Email

Email

by Mike Masnick




Spammers Damaging DNS

from the wonderful dept

As if spam wasn't problematic enough, it's now causing problems for DNS servers. It seems that some spammers are sending out spam from a domain that doesn't exist. They wait some period of time, and then register the non-existent domain, scoop up a few sales, and then abandon it. They hope this makes it harder to track them down. Of course, it also makes it harder to track down their DNS entry... and that's apparently causing extra stress on DNS servers who are often overwhelmed with requests for entries on domains that simply don't exist.

3 Comments | Leave a Comment..

 
 

Reader Comments

(Flattened / Threaded)

    Jan 10th, 2005 @ 2:33am
  • No Subject Given

    by Anonymous Coward

    lol, does this mean that all this time DNS was never caching negatives?

    if so we should thank these people because without cached negatives someone that had destruction instead of profit on their minds could really kill the net. no?

    (reply to this comment) (link to this comment)

  • Jan 10th, 2005 @ 12:35pm
  • How Does This Tactic Work?

    I'm not sure I understand how this works. If the spammer sends E-mail with a domain that doesn't work in the header, any good backcheck system will catch it. If the domain in the body isn't registered, they'll potentially lose sales when suckers, er, customers get 404 errors.

    One thing I've noticed in spam lately is the proliferation of URLs with the .info top-level domain. I suspect one reason for this is registrars that were giving free .info domains for one year. This seems to be ideal for spammers, and probably allows the .info registry to claim that they're the fastest growing domain.

    To paraphrase Shakespeare, first thing, let's kill all the spammers.

    (reply to this comment) (link to this comment)

  • Jan 10th, 2005 @ 1:31pm
  • kinda works backwards too

    by Anonymous Coward

    don't forget when spamcop blacklists a whole ip just because of a single spammer on a shared server, instead of just blacklisting the domain name....

    (reply to this comment) (link to this comment)

Add Your Comment

Have a Techdirt Account? Sign in now.
Get Techdirt’s Daily Email
Plain Text HTML
Save me a cookie
  • Plain Text: A CRLF will be replaced by break <br> tag, all other allowable HTML is intact
  • HTML: No formatting of any kind is done without explicitly being written in
  • Allowed HTML Tags: <b> <i> <p> <a> <em> <br> <strong> <blockquote> <hr> <tt>
Close
Have a Techdirt Account? Sign in now.
Get Techdirt’s Daily Email
Plain Text HTML Save me a cookie

Search Techdirt
And now, a word from our Sponsors..



Subscribe to Techdirt's Daily Email Newsletter

Techdirt's Daily Email Newsletter

Related Stories
Close
E-mail It