^2003^   [examples01]   >examples02>  

Examples of Spam

Some of the examples have been "sanitised", i.e. certain words have been changed, and some user-names and domain-names have also been changed.


Simple tricks

six s  i  x s.i.x s-i-x s
i
x
char / : @   u w
%code %2F %3A %40   %75 %77

e.g. http://%77%77w.ab%67e%61n%69m%61l%73.co%6d/

See [ASCII Character Set].


Disguised image spam

e.g.
<html>
<body> <font color="#ffffff">trousers Grommit cheese ...etc...
<a href="http://www.yahoo.com/some/page/in/a/very/long/URL/that/goes/on/and/on/*http://www.badguys.com/nastypage/"> <img border="0" src="http://www.yahoo.com/some/page/in/a/very/long/URL/that/goes/on/and/on/*http://www.badguys.com/someimage.gif"> </a>
Wensleydale mp3 guitar ...etc... 
The spam's message is all in the remote image and even its URL is somewhat disguised for a browser's "benefit":  src="http://www.yahoo.com/some/page/in/a/very/long/URL/that/goes/on/and/on/*http://www.badguys.com/someimage.gif".  The many innocuous words, invisible if the background is whiteish, will deceive any(?) word-counter. The spam-generator can easily change them at random from spam to spam; every spam can be different.

Synonyms

remove remov', rem've, re move, re-move, re_move, rem0ve, etc., unsubscribe, un subscribe, un-subscribe, unsubscr1be, unsub, etc., optout, opt-out, opt_out, opt out, etc., no more, no-more, no_more, n0more, nom0re, etc., etc.
click c1ick, c!ick, cl!ck, cl1ck, c11ck, clik, clic, klic, klik, c1ik, c!ik, etc., press, etc., etc.

and this is not even trying.


More on deceptive URLs

See the [westpac_scam].


Table tricks

Now you see it now the mail server doesn't
sex
sex
<TABLE BORDER="0"> <TR><TD>s</TD> <TD>e</TD> <TD>x</TD></TR> </TABLE>

-- L.A.