Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 16 Jul 2001 13:36:47 +0300
From:      Giorgos Keramidas <keramida@ceid.upatras.gr>
To:        Ted Mittelstaedt <tedm@toybox.placo.com>
Cc:        Morsal Roudbay <morsal@swipnet.se>, J S <spl1t_h0r1z0n@usa.net>, freebsd-questions@FreeBSD.ORG
Subject:   Re: [Re: spammers]
Message-ID:  <20010716133646.C19581@hades.hell.gr>
In-Reply-To: <006a01c10ddb$435f4300$1401a8c0@tedm.placo.com>; from tedm@toybox.placo.com on Mon, Jul 16, 2001 at 02:39:52AM -0700
References:  <20010716093820.A25842@zigman.2y.net> <006a01c10ddb$435f4300$1401a8c0@tedm.placo.com>

next in thread | previous in thread | raw e-mail | index | archive | help
From: Ted Mittelstaedt <tedm@toybox.placo.com>
Subject: RE: [Re: spammers]
Date: Mon, Jul 16, 2001 at 02:39:52AM -0700

> >-----Original Message-----
> >From: owner-freebsd-questions@FreeBSD.ORG
> >[mailto:owner-freebsd-questions@FreeBSD.ORG]On Behalf Of Morsal Roudbay
> >
> >ISPs dont bother much, been there, done that. Lousy solution.
> >
>
> Not true.  The problem is that most people that file a spam complaint don't
> include headers.  Secondly, most ISP's won't bother if they only get a single
> complaint because most spam complaints are bogus anyway.
>
> What the ISP's look for is a pattern - if they get 20 or more complaints from
> different people all on the same day all complaining about the identical piece
> of spam then they will investigate.  But of course if all they get is one then
> they typically ignore it because most people that complain cannot read
> mail headers to determine the real injection point of the spam, so they end
> up complaining to the postmaster of the forged domain.

Most ISPs will reply though if you do half of the job to track down
the offender.  Complaints like the one below, which I posted to some
ISP who owns the IP-range containing the IP of a spammer, will almost
certainly receive replies.  At least mine did, and when the
investigation of the matter was finished, I was informed of the
results in a second message.

    | From: Giorgos Keramidas <keramida@ceid.upatras.gr>
    | Date: Sun, 15 Jul 2001 03:27:26 +0300
    | To: abuse@chinanet.cn.net
    | Subject: spam mail
    |
    | I received a message that was probably some form of spam.  The message
    | comes from IP 61.143.179.78 which does not resolve, but the whois(1)
    | command in Unix reveals that you are the responsible for the IP block
    | that this address comes from.
    |
    | The full headers of the spam message are:
    |
    |     From tonyxian@public.guangzhou.gd.cn  Sun Jul 15 03:06:50 2001
    |     Return-Path: <tonyxian@public.guangzhou.gd.cn>
    |     Delivered-To: charon@localhost.hell.gr
    |     Received: from diogenis.ceid.upatras.gr (hades [127.0.0.1])
    |	      by hades.hell.gr (Postfix) with ESMTP id 609502C3
    |	      for <charon@localhost>; Sun, 15 Jul 2001 03:06:50 +0300 (EEST)
    |     Delivered-To: keramida@ceid.upatras.gr
    |     Received: (qmail 5586 invoked from network); 15 Jul 2001 00:06:11 -0000
    |     Received: from pub.yunfu.gd.cn (202.104.197.17)
    |	by diogenis.ceid.upatras.gr with SMTP; 15 Jul 2001 00:06:11 -0000
    |     Received: from oemcomputer ([61.143.179.78])
    |	      by pub.yunfu.gd.cn (8.9.3/8.9.3) with ESMTP id HAA17241;
    |	      Sun, 15 Jul 2001 07:59:07 +0800 (CST)
    |     Message-ID: <203502001761423591190@oemcomputer>
    |     X-EM-Version: 5, 0, 0, 19
    |     X-EM-Registration: #01B0530810E603002D00
    |     X-Priority: 3
    |     Reply-To: guidedtour@china.com
    |     To: "Business Guided Tour to China" <tonyxian@public.guangzhou.gd.cn>
    |     From: "China Consultants Team" <tonyxian@public.guangzhou.gd.cn>
    |     Subject: Re: Explore China Business Opportunities
    |     Date: Sun, 15 Jul 2001 07:59:01 +0800
    |     MIME-Version: 1.0
    |     Content-type: text/plain; charset="US-ASCII"
    |     Content-Transfer-Encoding: quoted-printable
    |     X-UIDL: p/k"!IG^!!>6(#!a22"!
    |     Status: RO
    |     X-Status: A
    |     Content-Length: 1134
    |     Lines: 33
    |
    | The fake From: and To: headers, and the body of the message which ends
    | with the following text show that this is some form of advertisment
    | that I never asked for:
    |
    |     2) If you do not want to hear from us any more, please reply to:
    |     guidedtour@china.com with REMOVE in the subject line.
    |
    | Please track the people who did this and stop them :(
    |
    | --giorgos

When you have done some homework, and do not complain to the wrong
guys, you are more often than not likely to receive a reply :-)

-giorgos

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010716133646.C19581>