[SpamCop-List] Re: New link obfuscation?
MikeE at ster.invalid
Sun Mar 21 08:47:06 EST 2004
Philippe Verdy wrote:
> If you are not convinced, read RFC 2396, part 3:
I like GV's explanation much better and agree with it.
Also, [incidentally] SS's Browse function works on that url, and lots of
de-obfuscators simply find the host between 'http://' and '/' and then
the path starts with the @. It makes sense that way. That is the way
http://www.edendev.co.uk/spam/url.shtml handles it in both the strict
and weak RFC 2396 compliance modes; and in reality, the url isn't even
obfuscated; it is completely unobfuscated and only gets 'obfuscated' by
those trying to make something out of it that it isn't.
More information about the SpamCop-List