-
Recent Entries
Monthly Archives
- October 2021
- September 2021
- August 2021
- March 2021
- February 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- April 2020
- February 2020
- December 2019
- April 2019
- February 2019
- January 2019
- October 2018
- July 2018
- June 2018
- April 2018
- February 2018
- December 2017
- July 2017
- May 2017
- February 2017
- January 2017
- November 2016
- October 2016
- September 2016
- August 2016
- July 2016
- June 2016
- April 2016
- March 2016
- February 2016
- December 2015
- October 2015
- September 2015
- August 2015
- July 2015
- June 2015
- December 2014
- November 2014
- September 2014
- August 2014
- July 2014
- May 2014
Tag Archives: bot
From Russia With Love
For most people with decent spam protection, you should not see these types of spam, as they are mostly from compromised Iot (Internet of Things) devices, on home style connections, and not coming from normal email servers, but it is … Continue reading
Old Fashioned Bot Network, Compromised Accounts
We have been doing a lot of reporting of networks that house spammers, but today we have a chance to talk about an old fashioned bot network. Normally, they are going out of style as a way to send spam, … Continue reading
Very Large BOT activates
As of about 36 hours ago, another large bot activated in order to send spam and perform dictionary attacks. And as usual, this could have been mitigated if more ISP’s blocked port 25 outbound. This BOT was substantial enough to … Continue reading
ISP’s DYNA IP’s, blocking port 25
As another large infection spreads across the ‘Internet of Things’, it is time to ask the question again, why aren’t ISP’s and Telco’s routinely blocking outbound connections from their dynamic IP Space to port 25. Not that most spam protections … Continue reading
New Twist on HELO Bot
Our spam auditors noticed that a variation on a previous bot that simply opened up a HELO and then quit has surfaced, similar to the ylmf-pc bot. All it does it send a HELO greeting, usually from www.randomchars.com, and then … Continue reading
EHLO command received: ylmf-pc
An interesting Bot style attack, if you see this in your logs. Normally originating from DUL/Dynamic addressing ranges, this is a high impact attack, which simply connects to a mail server, issues a HELO/EHLO of ylmf-pc, and then exits the … Continue reading
Latest Bot Spam Making the rounds
A risk free antiobesity drug.. yeah right.. Normally this shouldn’t affect most people, as it is coming from compromised devices and not email servers, and it looks to be going out to a database of hacked or stolen email addresses … Continue reading