[SpamCop.net - protecting the internet through technology]

[SpamCop-List] Re: New link obfuscation?

Mike Easter MikeE at ster.invalid
Sun Mar 21 08:47:06 EST 2004


Philippe Verdy wrote:
> If you are not convinced, read RFC 2396, part 3:

I like GV's explanation much better and agree with it.

Also, [incidentally] SS's Browse function works on that url, and lots of
de-obfuscators simply find the host between 'http://' and '/' and then
the path starts with the @.  It makes sense that way.   That is the way
http://www.edendev.co.uk/spam/url.shtml handles it in both the strict
and weak RFC 2396 compliance modes;  and in reality, the url isn't even
obfuscated;  it is completely unobfuscated and only gets 'obfuscated' by
those trying to make something out of it that it isn't.


-- 
Mike Easter



More information about the SpamCop-List mailing list