<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.0.7" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Comments on: Throwing suspicion on Microsoft</title>
	<link>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/</link>
	<description>Just another WordPress weblog</description>
	<pubDate>Fri, 29 Aug 2008 11:31:47 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.0.7</generator>

	<item>
		<title>by: Infowarrior</title>
		<link>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-77263</link>
		<pubDate>Wed, 13 Dec 2006 21:14:10 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-77263</guid>
					<description>This is the US go'vt and MS keeping up the attack on the poeple.</description>
		<content:encoded><![CDATA[<p>This is the US go&#8217;vt and MS keeping up the attack on the poeple.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Lemat</title>
		<link>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-44221</link>
		<pubDate>Sat, 23 Sep 2006 07:44:55 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-44221</guid>
					<description>I have just received an email spam where JS deobsfucates the URL. Spamcop said:

"Finding links in message body
Detected javascript in body. Cannot trust links in text. Aborting link detection."</description>
		<content:encoded><![CDATA[<p>I have just received an email spam where JS deobsfucates the URL. Spamcop said:</p>
<p>&#8220;Finding links in message body<br />
Detected javascript in body. Cannot trust links in text. Aborting link detection.&#8221;
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: admin</title>
		<link>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-41876</link>
		<pubDate>Fri, 15 Sep 2006 11:47:28 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-41876</guid>
					<description>The javascript was on a third party page. A site belonging to a non-spammer. You know, a regular plone thing.

The javascript was a redirect, but it went to what I call a cutout. A domain controlled by the spammer, to hide the fact that he was spamming from the affiliate scheme.</description>
		<content:encoded><![CDATA[<p>The javascript was on a third party page. A site belonging to a non-spammer. You know, a regular plone thing.</p>
<p>The javascript was a redirect, but it went to what I call a cutout. A domain controlled by the spammer, to hide the fact that he was spamming from the affiliate scheme.
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Esrun</title>
		<link>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-41623</link>
		<pubDate>Thu, 14 Sep 2006 21:36:06 +0000</pubDate>
		<guid>http://spamhuntress.com/2006/09/14/throwing-suspicion-on-microsoft/#comment-41623</guid>
					<description>See my posts on http://blogs.msdn.com/livesearch/archive/2006/09/11/750079.aspx about what the new Microsoft LIVE search does with the the HTTP_REFERER. 

You may find that they're using a middle page to redirect users to the final destination and hide the referring page and in turn making it look like an abused redirect page when infact it may not be.</description>
		<content:encoded><![CDATA[<p>See my posts on <a href="http://blogs.msdn.com/livesearch/archive/2006/09/11/750079.aspx" rel="nofollow">http://blogs.msdn.com/livesearch/archive/2006/09/11/750079.aspx</a> about what the new Microsoft LIVE search does with the the HTTP_REFERER. </p>
<p>You may find that they&#8217;re using a middle page to redirect users to the final destination and hide the referring page and in turn making it look like an abused redirect page when infact it may not be.
</p>
]]></content:encoded>
				</item>
</channel>
</rss>
