<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.2.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>Sebastian's Pamphlets &#187; Spoofing</title>
	<link>http://sebastians-pamphlets.com</link>
	<description>If you've read my articles somewhere on the Internet, expect something different here.</description>
	<pubDate>Mon, 02 Jan 2012 20:39:44 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.3</generator>
	<language>en</language>
			<item>
		<title>MSN spam to continue says the Live Search Blog</title>
		<link>http://sebastians-pamphlets.com/msn-admits-clueless-and-ineffective-spamming/</link>
		<comments>http://sebastians-pamphlets.com/msn-admits-clueless-and-ineffective-spamming/#comments</comments>
		<pubDate>Wed, 05 Dec 2007 08:58:46 +0000</pubDate>
		<dc:creator>Sebastian</dc:creator>
		
		<category><![CDATA[Spoofing]]></category>

		<category><![CDATA[MSN]]></category>

		<category><![CDATA[Search Quality]]></category>

		<category><![CDATA[Webspam]]></category>

		<category><![CDATA[Crap]]></category>

		<category><![CDATA[Spam]]></category>

		<category><![CDATA[Cloaking]]></category>

		<guid isPermaLink="false">http://sebastians-pamphlets.com/msn-admits-clueless-and-ineffective-spamming/</guid>
		<description><![CDATA[
It seems MSN/LiveSearch has tweaked their rogue bots and continues to spam innocent Web sites just in case they could cloak. I see a rant coming, but first the facts and news.
Since August 2007 MSN runs a bogus bot faking a human visitor coming from a search results page, that follows their crawler. This spambot [...]]]></description>
			<content:encoded><![CDATA[
<p><img src="http://sebastians-pamphlets.com/img/posts/msn-live-search-clueless-webspam-detection.png" width="250" height="352" style="margin-left:4px;" align="right" alt="MSN Live Search clueless webspam detection" title="MSN Live Search is totally clueless when it comes to spam detection"  />It seems MSN/LiveSearch has tweaked their <a href="http://sebastians-pamphlets.com/microsoft-live-search-the-downfall-of-a-tiny-search-engine/">rogue bots</a> and continues to spam innocent Web sites just in case they could cloak. I see a rant coming, but first the facts and <a href="http://blogs.msdn.com/webmaster/archive/2007/12/04/live-search-and-cloaking-detection.aspx">news</a>.</p>
<p>Since August 2007 MSN runs a bogus bot faking a human visitor coming from a search results page, that follows their crawler. This spambot downloads everything from a page, that is images and other objects, external CSS/JS files, and ad blocks rendering even contextual advertising from Google and Yahoo. It fakes MSN SERP referrers diluting the search term stats with generic and unrelated keywords. Webmasters running non-adult sites wondered why a database tutorial suddenly ranks for [oral sex] and why MSN sends visitors searching for [<acronym title="Mothers I Like (to) Fuck">MILF</acronym> pix] to a teenager&#8217;s diary. Webmasters assumed that MSN is after deceitful cloaking, and laughed out loud because their webspam detection method was that primitive and easy to fool.</p>
<p>Now MSN admits <a href="http://sebastians-pamphlets.com/microsoft-live-search-the-downfall-of-a-tiny-search-engine/">all their sins</a> &#8211;except the launch of a porn affiliate program&#8211; and posted a <a href="http://blogs.msdn.com/webmaster/archive/2007/12/04/live-search-and-cloaking-detection.aspx">vague excuse on their Webmaster Blog</a> telling the world that they discovered the evil cloakers and their index is somewhat spam free now. <a href="http://www.seo-scoop.com/2007/12/04/msnlive-ponies-up-about-the-referrer-spam/">Donna has chatted with the MSN spam team about their spambot</a> and reports that blocking its IP addresses is a bad idea, even for sites that don&#8217;t cloak. <a href="http://www.vanessafoxnude.com/">Vanessa Fox</a> summarized MSN&#8217;s poor man&#8217;s cloaking detection at <a href="http://searchengineland.com/071204-150233.php">Search Engine Land</a>:</p>
<blockquote><p>And one has to wonder how effective methods like this really are. Those savvy enough to cloak may be able to cloak for this new cloaker detection bot as well.</p>
</blockquote>
<p>They say that they no longer spam sites that don&#8217;t cloak, but reverse this statement telling Donna</p>
<blockquote><p>we need to be able to identify the legitimate and illegitimate content</p>
</blockquote>
<p>and Vanessa </p>
<blockquote><p>sites that are cloaking may continue to see some amount of traffic from this bot. This tool crawls sites throughout the web &#8212; both those that cloak and those that don&#8217;t &#8212; but those not found to be cloaking won&#8217;t continue to see traffic.</p>
</blockquote>
<p>Here is an excerpt from yesterdays referrer log of a site that does not cloak, and never did: <code><br />
http://search.live.com/results.aspx?q=webmaster&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=smart&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=search&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=progress&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=google&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=google&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=domain&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=database&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=content&#038;mrt=en-us&#038;FORM=LIVSOP<br />
http://search.live.com/results.aspx?q=business&#038;mrt=en-us&#038;FORM=LIVSOP</code><br />
Why can&#8217;t the MSN dudes tell the truth, not even when they apologize?</p>
<p>Another lie is &#8220;we obey robots.txt&#8221;. Of course the spambot doesn&#8217;t request it to bypass bot traps, but according to MSN it uses a copy served to the LiveSearch crawler &#8220;msnbot&#8221;:</p>
<blockquote><p>Yes, this robot does follow the robots.txt file. The reason you don’t see it download it, is that we use a fresh copy from our index. The tool does respect the robots.txt the same way that MSNBot does with a caveat; the tool behaves like a browser and some files that a crawler would ignore will be viewed just like real user would.</p>
</blockquote>
<p>In reality, it doesn&#8217;t help to block CSS/JS files or images in robots.txt, because MSN&#8217;s spambot will download them anyway. The long winded statement above translates to &#8220;We promise to obey robots.txt, but if it fits our needs we&#8217;ll ignore it&#8221;. </p>
<p>Well, MSN is not the only search engine running <a href="http://www.webshoppehosting.com/weblog/?p=17">stealthy bots</a> to detect cloaking, but they aren&#8217;t clever enough to do it in a less abusive and detectable way. </p>
<p>Their insane spambot led all cloaking specialists out there to their not that obvious spam detection methods. They may have caught a few cloaking sites, but considering the short life cycle of Webspam on throwaway domains they shot themselves in both feet. What they really have achieved is that the cloaking scripts are MSN spam detection immune now. </p>
<p>Was it really necessary to annoy and defraud the whole Webmaster community and to burn huge amounts of bandwidth just to catch a few cloakers who launched new scripts on new throwaway domains hours after the first appearance of the MSN spam bot?</p>
<p>Can cosmetic changes with regard to their useless spam activities restore MSN&#8217;s lost reputation? I doubt it. They&#8217;ve admitted their miserable failure five months too late. Instead of dumping the spambot, they announce that they&#8217;ll spam away for the foreseeable future. How silly is that? I thought Microsoft is somewhat profit orientated, why do they burn their and our money with such amateurish projects?</p>
<p>Besides all this crap MSN has good news too. Microsoft Live Search told Search Engine Roundtable that <a href="http://www.seroundtable.com/archives/015534.html">they&#8217;ll spam our sites with keywords related to our content</a> from now on, at least they&#8217;ll try it. And they have a <a href="http://forums.microsoft.com/webmaster/ShowForum.aspx?ForumID=1984&#038;SiteID=79">forum</a> and a <a href="https://feedback.live.com/default.aspx?productkey=livesearchwebmastercenter&#038;mkt=en-us">contact form</a> to gather complaints. Crap on, so much bureaucratic efforts to administer their ridiculous spam fighting funeral. They&#8217;d better build a search engine that actually sends human traffic.</p>
<hr />Copyright &copy; 2012 <strong><a href="http://sebastians-pamphlets.com/">Sebastian`s Pamphlets</a></strong>. This Feed is for personal non-commercial use only. If you are not reading this material in your news aggregator/feed reader, the site you are looking at is guilty of copyright infringement and will be put down immediately. Please contact sebastians-pamphlets.com so we can take legal action immediately.<br /><span style="float: right;font-size: 7pt"><a href="http://blog.taragana.com/index.php/archive/wordpress-plugins-provided-by-taraganacom/">Plugin</a> by <a href="http://www.taragana.com/">Taragana</a></span><div class="topsy_widget_data topsy_theme_light-green" style="float: right;margin-left: 0.75em;"><!-- { "url": "http://sebastians-pamphlets.com/msn-admits-clueless-and-ineffective-spamming/", "style": "big", "title": "MSN spam to continue says the Live Search Blog" } --></div>
]]></content:encoded>
			<wfw:commentRss>http://sebastians-pamphlets.com/msn-admits-clueless-and-ineffective-spamming/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Letting friends know you read their stuff</title>
		<link>http://sebastians-pamphlets.com/letting-friends-know-you-read-their-stuff/</link>
		<comments>http://sebastians-pamphlets.com/letting-friends-know-you-read-their-stuff/#comments</comments>
		<pubDate>Wed, 04 Jul 2007 22:51:00 +0000</pubDate>
		<dc:creator>Sebastian</dc:creator>
		
		<category><![CDATA[Social Web]]></category>

		<category><![CDATA[Spoofing]]></category>

		<category><![CDATA[Fun]]></category>

		<guid isPermaLink="false">http://sebastians-pamphlets.com/letting-friends-know-you-read-their-stuff/</guid>
		<description><![CDATA[
With various social tools and gadgets there are tons of opportunities to publically or privately show that you follow your friends. I can digg my friends&#8217; articles, or bookmark them at delicious, I can link to their posts via sharing in Google Reader, or after reading their posts in my preferred feed reader, I can [...]]]></description>
			<content:encoded><![CDATA[
<p>With various social tools and gadgets there are tons of opportunities to publically or privately show that you follow your friends. I can digg my friends&#8217; articles, or bookmark them at delicious, I can link to their posts via sharing in Google Reader, or after reading their posts in my preferred feed reader, I can click the link too just to push my red crab image to the top of their MBL and BUMPzee widgets. </p>
<p>All that comes with common hassles. I want to use these social gadgets and services without jumps thru unintended hoops, that is I consider all the above mentioned methods to tell friends that I still love them diverting those services from their intended use. Also, not every friend of mine makes use of <em>all</em> these geeky tools, so I need to digg posts of A., to delicious articles by B., to share posts of C., and to visit the blogs of D., E. and F. just to show that I&#8217;ve read their stuff in my feed reader. </p>
<p>I can&#8217;t do that, at least not in a reliable manner, especially not when I&#8217;m swamped and just try to catch up after 12 or more hours of dealing with legacy applications or other painful tasks like meetings with wannabe-geeks (unexperienced controllers or chiefs of whichever-useless-service-center) respectively anti-geeks (know-it-all but utterly-clueless and dangerous-to-the-company&#8217;s-safety IT managers). Doh! </p>
<p>So when I&#8217;m not able to send my friends a twitter-great-job-message or IM, and don&#8217;t have the time to link to their stuff, should I feel bad? Probably. Penalties are well deserved. Actually, the consequence is that nice guys like <a href="http://twitter.com/NickWilson">Nick Wilson</a> @<a href="http://metaversed.com/">Metaversed</a> unfriend me (among other well-meaning followers) at Twitter coz &#8220;I didn&#8217;t provide useful input for a while&#8221;, not knowing that I follow them with interest, read their posts and all that, but just can&#8217;t contribute <b>at the moment</b> because their actual field of interest doesn&#8217;t match my time schedule respectively my todays-hot-topic-list, nor my current centre of gravity, so to say. That does not mean I&#8217;m not interested in whatever they do and output, I just can&#8217;t process it ATM but I know that&#8217;ll change at some point in the future. Hey, geeks usually hop from today&#8217;s hot thing to tomorrow&#8217;s hot thing, and flashbacks are rather natural, so why expect continuousness?</p>
<p>Bugger, I wrote four paragraphs and didn&#8217;t come to the point expectable from the post&#8217;s title. And I bored you dear readers with lots of title bait recently. Sorry, but I did enjoy it. Ok, here&#8217;s the message:</p>
<p>Everybody monitors referrer stats. Don&#8217;t say you don&#8217;t do it because that&#8217;s first a lie and second a natural thing to do. That applies to ego searches too by the way. So why don&#8217;t we make use of referrer spoofing to send a signal to our friends? It&#8217;s that easy. Just add the <a href="http://sebastians-pamphlets.com/referrer-spoofing-with-prefbar-341/">referrer-spoofing widget</a> to your <a href="http://prefbar.mozdev.org/">PrefBar</a>, enter your URL, and surf on. Well, technically that&#8217;s <a href="http://sebastians-pamphlets.com/when-your-referrer-stats-turn-into-a-porn-tgp/">referrer spamming</a>, so if you wear a tinfoil hat use a non-indexable server like example.com. I&#8217;m currently surfing with the HTTP_REFERER &#8220;http://www.example.com/gofuckyourself&#8221; but I&#8217;m going to change that to this blog&#8217;s URL. Funny folks visiting my blog provide bogus referrers like &#8220;http://spamteam.google.com/&#8221; and &#8220;http://corp.google.com:8080/webspam/watchlist.py&#8221;, so why the fuck shouldn&#8217;t I use my actual address? This will tell my friends that I still love them. And real geeks shouldn&#8217;t expect unforged referrer stats, since many <a href="http://www.mattcutts.com/blog/">nice guys</a> surf without spamming the server logs with a referrer.</p>
<p>What do you think?</p>
<hr />Copyright &copy; 2012 <strong><a href="http://sebastians-pamphlets.com/">Sebastian`s Pamphlets</a></strong>. This Feed is for personal non-commercial use only. If you are not reading this material in your news aggregator/feed reader, the site you are looking at is guilty of copyright infringement and will be put down immediately. Please contact sebastians-pamphlets.com so we can take legal action immediately.<br /><span style="float: right;font-size: 7pt"><a href="http://blog.taragana.com/index.php/archive/wordpress-plugins-provided-by-taraganacom/">Plugin</a> by <a href="http://www.taragana.com/">Taragana</a></span><div class="topsy_widget_data topsy_theme_light-green" style="float: right;margin-left: 0.75em;"><!-- { "url": "http://sebastians-pamphlets.com/letting-friends-know-you-read-their-stuff/", "style": "big", "title": "Letting friends know you read their stuff" } --></div>
]]></content:encoded>
			<wfw:commentRss>http://sebastians-pamphlets.com/letting-friends-know-you-read-their-stuff/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Referrer spoofing with PrefBar 3.4.1</title>
		<link>http://sebastians-pamphlets.com/referrer-spoofing-with-prefbar-341/</link>
		<comments>http://sebastians-pamphlets.com/referrer-spoofing-with-prefbar-341/#comments</comments>
		<pubDate>Sun, 24 Jun 2007 19:35:00 +0000</pubDate>
		<dc:creator>Sebastian</dc:creator>
		
		<category><![CDATA[Spoofing]]></category>

		<category><![CDATA[Testing]]></category>

		<category><![CDATA[Web development]]></category>

		<category><![CDATA[Tools]]></category>

		<category><![CDATA[Cloaking]]></category>

		<guid isPermaLink="false">http://sebastians-pamphlets.com/referrer-spoofing-with-prefbar-341/</guid>
		<description><![CDATA[
Testing browser optimization, search engine friendly user-agent cloaking, referrer based navigation or dynamic landing pages with scripts or by changing the user agent name in the browser&#8217;s settings is no fun. 
I love PrefBar, a neat FireFox plug-in, which provides me with a pretty useful customizable toolbar. With PrefBar you can switch JavaScript, Flash, colors, [...]]]></description>
			<content:encoded><![CDATA[
<p>Testing browser optimization, search engine friendly user-agent cloaking, referrer based navigation or dynamic landing pages with scripts or by changing the user agent name in the browser&#8217;s settings is no fun. </p>
<p>I love <a href="http://prefbar.mozdev.org/">PrefBar</a>, a neat FireFox plug-in, which provides me with a pretty useful customizable toolbar. With PrefBar you can switch JavaScript, Flash, colors, images, cookies&#8230; on and off with one mouse click, and you can enter a list of user agent names to choose the user agent while browsing.</p>
<p>So I&#8217;ve asked <a href="http://prefbar.mozdev.org/members.html">Manuel Reimer</a> to create a referrer spoofer widget, and kindly he created it with <a href="http://prefbar.mozdev.org/installation.html">PrefBar 3.4.1</a>. Thank you Manuel! </p>
<p>To activate referrer spoofing in your PrefBar toolbar <a href="http://prefbar.mozdev.org/installation.html">install or update Prefbar</a> to 3.4.1, then download the <a href="http://prefbar.mozdev.org/buttons.html">Referer Spoof Menulist 1.0</a>, click &#8220;Customize&#8221; on the toolbar and import the file. Then click on &#8220;Edit&#8221; to add all the referrer URLs you need for testing purposes, and enjoy. It works great.</p>
<hr />Copyright &copy; 2012 <strong><a href="http://sebastians-pamphlets.com/">Sebastian`s Pamphlets</a></strong>. This Feed is for personal non-commercial use only. If you are not reading this material in your news aggregator/feed reader, the site you are looking at is guilty of copyright infringement and will be put down immediately. Please contact sebastians-pamphlets.com so we can take legal action immediately.<br /><span style="float: right;font-size: 7pt"><a href="http://blog.taragana.com/index.php/archive/wordpress-plugins-provided-by-taraganacom/">Plugin</a> by <a href="http://www.taragana.com/">Taragana</a></span><div class="topsy_widget_data topsy_theme_light-green" style="float: right;margin-left: 0.75em;"><!-- { "url": "http://sebastians-pamphlets.com/referrer-spoofing-with-prefbar-341/", "style": "big", "title": "Referrer spoofing with PrefBar 3.4.1" } --></div>
]]></content:encoded>
			<wfw:commentRss>http://sebastians-pamphlets.com/referrer-spoofing-with-prefbar-341/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>

