What is being done about spam & spoofing? | FerrariChat

What is being done about spam & spoofing?

Discussion in 'Other Off Topic Forum' started by LetsJet, Nov 8, 2006.

This site may earn a commission from merchant affiliate links, including eBay, Amazon, Skimlinks, and others.

  1. LetsJet

    LetsJet F1 Veteran
    Owner

    May 24, 2004
    9,334
    DC/LA/Paris/Haleiwa
    Full Name:
    Mr.
    Is there going to be a change in the software protocols?

    I get over 2000 spam mails a day and that is what is getting through the 100+ server blocks I have.

    To make things worse I'm getting bounced emails from spammers that have used my domains as spoofed email domains.



    This has to end..... The folder I have setup to hold and track the ip address has over 22,000 bounced emails.

    Any lawyers gooing after these guys?
     
  2. Whisky

    Whisky Three Time F1 World Champ
    Silver Subscribed

    Jan 27, 2006
    32,091
    In the flight path to Offutt
    Full Name:
    The original Fernando
    Nope.

    This is why we have multiple e-mail addresses: 1 for 'registering' everywhere, and whatever comes to it goes DIRECTLY to trash, and a couple others for the 'real' stuff.
    I NEVER get any spam to my 'real' addresses.

    Do you have a router with a built-in firewall ? I do.

    If you can stomach it - if they can do it - have your ISP delete your e-mail account for a week, and everything will get bounced back as it does not exist, most places have software in place to see that and remove your address automatically from their databases, but that only lasts for so long.
     
  3. RacerX_GTO

    RacerX_GTO F1 World Champ
    Silver Subscribed

    Nov 2, 2003
    14,797
    Oregon
    Full Name:
    Gabe V.
    A local radio news broadcaster swears by Mail Washer. The pro version automatically learns new spam for the trash.

    http://www.mailwasher.net/
     
  4. Schatten

    Schatten F1 World Champ
    Owner

    Apr 3, 2001
    11,238
    Austin, TX
    Full Name:
    Randy
    2000? for just you? or for you and others? do you control your own mail server? Or just download it daily from an ISP or hosting company? drop me a line if needed.
     
  5. LetsJet

    LetsJet F1 Veteran
    Owner

    May 24, 2004
    9,334
    DC/LA/Paris/Haleiwa
    Full Name:
    Mr.
    I should be clear......

    I host about 60 domains and I'm talking about email going to the server "catch all" account.

    I had setup email accounts on websites w/o actually setting up pop accounts and just getting all email to the domains. So I was using the "catch all" pop account to get all mail that went to [email protected] if there was not a pop account abc.......Over the years it's just gotten worse and now more spoofers using my domain names in their headers / reply to and the bounce back is going to my server at the hosting co. I'm giving up on this "catch all" pop account but it's a shame that scammers / spammers create this problem.

    The problem isn't with my pop accounts.
     
  6. MikeZ_NJ

    MikeZ_NJ Formula 3

    Dec 10, 2002
    1,533
    Southern NJ
    Full Name:
    Mike Z.
    Not completely sure, but I think there's a way to "black hole" the email on a catch all account so it just gets dropped... so its not filling up an email account. Is there legit mail mixed in there??

    FWIW, there are lawyers going after spammers. Its VERY difficult to set up shop spamming people any more. I know a few people that have gotten out of the (super) lucrative business because it was just getting too hard to find an isp that would host them/to evade the ever evolving spam filters.
     
  7. Schatten

    Schatten F1 World Champ
    Owner

    Apr 3, 2001
    11,238
    Austin, TX
    Full Name:
    Randy
    I understand, but how much control do you have on your email server? If you want a small investment to really reduce your spam, look into a barracuda unit (www.barracudanetworks.com), but if it is only control of the email server non-physically, then ditch the catch-all's and make the inbound connection be associated with an account before going any further and accepting the inbound email.

    The more specific, the better I, or we, can help.
     
  8. GrigioGuy

    GrigioGuy Splenda Daddy
    Lifetime Rossa Owner

    Nov 26, 2001
    33,249
    E ' ' '/ F
    Full Name:
    Splenda Daddy
    Do you control what address the catchalls are forwarding to? If so, and if you don't want to just drop them completely, try forwarding them to a gmail account.

    I have several personal domains that receive a ton of spam, and that's what I did. Google's spam filter is really good, and what does get through can be adjusted with filters. If you still want to receive that email in your normal client, they offer pop3 access to download it.

    If you're hosting companies and need a more professional solution, check out the guys at Postini. Up here at work we were receiving several million spam emails a day, mostly to bogus accounts. While we could filter them easily enough, we kept having to buy a bigger pipe to keep working. We outsourced our edge filters to Postini and the difference is amazing. 95% of the email to one of our domains never even hits our servers anymore, and 80% of the other, and our people are very happy with the filtering. (no affiliation, just a happy customer)

    re: legal -- sure, there's some folk being shut down, but a majority of this stuff comes from infected Windows machines on home internet connections or from people running spam factories offshore. Good luck getting someone served in Carjackistan.
     
  9. matteo

    matteo F1 World Champ

    Aug 1, 2002
    13,748
    On a plane somewhere
    Full Name:
    Heir Butt
    I like iron mail for in house corp solutions and MX logic for outsource solutions.

    Iron Mail is heavy to administer for the first couple of week with setting up values and get the white lists going but after that it's a breeze.

    MX logic is good because all you and your end users need to deal with are the white list and unblocking accidental blocking of some domains.
     
  10. LetsJet

    LetsJet F1 Veteran
    Owner

    May 24, 2004
    9,334
    DC/LA/Paris/Haleiwa
    Full Name:
    Mr.
    Thanks for all the advice..... I will look into it.

    Though, now that you understand the problem I have, I wasn't really looking for a "fix" for me. I was wondering what the next step is in email protocol. I think SMTP has to go. I was thinking about how much spam I get, (whether it gets through or not, it's still filling bandwidth) and realizing that we need to do something other then filter.

    Also, because this protocol is so weak it allows these spammers to spoof domains. People who don't know better actually think it comes from me... that pisses me off.

    What's the plan? Not filtering
     
  11. SRT Mike

    SRT Mike Two Time F1 World Champ

    Oct 31, 2003
    23,343
    Taxachusetts
    Full Name:
    Raymond Luxury Yacht
    You hit the nail on the head. The SMTP protocol is seriously flawed and full of GAPING security holes. Mail server software providers could do some VERY simple things to end spam once and for all. Such as, set up a mail server cert (like an SSL cert) whereby the identity of the server owner is authenticated. Then, allow the general public to accept or decline mail that is not signed with a valid cert. Then Microsoft turns it on by default in Outlook/OE and spam virtually disappears overnight. Thats just one approach - there are many many things that could be done to stop the problem. Why it has not been addressed is anyone's guess. Most mail servers run on *nix and are group development efforts. IMO, those small fractured groups do not have the clout to implement/design new standards, but someone like Microsoft does.

    There is NO excuse why this problem was not taken care of YEARS ago. Same goes for Spyware - MS Windows is wide open and the fact we need anti-spam, anti-spyware, anti-virus, anti-popup, anti-trojan software is ridiculous!
     
  12. LetsJet

    LetsJet F1 Veteran
    Owner

    May 24, 2004
    9,334
    DC/LA/Paris/Haleiwa
    Full Name:
    Mr.
    I got this news info from PC week just now in my email:

    http://www.pcmag.com/article2/0,1895,2051948,00.asp

    "Blowback messages are error messages sent to you in reaction to e-mails sent by someone else to yet another party. Internet e-mail is unauthenticated, meaning that anyone can send e-mail that appears to come from, for example, whitehouse.gov. If the receiving domain generates an error (e.g. an unknown user like [email protected]), it will likely be sent to the spoofed domain which was uninvolved in the process until this point. For this reason and others, many domains no longer send error messages for e-mail errors."

    http://www.eweek.com/article2/0,1895,1994985,00.asp

    What perfect timing for me to get this!
     

Share This Page