There’s been an upsurge in ASCII spam in the last week…It’s quite effective in getting through filters,” said Chris Boyd, director of malware research at messaging management firm FaceTime Communications.

But earlier efforts to use ASCII art for spam have proven to be duds, he added. “The downside is that 9 times out of 10, it’s completely useless because it’s almost impossible to read, or it’s a really bizarre picture of a naked lady that’s not clickable,” Boyd said.

Evasive maneuvers

Spam filters can detect the word “Viagra” and suspect Web addresses of sites trying to get rich quick by catering to the demand for the drug. But it’s another thing altogether to detect an ASCII art version of the same word. Indeed, an ASCII art spam e-mail reading “Viagra-$1.15” and “Cialis-$1.99” made it past the spam filters of my Yahoo Mail and Gmail accounts.

Google declined to comment specifically on ASCII art spam. “We expect spammers to use every means possible to try to send spam. That’s why we have a very robust spam-fighting effort at Google,” the company said in a statement. Yahoo didn’t respond to a request for comment.

Here’s why it’s clever. One line of the e-mail is “78 46 60 11 04 75 300 38 0348 18 61 55171″–gibberish that hardly resembles part of the word “Viagra” or a suspect URL. But reading it on my screen as part of the overall text, its meaning was clear to me in a flash. And a spam generation program could evade spam filter fingerprinting by randomly substituting other numbers into the text art.

© CNET.com

ooooo          .oooooo.   ooooo        oooooooooooo   .oooooo.
`888'         d8P'  `Y8b  `888'        `888'     `8  d8P'  `Y8b
 888         888      888  888          888         888
 888         888      888  888          888oooo8    888
 888         888      888  888          888    "    888     ooooo
 888       o `88b    d88'  888       o  888       o `88.    .88'
o888ooooood8  `Y8bood8P'  o888ooooood8 o888ooooood8  `Y8bood8P'

Joerg Seyfferth’s ASCII text generator

Hey, check this out! You can leave a comment & follow responses via RSS 2.0 feed, or trackback this post from your site, k3wl, huh?
  • blinkbits
  • BlinkList
  • co.mments
  • del.icio.us
  • feedmelinks
  • Furl
  • Reddit
  • Simpy
  • YahooMyWeb
  • Spurl
  • Digg
  • Google
  • Live
  • Mixx
  • StumbleUpon
  • Technorati
  • TwitThis
  • LinkedIn
  • NewsVine
  • Pownce
  • Yahoo! Buzz
 
 
 
 
 
 

4 Responses

  1. JuJo Aug 27, 2008
    17:03 pm
    #1 Quote

    Мде, спам фильтры не помогут….

  2. Hairgel_Addict Hairgel_Addict Aug 27, 2008
    17:17 pm
    #2 Quote

    уху, стоит лишь вместо простого набора символов использовать какой-нить текст и все..

  3. JuJo Aug 28, 2008
    11:25 am
    #3 Quote

    Ну в теории можно спам фильтр научить распозновать такие слова, будет работать по принципу FineReader :) Но это будет тормозить :)

  4. Hairgel_Addict Hairgel_Addict Aug 28, 2008
    12:30 pm
    #4 Quote

    заипутца они такие фильтры писать.. :paranoid:

 
 

Add Comment