deal with extortionists.&lt;br /&gt;&lt;br /&gt;The best defenses are good preventative measures.  Back up your files regularly.  Run anti-virus software.  Don't run Windows operating systems (that part was my idea).&lt;br /&gt;&lt;br /&gt;If infected, Kapersky makes the following recommendations: &lt;strong&gt;DO NOT RESTART or POWER DOWN the potentially infected machine&lt;/strong&gt; (presumably to give experts a chance to analyze the infection.)  Contact Kapersky at &lt;a href="mailto:stopgpcode@kaspersky.com"&gt;stopgpcode@kaspersky.com&lt;/a&gt; with the following information included in the email:&lt;p&gt;&lt;/p&gt;  &lt;ul&gt;&lt;li&gt;Date &amp;amp; Time of infection&lt;/li&gt;&lt;li&gt; Everything done on the computer in the 5 minutes before the machine was infected, including:&lt;/li&gt;&lt;ul&gt;&lt;li&gt;Programs executed&lt;/li&gt;&lt;li&gt;Websites visited&lt;/li&gt;&lt;/ul&gt;&lt;/ul&gt;Kapersky says they'll try to help recover your encrypted data.&lt;br /&gt;&lt;br /&gt;Personally, I'm not sure what they can do to help without the extortionist's private key.  Your best bet is to hope the person gets caught, in which case they'll presumably be forced to cough up the key.  Helping Kapersky analyze the virus is your best course of action.&lt;br /&gt;&lt;br /&gt;Ransom-ware is not a new concept, of course.  The Kapersky Lab article mentions that the Gpcode virus is two years old at present.  There have been other forms of ransom-ware as well; two years ago I &lt;a href="http://thespamdiaries.blogspot.com/2006/05/sanford-wallace-ordered-to-pay-over-4.html"&gt;wrote&lt;/a&gt; that the FTC was coming down on &lt;a href="http://www.rahul.net/falk/quickrefs.html#sanford_wallace"&gt;Sanford Wallace&lt;/a&gt; for infecting users' computers with spyware, and then offering to sell them the tool to remove it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-9137942120752882875?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/9137942120752882875/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=9137942120752882875' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/9137942120752882875'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/9137942120752882875'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/06/rising-new-threat-ransom-ware.html' title='A rising new threat: ransom-ware'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2654935102008068659</id><published>2008-06-04T06:32:00.000-07:00</published><updated>2008-06-04T06:47:10.964-07:00</updated><title type='text'>An amusing IQ test</title><content type='html'>A correspondent sends me an amusing story about phishing, cellphone spam, and being tricked into giving permission to be spammed (which I &lt;a href="http://thespamdiaries.blogspot.com/2006/07/cell-phone-spam-coming-to-america.html"&gt;wrote&lt;/a&gt; about a couple years ago).  I'll just quote it directly:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;I was playing Scramble on facebook and one of the ads made it through my ad filter. Just for fun, I clicked on the "10 minute IQ test". 10 easy questions which took about 30 seconds total to answer. The 11th question was clearly the real IQ test. They ask you to enter your cell phone number to get your results by text message. The small print at the bottom says by submitting your cell number you are subscribing to their word club service, and they will charge you $20 a month (for AT&amp;amp;T users) to get a word sent to your phone once a week. I didn't submit my cell number.&lt;br /&gt;&lt;br /&gt;I guess I passed the IQ test.&lt;br /&gt;&lt;/blockquote&gt;The &lt;a href="http://www.boston.com/business/technology/articles/2008/06/02/att_settles_suit_over_3rd_party_cell_phone_fees/"&gt;Boston Globe&lt;/a&gt; and &lt;a href="http://www.engadgetmobile.com/2008/03/03/atandt-gets-slapped-for-deceptive-third-party-charges/"&gt;Engadget&lt;/a&gt; (among many others) have articles about AT&amp;amp;T settling lawsuits about such fraudulent charges and what you can do if you find one on your phone bill.&lt;br /&gt;&lt;br /&gt;And if you're not an AT&amp;amp;T customer, don't be smug&lt;span title="ok, you can be a little smug"&gt;*&lt;/span&gt;, Verizon, Sprint, and T-Mobile are facing similar lawsuits.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2654935102008068659?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2654935102008068659/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2654935102008068659' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2654935102008068659'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2654935102008068659'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/06/amusing-iq-test.html' title='An amusing IQ test'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5673013700365473163</id><published>2008-06-02T23:14:00.000-07:00</published><updated>2008-06-03T21:26:20.741-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SLAPP'/><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>E360 drops lawsuit against Feguson, Gunn, and Chien — again</title><content type='html'>This just in:  alleged spammer E360, who has filed SLAPP lawsuits not once, not twice, but &lt;span style="font-style: italic;"&gt;three times&lt;/span&gt; against various individuals it thinks are somehow connected to Spamhaus, or who simply called E360 a spammer&lt;span style="font-style: italic;"&gt;&lt;/span&gt;, has voluntarily dropped their lawsuit yet again.&lt;br /&gt;&lt;br /&gt;Quick history:  &lt;a href="http://www.rahul.net/falk/quickrefh.html#david_linhardt"&gt;David Linhardt&lt;/a&gt;, the owner of E360 first &lt;a href="http://thespamdiaries.blogspot.com/2007/03/dave-linhardt-files-another-slapp.html"&gt;filed a lawsuit&lt;/a&gt; against Susan Gunn, Mark Ferguson, Kelly Chien, and other anti-spam activists in federal court.  That suit ended when Linhardt &lt;a href="http://thespamdiaries.blogspot.com/2007/04/what-if-they-held-lawsuit-and-nobody.html"&gt;didn't even show up in court&lt;/a&gt; (neither did the defendants, who had never been served.)&lt;br /&gt;&lt;br /&gt;A month later, Linhardt &lt;a href="http://thespamdiaries.blogspot.com/2007/05/other-shoe-drops-e360-re-files-their.html"&gt;re-filed the same lawsuit&lt;/a&gt;, but in state court this time.  This forced the defendants to get lawyers and prepare for a lawsuit all over again.  In September 2007, Linhardt once again &lt;a href="http://thespamdiaries.blogspot.com/2007/09/e360insight-drops-case-against-feguson.html"&gt;dropped the lawsuit&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;True to form, he filed &lt;a href="http://thespamdiaries.blogspot.com/2008/01/e360-files-third-slapp-suit-against.html"&gt;yet a third lawsuit&lt;/a&gt; in January of this year, naming Susan Gunn, Mark Ferguson, and Kelly Chien.  This lawsuit was interesting in that it coincided with E360's &lt;a href="http://thespamdiaries.blogspot.com/2008/01/e360-back-in-court-suing-comcast-this.html"&gt;lawsuit against Comcast&lt;/a&gt;.  Things became interesting, with suits, counter suits, and counter-counter-suits flying thick and furious.  There are rumors of offers from Linhardt to settle out of court which were presumably rejected by the defendants.&lt;br /&gt;&lt;br /&gt;In mid-April, Gunn filed a &lt;a href="http://www.spamsuite.com/node/404"&gt;motion to dismiss&lt;/a&gt; for lack of jurisdiction.  The court gave Linhardt until May 27 to file a response, which Linhardt did not do.  Gunn then filed a motion to dismiss based on Linhardt's failure to respond to the first motion.&lt;br /&gt;&lt;br /&gt;Finally, comes news that Linhardt has &lt;a href="http://www.spamsuite.com/node/405"&gt;filed his own motion to dismiss&lt;/a&gt;.  The filing also notes that he's managed to settle with Ferguson.  Unfortunately, as with most out-of-court settlements, neither side is saying what the terms were.  Knowing what I know of Ferguson, I'm betting that he's not the one who conceeded anything.&lt;br /&gt;&lt;br /&gt;The interesting thing is that Linhardt filed to dismiss &lt;span style="font-weight: bold;"&gt;with prejudice&lt;/span&gt;, meaning he won't be allowed to file again.&lt;br /&gt;&lt;br /&gt;Now I'm not a lawyer, but I'm puzzled as to why the plaintiff would file to dismiss with prejudice, thus shutting the door for good on his ability to file yet again.  This is essentially a legally-binding pledge not to sue again.  Is he hoping that by doing this, he'll convince the defendants not to file any counter-suits?  Or perhaps this will make the court look more favorably at him in such a suit.  Or perhaps this was a condition that was attached in some sort of settlement he made with Ferguson.&lt;br /&gt;&lt;br /&gt;If not for the fact that he'd filed with prejudice, I would assume this was just another round of his previous tactic of repeated file-and-drop.  He knows he can never actually win a SLAPP lawsuit against anti-spam activists, so his most damaging tactic was to file a suit, and then drop it before he can lose, thus allowing him to repeat the attack.  But filing with prejudice?  Either he really means to let it go, or it's a diversion of some sort — perhaps he's planning to file in Federal court again next time.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5673013700365473163?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5673013700365473163/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5673013700365473163' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5673013700365473163'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5673013700365473163'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/06/e360-drops-lawsuit-against-feguson-gunn.html' title='E360 drops lawsuit against Feguson, Gunn, and Chien &amp;mdash; again'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5631630831020302431</id><published>2008-04-11T12:34:00.000-07:00</published><updated>2008-04-11T14:15:26.122-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Bad day for E360 (but a good one for the rest of us)</title><content type='html'>I just got back from vacation to a passel of delightful news.  First is word that E360, not to put too fine a point on it, got their ass handed to them in the E360 vs Comcast lawsuit.&lt;br /&gt;&lt;br /&gt;A copy of the decision can be found at &lt;a href="http://www.spamsuite.com/node/387"&gt;SpamSuite&lt;/a&gt;.  It's seven pages long and very worth reading.  It starts out:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;Plaintiff e360Insight, LLC is a marketer. It refers to itself as an Internet marketing company. Some, perhaps even a majority of people in this country, would call it a spammer.&lt;/blockquote&gt;Now there's an opening paragraph that has Bad Day written all over it for E360.&lt;br /&gt;&lt;br /&gt;Anyway, the entire opinion is well worth reading and is clearly the work of a judge who Gets It.&lt;br /&gt;&lt;br /&gt;Bottom line:  Comcast is immune from lawsuit under the Good Samaritan provision of the CDA, § 230(c).  E360's claim that being CAN-SPAM compliant removes that immunity is rubbish.  E360's Denial Of Service claims are rubbish.  E360's Tortious Interference with Prospective Economic Advantage claim is likewise nonsense.  E360's first ammendment rights have nothing to do with Comcast, a private enterprise.&lt;br /&gt;&lt;br /&gt;Entire lawsuit is dismissed on the grounds that § 230(c) grants immunity to Comcast.&lt;br /&gt;&lt;br /&gt;This is a very good outcome.  It reinforces the precedent that § 230(c) immunity is absolute and applies to spam-blocking, and it establishes that CAN-SPAM compliance does not affect that immunity.&lt;br /&gt;&lt;br /&gt;All that remains is to see what happens with Comcast's countersuit.&lt;br /&gt;&lt;br /&gt;More coverage:&lt;br /&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;J.D. Falk: &lt;a href="http://www.circleid.com/posts/84111_if_it_spams_like_a_duck/"&gt;If It Spams Like a Duck...&lt;/a&gt;&lt;/li&gt;&lt;li&gt;John Levine: &lt;a href="http://www.circleid.com/posts/841110_comcast_vs_e360/"&gt;Comcast 1, E360 0&lt;/a&gt;&lt;/li&gt;&lt;li&gt;Slashdot:  &lt;a href="http://it.slashdot.org/it/08/04/11/1511255.shtml"&gt;Judge In e360 Vs. Comcast Rules e360 a Spammer&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5631630831020302431?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5631630831020302431/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5631630831020302431' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5631630831020302431'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5631630831020302431'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/04/bad-day-for-e360-but-good-one-for-rest.html' title='Bad day for E360 (but a good one for the rest of us)'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1082618605013374848</id><published>2008-03-20T15:08:00.000-07:00</published><updated>2008-03-20T17:22:53.342-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Comcast strikes back against E360</title><content type='html'>Some quick background:  alleged spammer &lt;a href="http://www.rahul.net/falk/quickrefa.html#e360insight"&gt;E360&lt;/a&gt; has &lt;a href="http://thespamdiaries.blogspot.com/search?q=E360"&gt;sued&lt;/a&gt; internet provider Comcast because of Comcast's refusal to deliver E360 spam to Comcast customers.  See my &lt;a href="http://thespamdiaries.blogspot.com/2008/03/comcast-answer-to-e360.html"&gt;March 4&lt;/a&gt; entry for more information and Comcast's response.&lt;br /&gt;&lt;br /&gt;This week, the other shoe dropped as Comcast has filed a countersuit against E360, David Linhardt, and many of its related companies (Maverick Direct Marketing, Bargain Depot, Northshore Hosting, etc.) for spamming, computer fraud, abuse of process and other violations.  The &lt;a href="http://www.spamsuite.com/node/375"&gt;full text&lt;/a&gt; of the lawsuit can be found at Spamsuite, and it's a doozy.&lt;br /&gt;&lt;br /&gt;Some of the highlights:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Comcast states in no uncertain terms that E360 et al are spammers.&lt;/li&gt;&lt;li&gt;E360 fabricates opt-in records (¶29). &lt;/li&gt;&lt;li&gt;In 2006, Linhardt called Comcast and "fraudulently represented to a Comcast employee that all of the intended recipients of e360's email messages have opted-in to receive such messages" (¶34). &lt;/li&gt;&lt;li&gt;In 2007, Linhardt sent a letter claiming the same thing (Exhibit A).&lt;/li&gt;&lt;li&gt;Comcast offered to help them with their email practices but E360 refused, asserting that they would learn how to circumvent Comcast's filtering system through discovery (¶35)&lt;/li&gt;&lt;li&gt;After obtaining a court order preventing Spamhaus from listing them as spammers, E360 began marketing their "IP Protection Services" in which they would arrange for third-parties to be included in the court order for a fee (¶41-45, Exhibit B) [I've &lt;a href="http://thespamdiaries.blogspot.com/2008/01/e360-sells-affiliate-status-to-other.html"&gt;written&lt;/a&gt; about this elsewhere].&lt;/li&gt;&lt;li&gt;Virtumundo, a spammer, has purchased E360's IP Protection Services (¶46-48, Exhibit C)&lt;/li&gt;&lt;li&gt;E360 keeps filing, dropping, and re-filing lawsuits against spam-fighters. (¶49-50)&lt;/li&gt;&lt;li&gt;E360 filed its lawsuit against Comcast knowing it was without merit (¶76)&lt;/li&gt;&lt;li&gt;E360 filed the lawsuit in order to use the discovery process to learn how to circumvent Comcast's filtering system. (¶77)&lt;/li&gt;&lt;/ul&gt;Comcast asks that E360 be enjoined from sending spam, that E360 pay damages, that E360 return their illegal profits, and that E360 pay Comcast's legal costs.&lt;br /&gt;&lt;br /&gt;What I find most interesting is Comcast's assertion in paragraph 76 that E360 filed this lawsuit in order to use the discovery process to learn how to circumvent Comcast's spam filters.&lt;br /&gt;&lt;br /&gt;Ever since this lawsuit was filed by E360, I've been wondering what their motivation was, since they must have known they could never win.  It seems that we now have at least part of the answer.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1082618605013374848?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1082618605013374848/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1082618605013374848' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1082618605013374848'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1082618605013374848'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/03/comcast-strikes-back-against-e360.html' title='Comcast strikes back against E360'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6187283720319924012</id><published>2008-03-14T17:55:00.000-07:00</published><updated>2008-03-14T18:31:52.059-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Soloway'/><title type='text'>Soloway pleads guilty</title><content type='html'>Spammer &lt;a href="http://thespamdiaries.blogspot.com/search/label/Soloway"&gt;Robert Soloway&lt;/a&gt;, who was arrested in May of last year has pled guilty in U.S. District Court in Seattle.  He's pled guilty to fraud, CAN-SPAM violations, and failure to file an income tax return.  The feds dropped the charge of aggravated identity theft in a plea bargain.  He faces up to 26 years total on the three charges.  He will also have to forfeit roughly $10,000 in property and sit through a polygraph test on the issue of his other assets.&lt;br /&gt;&lt;br /&gt;Coverage:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Seattle PI: &lt;a href="http://seattlepi.nwsource.com/local/355083_spamking15.html?source=mypi"&gt;Spam king pleads guilty&lt;/a&gt;&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Seattle Times: &lt;a href="http://seattletimes.nwsource.com/html/localnews/2004283053_webspamking14m.html"&gt;Man dubbed "spam king" pleads guilty to three charges&lt;/a&gt;&lt;/li&gt;&lt;li&gt;Digital Trends: &lt;a href="http://news.digitaltrends.com/news/story/16061/seattle_spam_king_pleads_guilty"&gt;Seattle-based spam king Robert Soloway pleaded guilty to three counts in U.S. District Court, including email fraud.&lt;/a&gt;&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6187283720319924012?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6187283720319924012/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6187283720319924012' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6187283720319924012'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6187283720319924012'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/03/soloway-pleads-guilty.html' title='Soloway pleads guilty'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4008352827888588051</id><published>2008-03-09T10:54:00.000-07:00</published><updated>2008-03-11T15:18:54.173-07:00</updated><title type='text'>Wikileaks calls for boycott of domain registrar eNom</title><content type='html'>In the aftermath of the shutdown of Wikileaks.org by a court order issued at the request of Swiss Bank &lt;a href="http://en.wikipedia.org/wiki/Bank_Julius_Baer"&gt;Julius Baer&lt;/a&gt;, Wikileaks has called for the boycott of registrar &lt;a href="http://www.enom.com/"&gt;eNom&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;eNom is best known as the domain registrar that complied with the federal government's order to &lt;a href="http://www.nytimes.com/2008/03/04/us/04bar.html?_r=1&amp;amp;oref=slogin"&gt;shut down a Spanish travel agency&lt;/a&gt; because it did business with Cuba — the agency was not under U.S. jurisdiction and so was hardly violating U.S. law, but their domain was registered in the United States, and that was good enough for the feds.&lt;br /&gt;&lt;br /&gt;Although eNom's culpability in that incident is doubtful, since they were probably under orders from the federal government, their involvement in the shutdown of Wikileaks.info was not so innocent.&lt;br /&gt;&lt;br /&gt;In a nutshell, bank Julius Baer was able to get a court order shutting down Wikileaks.&lt;span style="font-weight: bold;"&gt;org&lt;/span&gt;, but not wikileaks.&lt;span style="font-weight: bold;"&gt;info&lt;/span&gt;, which was a mirror site not mentioned in the TRO.  However, learning of the court order against wikileaks.org, eNom apparently took it upon themselves to shutdown wikileaks.info as well — without a court order of any kind.&lt;br /&gt;&lt;br /&gt;Wikileaks made repeated requests — and then demands — to eNom asking them to identify who, if anybody, had told them to lock the wikileaks.info registration, and what claims had been made.  When eNom failed to answer, Wikileaks issued their &lt;a href="http://wikileaks.org/wiki/WIKILEAKS.INFO_censored_by_eNom_and_Demand_Media"&gt;call to boycott&lt;/a&gt;.  Wikileaks accuses eNom, and their parent company Domain Media, Inc. , of a pattern of censorship and other unethical practices that goes beyond the shutdowns of Wikileaks.info and the Spanish travel agency.&lt;br /&gt;&lt;br /&gt;Related link:  &lt;cite&gt;CNET&lt;/cite&gt;:  &lt;a href="http://www.news.com/Survey-Are-domain-registrars-free-speech-friendly/2100-1025_3-6155614.html"&gt;Survey: Are domain registrars free-speech friendly?&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Off-topic:  I would be remiss if I didn't mention the apparent misogyny in the Wikileaks press release.  The call for boycott gives the names and photographs of four people they seem to find particularly culpable, three men and one woman.  With the men, Wikileaks used their full names and described their offenses against Wikileaks and the internet community as a whole.  For the woman, they referred to her by first name only, and described only the way she met her husband.  I found this strange, and a little disturbing.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4008352827888588051?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4008352827888588051/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4008352827888588051' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4008352827888588051'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4008352827888588051'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/03/wikileaks-calls-for-boycott-of-domain.html' title='Wikileaks calls for boycott of domain registrar eNom'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8248626939933060561</id><published>2008-03-06T16:44:00.000-08:00</published><updated>2008-03-06T17:11:06.768-08:00</updated><title type='text'>ComplaintRemover in the news again</title><content type='html'>In June of last year, &lt;a href="http://thespamdiaries.blogspot.com/2007/06/spammer-bill-stanley-loses-in-court.html"&gt;I wrote&lt;/a&gt; about &lt;a href="http://www.rahul.net/falk/quickrefs.html#bill_stanley"&gt;Bill Stanley&lt;/a&gt;'s "ComplaintRemover" service which was slapped down by an Arizona judge.  The idea behind the service was that if you were a business owner and you wanted negative customer feedback removed from the internet, you'd contract with ComplaintRemover who would then cajole, bully, or threaten the offending website into removing the unwanted comment.  Their services even extended to making &lt;a href="http://news.com.com/Police+Blotter+Dark+side+of+reputation+defending+service/2100-1030-6194158.html"&gt;death threats&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Well, today's &lt;cite&gt;Consumerist&lt;/cite&gt; has an &lt;a href="http://consumerist.com/364563/complaint-remover-gets-rid-of-negative-links-including-lolcats"&gt;article&lt;/a&gt; that shows that ComplaintRemover is still in business.  They have an amusing chat transcript in which "Kelly" from ComplaintRemover assures a potential client that they can arrange to have LOLCats removed from the internet.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8248626939933060561?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8248626939933060561/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8248626939933060561' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8248626939933060561'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8248626939933060561'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/03/complaintremover-in-news-again.html' title='ComplaintRemover in the news again'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6080983982423225565</id><published>2008-03-04T19:37:00.000-08:00</published><updated>2008-03-04T21:40:15.026-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Comcast answer to E360</title><content type='html'>&lt;a href="http://www.spamsuite.com/"&gt;Spamsuite&lt;/a&gt; has published Comcast's &lt;a href="http://www.spamsuite.com/node/370"&gt;response&lt;/a&gt; in the E360 vs Comcast lawsuit (in which E360 is suing Comcast for blocking E360's spam.)  The document is a long, slow read, since the Comcast lawyers are being very careful to dot all their t's and cross all their i's.  Either that, or they're being paid by the word.  For the fun part, skip ahead to their Memorandum of law, below.&lt;br /&gt;&lt;br /&gt;Allow me to summarize:  most E360 allegations are facts about E360, for which Comcast says they don't have any first-hand information to form a belief and therefore deny.&lt;br /&gt;&lt;br /&gt;E360 makes many allegations of harm they've suffered because of the spam blocking, and Comcast says they don't have any first-hand information to form a belief and therefore deny.&lt;br /&gt;&lt;br /&gt;E360 quotes the law in several places, and Comcast admits that E360 is quoting the law.  Except where E360 gets it wrong, in which case Comcast denies.&lt;br /&gt;&lt;br /&gt;E360 claims they don't spam, and that they follow the rules.  Comcast responds that because they get hundreds of thousands of emails to its subscribers, some of which are forged, and therefore they don't have any first-hand information to form a belief and therefore deny.&lt;br /&gt;&lt;br /&gt;E360 claims that Comcast is deliberately and maliciously attacking them.  Comcast denies this.&lt;br /&gt;&lt;br /&gt;Paragraph 60 is interesting.  E360 alleges that Comcast writes pink contracts.  Comcast denies this.&lt;br /&gt;&lt;br /&gt;Things get interesting in the "Affirmative Defenses" section of Comcast's response (starting at paragraph 63).&lt;br /&gt;&lt;br /&gt;Naturally, Comcast starts right out with the section of the Communications Decency Act that immunizes isps that use technical means (e.g. filtering) to protect their subscribers from spam.  They go on to state that CAN-SPAM and various state laws also immunize them.&lt;br /&gt;&lt;br /&gt;They then point out that E360 has unclean hands based on their violations of CAN-SPAM, the Computer Fraud and Abuse act, and the Illinois Electronic Mail Act.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Next on the docket is Comcast's &lt;a href="http://www.spamsuite.com/node/369"&gt;Memorandum in Support&lt;/a&gt; of their motion.  This is where the fun begins.  This is the document where Comcast calls a spammer a spammer.&lt;br /&gt;&lt;br /&gt;The memorandum starts out &lt;span style="font-style: italic;"&gt;Plaintiff is a spammer who refers to itself as a “internet marketing company,”&lt;/span&gt; and takes off from there.&lt;br /&gt;&lt;br /&gt;Of special interest is Comcast's reminder to the court that even if spam doesn't actually violate the CAN-SPAM act, it's still spam and isps still have the right to block it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6080983982423225565?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6080983982423225565/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6080983982423225565' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6080983982423225565'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6080983982423225565'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/03/comcast-answer-to-e360.html' title='Comcast answer to E360'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5874534898656325868</id><published>2008-03-04T11:35:00.000-08:00</published><updated>2008-03-25T07:04:36.586-07:00</updated><title type='text'>Don't register or host your domain in the U.S. if it's controversial</title><content type='html'>In the news lately have been a number of incidents where U.S. courts, or the U.S. government itself has ordered domain registrars to shut down free speech.&lt;br /&gt;&lt;br /&gt;First was the &lt;a href="http://thespamdiaries.blogspot.com/search/label/E360"&gt;E360 vs Spamhaus&lt;/a&gt; case, in which accused spammer &lt;a href="http://www.rahul.net/falk/quickrefh.html#david_linhardt"&gt;E360 Insight&lt;/a&gt; sued anti-spam organization &lt;a href="http://www.spamhaus.org/"&gt;Spamhaus&lt;/a&gt; for labeling them as spammers and won by default when Spamhaus insisted that U.S. courts did not have jurisdiction over them in England and didn't appear.  Unfortunately, U.S. courts &lt;span style="font-style: italic;"&gt;did&lt;/span&gt; have jurisdiction over Spamhaus' domain registrar, who was nearly ordered to shut Spamhaus down (a court order was under consideration).  Fortunately, Spamhaus was able to move their registration overseas before any shutdown order could be issued.&lt;br /&gt;&lt;br /&gt;Not so lucky was &lt;a href="http://wikileaks.org/wiki/Wikileaks"&gt;WikiLeaks&lt;/a&gt;, a whistle-blowing web site which blew the whistle against Swiss Bank &lt;a href="http://en.wikipedia.org/wiki/Bank_Julius_Baer"&gt;Julius Baer&lt;/a&gt;, publishing documents that supposedly provided evidence of asset hiding, money laundering and tax evasion.  Julius Baer sued in retaliation and was able to convince U.S. judge &lt;a href="http://en.wikipedia.org/wiki/Jeffrey_White_%28judge%29" class="mw-redirect" title="Jeffrey White (judge)"&gt;Judge Jeffrey White&lt;/a&gt; to order Wikileaks' domain registrar to &lt;a href="http://en.wikipedia.org/wiki/Wikileaks#Bank_Julius_Baer_lawsuit"&gt;shut them down&lt;/a&gt; a few weeks ago.  Although Wikileaks was foolish enough to have a registrar in U.S. jurisdiction, they were at least wise enough to have their servers in Sweden and to have mirrors in other countries, and so the organization was able to stay on the air. Shortly after, the judge reversed his decision.&lt;br /&gt;&lt;br /&gt;Probably better known is the Pakistani censorship of YouTube.  Late last month, the Pakistani government decided that some of the material hosted on YouTube was too offensive to be allowed inside the country, and ordered Pakistan Telecom to &lt;a href="http://ca.news.yahoo.com/s/afp/080224/world/denmark_media_islam_pakistan_internet_youtube"&gt;block YouTube&lt;/a&gt; at the border.  Unfortunately, the method used by Pakistan Telecom was to advertise false domain routing for IP addresses owned by YouTube.  This would have worked fine if not for the fact that the false routing information leaked out of Pakistan and &lt;a href="http://www.renesys.com/blog/2008/02/pakistan_hijacks_youtube_1.shtml"&gt;shut down routing world-wide&lt;/a&gt;, knocking YouTube off the air for a couple hours.&lt;br /&gt;&lt;br /&gt;But far worse than any of these is the outright censorship of a Spanish travel agency by the United States Government.&lt;br /&gt;&lt;br /&gt;The travel agency in question — run by an Englishman named Steve Marshall who lives in Spain —  specializes in trips to Cuba.  Even though though the web site is not run by a U.S. citizen, is not based in the U.S., and is targeted at European travelers and not Americans, Marshall made one fatal mistake:  he registered his domains in the United States.&lt;br /&gt;&lt;br /&gt;That was enough for the U.S. government.  In October, the U.S. Treasury Department ordered Marshall's domain registrar, eNom, to not only pull the plug on Marshall's domains, but to lock them down to prevent him from transferring them to a registrar outside of the United States.&lt;br /&gt;&lt;br /&gt;The full story can be found in the New York Times article &lt;a href="http://www.nytimes.com/2008/03/04/us/04bar.html?_r=1&amp;amp;oref=slogin"&gt;A Wave of the Watch List, and Speech Disappears&lt;/a&gt;.  The article is well worth reading, and details abuses of the watch list the government uses to punish people who do business with Cuba.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update:&lt;/span&gt;  Add Network Solutions to the list of registrars not to do business with if you have a controversial web site.  In April 2008, they shut down a &lt;a href="http://www.fitnathemovie.com/"&gt;web site&lt;/a&gt; which promoted a controversial anti-islam film.  It didn't even take a court order to do it.  See &lt;cite&gt;E Commerce Times&lt;/cite&gt; article &lt;a href="http://www.ecommercetimes.com/story/62277.html?welcome=1206453434"&gt;Domain Name Registrars: The Weakest Link in Online Free Speech&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5874534898656325868?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5874534898656325868/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5874534898656325868' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5874534898656325868'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5874534898656325868'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/03/dont-register-or-host-your-domain-in-us.html' title='Don&apos;t register or host your domain in the U.S. if it&apos;s controversial'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-9201305285071309344</id><published>2008-02-20T15:00:00.000-08:00</published><updated>2008-02-20T22:51:24.263-08:00</updated><title type='text'>Barack Obama thinks my name is "StupidSpamSucker SlutFace"</title><content type='html'>&lt;h3&gt;Spammer revenge or Republican dirty trick?  Too early to tell, but either way, it's incompetence at the Democrat's email provider.&lt;/h3&gt;Well, it's not every day that you get called a nasty name by a major presidential candidate, but there's a first time for everything, I suppose.&lt;br /&gt;&lt;br /&gt;Here's the latest missive from Barack Obama (or his campaign staff, to be precise):&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;Subject:  Major news&lt;br /&gt;From: Barack Obama &amp;lt;info@barackobama.com&amp;gt;&lt;br /&gt;Date: 13:04&lt;br /&gt;To: StupidSpamSucker SlutFace &amp;lt;falk@...net&amp;gt;&lt;br /&gt;&lt;br /&gt;StupidSpamSucker --&lt;br /&gt;&lt;br /&gt;We learned something extraordinary since I wrote to you last night.&lt;br /&gt;&lt;br /&gt;We've crunched all the numbers and discovered that we are within striking distance of something historic: one million people donating to this campaign.&lt;br /&gt;&lt;br /&gt;[request for donation deleted]&lt;br /&gt;&lt;br /&gt;Paid for by Obama for America&lt;br /&gt;&lt;br /&gt;This email was sent to: falk@....net&lt;br /&gt;&lt;/blockquote&gt;Reading the net-abuse newsgroups, I see that I'm &lt;a href="http://groups.google.com/group/news.admin.net-abuse.email/browse_frm/thread/9fb90714f711356b/"&gt;not the only one&lt;/a&gt; who got this.  Clearly this is the deliberate work of someone delibarately adding anti-spam activists to Obama's "spread the word" web page.  The only question that remains is:  is this the work of a spammer making life a little harder on anti-spam activists, or a Republican dirty trick (it does sort of have Karl Rove's stench)?&lt;br /&gt;&lt;br /&gt;But the thing is, either way, it points to gross incompetence on the part of the Democratic mass mailing provider, "Blue State Digital".&lt;br /&gt;&lt;br /&gt;One thread in the discussion includes a response from an admin at Blue State who is quoted as saying&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;We don't confirm ownership of the subscribed email address -- no need, as there's nothing to be gained from submitting fake signups.&lt;/blockquote&gt;I don't know how to respond to this.  Sad to see that someone can be so naive in this day and age and in this political climate.  Here's a hint:  "Swift Boating".  Look it up.&lt;br /&gt;&lt;br /&gt;Anyway here's to hoping that the Obama campaign wises up and fires Blue State's sorry asses before this goes any further.  In the meantime, my "StupidSpamSucker SlutFace" will live in my file of truly memorable spams.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-9201305285071309344?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/9201305285071309344/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=9201305285071309344' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/9201305285071309344'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/9201305285071309344'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/02/barack-obama-thinks-my-name-is.html' title='Barack Obama thinks my name is &quot;StupidSpamSucker SlutFace&quot;'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-109116896863179607</id><published>2008-02-05T12:26:00.000-08:00</published><updated>2008-02-05T12:36:31.695-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Terry Zink has a good post on the Ritz case</title><content type='html'>From Terry Zink's anti-spam blog:  &lt;a href="http://blogs.msdn.com/tzink/archive/2008/02/05/maybe-the-north-dakota-judge-should-watch-more-south-park.aspx"&gt;Maybe the North Dakota judge should watch more South Park...&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;In a nutshell, Terry comments on the judge's ruling that David Ritz was guilty, in part, because he used tools the average user wouldn't have known about; as if expertise in a subject was criminal all by itself.&lt;br /&gt;&lt;br /&gt;Terry compares the case to an episode of &lt;cite&gt;South Park&lt;/cite&gt; which is a parody of the TV series &lt;cite&gt;24&lt;/cite&gt;, but in which the kids perform their investigation with the tools already in everybody's hands.&lt;br /&gt;&lt;br /&gt;The point being that maybe David knows what the whois database is, or how to do a zone transfer, while the average end-user (or North Dakota judge) has no clue, but the fact remains that these tools are in every internet user's hands and their use for what they were intended is not a criminal act.&lt;br /&gt;&lt;br /&gt;And while I'm on the subject, I'd like to remind my readers that David's defense fund still does not have the money required to defend against the oncoming criminal case, let alone to appeal this inane decision.&lt;br /&gt;&lt;br /&gt;Please take a minute and donate to David's defense fund, either at this &lt;a href="http://sfldf.org/donations.html"&gt;web page&lt;/a&gt; or by sending a check directly to his lawyers at:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;David Ritz&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;c/o Debra S. Koenig&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Godfrey and Kahn, S.C.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;780 N Water Street&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Milwaukee WI 53202&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-109116896863179607?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/109116896863179607/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=109116896863179607' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/109116896863179607'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/109116896863179607'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/02/terry-zink-has-good-post-on-ritz-case.html' title='Terry Zink has a good post on the Ritz case'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4835478504654069524</id><published>2008-02-04T15:21:00.001-08:00</published><updated>2008-02-04T15:43:26.709-08:00</updated><title type='text'>Verizon/UUNet drops off of Spamhaus top-ten list</title><content type='html'>I never dreamed I'd see this day, but &lt;a href="http://www.rahul.net/falk/Uu/"&gt;Verizon/UUNet&lt;/a&gt;, former bane of the internet, has managed to get themselves removed from the Spamhaus &lt;a href="http://www.spamhaus.org/statistics/networks.lasso"&gt;Rokso top-10&lt;/a&gt; list of worst service providers (currently in the #11 position.)  It wasn't very long ago that they were in the #1 position (and had been for a decade) by a very wide margin.&lt;br /&gt;&lt;br /&gt;Kudos to the abuse staff at Verizon, who did what no other abuse staff had ever done before — gotten UUNet under control.&lt;br /&gt;&lt;br /&gt;Read &lt;a href="http://groups.google.com/group/news.admin.net-abuse.email/msg/2908d93b47613f34?hl=en"&gt;Steve Linford's message&lt;/a&gt; about it in the net-abuse newsgroups.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4835478504654069524?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4835478504654069524/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4835478504654069524' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4835478504654069524'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4835478504654069524'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/02/verizonuunet-drops-off-of-spamhaus-top.html' title='Verizon/UUNet drops off of Spamhaus top-ten list'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6845717324542933036</id><published>2008-01-31T18:30:00.000-08:00</published><updated>2008-03-04T11:38:04.690-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>E360 sells affiliate status to other spammers — CONFIRMED</title><content type='html'>Just &lt;a href="http://groups.google.com/group/news.admin.net-abuse.email/browse_frm/thread/2f3367e828dcac72/75e3470c3f30e29f"&gt;announced publicly&lt;/a&gt; on the net-abuse newsgroups:  Some time ago, someone phoned Kelly Hale at E360 pretending to be someone being blocked by Spamhaus and answering E360's &lt;a href="http://thespamdiaries.blogspot.com/2007/06/e360-advertising-spamhaus-removal.html"&gt;ad&lt;/a&gt; for Spamhaus removal services.  Hale explained in some detail how, for $7500 per block of IP addresses, E360 would force Spamhaus to stop listing the caller's addresses by claiming that the caller is an affiliate of E360.&lt;br /&gt;&lt;br /&gt;Hale explained at some length as to how it would be done, leveraging off of their previous lawsuit against Spamhaus (which they won by default when Spamhaus failed to show up, claiming lack of jurisdiction).  Hale also offered quantity discounts if the caller wanted to unlist more than a "C" block (256 addresses) of IP space.&lt;br /&gt;&lt;br /&gt;An advertising brochure for E360's service offers three options:  The first is called "IP Identity Management" and involves modifying the Arin (master registry of all IP blocks) database so make spammer IP addresses look like they belong to E360.  This is the service we knew E360 was offering.&lt;br /&gt;&lt;br /&gt;The second service they offer is IP Tunneling.  In a nutshell, this allows spammer email servers to connect to the internet over a virtual private network to E360's servers in order to hide the spammer's true IP addresses and make them appear to come from E360.&lt;br /&gt;&lt;br /&gt;The third option is for the senders to pay E360 to send the spam for them.&lt;br /&gt;&lt;br /&gt;A copy of the audio recording can temporarily be found at &lt;a rel="nofollow" href="http://download.yousendit.com/446767913273C4A9"&gt;yousendit.com&lt;/a&gt;, along with copies of E360's brochures advertising the services [&lt;a href="http://download.yousendit.com/0B73667F02C25600"&gt;1&lt;/a&gt;], [&lt;a href="http://download.yousendit.com/2EF0929327809A58"&gt;2&lt;/a&gt;].  (Yousendit.com has a download limit, so these links won't work for very long, but I expect mirrors will appear shortly and will update this post as that happens.)&lt;br /&gt;&lt;br /&gt;Anyway, very little of this comes as a surprise; it was pretty obvious that E360 was gaming the legal decision as a money-making scheme, having already &lt;a href="http://thespamdiaries.blogspot.com/2007/06/e360-apparently-sells-affiliate-status.html"&gt;sold affiliate status to Virtumundo&lt;/a&gt; at least, but this audio recording and these brochures are an undeniable smoking gun.&lt;br /&gt;&lt;br /&gt;The only real questions that remain are:  was this what they had in mind all along when they sued Spamhaus or did they only think of it later?  And: how will the judge react when he sees and hears this?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6845717324542933036?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6845717324542933036/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6845717324542933036' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6845717324542933036'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6845717324542933036'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/e360-sells-affiliate-status-to-other.html' title='E360 sells affiliate status to other spammers &amp;mdash; CONFIRMED'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8230700782167746762</id><published>2008-01-29T15:15:00.000-08:00</published><updated>2008-01-29T16:15:45.852-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Sanford Wallace'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Sanford Wallace and Walter Rines in trouble with FTC again</title><content type='html'>This just in from the UK &lt;cite&gt;Register&lt;/cite&gt;.  The FTC is asking the courts to find &lt;a href="http://www.rahul.net/falk/quickrefs.html#sanford_wallace"&gt;Sanford Wallace&lt;/a&gt; and &lt;a href="http://www.rahul.net/falk/quickrefh.html#walter_rines"&gt;Walter Rines&lt;/a&gt; in contempt of court.&lt;br /&gt;&lt;br /&gt;In 2006, Wallace and Rines &lt;a href="http://thespamdiaries.blogspot.com/2006/11/walter-rines-shut-down-by-ftc.html"&gt;settled with the FTC&lt;/a&gt; on charges of distributing spyware, agreeing to stop doing it and paying a slap-on-the-wrist $50,000 fine.  Within months they were at it again, this time &lt;a href="http://thespamdiaries.blogspot.com/2007/03/sanford-wallace-sued-again-this-time-by.html"&gt;attacking MySpace&lt;/a&gt; with Malware and social engineering.&lt;br /&gt;&lt;br /&gt;As the &lt;cite&gt;Register&lt;/cite&gt; puts it:  "Now the FTC is trying to grow a pair".  The FTC is asking the judge in the spyware case to find Wallace and Rines in contempt for violating their 2006 agreement.  The FTC also wants to seize over $500,000 in profits from the MySpace caper.&lt;br /&gt;&lt;br /&gt;For the full story, including many details on Wallace and Rines' attacks on MySpace users, see &lt;cite&gt;Register&lt;/cite&gt; article &lt;a href="http://www.theregister.co.uk/2008/01/26/ftc_contempt_action_spamford_wallace/page2.html"&gt;Spamford Wallace's MySpace riches come under attack&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8230700782167746762?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8230700782167746762/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8230700782167746762' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8230700782167746762'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8230700782167746762'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/sanford-wallace-and-walter-rines-in.html' title='Sanford Wallace and Walter Rines in trouble with FTC again'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5479099082006404757</id><published>2008-01-29T14:46:00.000-08:00</published><updated>2008-01-29T15:14:46.821-08:00</updated><title type='text'>Two strikes against Domain Kiting</title><content type='html'>&lt;a href="http://www.rahul.net/falk/glossary.html#domainKiting"&gt;Domain Kiting&lt;/a&gt; (also known as Domain Tasting) is a practice that exploits a loophole in ICANN rules which allows a domain owner to return the domain name within five days for a full refund.  This loophole allows spammers, speculators and other bad-faith actors to register tens of thousands of domains for no cost.  The practice is primarily used by spammers hiding their origins, by search-engine spammers trying to game search engine rankings, and by speculators hoping that typos or other misguided links will bring enough traffic to the domain to make it worth keeping (domain tasting).&lt;br /&gt;&lt;br /&gt;This week, two seperate announcements may have heralded an end to the practice.&lt;br /&gt;&lt;br /&gt;First, Google announced that their AdSense program would exclude domains that fit the pattern of domains being repeatedly dropped and re-registered, thus taking away the financial incentive for search-engine spammers and domain tasters.  See &lt;cite&gt;Yahoo!&lt;/cite&gt; article &lt;a href="http://news.yahoo.com/s/ap/20080125/ap_on_hi_te/web_address_sampling"&gt;Google combats domain name loophole&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;The second, and more significant, word comes from ICANN.  In their &lt;a href="http://www.icann.org/minutes/prelim-report-23jan08.htm"&gt;23 January 2008&lt;/a&gt; meeting, they voted to make their 20-cent-per-domain fee nonrefundable (see items 5 and 6).  This fee may not sound like much, but when domain kiters are registering thousands and tens of thousands of domains every week, it may be enough to make the practice unprofitable.&lt;br /&gt;&lt;br /&gt;This may also have an effect on Network Solutions' new policy of &lt;a href="http://www.ecommercetimes.com/story/Network-Solutions-Flack-Producing-Moves-61179.html?welcome=1201648334"&gt;grabbing up domains&lt;/a&gt; it discovers people are thinking of registering.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5479099082006404757?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5479099082006404757/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5479099082006404757' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5479099082006404757'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5479099082006404757'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/two-strikes-against-domain-kiting.html' title='Two strikes against Domain Kiting'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4276766413177069782</id><published>2008-01-29T14:36:00.000-08:00</published><updated>2008-01-29T14:45:49.728-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SLAPP'/><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Direct magazine picks up the Linhardt story</title><content type='html'>&lt;cite&gt;Direct&lt;/cite&gt; magazine has picked up the story:  &lt;a href="http://directmag.com/magilla/linhardt_anti-spammers_0129/"&gt;Linhardt Sues Anti-Spammers…Again&lt;/a&gt;.  The article contains a fair amount of detail on the story and its history.  There's also a link to Linhardt's &lt;a href="http://directmag.com/magilla/linhardt_responds_magilla_0129/"&gt;explanation&lt;/a&gt; as to why he claimed to have Sender Score certification from Return Path, which Return Path has denied.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4276766413177069782?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4276766413177069782/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4276766413177069782' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4276766413177069782'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4276766413177069782'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/direct-magazine-picks-up-linhardt-story.html' title='Direct magazine picks up the Linhardt story'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2832222513751547711</id><published>2008-01-25T15:19:00.000-08:00</published><updated>2008-06-02T23:38:57.499-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SLAPP'/><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='spamhaus'/><title type='text'>E360 files third SLAPP suit against Susan Gunn and others</title><content type='html'>Three days ago, I asked rhetorically where &lt;a href="http://www.rahul.net/falk/quickrefa.html#e360insight"&gt;E360&lt;/a&gt; gets the money to file all these harassing lawsuits.  That question becomes more serious with the news that Linhardt has filed yet a &lt;span style="font-weight: bold;"&gt;third&lt;/span&gt; lawsuit against Susan Gunn along with Mark Ferguson and Kelly Chien.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.spamsuite.com/node/357"&gt;Details of the lawsuit&lt;/a&gt; can be found at SpamSuite.  In a nutshell, it's the same lawsuit as before, claiming defamation because the defendants called them spammers.&lt;br /&gt;&lt;br /&gt;There's no way that E360 can win this case on the merits given the abundant evidence of their spamming, and even Ferguson's proof that E360 &lt;a href="http://spamsuite.com/node/301"&gt;falsified opt-in records&lt;/a&gt;.  This is clearly just another lawsuit intended to harass anti-spam activists.&lt;br /&gt;&lt;br /&gt;One major question:  How many times are the courts going to allow Linhardt to keep re-filing the same lawsuit before they put a stop to it.&lt;br /&gt;&lt;h3&gt;Where is the money coming from?&lt;/h3&gt;This brings us to the question:  Where &lt;span style="font-style: italic;"&gt;does&lt;/span&gt; E360 get the money for all these lawsuits?  The one against Comcast certainly will go nowhere unless E360 spends significant money pursuing it.&lt;br /&gt;&lt;br /&gt;One theory I've heard is that, like the &lt;a href="http://www.rahul.net/falk/quickrefa.html#mark_felstein"&gt;Mark Felstein&lt;/a&gt; lawsuit against Spamhaus in 2003, this lawsuit is quietly being backed by a coalition of spammers.  In this case, the spammers are hoping for a legal precedent which will force Comcast, and by extension other ISPs, to accept spam without any blocking.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2832222513751547711?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2832222513751547711/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2832222513751547711' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2832222513751547711'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2832222513751547711'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/e360-files-third-slapp-suit-against.html' title='E360 files third SLAPP suit against Susan Gunn and others'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-3582579339241044211</id><published>2008-01-22T13:19:00.000-08:00</published><updated>2008-01-22T17:36:36.691-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>E360 back in court; suing Comcast this time</title><content type='html'>Where &lt;span style="font-style: italic;"&gt;do&lt;/span&gt; they get the money for all this litigation?&lt;br /&gt;&lt;br /&gt;According to &lt;cite&gt;Direct&lt;/cite&gt; magazine, &lt;a href="http://directmag.com/disciplines/email/e360_court_suing_comcast_0122/"&gt;E360 is suing Comcast&lt;/a&gt; for blocking E360 spam.&lt;br /&gt;&lt;br /&gt;E360 CEO Dave Linhardt insists that E360 does not spam, and that they've been Sender Score Certified by &lt;a href="http://returnpath.com/"&gt;Return Path&lt;/a&gt;.  Oddly enough, however, Return Path says that E360 has &lt;span style="font-style: italic;"&gt;not&lt;/span&gt; been certified.&lt;br /&gt;&lt;br /&gt;E360 is asking for more than $20M in damages.  Perhaps this is their new business model?  Send spam, then sue whoever blocks them.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update&lt;/span&gt;:  Spamsuite has the &lt;a href="http://www.spamsuite.com/node/353"&gt;paperwork&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Their comments:&lt;br /&gt;&lt;blockquote&gt;Of all of the pathetic lawsuits I've seen.... &lt;p&gt;Well, this one's got it all.&lt;/p&gt; &lt;p&gt;Deferring a connection is tarpitting and is a denial of service attack. Not delivering mail is a denial of service attack. Using a spam filter is not legal (or maybe it's just that it's not kosher -- we'll have to find a rabbi to rule on that one). Not telling a sender how to evade filters is fraudulent. A sender's inability to design a system that can cope with sending more email while waiting for deferred messages to timeout and retry is a denial of service attack caused by the receiver. e360Insight has even tossed in a First Amendment claim and I was pretty sure that we moved past that by 1999. And finally, having a whitelist or a feedback loop that you don't let everyone have is a violation of fair trade rules.&lt;/p&gt; &lt;p&gt;It's stunning. It really is. I'm not entirely sure how you get to be this dense, but I suspect that it's a painstaking (and probably painful) process involving frontal lobotomies and maybe electroshock treatments.&lt;/p&gt;&lt;/blockquote&gt;&lt;p&gt;&lt;/p&gt;My own comments:  This isn't the first time a spammer has sued someone for blocking spam.  About two years ago, a spammer called Longhorn Singles &lt;a href="http://thespamdiaries.blogspot.com/2006/01/university-of-texas-v.html"&gt;sued the University of Texas&lt;/a&gt; over spam blocking.  They lost.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-3582579339241044211?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/3582579339241044211/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=3582579339241044211' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3582579339241044211'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3582579339241044211'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/e360-back-in-court-suing-comcast-this.html' title='E360 back in court; suing Comcast this time'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7613029384245505724</id><published>2008-01-21T17:51:00.000-08:00</published><updated>2008-01-21T18:09:05.425-08:00</updated><title type='text'>More coverage in the blogosphere</title><content type='html'>&lt;ul&gt;&lt;li&gt;A Technocrat's Blog: &lt;a href="http://www.technocratsblog.com/2008/01/18/couldnt-make-it-up-anti-spammer-fined-60k-for-dns-lookup-hack/"&gt;Couldn’t make it up: Anti-spammer fined $60K for DNS lookup ‘hack’&lt;/a&gt;&lt;/li&gt;&lt;li&gt;Mail Channels:  &lt;a href="http://blog.mailchannels.com/2008/01/breaking-law.html"&gt;Breaking the Law&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7613029384245505724?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7613029384245505724/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7613029384245505724' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7613029384245505724'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7613029384245505724'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/more-coverage-in-blogosphere.html' title='More coverage in the blogosphere'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2124311577394006094</id><published>2008-01-18T19:18:00.000-08:00</published><updated>2008-01-21T10:38:19.971-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Heise Security picks up the story</title><content type='html'>&lt;a href="http://www.heise-security.co.uk/news/102013"&gt;Anti-spammer fined for accessing DNS records of private network&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2124311577394006094?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.heise-security.co.uk/news/102013' title='Heise Security picks up the story'/><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2124311577394006094/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2124311577394006094' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2124311577394006094'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2124311577394006094'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/heise-security-picks-up-story.html' title='Heise Security picks up the story'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7084703456790391347</id><published>2008-01-18T19:10:00.000-08:00</published><updated>2008-01-21T10:38:28.838-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>UK Inquirer picks up the story</title><content type='html'>&lt;a href="http://www.theinquirer.net/gb/inquirer/news/2008/01/18/dns-zone-transfers-illegal"&gt;DNS zone transfers ruled illegal.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Money quote:&lt;br /&gt;&lt;blockquote&gt;What worried the judge was if she didn't convict Ritz of being a hacker, then the computer crime laws in the Land of the Free would be turned on their head.&lt;br /&gt;&lt;br /&gt;It was much tidier to make it a crime to access a server on the internet that is set up to provide that public info. It seems that no one explained to the judge what the Internet was.&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7084703456790391347?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='related' href='http://www.theinquirer.net/gb/inquirer/news/2008/01/18/dns-zone-transfers-illegal' title='UK Inquirer picks up the story'/><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7084703456790391347/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7084703456790391347' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7084703456790391347'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7084703456790391347'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/uk-inquirer-picks-up-story.html' title='UK Inquirer picks up the story'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1510399595096335290</id><published>2008-01-17T23:09:00.001-08:00</published><updated>2008-01-21T10:38:48.011-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds_v_Falk'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Citizen Media law project carries the case</title><content type='html'>This has actually been up for months, but I just found out about it.&lt;br /&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.citmedialaw.org/threats/reynolds-v-falk-lawsuit"&gt;Reynolds v. Falk (lawsuit)&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://www.citmedialaw.org/threats/sierra-corporate-design-v-falk"&gt;Sierra Corporate Design v. Falk &amp;amp; Ritz&lt;br /&gt;&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1510399595096335290?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1510399595096335290/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1510399595096335290' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1510399595096335290'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1510399595096335290'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/citizen-media-law-project-carries-case.html' title='Citizen Media law project carries the case'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2501191938075317995</id><published>2008-01-17T22:53:00.000-08:00</published><updated>2008-01-21T10:38:55.271-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Excellent comment on the Ritz affair</title><content type='html'>&lt;span style="font-style: italic;"&gt;ZWithaPGGB&lt;/span&gt; at Slashdot has written an excellent &lt;a href="http://yro.slashdot.org/comments.pl?sid=421122&amp;amp;cid=22089792"&gt;editorial&lt;/a&gt; on the judge's decision in this case.  I take the liberty of quoting the key part here:&lt;br /&gt;&lt;br /&gt;When a jurist with little or no technical understanding attempts to make a ruling in a case where much of the evidence is technical, there is often a serious case of cognitive dissonance. This is the case in Judge Rothe-Seeger's ruling in the Ritz case.&lt;br /&gt;&lt;br /&gt;I am not a lawyer, and make no comment about the merits of the behavior of Mr. Ritz. I am, however, a network engineer, and someone actively involved in information security, particularly using DNS.&lt;br /&gt;&lt;br /&gt;In ruling that querying a nameserver that was configured to provide a zone transfer for a list of all the hosts in a zone illegal, Judge Rothe-Seeger has demonstrated a fundamental misunderstanding of the technical design of the Internet, not just of DNS, but of ALL the applications and protocols. Further, the comment that Mr. Ritz's querying and republication of the public WHOIS data "without Network Solutions permission" was illegal also completely misunderstands the nature of Whois data.&lt;br /&gt;&lt;br /&gt;What the judge has done is, effectively, to say that each person who asks a public server for information that it is explicitly designed to provide to all and sundry needs to get specific permission for that content from that publisher. This is completely at odds with how the Internet works. The Internet is designed in such a way that servers provide content to anyone who asks, unless the owner has configured the server not to do so.&lt;br /&gt;&lt;br /&gt;Sierra could easily have prevented zone transfers from their name servers if they so chose. If they did not do so, then the presumption is that they intended to allow it. There are many very good reasons why a service provider would want their zone to be transferrable, and by configuring their nameservers in that way, they were, in effect, doing the same thing as someone leaving a stack of maps out in public, for all to take at their leisure. What the judge has ruled would be analogous to finding a crime when someone took a copy of an ad that included a layout of a house from a realtor's office.&lt;br /&gt;&lt;br /&gt;The WHOIS data, on the other hand, is public record BY DESIGN. It is part of the basic design of the DNS that you be able to find out who the registrant for a given domain is. How else are all the legal remedies for copyright infringement, illegal content, abuse of service, etc. to be exercised if there is no way to find out who to serve notice on and in what jurisdiction they reside?&lt;br /&gt;&lt;br /&gt;It is clear from Judge Rothe-Seeger's bio that she has little or no experience of life beyond North Dakota. It is also clear from her ruling that she has little or no understanding of the Internet. Based on her age, it is time for the judge to retire, as she clearly fails to understand the world in which she now lives.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2501191938075317995?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2501191938075317995/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2501191938075317995' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2501191938075317995'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2501191938075317995'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/excellent-comment-on-ritz-affair.html' title='Excellent comment on the Ritz affair'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-715903022188160849</id><published>2008-01-17T15:05:00.000-08:00</published><updated>2009-07-20T16:25:09.322-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Chris Jester of Suavemente donates $5000</title><content type='html'>It's only fair that the really big donors get a public "thank you" on these pages, so I'd like to start the ball rolling by thanking Chris Jester of Suavemente for his generous $5000 donation.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update: There was confusion caused by PayPal holding the donation. This has been resolved.&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-715903022188160849?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/715903022188160849/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=715903022188160849' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/715903022188160849'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/715903022188160849'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/chris-jester-of-suavemente-donates-5000.html' title='Chris Jester of Suavemente donates $5000'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-834886053676977757</id><published>2008-01-17T13:37:00.000-08:00</published><updated>2008-01-21T10:39:09.325-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>More coverage of David Ritz case</title><content type='html'>Anti-Spam Blog: &lt;a href="http://blog.mailchannels.com/2008/01/breaking-law.html"&gt;Breaking the Law&lt;/a&gt;&lt;br /&gt;Bricks:  &lt;a href="http://blog.ddiction.com/?p=2036"&gt;WHOIS lookups criminal??&lt;/a&gt;&lt;br /&gt;Taint.org: &lt;a href="http://taint.org/2008/01/17/175312a.html"&gt;Bad law in North Dakota&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-834886053676977757?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/834886053676977757/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=834886053676977757' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/834886053676977757'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/834886053676977757'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/more-coverage-of-david-ritz-case.html' title='More coverage of David Ritz case'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7633154341126153396</id><published>2008-01-17T12:54:00.000-08:00</published><updated>2008-01-21T10:39:16.837-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>UK Register picks up the story</title><content type='html'>This one was pretty good: &lt;a href="http://www.theregister.co.uk/2008/01/17/anti_spam_activist_lawsuit/"&gt;Anti-spammer fined $60K for DNS lookup 'hack'&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7633154341126153396?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7633154341126153396/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7633154341126153396' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7633154341126153396'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7633154341126153396'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/uk-register-picks-up-story.html' title='UK Register picks up the story'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1478457372258009313</id><published>2008-01-17T12:30:00.000-08:00</published><updated>2008-01-21T10:39:23.836-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Slashdot picks up the story</title><content type='html'>&lt;a href="http://yro.slashdot.org/article.pl?sid=08/01/17/0417209"&gt;Some DNS Requests Ruled Illegal in North Dakota&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1478457372258009313?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1478457372258009313/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1478457372258009313' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1478457372258009313'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1478457372258009313'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/slashdot-picks-up-story.html' title='Slashdot picks up the story'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8170359562073780332</id><published>2008-01-16T16:17:00.000-08:00</published><updated>2008-01-17T12:18:56.302-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Circle ID picks up the Ritz story</title><content type='html'>See Al Iverson's article in CircleID: &lt;a href="http://www.circleid.com/posts/811611_david_ritz_court_spam/"&gt;North Dakota Judge Gets it Wrong&lt;/a&gt;.  It's an excellent article.  Al goes into some detail as to the absurdity of the judge's ruling.&lt;br /&gt;&lt;br /&gt;Reminder:  you can donate to David's defense fund at this &lt;a href="http://sfldf.org/paypal.html"&gt;web site&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8170359562073780332?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8170359562073780332/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8170359562073780332' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8170359562073780332'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8170359562073780332'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/circle-id-picks-up-ritz-story.html' title='Circle ID picks up the Ritz story'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2938616225989133890</id><published>2008-01-15T18:49:00.000-08:00</published><updated>2008-01-15T19:17:24.908-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Apalling judgement in the David Ritz case</title><content type='html'>I've been waiting with bated breath for the last few weeks to find out how David Ritz's lawsuit turned out.  It turns out that the reason I hadn't heard is that the court slammed him with an unbelievable gag order.  Among many other things, he's not allowed to discuss this case in detail.  The transcripts have even been sealed.&lt;br /&gt;&lt;br /&gt;Luckily, Mickey Chandler, who runs Spamsuite has been able to obtain a copy of the &lt;a href="http://www.spamsuite.com/node/351"&gt;court judgement&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Spamsuite describes this as "12 pages of bad law".  That's putting it mildly to say the least.  The court has ruled, in essence, that because Ritz knows more about network administration than the average user, that everything he does with that knowledge is criminal.  The court ruling is full of statements that I find frankly outrageous, but without access to the court transcripts, they're impossible to refute in detail.&lt;br /&gt;&lt;br /&gt;I'm hoping that it will be possible to get this case unsealed so we can see what actually happened in the courtroom.&lt;br /&gt;&lt;br /&gt;I'm also hoping that this will be appealed.  I've never seen such an ignorant decision in a court case before, and this needs to be fought not only for David's benefit, but for the benefit of anybody who wants to continue using standard forensic tools in the fight against spam.&lt;br /&gt;&lt;br /&gt;But appeal or no appeal, David's legal expenses continue to pile up.  Please take a minute and donate to David's defense fund, either at this &lt;a href="http://sfldf.org/paypal.html"&gt;web page&lt;/a&gt; or by sending a check directly to his lawyers at:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;David Ritz&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;c/o Debra S. Koenig&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Godfrey and Kahn, S.C.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;780 N Water Street&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Milwaukee WI 53202&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2938616225989133890?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2938616225989133890/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2938616225989133890' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2938616225989133890'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2938616225989133890'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/apalling-judgement-in-david-ritz-case.html' title='Apalling judgement in the David Ritz case'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5023023144818994806</id><published>2008-01-11T23:30:00.000-08:00</published><updated>2009-11-23T22:05:31.536-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ralsky'/><title type='text'>Azoogle drawn into Ralsky spam case</title><content type='html'>Earlier, I &lt;a href="http://thespamdiaries.blogspot.com/2008/01/hammer-drops-ralsky-indicted.html"&gt;wrote&lt;/a&gt; about &lt;a href="http://www.rahul.net/falk/quickrefh.html#alan_ralsky"&gt;Alan Ralsky&lt;/a&gt; and how he's been arrested in Michigan on various spam and fraud-related charges, along with his son-in-law and nine other people.&lt;br /&gt;&lt;br /&gt;Well it turns out that this case is likely to tie into Joe Wagner's &lt;a href="http://thespamdiaries.blogspot.com/2007/06/spammers-taken-to-small-claims-court.html"&gt;case against Azoogle&lt;/a&gt;.  It turns out that in pre-trial discovery, Azoogle admitted that the spammer they'd hired in their &lt;span style="font-style: italic;"&gt;Get a "Free" plasma tv&lt;/span&gt; spam was Superior Distributing of West Bloomfield, MN, which turns out to be none other than Ralsky's son-in-law, &lt;a href="http://www.rahul.net/falk/quickrefa.html#scott_bradley"&gt;Scott Bradley&lt;/a&gt;.  A simple &lt;a href="http://www.cis.state.mi.us/bcs_corp/dt_corp.asp?id_nbr=650017"&gt;public record&lt;/a&gt; lookup which only takes a few seconds, would have shown Azoogle who they were dealing with, so they'll have some trouble claiming they didn't know they were hiring the Ralsky spam gang when they sent out the spam.  A simple &lt;a href="http://www.spamhaus.org/rokso/evidence.lasso?rokso_id=ROK4115"&gt;Spamhaus&lt;/a&gt; lookup would have told them even more.&lt;br /&gt;&lt;br /&gt;Joe Wagner's &lt;a href="http://www.sccaseinfo.org/pa5.asp?full_case_number=2-07-SC-004388"&gt;court case&lt;/a&gt; against Azoogle and other spammers will be heard next Friday morning at the San Jose downtown superior court.  It will be interesting to see how it turns out.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5023023144818994806?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5023023144818994806/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5023023144818994806' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5023023144818994806'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5023023144818994806'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/azoogle-drawn-into-ralsky-spam-ring.html' title='Azoogle drawn into Ralsky spam case'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5140046800381580176</id><published>2008-01-10T11:44:00.000-08:00</published><updated>2009-11-23T22:06:03.056-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ralsky'/><title type='text'>Ralsky arraigned</title><content type='html'>There has been much speculation over the last few days on whether Ralsky would actually return to the U.S. to face various spam-related charges, or if he would take it on the lam.  Well, the answer is that he came back and was arraigned in U.S. District Court in Detroit yesterday.  In handcuffs.&lt;br /&gt;&lt;br /&gt;Read all about it in the Detroit Free Press:  &lt;a href="http://www.freep.com/apps/pbcs.dll/article?AID=/20080109/NEWS01/80109104"&gt;Man arraigned on charges he sent e-mail to inflate stocks&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5140046800381580176?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5140046800381580176/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5140046800381580176' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5140046800381580176'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5140046800381580176'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/ralsky-arraigned.html' title='Ralsky arraigned'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2171067973917289045</id><published>2008-01-06T19:56:00.000-08:00</published><updated>2009-11-23T22:06:46.492-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ralsky'/><title type='text'>The hammer drops; Ralsky indicted.</title><content type='html'>One of the world's major spammers, &lt;a href="http://www.rahul.net/falk/quickrefh.html#alan_ralsky"&gt;Alan Ralsky&lt;/a&gt;, has been indicted in federal court, along with his son-in-law Scott Bradley and nine others.  They've been indicted in federal court in Detroit on charges of running an illegal spam operation.  Defendants are residents of Michigan, California, Arizona, Russia, Canada, and Hong Kong.  According to the &lt;cite&gt;Detroit Free Press&lt;/cite&gt;, he could be facing up to 20 years in prison, plus fines.&lt;br /&gt;&lt;br /&gt;Charged are:  &lt;a href="http://www.rahul.net/falk/quickrefh.html#alan_ralsky"&gt;Alan Ralsky&lt;/a&gt;, &lt;a href="http://www.rahul.net/falk/quickrefa.html#scott_bradley"&gt;Scott Bradley&lt;/a&gt;, Judy M. Devenow, John S. Bown, William C. Neil, Anki K. Neil, James E. Bragg, &lt;a href="http://www.rahul.net/falk/quickrefa.html#james_fite"&gt;James E. Fite&lt;/a&gt;, Peter Severa, How Wai John Hui, and Francis A. Tribble.&lt;br /&gt;&lt;br /&gt;Charges include stock fraud, conspiracy, mail fraud, wire fraud, money laundering, and computer fraud.  The government is seeking forfeiture of assets worth $2.7 million.&lt;br /&gt;&lt;br /&gt;Media coverage:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Detroit Free Press:  &lt;a href="http://www.freep.com/apps/pbcs.dll/article?AID=2008801040391"&gt;Leading Internet spammer indicted&lt;/a&gt;&lt;/li&gt;&lt;li&gt;Dept. of Justice press release:  &lt;a href="http://www.usdoj.gov/opa/pr/2008/January/08_crm_003.html"&gt;Alan Ralsky, Ten Others, Indicted in International Illegal Spamming and Stock Fraud Scheme&lt;/a&gt;&lt;/li&gt;&lt;li&gt;CNN:  &lt;a href="http://www.cnn.com/2008/BUSINESS/01/03/us.spam/"&gt;Spam's 'poster boy' indicted&lt;/a&gt;&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;Ralsky is currently travelling in Europe.  No bets as to whether he returns to the U.S. on his own initiative, or is arrested there and extradicted.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2171067973917289045?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2171067973917289045/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2171067973917289045' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2171067973917289045'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2171067973917289045'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/hammer-drops-ralsky-indicted.html' title='The hammer drops; Ralsky indicted.'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-7204062799649381822</id><published>2008-01-06T11:50:00.001-08:00</published><updated>2008-01-06T12:07:16.342-08:00</updated><title type='text'>Zango/180 Solutions exploiting facebook to install spyware</title><content type='html'>From the "This comes as no surprise to anybody" department comes word that &lt;a href="http://www.rahul.net/falk/quickrefs.html#zango"&gt;Zango&lt;/a&gt; is using a &lt;a href="http://www.net-security.org/malware_news.php?id=898"&gt;Facebook widget to install spyware&lt;/a&gt; on victims' computers.&lt;br /&gt;&lt;br /&gt;The article at &lt;cite&gt;Help Net Security&lt;/cite&gt; describes the attack in some detail, but in a nutshell, the victim receives a Facebook notification that they've got a secret admirer, and need to install some software to find out who it is.  And then you need to forward the spyware to five of your friends as well.&lt;br /&gt;&lt;br /&gt;The software you're tricked into installing is, of course, the Zango spyware.&lt;br /&gt;&lt;br /&gt;Remember boys and girls, it's no safer to install software that some stranger sends you on Facebook than it is to install software someone emails to you.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-7204062799649381822?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/7204062799649381822/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=7204062799649381822' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7204062799649381822'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/7204062799649381822'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2008/01/zango180-solutions-exploiting-facebook.html' title='Zango/180 Solutions exploiting facebook to install spyware'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-6654695569094189373</id><published>2007-12-22T15:03:00.000-08:00</published><updated>2007-12-22T15:12:12.153-08:00</updated><title type='text'>Worst.  Phish.  Ever.</title><content type='html'>Check out what just appeared in my inbox:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;pre&gt;Subject: You're Billing Information !&lt;br /&gt;&lt;br /&gt;&lt;span style="color:blue;"&gt;PayPal&lt;/span&gt;&lt;br /&gt;&lt;h2&gt;You're Billing Information!&lt;/h2&gt;&lt;br /&gt;Dear PayPal Member!&lt;br /&gt;&lt;p&gt;It has come to our attention that your PayPal Billing Information&lt;br /&gt;records are out of date. ...&lt;/pre&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;OK, some scammer needs to have a copy of Bob the Angry Flower's educational &lt;a href="http://www.angryflower.com/aposter.html"&gt;poster&lt;/a&gt; about the apostrophe on his wall.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-6654695569094189373?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/6654695569094189373/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=6654695569094189373' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6654695569094189373'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/6654695569094189373'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/12/worst-phish-ever.html' title='Worst.  Phish.  Ever.'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-3513105092473299469</id><published>2007-12-21T12:44:00.000-08:00</published><updated>2007-12-21T12:48:58.291-08:00</updated><title type='text'>Another spammer in the slammer — Todd Moeller given more than two years</title><content type='html'>In June, I &lt;a href="http://thespamdiaries.blogspot.com/2007/06/spammer-adam-vitale-pleads-guilty-under.html"&gt;wrote&lt;/a&gt; that spammer &lt;a href="http://www.rahul.net/falk/quickrefs.html#adam_vitale"&gt;Adam Vitale&lt;/a&gt; had pled guilty to spamming AOL subscribers, and that his partner Todd Moeller was facing the same charges.  Today I leanred that in November, the New York Attorney General &lt;a href="http://www.usdoj.gov/usao/nys/pressreleases/November07/moellersentencingpr.pdf"&gt;announced&lt;/a&gt; that Moeller has been sentenced to 27 months.  Vitale was also due to be sentenced by now; I'll see if I can find out how that turned out.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-3513105092473299469?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/3513105092473299469/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=3513105092473299469' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3513105092473299469'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/3513105092473299469'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/12/another-spammer-in-slammer-todd-moeller.html' title='Another spammer in the slammer &amp;mdash; Todd Moeller given more than two years'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-2488804226283840740</id><published>2007-12-03T21:11:00.000-08:00</published><updated>2008-01-04T19:55:14.008-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='E360'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>More legal woes for E360</title><content type='html'>According to the &lt;a href="http://pacer.psc.uscourts.gov/"&gt;Pacer&lt;/a&gt; archives, E360 has become caught up in another lawsuit.  This time, they're being sued by John W. Ferron, of Ferron &amp;amp; Associates.  In short, Ferron is suing E360 and its owner Dave Linhardt under the Ohio Consumer Sales Practices Act.&lt;br /&gt;&lt;br /&gt;Ferron alleges that E360/Linhardt sent multiple emails advertising discount luxury goods which are actually counterfeit products.  Ferron is asking for $200 per fraudulent email (total around $120,000) plus legal fees&lt;br /&gt;&lt;br /&gt;E360/Linhardt has moved to dismiss based on jurisdiction.  I'm not familiar with Ohio's long-arm statutes, but if they're anything like North Dakota's — with which I have some familiarity — E360/Linhardt is facing an uphill battle on this one.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;If there is interest, I will make copies of the court documents available here, assuming SpamSuite doesn't pick them up.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update:&lt;/span&gt;&lt;span&gt;  Docs are now &lt;a href="http://www.spamsuite.com/node/333"&gt;online&lt;/a&gt; at Spamsuite.&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-2488804226283840740?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/2488804226283840740/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=2488804226283840740' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2488804226283840740'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/2488804226283840740'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/12/more-legal-woes-for-e360.html' title='More legal woes for E360'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5702558702969596114</id><published>2007-11-29T13:44:00.000-08:00</published><updated>2007-11-29T23:23:42.260-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>More legal problems for Andrew Chandler</title><content type='html'>In August, I &lt;a href="http://thespamdiaries.blogspot.com/2007/08/blast-from-past-andrew-chandler.html"&gt;wrote&lt;/a&gt; about former porn spammer &lt;a href="http://www.rahul.net/falk/quickrefa.html#andrew_chandler"&gt;Andrew Chandler&lt;/a&gt; who was briefly jailed for passing bad checks.&lt;br /&gt;&lt;br /&gt;It now seems that California ISP &lt;cite&gt;Suavemente&lt;/cite&gt; has filed suit against Robert Smoley and Andrew Chandler in San Diego superior court (case # 37-2007-00073-177-CU-BC-CTL).  Chandler was served while in jail in Boca Raton.&lt;br /&gt;&lt;br /&gt;The suit alleges that Smoley and Chandler, as business partners in "VM Hangout" skipped out on Suavemente still owing them $12,600, and in addition, reversed another $26,000 in credit card charges.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5702558702969596114?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5702558702969596114/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5702558702969596114' title='9 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5702558702969596114'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5702558702969596114'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/11/more-legal-problems-for-andrew-chandler.html' title='More legal problems for Andrew Chandler'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>9</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5048485552773003609</id><published>2007-11-08T11:22:00.000-08:00</published><updated>2007-11-08T12:07:53.116-08:00</updated><title type='text'>Russian Business Network goes dark</title><content type='html'>A quick link from the UK &lt;cite&gt;register&lt;/cite&gt;: &lt;a href="http://www.theregister.co.uk/2007/11/08/rbn_offline/"&gt;Controversial Russian Business Network drops offline&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;In a nutshell, Russian Business Netwrk (RBN) is a hosting company that offerred "bulletproof hosting" to spammers, malware distributors, phishing and other unsavory activites suddenly went off line around 0200 GMT yesterday.  It is speculated that their upstreams, Tiscali.uk and C41 have pulled the plug, possibly because of a Washington Post &lt;a href="http://www.washingtonpost.com/wp-dyn/content/article/2007/10/12/AR2007101202461.html"&gt;expose&lt;/a&gt; written last month.&lt;br /&gt;&lt;br /&gt;More on the story:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Washington Post:  &lt;a href="http://blog.washingtonpost.com/securityfix/2007/11/russian_business_network_down.html?nav=rss_blog"&gt;Russian Business Network: Down, But Not Out&lt;/a&gt;&lt;/li&gt;&lt;li&gt;cidr-report.org:  &lt;a href="http://cidr-report.org/cgi-bin/as-report?as=AS40989"&gt;Report&lt;/a&gt; showing that RBN has relinquished large chunks of address space.&lt;/li&gt;&lt;li&gt;Trend Labs:  &lt;a href="http://blog.trendmicro.com/rbn-goes-poof/"&gt;RBN goes *Poof*&lt;/a&gt;&lt;/li&gt;&lt;li&gt;Dark Reading: &lt;a href="http://www.darkreading.com/document.asp?doc_id=138538"&gt;Russian Business Network Disappears&lt;/a&gt;&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;Meanwhile, Spamhaus &lt;a href="http://www.spamhaus.org/rokso/evidence.lasso?rokso_id=ROK7829"&gt;speculates&lt;/a&gt; that the RBN is already setting up operations in China.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5048485552773003609?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5048485552773003609/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5048485552773003609' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5048485552773003609'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5048485552773003609'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/11/russian-business-network-goes-dark.html' title='Russian Business Network goes dark'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-8016521897423593246</id><published>2007-11-02T19:48:00.000-07:00</published><updated>2007-11-15T19:04:20.402-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>Intellectual Intercourse on Reynolds lawsuits</title><content type='html'>&lt;img style="margin: 0pt 10px 10px 0pt; float: left;" src="http://photos1.blogger.com/blogger/5356/2134/320/gavel_001.jpg" alt="" border="0" /&gt;I've been waiting until after &lt;a href="http://thespamdiaries.blogspot.com/search/label/Ritz"&gt;David Ritz's court case&lt;/a&gt; was over to discuss certain issues, but MickC of &lt;a href="http://mickc.whizardries.com/"&gt;Intellectual Intercourse&lt;/a&gt; has brought them up in in a &lt;a href="http://mickc.whizardries.com/archives/2007/11/01/its-hard-being-in-court-so-much/"&gt;column&lt;/a&gt; he wrote yesterday.  It's good stuff; take a moment to read it and then come back here ...&lt;br /&gt;&lt;br /&gt;Are you back?  Good.  Here's the scoop.  You may have heard the news that the RIAA is suing Usenet or something to that effect.  Actually, who they're suing is &lt;cite&gt;usenet.com&lt;/cite&gt;.  It's an internet site which specializes in uncensored and unlogged downloads, as well as a very complete feed.  From their advertising:  "... its service is the best way to get 'free' music now that 'file sharing websites are getting shut down..."&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Update:&lt;/span&gt;  I'm told that the real issue isn't so much unlogged downloads as anonymized uploads.&lt;br /&gt;&lt;br /&gt;There's more to the story, but the interesting point is this:  usenet.com is owned by Jerry Reynolds.  The same porn spammer who sued me and who is currently suing David Ritz.  It looks like Reynolds is going to be spending a lot of time in court over the next few months, and for a change, it won't be harassing anti-spammers.&lt;br /&gt;&lt;br /&gt;More on the story:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Billboard:  &lt;a href="http://www.billboard.biz/bbbiz/content_display/industry/e3i66abf6954df1d43fbdf1692e0860d269"&gt;Labels Sue Usenet Service&lt;/a&gt;&lt;/li&gt;&lt;li&gt;c|net: &lt;a href="http://www.news.com/8301-13578_3-9798715-38.html"&gt;RIAA tries to pull plug on Usenet.  Seriously&lt;/a&gt;.&lt;/li&gt;&lt;li&gt;Tech.Blorge:  &lt;a href="http://tech.blorge.com/Structure:%20/2007/10/17/usenetcom-are-idiots-get-sued/"&gt;Usenet.com are idiots, get sued&lt;/a&gt;.&lt;/li&gt;&lt;li&gt;Slashdot:  &lt;a href="http://yro.slashdot.org/article.pl?sid=07/10/16/1918204"&gt;RIAA Sues Usenet.com&lt;/a&gt;&lt;br /&gt;&lt;/li&gt;&lt;li&gt;Usenet.com:  &lt;a href="http://www.usenet.com/articles/free_download.htm"&gt;Free downloads&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;An excerpt from the usenet.com web page:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;strong&gt;What Exactly Can You Download                             in Usenet?&lt;/strong&gt;                                                                                   Anything and everything. Literally.                               There are movies, mp3s, cartoons, wallpapers, sounds,                               videos, pictures, warez, games, software and much                               more...&lt;/blockquote&gt;&lt;br /&gt;There's more to this case and others, but that will still have to wait until David's case is out of court.  This hasn't happened yet, and David's legal expenses are still astronomical.  I remind my readers that donations to his legal fund can be made directly through his lawyers at&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;David Ritz&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;c/o Debra S. Koenig&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Godfrey and Kahn, S.C.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;780 N Water Street&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Milwaukee WI 53202&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Or via &lt;a href="http://sfldf.org/paypal.html"&gt;Paypal or credit card&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-8016521897423593246?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/8016521897423593246/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=8016521897423593246' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8016521897423593246'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/8016521897423593246'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/11/intellectual-intercourse-on-reynolds.html' title='Intellectual Intercourse on Reynolds lawsuits'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-1160598493373160370</id><published>2007-10-26T12:49:00.000-07:00</published><updated>2007-10-26T13:04:01.261-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Soloway'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Indictment against Soloway online</title><content type='html'>And speaking of &lt;a href="http://thespamdiaries.blogspot.com/search/label/Soloway"&gt;Soloway&lt;/a&gt;, SpamSuite now has the Feds' &lt;a href="http://spamsuite.com/node/323"&gt;Superceding Indictment&lt;/a&gt; against Soloway on line for your reading pleasure.&lt;br /&gt;&lt;br /&gt;In a nutshell, the government alleges that Soloway operated Newport Internet Marketing (NIM) starting in 1998.  He currently runs it from Seattle.  His business model was to use fake company names and various domain names to spam out ads for his spamming services and software.  He fraudulently claimed that the spam would be sent to people who had opted in and that the spam would be geographically and interest targeted.  He also offered a 100% refund if not satisfied.  The spamming software often did not work at all, but Soloway would refuse to provide asistance or refunds.  Soloway would threaten customers' credit ratings if they persisted in demanding refunds.&lt;br /&gt;&lt;br /&gt;The government also alleges that registered domain names through chinese ISPs which would not reveal him as the owner.&lt;br /&gt;&lt;br /&gt;The government also covers the usual CAN-SPAM violations such as spamming, false headers, identity theft and so forth.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-1160598493373160370?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/1160598493373160370/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=1160598493373160370' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1160598493373160370'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/1160598493373160370'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/10/indictment-against-soloway-online.html' title='Indictment against Soloway online'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5392492053412422562</id><published>2007-10-26T12:36:00.000-07:00</published><updated>2007-10-26T12:47:03.265-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Soloway'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><title type='text'>Jason Downey sentenced to one year for botnet</title><content type='html'>I previously mentioned Downey in &lt;a href="http://thespamdiaries.blogspot.com/2007/06/fbi-makes-arrests-in-botnet-case.html"&gt;June&lt;/a&gt; when he was arrested as part of &lt;a href="http://spamsuite.com/node/147"&gt;Operation Bot Herder&lt;/a&gt;, where he was charged alongside of &lt;a href="http://thespamdiaries.blogspot.com/search/label/Soloway"&gt;Robert Soloway&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Downey has been sentenced to 1 year in prison, 3 years probation, and just over $21,000 in restitution.  He will require prior permission to access a computer during his probation.&lt;br /&gt;&lt;br /&gt;The government's &lt;a href="http://spamsuite.com/node/321"&gt;case&lt;/a&gt; against Downey stated that he'd controlled a botnet of over 6000 infected computers which he used to launch &lt;a href="http://www.rahul.net/falk/glossary.html#ddos"&gt;ddos&lt;/a&gt; attacks against other networks he wanted to knock off line.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5392492053412422562?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5392492053412422562/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5392492053412422562' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5392492053412422562'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5392492053412422562'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/10/jason-downey-sentenced-to-one-year-for.html' title='Jason Downey sentenced to one year for botnet'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-5951077696384780830</id><published>2007-10-24T13:43:00.000-07:00</published><updated>2007-10-24T13:48:26.392-07:00</updated><title type='text'>Encyclopedia of Spam — three hours to go</title><content type='html'>&lt;img style="margin: 0pt 10px 10px 0pt; float: right;" src="http://sfldf.org/thumbs/encyclopedia.jpg" alt="" border="0" /&gt;Only &lt;a href="http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItem&amp;amp;rd=1&amp;amp;item=330178269188&amp;amp;ssPageName=STRK:MESE:IT&amp;amp;ih=014"&gt;three hours left&lt;/a&gt; and the bidding is still less than what it cost me to bind it.  Someone's going to get a bargain.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-5951077696384780830?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/5951077696384780830/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=5951077696384780830' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5951077696384780830'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/5951077696384780830'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/10/encyclopedia-of-spam-three-hours-to-go.html' title='Encyclopedia of Spam &amp;mdash; three hours to go'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21127528.post-4096201810803370421</id><published>2007-10-23T16:29:00.000-07:00</published><updated>2007-11-02T19:57:48.838-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SLAPP'/><category scheme='http://www.blogger.com/atom/ns#' term='legal'/><category scheme='http://www.blogger.com/atom/ns#' term='Ritz'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds_v_Falk'/><category scheme='http://www.blogger.com/atom/ns#' term='Reynolds'/><title type='text'>News on David Ritz case</title><content type='html'>&lt;img style="margin: 0pt 10px 10px 0pt; float: left;" src="http://photos1.blogger.com/blogger/5356/2134/320/gavel_001.jpg" alt="" border="0" /&gt;As I've &lt;a href="http://thespamdiaries.blogspot.com/search/label/Reynolds_v_Falk"&gt;written before&lt;/a&gt; on occasion, former porn spammer &lt;a href="http://www.rahul.net/falk/Nz/"&gt;Jerry Reynolds&lt;/a&gt; filed a couple of SLAPP lawsuits against me over my old &lt;a href="http://www.rahul.net/falk/"&gt;anti-spam website&lt;/a&gt;.  In addition, he sued spam-fighter David Ritz for running "unauthorized" DNS lookups on his servers.*&lt;br /&gt;&lt;br /&gt;Obviously David isn't really being sued over a few DNS lookups; he's being sued for being a thorn in Reynolds' side during the years when he was trying to get the Netzilla/Sexzilla porn spam operation to stop spamming.&lt;br /&gt;&lt;br /&gt;At any rate, the trial in David's case started this week.  I don't have access to a lot of information coming from the trial, but I did just receive word that plaintiff's motion to exclude David's expert witness was denied.  It's not much, but it's good to know that the first news from the trial is good news.&lt;br /&gt;&lt;br /&gt;Just a reminder that David's legal expenses are mounting.  You can help by donating to his legal fund at: David Ritz; c/o Debra S. Koenig; Godfrey and Kahn, S.C.; 780 N Water Street; Milwaukee WI; 53202.  Or, if you like, you can donate by &lt;a href="http://sfldf.org/paypal.html"&gt;paypal or credit card&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;And finally, the auction for a copy of the &lt;a href="http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItem&amp;amp;rd=1&amp;amp;item=330178269188&amp;amp;ssPageName=STRK:MESE:IT&amp;amp;ih=014"&gt;Encyclopedia of Spam&lt;/a&gt; closes in just one day.  Currently, the bidding is so low that the winner will get it for less than it cost me to have it bound.  Here's your chance to own a very rare conversation piece.  Proceeds go to David's defense fund.  (Sorry, not available in North Dakota.)&lt;br /&gt;&lt;br /&gt;---------&lt;br /&gt;*&lt;span style="font-style: italic;"&gt;For those unfamiliar with the inner workings of the internet, a DNS lookup is equivalent to calling up a switchboard and asking for a phone number.  For example, if you want to call your local library, you don't punch L-I-B-R-A-R-Y into your phone, you first look up the number that belongs to the library, and then punch that in.  By the exact same token, if you want to connect your web browser to library.org, you first go do a DNS server lookup to get the IP address of library.org and then make your connection.  The difference is that the lookup process is done automatically for you by your browser.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;That's right, every single one of you do hundreds of DNS lookups every day.  You had to do one just to read this blog.  Yet this is exactly what David Ritz is being sued for.&lt;br /&gt;&lt;br /&gt;The other things David are accused of doing are a zone transfer and a whois lookup. A zone transfer is equivalent to calling the library and asking for a copy of their phone list.  A whois lookup is equivalent to going to the county clerk's office and looking up the owner of a property.&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21127528-4096201810803370421?l=thespamdiaries.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thespamdiaries.blogspot.com/feeds/4096201810803370421/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21127528&amp;postID=4096201810803370421' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4096201810803370421'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21127528/posts/default/4096201810803370421'/><link rel='alternate' type='text/html' href='http://thespamdiaries.blogspot.com/2007/10/news-on-david-ritz-case.html' title='News on David Ritz case'/><author><name>Spam Diaries</name><uri>http://www.blogger.com/profile/05175708997156235199</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='23' src='http://www.rahul.net/falk/encyclopedia.jpg'/></author><thr:total>0</thr:total></entry></feed>
