PDA

View Full Version : New Tool Automates Spam


sylverarrow
07-25-2007, 12:15 PM
JULY 25, 2007 | Just when you thought you had that spam under control: There's a new, inexpensive software package out that helps spammers send out their messages -- and frequently, malware -- at record speeds.

Security researchers at Panda Labs yesterday reported that they have spotted the sale of a new tool called XRumer that promises to help spammers get their messages out to larger numbers of users in less time than ever before.

XRumer, which retails for $450, automates the process of registering, logging onto and posting messages on online forums and Websites that accept comments. The software could help a spammer post a message to myriad online communities, including blogs, wikis, or guestbooks. It is capable of responding to many types of "captcha" images that are designed to prevent automated postings, according to Botmaster, which sells the program.

XRumer works with another Botmaster application, Hrefer, a $50 tool that seeks out forums and other Web pages where public comments are accepted. Hrefer finds the pages that can accept the spam messages, and XRumer handles the registration and posting of those messages, Botmaster says. Working together, the tools also give spammers a list of proxies that they can use to hide their originating IP addresses.

Although Panda Labs is reporting XRumer as a security threat, Botmaster's Website contends that the software breaks no laws.

"In no way does XRumer act like a spam-bot," Botmaster says. "Spam is defined in legislation as unsolicited email, whereas XRumer simply posts messages created by users, which cannot be illegal, providing the user does not [post] anything prohibited by the law." Most anti-spam laws only apply to messages sent to users' email boxes, not to public forums where users read and submit messages voluntarily, Botmaster maintains.

Forum moderators and Webmasters can usually remove spam messages, but XRumer is set up to avoid automated systems that filter "offtopic" messages, Botmaster says.

Panda Labs warns enterprises that online comment pages and forums are becoming increasingly popular targets. "It has become more and more usual to see Websites -- forums, blogs, wikis, guestbooks, etc. -- that contain advertising comments or links that direct users to sites that infect their systems with malware," the security vendor says.

-----
Original Link: http://www.darkreading.com/document.asp?doc_id=129911&WT.svl=news1_1

So I taKe it our forum spamming issue is probably only going to get worse.

HHBizzle
07-25-2007, 12:18 PM
grrrr
fuckin spam

so how do those things "see" the image verification shit?

papa smurf
07-25-2007, 12:20 PM
so how do those things "see" the image verification shit? with their eyes

Sckoarn
07-25-2007, 01:02 PM
So we should be able to flame that place by sending non-stop emails?

I am sure there are many people that would like to do as much damage to that company as they can. I would suggest starting a chain letter email and start sending it to anyone you know. Get them all to spam that company with adds to sell viagra to them?

Phenix
07-25-2007, 07:16 PM
So we should be able to flame that place by sending non-stop emails?

I am sure there are many people that would like to do as much damage to that company as they can. I would suggest starting a chain letter email and start sending it to anyone you know. Get them all to spam that company with adds to sell viagra to them?

i was thinking the same thing. Fuck that company and their bullshit. You find a way to work around the law so what youre doing isnt illegal, but its still fucking immoral!

Nimmy
07-25-2007, 08:46 PM
Laugh, aren't they doubling the rates on people that have internet radio companys and broadcasts?... Then letting people make spambot software.

sylverarrow
07-25-2007, 09:46 PM
Double is an unstatement. RIAA is fucking bullshit.

Nimmy
07-26-2007, 11:57 PM
Well, it seems like most of these spammers sell pharmasutical. (sp?). Or some kind of porn, both of which you know would be big money. Internet radio is your free way of getting good prices away from normal entertainment mediums (we all know who they are)... It should all be connected, but... it seems whoever has the power of Jesus on their side wins. Wether it be bush, or the riaa, or organized religion. Popular vote perhaps? ... Lets make it easier to spam bulletin boards so we can make more money off everyone! ... Reminds me of walking into the gas station, using the restroom and straight ahead of my face as I'm holding my penis is a ad for a hotdog.

Hae-Yu
07-27-2007, 12:24 AM
The only way to prevent this is for the admins to verify and approve each new registration. VB allows this, but I'm not sure that the admins would be up for it. Esp when the gaming gets into a big active phase again.