<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>Red Cardinal &#187; Security</title> <atom:link href="http://www.redcardinal.ie/category/security/feed/" rel="self" type="application/rss+xml" /><link>http://www.redcardinal.ie</link> <description>Search Engine Optimisation Ireland</description> <lastBuildDate>Tue, 08 Mar 2011 21:10:46 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.1.3</generator> <atom:link rel="hub" href="http://pubsubhubbub.appspot.com" /> <atom:link rel="hub" href="http://superfeedr.com/hubbub" /> <item><title>Malware Stats for Irish Web Hosting Companies</title><link>http://www.redcardinal.ie/security/25-08-2009/some-stats-on-malware-and-irish-web-hosting-companies/</link> <comments>http://www.redcardinal.ie/security/25-08-2009/some-stats-on-malware-and-irish-web-hosting-companies/#comments</comments> <pubDate>Tue, 25 Aug 2009 10:53:06 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/?p=1029</guid> <description><![CDATA[If these figures are representative of actual levels of malware infestation on Irish hosting networks then many, many Irish webmasters need to take extreme counter measures. In fact, perhaps the hosting companies themselves may need to review how they protect their infrastructure and the sites they host.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/security/28-04-2008/serious-sql-injection-vulnerability/' rel='bookmark' title='Permanent Link: Serious SQL Injection Vulnerability'>Serious SQL Injection Vulnerability</a></li><li><a
href='http://www.redcardinal.ie/search-engines/04-12-2006/irish-property-websites-statistics/' rel='bookmark' title='Permanent Link: Irish Property Sites Keeping an Eye on Each Other?'>Irish Property Sites Keeping an Eye on Each Other?</a></li><li><a
href='http://www.redcardinal.ie/google/25-09-2007/irish-sluts/' rel='bookmark' title='Permanent Link: Irish Sluts &#8211; Spammers Knock Mulley Off Number #1'>Irish Sluts &#8211; Spammers Knock Mulley Off Number #1</a></li></ol>]]></description> <content:encoded><![CDATA[<p>I&#8217;ve been paying a lot more attention to the problem of malware. It seems that this issue may be set to be the largest threat to online business, and given the sheer volume of new attacks I thought it would be interesting to take a look at what Google&#8217;s Safe Browsing system was reporting for Irish Hosting companies.</p><h3>Safe Browsing</h3><p>Google has been directly protecting users from malware since 2006. Their <a
href="http://code.google.com/apis/safebrowsing/">Safe Browsing API</a> is probably best known to Firefox users, and is used by numerous other applications to protect users from malicious websites.</p><h3>Not Just Sites &#8211; Networks Too</h3><p>Many people don&#8217;t realise that Google&#8217;s malware detection infrastructure measures infection at network as well as website level. So you can check out how much malware each host&#8217;s webservers have been found to host over the past 90 days. Here&#8217;s some data for a number of well-known Irish web hosting companies:</p><style type="text/css">#datatable{border:1px solid #000;background:#fff}#datatable th{background:#000;color:#fff;font-weight:bold}#datatable tr.odd{background:#efefef}</style><table
border="0" cellspacing="1" cellpadding="4" width="100%" id="datatable"><tbody><tr><th>Hostname</th><th
align="center"># Tested</th><th
align="center"># Infected</th><th
align="center">%</th><th
align="center">Intermediary</th><th
align="center">Distribution</th><th
align="center">Link</th></tr><tr><td>Blacknight</td><td
align="center">4661</td><td
align="center">345</td><td
align="center">7.4%</td><td
align="center">6</td><td
align="center">2</td><td
align="center"><a
href="http://google.com/safebrowsing/diagnostic?site=AS:39122" rel="nofollow">link</a></td></tr><tr
class="odd"><td>Digiweb</td><td
align="center">4691</td><td
align="center">678</td><td
align="center">14.5%</td><td
align="center">7</td><td
align="center">5</td><td
align="center"><a
href="http://google.com/safebrowsing/diagnostic?site=AS:31122" rel="nofollow">link</a></td></tr><tr><td>Eircom</td><td
align="center">728</td><td
align="center">5</td><td
align="center">0.7%</td><td
align="center">0</td><td
align="center">0</td><td
align="center"><a
href="http://google.com/safebrowsing/diagnostic?site=AS:5466" rel="nofollow">link</a></td></tr><tr
class="odd"><td>Netsource</td><td
align="center">689</td><td
align="center">4</td><td
align="center">0.6%</td><td
align="center">0</td><td
align="center">0</td><td
align="center"><a
href="http://google.com/safebrowsing/diagnostic?site=AS:22458" rel="nofollow">link</a></td></tr><tr><td>Register365</td><td
align="center">5695</td><td
align="center">321</td><td
align="center">5.6%</td><td
align="center">5</td><td
align="center">3</td><td
align="center"><a
href="http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=AS:29650" rel="nofollow">link</a></td></tr></tbody></table><p><strong>Key:</strong><br
/> <em># Tested</em> Number of tested sites<br
/> <em># Infected</em> Number of sites serving malicious software<br
/> <em>%</em> % sites serving malicious software<br
/> <em>Intermediary</em> Number of sites on network acting as intermediaries for further malware distribution<br
/> <em>Distribution</em> Number of sites on network actually distributing malware<br
/> <em>Link</em> Link to Safe Browsing Diagnostic page</p><h3>Some Notes</h3><p>It&#8217;s worth noting that most hacked websites do not host malware, but instead inject code that results in visitors downloading malware from other servers. A significant proportion of the increased malware seen in recent months is likely a result of the gumblar hack.</p><p>I had better mention that all I&#8217;ve done above is show the stats reported by Google &#8211; these figures may be inaccurate, and I&#8217;m not inferring anything about the  security of the above mentioned hosts. I was unable to find stats for a number of other well known Irish hosters.</p><h3>Has your site been hacked?</h3><p>If you&#8217;re concerned you can use this URL:<br
/> <strong>http://google.com/safebrowsing/diagnostic?site=mysite.com</strong><br
/> [change mysite.com to your domain without www].</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/security/28-04-2008/serious-sql-injection-vulnerability/' rel='bookmark' title='Permanent Link: Serious SQL Injection Vulnerability'>Serious SQL Injection Vulnerability</a></li><li><a
href='http://www.redcardinal.ie/search-engines/04-12-2006/irish-property-websites-statistics/' rel='bookmark' title='Permanent Link: Irish Property Sites Keeping an Eye on Each Other?'>Irish Property Sites Keeping an Eye on Each Other?</a></li><li><a
href='http://www.redcardinal.ie/google/25-09-2007/irish-sluts/' rel='bookmark' title='Permanent Link: Irish Sluts &#8211; Spammers Knock Mulley Off Number #1'>Irish Sluts &#8211; Spammers Knock Mulley Off Number #1</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/security/25-08-2009/some-stats-on-malware-and-irish-web-hosting-companies/feed/</wfw:commentRss> <slash:comments>10</slash:comments> </item> <item><title>Serious SQL Injection Vulnerability</title><link>http://www.redcardinal.ie/security/28-04-2008/serious-sql-injection-vulnerability/</link> <comments>http://www.redcardinal.ie/security/28-04-2008/serious-sql-injection-vulnerability/#comments</comments> <pubDate>Mon, 28 Apr 2008 11:00:26 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/?p=559</guid> <description><![CDATA[Massive SQL injection exploit in the wild - if you run IIS and MS SQL you need to know about this as it is already infecting Irish sites.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/google/24-07-2006/search-engine-market-shares/' rel='bookmark' title='Permanent Link: Search Engine Market Share June 2006'>Search Engine Market Share June 2006</a></li><li><a
href='http://www.redcardinal.ie/geotargeting/27-07-2009/more-evidence-of-google-geotargeting-gone-bad/' rel='bookmark' title='Permanent Link: More Evidence of Google Geotargeting Gone Bad'>More Evidence of Google Geotargeting Gone Bad</a></li><li><a
href='http://www.redcardinal.ie/google/09-08-2009/never-seen-this-before/' rel='bookmark' title='Permanent Link: Never Seen This Before'>Never Seen This Before</a></li></ol>]]></description> <content:encoded><![CDATA[<p>This is worth coming out of hibernation. A nasty .ASP/.ASPX exploit has been found that allows a SQL injection. <a
href="http://www.f-secure.com/weblog/archives/00001427.html">More from F-Secure</a>.</p><p>But the real issue is that this is already affecting Irish sites:</p><p><a
href="http://www.google.ie/search?q=nihaorr1&#038;cr=countryIE&#038;safe=off&#038;filter=0&#038;num=100"><img
src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2008/04/sql-injection1.jpg" alt="MS SQL Injection" title="sql-injection" width="500" height="561" class="alignnone size-full wp-image-560" /></a><br
/> <em>Google.ie Pages From Ireland [nihaorr1]</em></p><p><a
href="http://www.google.ie/search?q=nihaorr1&#038;cr=countryIE&#038;safe=off&#038;filter=0&#038;num=100">2050 Infected Pages From Ireland</a></p><p>If you are running MS SQL on IIS servers be aware that this seems to be spreading quickly.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/google/24-07-2006/search-engine-market-shares/' rel='bookmark' title='Permanent Link: Search Engine Market Share June 2006'>Search Engine Market Share June 2006</a></li><li><a
href='http://www.redcardinal.ie/geotargeting/27-07-2009/more-evidence-of-google-geotargeting-gone-bad/' rel='bookmark' title='Permanent Link: More Evidence of Google Geotargeting Gone Bad'>More Evidence of Google Geotargeting Gone Bad</a></li><li><a
href='http://www.redcardinal.ie/google/09-08-2009/never-seen-this-before/' rel='bookmark' title='Permanent Link: Never Seen This Before'>Never Seen This Before</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/security/28-04-2008/serious-sql-injection-vulnerability/feed/</wfw:commentRss> <slash:comments>7</slash:comments> </item> <item><title>Golden Spiders Best Spammer Award Goes To&#8230;</title><link>http://www.redcardinal.ie/security/20-12-2007/golden-spiders-awards-spammers/</link> <comments>http://www.redcardinal.ie/security/20-12-2007/golden-spiders-awards-spammers/#comments</comments> <pubDate>Thu, 20 Dec 2007 12:38:51 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/20-12-2007/golden-spiders-awards-spammers/</guid> <description><![CDATA[Irish Web Awards have been beaten black and blue of late. But when the organisers of Ireland's most prestigious web awards get caught spamming people...Want to read more?<ol><li><a
href='http://www.redcardinal.ie/css/06-11-2006/golden-spiders-accessibility-study-take-4/' rel='bookmark' title='Permanent Link: Golden Spiders Take #4'>Golden Spiders Take #4</a></li><li><a
href='http://www.redcardinal.ie/marketing/31-10-2007/golden-spiders-awards-2007/' rel='bookmark' title='Permanent Link: Golden Spiders Awards 2007'>Golden Spiders Awards 2007</a></li><li><a
href='http://www.redcardinal.ie/general/24-09-2008/irish-web-awards-and-hello-maryrose/' rel='bookmark' title='Permanent Link: Irish Web Awards (and hello Maryrose!)'>Irish Web Awards (and hello Maryrose!)</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Last year I was pretty vocal on the <a
href="http://www.redcardinal.ie/webdev/06-11-2006/golden-spiders/">Golden Spiders Awards</a>. This year I was pretty <a
href="http://www.redcardinal.ie/general/01-09-2007/golden-spiders-2007/">uninterested</a>.</p><p>But I think this story of the <a
href="http://brightspark-consulting.com/blog/?p=424">Golden Spiders organisers &#8216;guilty&#8217; of spamming</a> just about sums it up for this particular &#8216;awards&#8217; ceremony.</p><p><strong>How can spammers be relied upon to select Ireland&#8217;s top websites? Seriously?</strong></p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/css/06-11-2006/golden-spiders-accessibility-study-take-4/' rel='bookmark' title='Permanent Link: Golden Spiders Take #4'>Golden Spiders Take #4</a></li><li><a
href='http://www.redcardinal.ie/marketing/31-10-2007/golden-spiders-awards-2007/' rel='bookmark' title='Permanent Link: Golden Spiders Awards 2007'>Golden Spiders Awards 2007</a></li><li><a
href='http://www.redcardinal.ie/general/24-09-2008/irish-web-awards-and-hello-maryrose/' rel='bookmark' title='Permanent Link: Irish Web Awards (and hello Maryrose!)'>Irish Web Awards (and hello Maryrose!)</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/security/20-12-2007/golden-spiders-awards-spammers/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>Technorati Wiki</title><link>http://www.redcardinal.ie/blogs/31-07-2007/technorati-developers-wiki/</link> <comments>http://www.redcardinal.ie/blogs/31-07-2007/technorati-developers-wiki/#comments</comments> <pubDate>Tue, 31 Jul 2007 15:53:11 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Blogs]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/31-07-2007/technorati-developers-wiki/</guid> <description><![CDATA[Quick funny about Technorati's developer wiki getting spammed to death...]]></description> <content:encoded><![CDATA[<p>Very light posting from me&#8230;</p><p>Here&#8217;s a quickie &#8211; check out Technorati&#8217;s <a
href="http://developers.technorati.com/wiki" rel="nofollow">developer wiki</a>. Let&#8217;s just say it&#8217;s been moderately spammed (to death)&#8230;.</p><p><img
src='http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2007/07/developers-wiki1.jpg' alt='Technorati Developers Wiki' /></p> ]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/blogs/31-07-2007/technorati-developers-wiki/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Euro Business Guide Scamming Again</title><link>http://www.redcardinal.ie/security/26-06-2007/euro-business-guide-scam/</link> <comments>http://www.redcardinal.ie/security/26-06-2007/euro-business-guide-scam/#comments</comments> <pubDate>Tue, 26 Jun 2007 17:25:46 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/26-06-2007/euro-business-guide-scam/</guid> <description><![CDATA[Euro Business Guide have been spamming and scamming for many years now. They are at it again.Will they ever be shut down for their continuous attempts to scam people?Want to read more?<ol><li><a
href='http://www.redcardinal.ie/general/10-11-2006/euro-business-guide-spam-and-scam/' rel='bookmark' title='Permanent Link: Euro Business Guide Spam and Scam Warning'>Euro Business Guide Spam and Scam Warning</a></li><li><a
href='http://www.redcardinal.ie/search-engines/14-08-2009/waldberghirsch-global-collections-more-scams-to-simply-ignore/' rel='bookmark' title='Permanent Link: Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore'>Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore</a></li><li><a
href='http://www.redcardinal.ie/ppc/20-07-2009/deceptive-practices-will-never-go-away/' rel='bookmark' title='Permanent Link: Deceptive Practices Will Never Go Away'>Deceptive Practices Will Never Go Away</a></li></ol>]]></description> <content:encoded><![CDATA[<p>I mentioned this <a
href="http://www.redcardinal.ie/general/10-11-2006/euro-business-guide-spam-and-scam/">before</a>. I just cant understand how this crowd are still in operation. Total bunch of crooks:</p><blockquote><p>Please print and fill the enclosed document and send it back to:<br
/> Euro Business Guide,<br
/> P.O. Box 2021,<br
/> 3500GA UTRECHT,<br
/> The Netherlands,<br
/> updating is free of charge!</p><p>If you want to unsubscribe send an email to unsubscribe@eurobusinessguide.net</p></blockquote><p>The &#8216;<em>updating is free of charge!</em>&#8216; really is such an underhand way to hide the following fine print in the footer of their sign-up form:</p><blockquote><p>THE VALIDATION TIME OF THE CONTRACT IS THREE YEARS AND STARTS ON THE EIGHTH DAY AFTER SIGNING THE CONTRACT.</p></blockquote><p>Ooh, how nice &#8211; 7 days cooling off period (God forbid they actually break the law).</p><blockquote><p>THE PRICE PER YEAR IS EURO 990. THE SUBSCRIPTION WILL BE AUTOMATICALLY EXTENDED EVERY YEAR FOR ANOTHER YEAR, UNLESS SPECIFIC WRITTEN NOTICE IS RECEIVED BY THE SERVICE PROVIDER OR THE SUBSCRIBER TWO MONTHS BEFORE THE EXPIRATION OF THE SUBSCRIPTION.</p></blockquote><p>Wow, that&#8217;s good value &#8211; €999 per annum with automatic extensions for two further years.</p><p><strong>If you receive anything from this bunch of gougers simply ignore it as spam of the most repulsive kind</strong>.</p><p><strong>If you have signed this form unknowing of the legalese, you have 7 days under EU legislation to cancel your subscription (Distance Selling Directive), and if Euro Business Guide pursue you for payment (regardless of the 7 days) get in touch with your local national consumer affairs body</strong>.</p><p>Hopefully some day these people will receive their just deserts&#8230;</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/general/10-11-2006/euro-business-guide-spam-and-scam/' rel='bookmark' title='Permanent Link: Euro Business Guide Spam and Scam Warning'>Euro Business Guide Spam and Scam Warning</a></li><li><a
href='http://www.redcardinal.ie/search-engines/14-08-2009/waldberghirsch-global-collections-more-scams-to-simply-ignore/' rel='bookmark' title='Permanent Link: Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore'>Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore</a></li><li><a
href='http://www.redcardinal.ie/ppc/20-07-2009/deceptive-practices-will-never-go-away/' rel='bookmark' title='Permanent Link: Deceptive Practices Will Never Go Away'>Deceptive Practices Will Never Go Away</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/security/26-06-2007/euro-business-guide-scam/feed/</wfw:commentRss> <slash:comments>63</slash:comments> </item> <item><title>Unison.ie Cloaking &#8211; Will They Be Banned From Google?</title><link>http://www.redcardinal.ie/search-engine-optimisation/23-03-2007/unison-ie-cloaking/</link> <comments>http://www.redcardinal.ie/search-engine-optimisation/23-03-2007/unison-ie-cloaking/#comments</comments> <pubDate>Fri, 23 Mar 2007 11:02:43 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Search Engine Optimisation]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/search-engine-optimisation/23-03-2007/unison-ie-cloaking/</guid> <description><![CDATA[If you cloak you run the risk of being banned from Google.Apparently no one told Unison.ie  (Irish Independent).Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/14-02-2007/user-agent-sniffing-gone-wrong/' rel='bookmark' title='Permanent Link: When User Agent Sniffing Goes Horribly Wrong'>When User Agent Sniffing Goes Horribly Wrong</a></li><li><a
href='http://www.redcardinal.ie/css/16-10-2006/13-deadly-google-sins/' rel='bookmark' title='Permanent Link: 13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?'>13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?</a></li><li><a
href='http://www.redcardinal.ie/search-engine-optimisation/20-03-2007/cloaking-search-engines/' rel='bookmark' title='Permanent Link: When Your SEO Provider Promotes Cloaking'>When Your SEO Provider Promotes Cloaking</a></li></ol>]]></description> <content:encoded><![CDATA[<p>A nice little find by <a
href="http://blog.moybella.net/2007/03/22/googlebot-useragent-good-for-something/">Niall Donegan</a> who discusses Unison.ie cloaking:</p><blockquote><p>A prime example of this is Unison.ie. When searching for current Irish news it usually ranks fairly high on Google, however all the pages require you register first before you view them. The registration gives no advantage to people like me who just want to a quick look at the latest news. I suspect that I’m not alone and that lots of people will just go back and look for another site.</p><p>Unison’s simple user agent checking makes it very easy to get in unmolested though. The User Agent Switcher Plugin for Firefox allows you to easily set exactly what user agent you want your browser to appear as. The GoogleBot isn’t in the list of Useragents available, but it is easily added. Switch to GoogleBot as your useragent, and magically you will have full access to the Unison site.</p></blockquote><p>Now I always knew that they ran a subscription wall on the site, but I hadn&#8217;t realised that they were picked up by Google news. There&#8217;s been a huge amount of interest in media sites cloaking recently (see <a
href="http://www.mattcutts.com/blog/a-quick-word-about-cloaking/">here</a> for more). My feeling is that Unison would want to clean this up pretty quick or risk having a lot of egg on their face. As Niall mentions:</p><blockquote><p>I know that Unison will probably close this hole within a few days</p></blockquote><p>Could take quite a bit of work to change the way they present their pages. I suppose they could just set their cloaking routine to let everyone through. But will they?</p><p>Nice find Niall.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/14-02-2007/user-agent-sniffing-gone-wrong/' rel='bookmark' title='Permanent Link: When User Agent Sniffing Goes Horribly Wrong'>When User Agent Sniffing Goes Horribly Wrong</a></li><li><a
href='http://www.redcardinal.ie/css/16-10-2006/13-deadly-google-sins/' rel='bookmark' title='Permanent Link: 13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?'>13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?</a></li><li><a
href='http://www.redcardinal.ie/search-engine-optimisation/20-03-2007/cloaking-search-engines/' rel='bookmark' title='Permanent Link: When Your SEO Provider Promotes Cloaking'>When Your SEO Provider Promotes Cloaking</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/search-engine-optimisation/23-03-2007/unison-ie-cloaking/feed/</wfw:commentRss> <slash:comments>9</slash:comments> </item> <item><title>Ireland .ie ccTLD Safest In The World</title><link>http://www.redcardinal.ie/domains/17-03-2007/what-cctld-safest-ie/</link> <comments>http://www.redcardinal.ie/domains/17-03-2007/what-cctld-safest-ie/#comments</comments> <pubDate>Sat, 17 Mar 2007 11:46:00 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Domains]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/17-03-2007/what-cctld-safest-ie/</guid> <description><![CDATA[A recent report from McAfee Site Advisor ranks Ireland's .ie ccTLD as the second safest TLD in the world.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/geotargeting/19-08-2009/cctld-gwt-geotargeting-tool/' rel='bookmark' title='Permanent Link: Google Opens More ccTLDs to GWT Geotargeting Tool'>Google Opens More ccTLDs to GWT Geotargeting Tool</a></li><li><a
href='http://www.redcardinal.ie/general/22-07-2006/tld-for-country-specific-domains/' rel='bookmark' title='Permanent Link: TLD for Country Specific Searches &#8211; What Domain Extension (ccTLD) Should You Choose?'>TLD for Country Specific Searches &#8211; What Domain Extension (ccTLD) Should You Choose?</a></li><li><a
href='http://www.redcardinal.ie/domains/05-01-2008/eubrowser-ie-domains-released/' rel='bookmark' title='Permanent Link: Eubrowser.com .ie Domains Released &#8211; nike.ie, reebok.ie, irishindependent.ie'>Eubrowser.com .ie Domains Released &#8211; nike.ie, reebok.ie, irishindependent.ie</a></li></ol>]]></description> <content:encoded><![CDATA[<p>I wrote previously about using <a
href="http://www.redcardinal.ie/general/29-01-2007/ie-domain-name-strategies/">aged and trusted .ie domains</a> to bolsteryour search engine rankings. Well now comes further confirmation of the value of the .ie ccTLD.</p><p>According to McAfee&#8217;s Site Advisor <a
href="http://www.siteadvisor.com/studies/map_malweb_mar2007.html">Mapping the Mal Web</a> Ireland&#8217;s .ie ccTLD is second only to Finland&#8217;s .fi in terms of online safety risks:</p><blockquote><p>Four of the five least risky country TLDs are Nordic countries: Finland (0.10%), Norway (0.16%), Sweden (0.21%) and Iceland (0.19%).Ireland (0.11%) rounds out the top five least risky country TLDs. This could be due to governing bodies employing stricter regulations of these domains.</p></blockquote><p>I would imagine that the last comment is very much the reason for the low risk of .ie ccTLD.</p><blockquote><ul><li> Seven TLDs (.com, .info, .net, .biz, Tuvalu (.tv), Cocos Islands (.cc), and China (.cn)) earn the dubious distinction of ranking in the top 20 riskiest for each of the four risky facets we examined.</li><li>Of these seven domains, .biz and .info are the overall worst domains with highly risky rankings in each of the four categories:<p>.info ranks 2nd (overall risk), 1st (e-mail practices), 10th (download risk) and 12th (exploit risk)<br
/> .biz ranks 6th  (overall risk),  6th  (e-mail practices), 2nd  (download risk) and 5th (exploit risk)</li><li>Again, low cost appears to be at least <a
href="http://www.wired.com/wired/archive/14.09/splogs.html?pg=3">one factor</a> in drawing scammers to the .info TLD.</li><li>Spammers flock to .info, which was created as an alternative to the crowded .com, because its domain names are cheaper &#8211; registrars often let people use them gratis for the first year &#8211; which is helpful for those, like sploggers, who buy Internet addresses in bulk. Splogs so commonly have .info addresses that many experts simply assume all blogs from that domain are fake.</li><li><a
href="http://en.wikipedia.org/wiki/.info">Others note</a> that &#8220;.info is the first and only top-level domain that was explicitly created and chartered for unrestricted use, though various other TLDs have ended up that way as a de facto situation.&#8221;</li><li>.biz is <a
href="http://www.icannwatch.org/article.pl?sid=04/01/05/1453206">said to be</a> the most popular TLD for spammers because the name servers update immediately, meaning spammers can start using the domain as soon as they register, rather than wait up to 24 hours for the registration to take effect. This is particularly attractive due to the transient nature of spam and phishing Web sites.</li></ul></blockquote><p>Nice to see that .ie ccTLD is so trustworthy.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/geotargeting/19-08-2009/cctld-gwt-geotargeting-tool/' rel='bookmark' title='Permanent Link: Google Opens More ccTLDs to GWT Geotargeting Tool'>Google Opens More ccTLDs to GWT Geotargeting Tool</a></li><li><a
href='http://www.redcardinal.ie/general/22-07-2006/tld-for-country-specific-domains/' rel='bookmark' title='Permanent Link: TLD for Country Specific Searches &#8211; What Domain Extension (ccTLD) Should You Choose?'>TLD for Country Specific Searches &#8211; What Domain Extension (ccTLD) Should You Choose?</a></li><li><a
href='http://www.redcardinal.ie/domains/05-01-2008/eubrowser-ie-domains-released/' rel='bookmark' title='Permanent Link: Eubrowser.com .ie Domains Released &#8211; nike.ie, reebok.ie, irishindependent.ie'>Eubrowser.com .ie Domains Released &#8211; nike.ie, reebok.ie, irishindependent.ie</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/domains/17-03-2007/what-cctld-safest-ie/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>A Dose Full of Comment Spam, Long Copy Referrer Pages &amp; SEO Tools &#8211; What Do YOU Think?</title><link>http://www.redcardinal.ie/blogs/26-02-2007/seo-keywords-tools-long-copy-spam/</link> <comments>http://www.redcardinal.ie/blogs/26-02-2007/seo-keywords-tools-long-copy-spam/#comments</comments> <pubDate>Mon, 26 Feb 2007 08:28:29 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Blogs]]></category> <category><![CDATA[Keywords]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[SEO]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/26-02-2007/seo-keywords-tools-long-copy-spam/</guid> <description><![CDATA[It's a fact of life that spammers wouldn't be in business if they weren't making a dollar. Another fact of life is that very often SEO and spamming live very closely.This is a post about some particularly well-known SEO tools that were pushed through comment spam left on my blog. A mini-rant? Yes, and a look at the effectiveness of 'long copy' pages to sell products.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/keywords/14-11-2006/keyword-discovery-access-trial-1-dollar/' rel='bookmark' title='Permanent Link: Access To Keyword Discovery For $1'>Access To Keyword Discovery For $1</a></li><li><a
href='http://www.redcardinal.ie/general/17-10-2006/seo-spam-cork-web-design/' rel='bookmark' title='Permanent Link: SEO Spam From Cork'>SEO Spam From Cork</a></li><li><a
href='http://www.redcardinal.ie/keywords/16-08-2007/best-keyword-tool-free-trial/' rel='bookmark' title='Permanent Link: My Favorite Keyword Tool'>My Favorite Keyword Tool</a></li></ol>]]></description> <content:encoded><![CDATA[<p>[<strong>Update</strong>: this related <a
href="http://www.revenews.com/carstencumbrowski/2007/03/a_day_on_the_dark_side_of.html">post</a> by Carsten Cumbrowski puts my analysis here to shame. Very worthy of a read if you want to learn how black-hat affiliate marketing works.]</p><p> Just about everyone knows that spam is part and parcel of life. We just live with it and try to do our best to minimise the impact it has on our daily lives. Unfortunately spam is a particular issue for the SEO industry, as unscrupulous search marketers often turn to spamming techniques to make a quick dollar.</p><p>I get my share of spam at Red Cardinal. Generally I just delete the crap left by &#8216;kind&#8217; spammers (like <a
href="http://www.redcardinal.ie/general/17-10-2006/seo-spam-cork-web-design/">Cork Web Design Spammers</a>), but occasionally I do a little digging to see what some of the particularly <a
href="http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/">nasty spammers</a> are at. More about spammers a little later &#8211; but first, let me tell you what I think of &#8216;Long Copy&#8217;.</p><h4>Long Copy Pages for &#8216;SEO&#8217; tools</h4><p>I like to include screen shots of pages in my posts. I have a nifty little app that lets me grab entire screen shots from within the browser, not just the visible area.</p><p>I wanted to include the sales pages for two SEO tools, both of which use &#8216;long copy&#8217;. Here&#8217;s the screen shot of the two pages:</p><p><img
id="image238" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2007/01/comment-spam1.jpg" alt="Long Copy marketing" /></p><p>These pages are <strong>so</strong> &#8216;long&#8217; that I had to reduce them by a factor of ~14 just to get them that small. Maybe they&#8217;re <strong>&#8216;Really Long Copy&#8217;</strong>, if there is such a thing. (If you want to view those pages in all their glory I&#8217;ve &#8216;published&#8217; the URLs a little further down the page. In case you&#8217;re wondering what this is all about I&#8217;ll come clean in a second.)</p><p>These pages appear to be affiliate sites for two well known SEO tools. I&#8217;m not 100% sure what&#8217;s going on with these pages as they don&#8217;t appear to have affiliate IDs appended to the outgoing URLs. Perhaps the affiliate program uses HTTP referrers for identification. Perhaps these pages are actually proprietary sales pages. I&#8217;m don&#8217;t know for sure.</p><p>So what&#8217;s the problem with those sales pages? Purely my opinion, but they look and feel like &#8216;get-rich-quick&#8217; pitches to me. The message I hear sounds like &#8216;I&#8217;ll sell you this great benefit. But wait, there&#8217;s more. Buy now and I&#8217;ll include x and y&#8217;. Yes, lots of marketers defend this technique. And I know it&#8217;s true that &#8216;long copy&#8217; can be effective, but only when the content is compelling and does not feel like I&#8217;m being &#8216;sold&#8217;.</p><h4>Long Page Copy &#8211; Read or Turn Off?</h4><p>When I see long copy pages like these I just turn off completely. As I mentioned, I just think &#8216;get rich quick&#8217;.</p><p>I&#8217;ve stuck my neck out on this issue once or twice (hello <a
href="http://www.copyblogger.com/introducing-the-new-seo-book-sales-letter/#comment-11527">Copyblogger</a>). I sometimes wonder if perhaps long copy is a peculiar American technique that we just don&#8217;t fall for this side of the pond? (And if you&#8217;re interested Brian Clarke, a.k.a. Copyblogger, has written a <a
href="http://www.copyblogger.com/the-death-of-the-long-copy-sales-letter/">post about the death of long copy</a>.)</p><h4>Back to the comment spam</h4><p>So taking a step backward for a moment. Why am I highlighting those two affiliate pages? Keyword Elite and SEO Elite are marketed and sold by Bryxen Software (a firm owned by Brad Callen I believe). As with so much of the US on-line marketing industry, Bryxen uses &#8216;Long Page&#8217; techniques to sell there software. They also make heavy use of affiliate programs to multiply their sales. A couple of weeks ago Red Cardinal received multiple comment spam like the following:</p><blockquote><p>SEO Elite | +http://SEOElite.gurubuddy.com | IP: 216.16.246.184</p><p>seo firm…</p><p>Automate your link building efforts and rank high in the search engines easily….</p></blockquote><p>and</p><blockquote><p>Killer Keyword Tool | +http://Keywordelite.find-your-stuff.com | IP: 216.16.246.184</p><p>keyword lists…</p><p>Generate huge laser-targeted low competition, high demand keyword lists in minutes….</p></blockquote><p>These comments were dropped on multiple posts, and, as you can see above, were left by the same IP. Odd? I think not. Probably the same bot. Checking the <a
href="http://whois.domaintools.com/find-your-stuff.com">WHOIS</a> shows find-your-stuff.com registered to someone in Singapore, while gurubuddy.com is privately registered.</p><p>Both of the tools being promoted are from Bryxen Software (Brad Callens company +http://www.bryxensoftware.com/), and the linked sites appear to be affiliates.</p><h4>Comment Spam by &#8216;SEO&#8217; Firms &#8211; Why SEO has such a BAD NAME</h4><p>I am sure of one thing &#8211; spamming blog comments with links to long copy pages, such as those pictured above in miniature, is one of the main reasons the SEO industry has such serious reputation problems. It is very, very hard to blame people for viewing the SEO industry with suspicion. After all, every day the results of spammers litter our websites and pollute our on-line experience.</p><p>The reputation problem is only compounded given that the products marketed by the above spammers are well-known SEO tools: <strong>comment spam + SEO tools = SEO spammers</strong>. And how can we blame people for making that connection.</p><p>I&#8217;m very interested in your thoughts on &#8216;long copy&#8217;, and whether you have been converted by a &#8216;long copy&#8217; page like the ones above.</p><h4>And if you&#8217;re thinking of buying these tools, think about this&#8230;</h4><p>I neither own nor use either of these tools. They may well be excellent tools, and perform their respective task extremely well &#8211; I don&#8217;t know. But if you want to do the world a favour, don&#8217;t buy products that are marketed by spammers.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/keywords/14-11-2006/keyword-discovery-access-trial-1-dollar/' rel='bookmark' title='Permanent Link: Access To Keyword Discovery For $1'>Access To Keyword Discovery For $1</a></li><li><a
href='http://www.redcardinal.ie/general/17-10-2006/seo-spam-cork-web-design/' rel='bookmark' title='Permanent Link: SEO Spam From Cork'>SEO Spam From Cork</a></li><li><a
href='http://www.redcardinal.ie/keywords/16-08-2007/best-keyword-tool-free-trial/' rel='bookmark' title='Permanent Link: My Favorite Keyword Tool'>My Favorite Keyword Tool</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/blogs/26-02-2007/seo-keywords-tools-long-copy-spam/feed/</wfw:commentRss> <slash:comments>12</slash:comments> </item> <item><title>Forresters Fund For Children &#8211; Vardis Scam Warning</title><link>http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/</link> <comments>http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/#comments</comments> <pubDate>Wed, 14 Feb 2007 09:39:51 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/</guid> <description><![CDATA[If this bunch call you take up as much of their time as you can. Go and stick the kettle on.While they're wasting their time on you you'll be saving the poor next guy's money.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/conversion-optimisation/10-11-2008/people-buy-benefits/' rel='bookmark' title='Permanent Link: People Buy Benefits'>People Buy Benefits</a></li><li><a
href='http://www.redcardinal.ie/browsers/12-09-2006/i-hate-ms-ie/' rel='bookmark' title='Permanent Link: Wow, I forgot just how much I hate IE'>Wow, I forgot just how much I hate IE</a></li><li><a
href='http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/' rel='bookmark' title='Permanent Link: Did Someone Say That Internet Scams Were Becoming More Sophisticated'>Did Someone Say That Internet Scams Were Becoming More Sophisticated</a></li></ol>]]></description> <content:encoded><![CDATA[<p>I got an email a little while back and forgot to publish the details.</p><p>Alan Cavanagh sent me this:</p><blockquote><p>I came across your site today after a search for blogs on scams. I was targetted by phone this morning by a company called Vardis (you might already be aware of them). It made me quite angry and I posted a warning on my blog http://allancavanagh.blogspot.com/2007/02/beware-of-scam.html . I&#8217;d hate to think these guys got straight on the blower to someone else after I hung up on them so I&#8217;ve contacted colleagues to warn them off as well. I&#8217;d like to spread the word about this which is why I&#8217;m contacting you, as there&#8217;s probably quite a few small business operators that read your blog.</p></blockquote><p>If they happen to call anyone can you please tell them I miss them and give me a call. I&#8217;d love to talk with them <img
src='http://d3ohi9reiehxab.cloudfront.net/wp-includes/images/smilies/icon_mrgreen.gif' alt=':mrgreen:' class='wp-smiley' /></p><p>There are more details on <a
href="http://allancavanagh.blogspot.com/2007/02/beware-of-scam.html">Alan&#8217;s blog</a>.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/conversion-optimisation/10-11-2008/people-buy-benefits/' rel='bookmark' title='Permanent Link: People Buy Benefits'>People Buy Benefits</a></li><li><a
href='http://www.redcardinal.ie/browsers/12-09-2006/i-hate-ms-ie/' rel='bookmark' title='Permanent Link: Wow, I forgot just how much I hate IE'>Wow, I forgot just how much I hate IE</a></li><li><a
href='http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/' rel='bookmark' title='Permanent Link: Did Someone Say That Internet Scams Were Becoming More Sophisticated'>Did Someone Say That Internet Scams Were Becoming More Sophisticated</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/feed/</wfw:commentRss> <slash:comments>130</slash:comments> </item> <item><title>I Sense Some Hackers Sniffing About</title><link>http://www.redcardinal.ie/security/08-02-2007/haclers-probing-apache/</link> <comments>http://www.redcardinal.ie/security/08-02-2007/haclers-probing-apache/#comments</comments> <pubDate>Thu, 08 Feb 2007 07:34:30 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/08-02-2007/haclers-probing-apache/</guid> <description><![CDATA[Strange Google search referrals can often point to some less than friendly attention.I wonder what this guy is up to?Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/14-02-2007/user-agent-sniffing-gone-wrong/' rel='bookmark' title='Permanent Link: When User Agent Sniffing Goes Horribly Wrong'>When User Agent Sniffing Goes Horribly Wrong</a></li></ol>]]></description> <content:encoded><![CDATA[<p>When I see search referrals like this I get a little anxious:</p><blockquote><p><code><a
href="http://www.google.ch/search?q=%22Apache/1.3.37+Server+at+www.*.*+Port+80%22&#038;hl=de&#038;start=90&#038;sa=N">http://www.google.[...]www.*.*+Port+80</a></code></p></blockquote><p>Call me a nut-job (you wont be the first <img
src='http://d3ohi9reiehxab.cloudfront.net/wp-includes/images/smilies/icon_mrgreen.gif' alt=':mrgreen:' class='wp-smiley' /> ), but when someone starts sniffing for system variables they&#8217;re not normally calling by to say hello.</p><p>Now I wonder what the deal is?</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/14-02-2007/user-agent-sniffing-gone-wrong/' rel='bookmark' title='Permanent Link: When User Agent Sniffing Goes Horribly Wrong'>When User Agent Sniffing Goes Horribly Wrong</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/security/08-02-2007/haclers-probing-apache/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Hacker Threatens Digg.com, Targeting SEO-Related Sites</title><link>http://www.redcardinal.ie/blogs/16-01-2007/hacker-threatens-digg-com/</link> <comments>http://www.redcardinal.ie/blogs/16-01-2007/hacker-threatens-digg-com/#comments</comments> <pubDate>Tue, 16 Jan 2007 06:55:39 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Blogs]]></category> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/16-01-2007/hacker-threatens-digg-com/</guid> <description><![CDATA[After taking down GreyWolf's blog, a hacker threatens some of the biggest webmaster-related sites on the Internet. Digg.com included on the threat list.]]></description> <content:encoded><![CDATA[<p>Michael Wolf&#8217;s <a
href="http://www.wolf-howl.com/">popular SEO blog</a> has been hacked, and it appears that the hacker may have some issues with the SEO community:</p><blockquote><p>I’m going to crack all the SEO related sites/blogs/forums that I can… Maybe once in a while a non-SEO site will slip into the list but what the hell! Who cares anyways?</p></blockquote><p>And the hacker goes on to list future targets:</p><blockquote><p>The list</p><p>www.mattcutts.com – Mess with the best, die like the rest? He scares me… Just typing his site in this list makes me tremble</p><p>www.spamhuntress.com – That bitch needs some AdultFriendFinder love ASAP!</p><p>www.shoemoney.com – A bald “guru”, he is like the Buda of the SEO “gurus” (See eliteretreat.info)</p><p>www.pronetadvertising.com</p><p>www.forumtrends.com</p><p>www.askdavetaylor.com</p><p>ha.ckers.org – The hardest one of the list. Hats off to RSnake and iD!</p><p>www.v7n.com &#8211; Actually I’m just going to target blog.v7n.com and their forums</p><p>forums.digitalpoint.com – Hard</p><p>www.webmasterworld.com – They have the ugliest backend (and forum!) I’ve seen in my life</p><p>www.seoblackhat.com – The blog and the private forums (I help out n00bs over there once in a while)</p><p>www.boogybonbon.com</p><p>www.syndk8.com</p><p>www.stuntdubl.com</p><p>www.wolf-howl.com</p><p>www.seopedia.com</p><p>www.digg.com – I’m not aiming for a deface; rather I will find &#038; release ways to game their “democratic” system (This will make happy some webmasters out there)</p><p>www.techcrunch.com – Had access to their server until they updated their stuff. This is the biggest target on the list…</p><p>www.johnchow.com – Dude wtf?! You came out of the blur and now your blog is everywhere</p><p>www.seobook.com – Your book is not that good anyways so get lost…</p><p>www.pearsonified.com</p></blockquote><p>There are some serious big-hitting names in there. <strong>Gaming Digg.com?</strong> Somehow I don&#8217;t think he&#8217;s alone in that endeavour :mrgeen:</p><p>The above extracts are taken from a post made on Michael Gray&#8217;s blog before it was taken down. I flashed off an email to GreyWolf in case he&#8217;s unaware (and found out that www.seoblackhat.com is listed in www.surbl.org/lists.html in the process).</p><p>We&#8217;ll have to wait and see if the Anti-SEO Hacker comes good on any of his threats.</p><p>[EDIT] I see that the hacker may have been using an exploit similar to one found by <a
href="http://www.jason-roe.com/blog/stuntdubl-marketing-consulting-hacked-seos-a-target/">Jason Roe</a> recently. Well done Jason on your find.</p><p>If you use WordPress and haven&#8217;t already done so, you should upgrade to the latest release &#8211; 2.0.7 available <a
href="http://wordpress.org/download/">here</a>.</p> ]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/blogs/16-01-2007/hacker-threatens-digg-com/feed/</wfw:commentRss> <slash:comments>8</slash:comments> </item> <item><title>How Safe are Search Results?</title><link>http://www.redcardinal.ie/search-engines/14-12-2006/security-threats-in-serps/</link> <comments>http://www.redcardinal.ie/search-engines/14-12-2006/security-threats-in-serps/#comments</comments> <pubDate>Thu, 14 Dec 2006 09:59:03 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Search Engines]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Statistics]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/14-12-2006/security-threats-in-serps/</guid> <description><![CDATA[New report from McAfee SiteAdvisor on study comparing the safety risks of the sites listed in the top results for 1,500 search queries.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/google/01-11-2006/seo-is-more-important-than-sem/' rel='bookmark' title='Permanent Link: Why SEO Is More Important Than SEM'>Why SEO Is More Important Than SEM</a></li><li><a
href='http://www.redcardinal.ie/search-engine-optimisation/25-03-2009/interesting-new-statistics-on-irish-search-engine-usage/' rel='bookmark' title='Permanent Link: Interesting New Statistics on Irish Search Engine Usage'>Interesting New Statistics on Irish Search Engine Usage</a></li><li><a
href='http://www.redcardinal.ie/google/20-11-2006/google-split-testing-serps/' rel='bookmark' title='Permanent Link: Google&#8217;s Head of Research on SERP Split Testing'>Google&#8217;s Head of Research on SERP Split Testing</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Via <a
href="http://battellemedia.com/searchmob/story/How-SAFE-are-SERPs--Popular-Terms/">SearchMob</a></p><p>Fascinating <a
href="http://www.siteadvisor.com/studies/search_safety_dec2006.html">report</a> from McAfee SiteAdvisor on the possible dangers of clicking on search results served by the top search engines.</p><p>Possibly the oddest finding for me was this:</p><blockquote><p>8% of sponsored results are rated red or yellow &#8211; almost three times the percentage of red and yellow sites found in organic results. Notably, scam sites are found at a much greater frequency in sponsored results.</p></blockquote><p>I would have thought that the major Search Engines would be far more vigilant about their sponsored listings?</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/google/01-11-2006/seo-is-more-important-than-sem/' rel='bookmark' title='Permanent Link: Why SEO Is More Important Than SEM'>Why SEO Is More Important Than SEM</a></li><li><a
href='http://www.redcardinal.ie/search-engine-optimisation/25-03-2009/interesting-new-statistics-on-irish-search-engine-usage/' rel='bookmark' title='Permanent Link: Interesting New Statistics on Irish Search Engine Usage'>Interesting New Statistics on Irish Search Engine Usage</a></li><li><a
href='http://www.redcardinal.ie/google/20-11-2006/google-split-testing-serps/' rel='bookmark' title='Permanent Link: Google&#8217;s Head of Research on SERP Split Testing'>Google&#8217;s Head of Research on SERP Split Testing</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/search-engines/14-12-2006/security-threats-in-serps/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Spammers Target Moscow Children&#8217;s Hospital &#8211; savechilds.net Nasty Xmas Scam</title><link>http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/</link> <comments>http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/#comments</comments> <pubDate>Thu, 07 Dec 2006 14:49:17 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/</guid> <description><![CDATA[How low will they go?Spammers target Moscow Children's Hospital with slick charity website and copious amounts of spam asking to 'HELP SAVE THE CHILDREN!'.<strong>NASTY</strong>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/general/10-11-2006/bad-technology-day/' rel='bookmark' title='Permanent Link: Bad Technology Day'>Bad Technology Day</a></li><li><a
href='http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/' rel='bookmark' title='Permanent Link: Forresters Fund For Children &#8211; Vardis Scam Warning'>Forresters Fund For Children &#8211; Vardis Scam Warning</a></li><li><a
href='http://www.redcardinal.ie/general/03-06-2008/seedcorn-a-perfect-example-of-how-to-ask-for-online-attention/' rel='bookmark' title='Permanent Link: Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION'>Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION</a></li></ol>]]></description> <content:encoded><![CDATA[<p>You may have received copious spams today with the following:</p><p><img
id="image212" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/12/nothing-politics1.jpg" alt="Spam Christmas Scammers" /></p><p>Going to the URL in question delivers you a very slick website:</p><p><img
id="image214" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/12/scam-site1.jpg" alt="SCAM website?" /></p><p>And background on the hospital:</p><p><img
id="image213" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/12/fake-rchm1.jpg" alt="Fake Russian Children's Hospital" /></p><p>Except it&#8217;s copied wholesale from <a
href="http://www.russischkind.nl/hospitaal_msk_en.html">here</a>:</p><p><img
id="image211" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/12/www-russisch-kind-nl1.jpg" alt="www.russischkind.nl" /></p><p>While the homepage seems to be copied from <a
href="http://deti.msk.ru/en/index.html">deti.msk.ru</a>:</p><p><img
id="image215" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/12/detimskru1.jpg" alt="deti.msk.ru" /></p><p>To be quite honest, I cant say for sure that I would trust any of these sites.</p><p>I do know, however, that the slick site that is spamming everyone has got to be fake. So slick, in fact, the only real give-away is the lack of contact details (and the obvious spamming techniques).</p><p>The DNS Lookup gives the following cached info:</p><blockquote><p><code>Using 25 day old cached answer (or, you can get fresh results).<br
/> Hiding E-mail address (you can get results with the E-mail address).</p><p>Domain Name.......... savechilds.net<br
/> Creation Date........ 2006-10-31 17:56:04<br
/> Registration Date.... 2006-10-31 17:56:04<br
/> Expiry Date.......... 2007-10-31 17:56:04<br
/> Organisation Name.... Chuyi ZHU<br
/> Organisation Address. Kurchatov sq, Moscow 123182<br
/> Organisation Address.<br
/> Organisation Address. taiyuan<br
/> Organisation Address. 19473<br
/> Organisation Address. WG<br
/> Organisation Address. RU</p><p>Admin Name........... gufty htfy<br
/> Admin Address........ Kurchatov sq, Moscow 123182<br
/> Admin Address........<br
/> Admin Address........ taiyuan<br
/> Admin Address........ 19473<br
/> Admin Address........ WG<br
/> Admin Address........ RU<br
/> Admin Email.......... ************@hotmail.com<br
/> Admin Phone.......... +7.2147483647<br
/> Admin Fax............ +7.2147483647</p><p>Tech Name............ he wenjie<br
/> Tech Address......... 706,huanandianli building,shennanzhong rd<br
/> Tech Address.........<br
/> Tech Address......... shenzhen<br
/> Tech Address......... 518031<br
/> Tech Address......... SZ<br
/> Tech Address......... CN<br
/> Tech Email........... *************@126.com<br
/> Tech Phone........... +86.61280100<br
/> Tech Fax............. +86.61280100</p><p>Bill Name............ he wenjie<br
/> Bill Address......... 706,huanandianli building,shennanzhong rd<br
/> Bill Address.........<br
/> Bill Address......... shenzhen<br
/> Bill Address......... 518031<br
/> Bill Address......... SZ<br
/> Bill Address......... CN<br
/> Bill Email........... ************@hotmail.com<br
/> Bill Phone........... +86.75561280100<br
/> Bill Fax............. +86.75561280100<br
/> Name Server.......... ns2.pokerbotmakemoney.com<br
/> Name Server.......... ns1.pokerbotmakemoney.com<br
/> Name Server.......... ns7.kindofbullats.com<br
/> Name Server.......... ns8.kindofbullats.com</code></p></blockquote><p>They dont look like the type of name servers a charity would use?</p><p>While the real-time DNS lookup returns:</p><blockquote><p><code>Domain Name.......... savechilds.net<br
/> Creation Date........ 2006-10-31 17:56:04<br
/> Registration Date.... 2006-10-31 17:56:04<br
/> Expiry Date.......... 2007-10-31 17:56:04<br
/> Organisation Name.... Chuyi ZHU<br
/> Organisation Address. Kurchatov sq, Moscow 123182<br
/> Organisation Address.<br
/> Organisation Address. taiyuan<br
/> Organisation Address. 19473<br
/> Organisation Address. WG<br
/> Organisation Address. RU</p><p>Admin Name........... gufty htfy<br
/> Admin Address........ Kurchatov sq, Moscow 123182<br
/> Admin Address........<br
/> Admin Address........ taiyuan<br
/> Admin Address........ 19473<br
/> Admin Address........ WG<br
/> Admin Address........ RU<br
/> Admin Email.......... vince_stebbi@hotmail.com<br
/> Admin Phone.......... +7.2147483647<br
/> Admin Fax............ +7.2147483647</p><p>Tech Name............ he wenjie<br
/> Tech Address......... 706,huanandianli building,shennanzhong rd<br
/> Tech Address.........<br
/> Tech Address......... shenzhen<br
/> Tech Address......... 518031<br
/> Tech Address......... SZ<br
/> Tech Address......... CN<br
/> Tech Email........... adminspeed123@126.com<br
/> Tech Phone........... +86.61280100<br
/> Tech Fax............. +86.61280100</p><p>Bill Name............ he wenjie<br
/> Bill Address......... 706,huanandianli building,shennanzhong rd<br
/> Bill Address.........<br
/> Bill Address......... shenzhen<br
/> Bill Address......... 518031<br
/> Bill Address......... SZ<br
/> Bill Address......... CN<br
/> Bill Email........... vince_stebbi@hotmail.com<br
/> Bill Phone........... +86.75561280100<br
/> Bill Fax............. +86.75561280100<br
/> Name Server.......... ns2.3fn.net<br
/> Name Server.......... dns195.3fn.net</code></p></blockquote><p>Domain registered on October 31&#8230; vince_stebbi@hotmail.com seems to be in both Moscow and Schenzen&#8230; This is just plain nasty.</p><p>I&#8217;ve received about 8 copies of the email. I know most people don&#8217;t take any notice, but some might just be taken in by the headline and the slick website.</p><p>I called the number on the Dutch website and spoke to a guy called Sergei who is in Spain. Odd? Yes. But he sounded legit and has sent an alert to some group that monitors these sites. Still no harm in putting up the message here.</p><p><strong>NASTY, NASTY, NASTY</strong></p><p>(If you do want to be charitable this Christmas why not head over to <a
href="http://www.oxfamirelandshop.com">OxfamIrelandShop.com</a>)</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/general/10-11-2006/bad-technology-day/' rel='bookmark' title='Permanent Link: Bad Technology Day'>Bad Technology Day</a></li><li><a
href='http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/' rel='bookmark' title='Permanent Link: Forresters Fund For Children &#8211; Vardis Scam Warning'>Forresters Fund For Children &#8211; Vardis Scam Warning</a></li><li><a
href='http://www.redcardinal.ie/general/03-06-2008/seedcorn-a-perfect-example-of-how-to-ask-for-online-attention/' rel='bookmark' title='Permanent Link: Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION'>Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/feed/</wfw:commentRss> <slash:comments>24</slash:comments> </item> <item><title>If You&#8217;re Going To Steal Someone&#8217;s Design&#8230;</title><link>http://www.redcardinal.ie/css/06-12-2006/hot-linking-is-bad/</link> <comments>http://www.redcardinal.ie/css/06-12-2006/hot-linking-is-bad/#comments</comments> <pubDate>Wed, 06 Dec 2006 01:00:08 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[CSS]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/css/06-12-2006/hot-linking-is-bad/</guid> <description><![CDATA[...you had better not leave blatently obvious tracks :D<strong>[WARNING: not workplace safe]</strong>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/' rel='bookmark' title='Permanent Link: Spammers Target Moscow Children&#8217;s Hospital &#8211; savechilds.net Nasty Xmas Scam'>Spammers Target Moscow Children&#8217;s Hospital &#8211; savechilds.net Nasty Xmas Scam</a></li><li><a
href='http://www.redcardinal.ie/conversion-optimisation/06-04-2009/e15k-conversion-rate-optimisation-free-no-questions-asked/' rel='bookmark' title='Permanent Link: €15k Conversion Rate Optimisation, Free, No Questions Asked'>€15k Conversion Rate Optimisation, Free, No Questions Asked</a></li><li><a
href='http://www.redcardinal.ie/security/28-04-2008/serious-sql-injection-vulnerability/' rel='bookmark' title='Permanent Link: Serious SQL Injection Vulnerability'>Serious SQL Injection Vulnerability</a></li></ol>]]></description> <content:encoded><![CDATA[<p>So we all know about on-line theft. You might pinch an image here, admire someone&#8217;s design there.</p><p>And let&#8217;s be honest, immitation is the highest form of flattery.</p><p>But if you&#8217;re going to rip off someone&#8217;s design by hot-linking directly to their CSS file then you&#8217;re just plain looking for trouble&#8230;</p><h4>Original Site:</h4><p><a
href="http://www.leisureplanet.com/"><img
id="image207" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/12/leisureplanetcom1.jpg" alt="Original Site" /></a></p><h4>Lifted Site (after a little bit of CSS injection <img
src='http://d3ohi9reiehxab.cloudfront.net/wp-includes/images/smilies/icon_mrgreen.gif' alt=':mrgreen:' class='wp-smiley' /> )</h4><p><a
href="http://preview.tinyurl.com/y5g6cg"><img
id="image208" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/12/making-money-online-central1.jpg" alt="Lifted Site" /></a></p><p><strong>Images link to sites.</strong> Take care of lifted site &#8211; really not work safe.</p><p><strong>While you&#8217;re here can you please spread the word about this nasty bunch of spammers that are trying to scam donations to a children&#8217;s hospital in Moscow. More info <a
href="http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/">here</a>.</strong></p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/general/07-12-2006/spammers-rob-from-childrens-hospital/' rel='bookmark' title='Permanent Link: Spammers Target Moscow Children&#8217;s Hospital &#8211; savechilds.net Nasty Xmas Scam'>Spammers Target Moscow Children&#8217;s Hospital &#8211; savechilds.net Nasty Xmas Scam</a></li><li><a
href='http://www.redcardinal.ie/conversion-optimisation/06-04-2009/e15k-conversion-rate-optimisation-free-no-questions-asked/' rel='bookmark' title='Permanent Link: €15k Conversion Rate Optimisation, Free, No Questions Asked'>€15k Conversion Rate Optimisation, Free, No Questions Asked</a></li><li><a
href='http://www.redcardinal.ie/security/28-04-2008/serious-sql-injection-vulnerability/' rel='bookmark' title='Permanent Link: Serious SQL Injection Vulnerability'>Serious SQL Injection Vulnerability</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/css/06-12-2006/hot-linking-is-bad/feed/</wfw:commentRss> <slash:comments>32</slash:comments> </item> <item><title>Dublin Might be Ready for Vista, But is Microsoft?</title><link>http://www.redcardinal.ie/browsers/05-12-2006/microsoft-vista-launch-dublin/</link> <comments>http://www.redcardinal.ie/browsers/05-12-2006/microsoft-vista-launch-dublin/#comments</comments> <pubDate>Tue, 05 Dec 2006 20:52:42 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Browsers]]></category> <category><![CDATA[Marketing]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Technology]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/05-12-2006/microsoft-vista-launch-dublin/</guid> <description><![CDATA[<strong><em>ready for a new day?</em></strong>Er, um, well, maybe. I'm not so sure Microsoft was though.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/statistics/22-08-2007/microsoft-gatineau/' rel='bookmark' title='Permanent Link: Microsoft Gatineau'>Microsoft Gatineau</a></li><li><a
href='http://www.redcardinal.ie/link-bait/20-02-2007/ses-london-linkbait/' rel='bookmark' title='Permanent Link: SES London &#8211; Linkbait, and When It&#8217;s Not'>SES London &#8211; Linkbait, and When It&#8217;s Not</a></li><li><a
href='http://www.redcardinal.ie/link-building/19-02-2007/turn-your-link-farm-into-a-hub/' rel='bookmark' title='Permanent Link: SES London &#8211; When is a Link Farm NOT a Link Farm?'>SES London &#8211; When is a Link Farm NOT a Link Farm?</a></li></ol>]]></description> <content:encoded><![CDATA[<p>There was razzmatazz. There was an astronaut. And amongst countless techies and a bunch of promotion girls there was Microsoft&#8217;s biggest product launch ever. Oh yes, and I was there also.</p><h4><em>&#8220;ready for a new day&#8221;</em></h4><p>Well perhaps Dublin was, but I&#8217;m not so sure about Microsoft.</p><h4>My day out at Croagh Park</h4><p>Getting to Croagh Park isn&#8217;t the easiest of feats. I arrived after 11am and caught the end of the opening keynote. After a few minutes standing at the back my curiosity got the better of me and I headed to the demo area on the fourth floor. This was where things started to become unstuck.</p><h4>The <em>Search</em> room</h4><p>As I am moderately interested in search I headed straight for the Search room. I found a seat (not difficult because everyone else was still upstairs) and a nice MS guy offered to show me the ropes.</p><p>The first point to note was that the demo machine seemed a bit temperamental. A few glitches appeared when tabbing through applications &#8211; the screen just went dead. My guide mentioned that the demo machines weren&#8217;t up to spec for Vista (they certainly weren&#8217;t new computers).</p><p>He was a knowledgeable and talented guy, but unfortunately he couldn&#8217;t tell me if Vista&#8217;s new search function would index my web browsing. Nor could he tell me how search behaved across a network.</p><p>I do like some features of the new search interface. For instance, if you hover over a search result the related META data appears in a pop-up.</p><p>As I was early for the actual demo I went and grabbed a soggy roll and a cup of coffee.</p><h4>So much attention, so little knowledge</h4><p>I returned for the search demo proper and found my way to one of the few remaining clients. The demo was of a web-based reporting application that pulled data from a whole bunch of MS products. I&#8217;m still not sure how it tied in with search to be honest.</p><p>There was one Microsoft person for every four guests in the room, and I asked the nearest rep if I could pull up the application the presenter was showing on my client. After some discussion between Microsoft people I received a response in the negative &#8211; the application was running on a server and only available to the presenter. So I carried on watching.</p><h4>Why demo in Windows 2003?</h4><p>Strangely, the presentation appeared to be running on a Windows 2003 machine. Now I could be wrong, and it might simply have been a theme, but I still found it odd that Microsoft would promote Vista using a Server 2003 theme?</p><p>When the presentation was finished the speaker happened to walk by. I asked him if the web application was platform agnostic and he confirmed it was &#8211; it would run on Firefox and other browsers. He also gave me the URL to access the application where I sat. Pity the first couple of fellas hadn&#8217;t known that.</p><p>As the search presentation was recycling I headed away and caught about half an hour of a very animated and knowledgeable speaker on encryption and Vista&#8217;s built-in security features.</p><h4>Fly me to the moon</h4><p>Neil Armstrong was a very good speaker, receiving a standing ovation both on arrival and exit. He spoke extremely well and was thoroughly interesting to listen to.</p><p>I&#8217;m not sure if it&#8217;s just me (and Google hasn&#8217;t been doing me any favours recently with my tin-hat syndrome), but I felt some of his speech was debunking the debunkers. Maybe he&#8217;s just tired of all the naysayers who claim he never got any further than some desert in the US mid-west.</p><h4>So was I enlightened?</h4><p>I&#8217;ve got to be honest and say no. The welcome package contained two publications, one on the knowledge economy, the other an overview of the Irish case-studies profiled during the day.</p><p>I&#8217;m really quite surprised there was nothing in the pack about Vista. In fact there was nothing about any of Microsoft&#8217;s products. The two publications had a lot about benefits but absolutely no details on the products. I have to say I&#8217;m not really any the wiser apart from actually trying out the new Vista UI.</p><p>Did I miss something or was I just expecting too much? Or was Micorsoft ready for today?</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/statistics/22-08-2007/microsoft-gatineau/' rel='bookmark' title='Permanent Link: Microsoft Gatineau'>Microsoft Gatineau</a></li><li><a
href='http://www.redcardinal.ie/link-bait/20-02-2007/ses-london-linkbait/' rel='bookmark' title='Permanent Link: SES London &#8211; Linkbait, and When It&#8217;s Not'>SES London &#8211; Linkbait, and When It&#8217;s Not</a></li><li><a
href='http://www.redcardinal.ie/link-building/19-02-2007/turn-your-link-farm-into-a-hub/' rel='bookmark' title='Permanent Link: SES London &#8211; When is a Link Farm NOT a Link Farm?'>SES London &#8211; When is a Link Farm NOT a Link Farm?</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/browsers/05-12-2006/microsoft-vista-launch-dublin/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>Spammers Crack Me Up</title><link>http://www.redcardinal.ie/blogs/01-12-2006/blog-comment-spammers/</link> <comments>http://www.redcardinal.ie/blogs/01-12-2006/blog-comment-spammers/#comments</comments> <pubDate>Fri, 01 Dec 2006 10:32:56 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Blogs]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/security/01-12-2006/blog-comment-spammers/</guid> <description><![CDATA[Sometimes spammers can put a smile on your face.For me today is one of those days :mrgreen:]]></description> <content:encoded><![CDATA[<p>Like just about every other normal person I hate spam. Every day it slows me down and makes me wince.</p><p>But occasionally, just occasionally you come across a gem that puts a smile on your face.</p><h4>Thank you mikigrubber</h4><p>Askimet has been getting a bit busier lately (must be because Google loves me now). I filter out a lot of the automated bots with the Bad Behaviour plug-in, so I tend to be left with Asian and Eastern European SEO&#8217;s (*cough* spammers *cough*) leaving me nice comments.</p><p>mikgrubber gave me a good laugh with this one though:</p><blockquote><p>Hello All. Let’s take a look. A great sollution for you.<br
/> pain relief<br
/> natural pain relief<br
/> lower back pain relief<br
/> chronic pain relief<br
/> neck pain relief<br
/> pain relief medication<br
/> knee pain relief<br
/> toothache pain relief<br
/> natural back pain relief<br
/> natural pain product relief<br
/> headache pain relief<br
/> pain relief cream<br
/> tooth pain relief<br
/> pain relief product<br
/> pain relief drug<br
/> pain relief patch<br
/> menstrual pain relief<br
/> eazol</p></blockquote><p>Of course they were all live links. The usual crap you get. But the main difference with this one was how miki signed off:</p><blockquote><p>Don’t delete this. Thanks!</p></blockquote><p>I think that&#8217;s just fantastic. It just cracked me up. A polite spammer. What will they try next?.</p><p>(Of course I deleted him straight away <img
src='http://d3ohi9reiehxab.cloudfront.net/wp-includes/images/smilies/icon_mrgreen.gif' alt=':mrgreen:' class='wp-smiley' /> )</p> ]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/blogs/01-12-2006/blog-comment-spammers/feed/</wfw:commentRss> <slash:comments>13</slash:comments> </item> <item><title>More problems for MSN Live!</title><link>http://www.redcardinal.ie/google/21-11-2006/remove-competitor-pages-from-msn-live/</link> <comments>http://www.redcardinal.ie/google/21-11-2006/remove-competitor-pages-from-msn-live/#comments</comments> <pubDate>Tue, 21 Nov 2006 11:33:24 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Google]]></category> <category><![CDATA[Search Engine Optimisation]]></category> <category><![CDATA[Search Engines]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/search-engine-optimisation/21-11-2006/remove-competitor-pages-from-msn-live/</guid> <description><![CDATA[Unofficial MSN Live! page removal tool. What's the big deal with that?Well it's not only your own pages that can be removed. This is a terrible, terrible hole in MSN's algorithm.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/17-11-2006/browser-search-suggest-enabled/' rel='bookmark' title='Permanent Link: Does Google Know Your MSN &amp; Y! Searches?'>Does Google Know Your MSN &amp; Y! Searches?</a></li><li><a
href='http://www.redcardinal.ie/statistics/22-08-2007/microsoft-gatineau/' rel='bookmark' title='Permanent Link: Microsoft Gatineau'>Microsoft Gatineau</a></li><li><a
href='http://www.redcardinal.ie/css/16-10-2006/13-deadly-google-sins/' rel='bookmark' title='Permanent Link: 13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?'>13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?</a></li></ol>]]></description> <content:encoded><![CDATA[<p>If I told you that removing a page from MSN Live! was so simple that it was within the abilities of 99% of all Internet users, what would you think?</p><p>Microsoft Live! has a notoriously poor reputation. People think their search results pretty much suck (try finding a SERP without a blogspot entry), and their algorithm is easy enough to game. But for me, the strangest thing is the extreme measures Live! takes in order to &#8216;fix&#8217; problems. Here&#8217;s a good example.</p><h4>Just take &#8216;em out</h4><p>A recent <a
href="http://forums.searchenginewatch.com/showthread.php?p=97985#post97985">discussion</a> on Search Engine Watch brought a new Microsoft Live! policy to the attention of webmasters. An email received by a poster from the Live! spam team contained the following:</p><blockquote><p>Your site is acquiring links through posting to or exchanging links with sites unrelated to your site content. Techniques which attempt to acquire unrelated spam links in order to increase ranking are considered spam and your site has been excluded from our index as results.</p></blockquote><p>Now, to be honest, I&#8217;m in agreement with Loren Baker at <a
href="http://www.searchenginejournal.com/?p=4021">Search Engine Journal</a> and applaud this measure. In theory it&#8217;s a proactive step by Microsoft Lives! to clean up their SERPs.</p><p>What worries me is the practical side of things. I just wonder if we are going to see collateral damage from this move.</p><p>Now before I go any further, I will hold my hand up and say that I don&#8217;t normally give a toot about MSN (or Live! as it&#8217;s now known). Yes, I still believe that Google executes somewhere between 80 and 90% of all Irish searches. But I do know that certain groups still regularly find their way onto Live! pages (picture all those office workers typing search queries into the address bar of IE <img
src='http://d3ohi9reiehxab.cloudfront.net/wp-includes/images/smilies/icon_mrgreen.gif' alt=':mrgreen:' class='wp-smiley' /> ).</p><h4>Ulterior motives?</h4><p>Of course the Live! bans may be a defence against the MFA sites which Google is actively banning from their index. In what some believe to be a very cynical move, Google has been banning MFA sites but <strong>not</strong> disabling their Adsense accounts.</p><p>So while Google would prefer not to have their index polluted with MFA sites, they are quite happy to make money from these parasites polluting the indices of their competitors.</p><p>So I wonder if perhaps some of the new tactics over at Live! are more of a defensive measure to counteract the competitive postures of it&#8217;s biggest competitor?</p><h4>But what about the gaping hoe in Live!s algorithm?</h4><p>Well a very recently discovered bug in the way Live! handles duplicate content has opened up a real can of worms. It appears to be rather easy to remove pages from the Live! index simply by linking to the target page in a particular way. This came about because whereas Google just ignores the duplicate, Live! bans both the original and the duplicate (another example of extremes).</p><p>I wont link to the above tactic as I don&#8217;t feel that would be helpful at all (and it&#8217;s apparently so easy to abuse that I think it&#8217;s immoral to publish).</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/17-11-2006/browser-search-suggest-enabled/' rel='bookmark' title='Permanent Link: Does Google Know Your MSN &amp; Y! Searches?'>Does Google Know Your MSN &amp; Y! Searches?</a></li><li><a
href='http://www.redcardinal.ie/statistics/22-08-2007/microsoft-gatineau/' rel='bookmark' title='Permanent Link: Microsoft Gatineau'>Microsoft Gatineau</a></li><li><a
href='http://www.redcardinal.ie/css/16-10-2006/13-deadly-google-sins/' rel='bookmark' title='Permanent Link: 13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?'>13 Deadly Google Sins &#8211; Is Your Website Committing Any of These?</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/google/21-11-2006/remove-competitor-pages-from-msn-live/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Does Google Know Your MSN &amp; Y! Searches?</title><link>http://www.redcardinal.ie/browsers/17-11-2006/browser-search-suggest-enabled/</link> <comments>http://www.redcardinal.ie/browsers/17-11-2006/browser-search-suggest-enabled/#comments</comments> <pubDate>Fri, 17 Nov 2006 19:09:49 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Browsers]]></category> <category><![CDATA[Google]]></category> <category><![CDATA[JavaScript]]></category> <category><![CDATA[Search Engines]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/javascript/17-11-2006/browser-search-suggest-enabled/</guid> <description><![CDATA[Very interesting find by SEO by the SEA. It appears that your browser is sharing your search history with all and sundry.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/google/14-12-2006/google-search-for-us-patents/' rel='bookmark' title='Permanent Link: Google Search for US Patents'>Google Search for US Patents</a></li><li><a
href='http://www.redcardinal.ie/google/09-08-2007/google-index-cache-differences/' rel='bookmark' title='Permanent Link: Google Index and Cache Diverging?'>Google Index and Cache Diverging?</a></li><li><a
href='http://www.redcardinal.ie/google/21-11-2006/remove-competitor-pages-from-msn-live/' rel='bookmark' title='Permanent Link: More problems for MSN Live!'>More problems for MSN Live!</a></li></ol>]]></description> <content:encoded><![CDATA[<p>When it comes to Search Engines, it pays to know how they tick and what tickles their fancy. Of course, the majors tend not to broadcast their techniques too loudly lest all those kindly spammers hear about it.</p><h4>Patents can reveal a lot</h4><p>It is important to follow the technical aspect of search engines. There is undoubtedly one person who is <strong>the</strong> authority on both today&#8217;s technology and the technology the search engines are currently building to serve us tomorrow. He is Bill Slawski of <a
href="http://www.seobythesea.com/">SEO by the Sea</a>.</p><h4>Patent watching</h4><p>SEObytheSEA specialises in patent watching. Yesterday I saw Bill Slawski&#8217;s <a
href="http://www.seobythesea.com/?p=362">post</a> about Microsoft snooping Google search history. It&#8217;s quite interesting from a number of perspectives. But first a little background on what&#8217;s going on.</p><h4>Firefox search.suggest</h4><p>It appears that Firefox has a little known service called search suggest. Search suggest is controlled via the <code>browser.search.suggest.enabled</code> parameter and basically allows third party access to the search history of your search bar.</p><p>So whenever you use the built in search bar of Firefox the search query is added to your history so that suggestions can be made based on your prior behaviour.</p><p>Now this is where it gets interesting. Apparently Firefox allows third party search plug-ins access to your history so that they too can offer suggestions based on your previous searches. But whereas you might presume that one search engine wouldn&#8217;t, or shouldn&#8217;t, have access to searches executed on another, well, you&#8217;d be wrong.</p><h4>Microsoft Live sniffing around Google searches?</h4><p>Apparently Microsoft Live suggested some of Bill&#8217;s previous Google queries. Bill then saw that his search history was being sent to Microsoft Live via the <code>browser.search.suggest</code> feature of Firefox. That feature transports your history via a JSON encoded file when this feature is turned on.</p><h4>The Microsoft Patent</h4><p>Of course SEObytheSEA is renowned for its coverage of search engine patents. Low and behold, haven&#8217;t Microsoft  a patent (published November 16) entitled &#8216;System and method for automatic generation of suggested inline search terms&#8217;.</p><h4>Privacy Ramifications</h4><p>The default setting of <code>browser.search.suggest.enabled</code> is <code>TRUE</code> in the latest version of Firefox (2.0). (This can be changed via <code>about:config</code>.)</p><p>This means that if you are using the built in search bar, a search engine can see your query history regardless of whether it executed those queries. From the SEO by the SEA post:</p><blockquote><p><em>I performed a search in Windows Live for a term that I don’t believe I ever searched for before on a search engine. I then went to Google Suggest, and started typing in the first couple of letters of the that word to see if it would suggest my Windows Live search term.</p><p>It did.</em></p></blockquote><p>While most people understand that additional toolbars (e.g. Google Toolbar) commonly track your behaviour, it may not be apparent that your search history is made available via this relatively unknown feature of Firefox 2.0.</p><p>Of course it&#8217;s not as if the major search engines aren&#8217;t already collecting enough data on us&#8230;.</p><p>[Some concerned viewers might be interested in <a
href="https://addons.mozilla.org/firefox/743/">CustomizeGoogle</a> plugin for Firefox.]</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/google/14-12-2006/google-search-for-us-patents/' rel='bookmark' title='Permanent Link: Google Search for US Patents'>Google Search for US Patents</a></li><li><a
href='http://www.redcardinal.ie/google/09-08-2007/google-index-cache-differences/' rel='bookmark' title='Permanent Link: Google Index and Cache Diverging?'>Google Index and Cache Diverging?</a></li><li><a
href='http://www.redcardinal.ie/google/21-11-2006/remove-competitor-pages-from-msn-live/' rel='bookmark' title='Permanent Link: More problems for MSN Live!'>More problems for MSN Live!</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/browsers/17-11-2006/browser-search-suggest-enabled/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Ever wonder Who Really Does Send You All That SPAM?</title><link>http://www.redcardinal.ie/general/16-11-2006/top-global-spammers-named/</link> <comments>http://www.redcardinal.ie/general/16-11-2006/top-global-spammers-named/#comments</comments> <pubDate>Thu, 16 Nov 2006 09:17:23 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/16-11-2006/top-global-spammers-named/</guid> <description><![CDATA[Ever wondered who actually does send you all that spam every day?Meet the culprits.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/blogs/26-02-2007/seo-keywords-tools-long-copy-spam/' rel='bookmark' title='Permanent Link: A Dose Full of Comment Spam, Long Copy Referrer Pages &amp; SEO Tools &#8211; What Do YOU Think?'>A Dose Full of Comment Spam, Long Copy Referrer Pages &amp; SEO Tools &#8211; What Do YOU Think?</a></li><li><a
href='http://www.redcardinal.ie/link-building/05-10-2006/click-through-rates-can-soar-with-the-correct-copy/' rel='bookmark' title='Permanent Link: Click Through Rates Can Soar With The Correct Copy'>Click Through Rates Can Soar With The Correct Copy</a></li><li><a
href='http://www.redcardinal.ie/blogs/01-12-2006/blog-comment-spammers/' rel='bookmark' title='Permanent Link: Spammers Crack Me Up'>Spammers Crack Me Up</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Here&#8217;s an <a
href="http://www.securitypronews.com/insiderreports/insider/spn-49-20061113200SpammersCreate80PercentOfSpam.html">interesting piece</a> from xecuritypronews.com about who the world&#8217;s top spammers are and where they are located.</p><p>If you&#8217;re curious about where all that spam originates, it makes for an interesting read.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/blogs/26-02-2007/seo-keywords-tools-long-copy-spam/' rel='bookmark' title='Permanent Link: A Dose Full of Comment Spam, Long Copy Referrer Pages &amp; SEO Tools &#8211; What Do YOU Think?'>A Dose Full of Comment Spam, Long Copy Referrer Pages &amp; SEO Tools &#8211; What Do YOU Think?</a></li><li><a
href='http://www.redcardinal.ie/link-building/05-10-2006/click-through-rates-can-soar-with-the-correct-copy/' rel='bookmark' title='Permanent Link: Click Through Rates Can Soar With The Correct Copy'>Click Through Rates Can Soar With The Correct Copy</a></li><li><a
href='http://www.redcardinal.ie/blogs/01-12-2006/blog-comment-spammers/' rel='bookmark' title='Permanent Link: Spammers Crack Me Up'>Spammers Crack Me Up</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/general/16-11-2006/top-global-spammers-named/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Mozilla Thunderbird 1.5.0.8 Critical Bug</title><link>http://www.redcardinal.ie/general/13-11-2006/mozilla-thunderbird-1508-critical-bug/</link> <comments>http://www.redcardinal.ie/general/13-11-2006/mozilla-thunderbird-1508-critical-bug/#comments</comments> <pubDate>Mon, 13 Nov 2006 10:26:32 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/13-11-2006/mozilla-thunderbird-1508-critical-bug/</guid> <description><![CDATA[It appears that there may be a critical bug in the latest version 1.5.0.8 of Mozilla Thunderbird.This bug could result in the permanent lose of data.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/' rel='bookmark' title='Permanent Link: Did Someone Say That Internet Scams Were Becoming More Sophisticated'>Did Someone Say That Internet Scams Were Becoming More Sophisticated</a></li><li><a
href='http://www.redcardinal.ie/general/19-07-2006/keeping-your-pc-safe/' rel='bookmark' title='Permanent Link: Keeping your PC safe'>Keeping your PC safe</a></li><li><a
href='http://www.redcardinal.ie/general/03-06-2008/seedcorn-a-perfect-example-of-how-to-ask-for-online-attention/' rel='bookmark' title='Permanent Link: Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION'>Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Just a quick note to warn anyone using Mozilla Thunderbird that there may be a critical bug in the way the client handles mails with SpamAssassin headers.</p><p>Users (including myself) have reported receiving alerts from TB of new mail that does not appear in any mailbox within the client. Manually scanning INBOX files in a text editor does reveal the mails.</p><p>It is not clear if this problem only affects mail with <code>X-Spam-Flag: YES</code> headers.</p><p><strong>Do not compact our mailboxes as this may cause the permanent removal of mails that are hidden.</strong></p><p>For the moment the best bet is to downgrade to 1.5.0.7.</p><p>More details can be found <a
href="http://forums.mozillazine.org/viewtopic.php?t=487248">here</a>.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/' rel='bookmark' title='Permanent Link: Did Someone Say That Internet Scams Were Becoming More Sophisticated'>Did Someone Say That Internet Scams Were Becoming More Sophisticated</a></li><li><a
href='http://www.redcardinal.ie/general/19-07-2006/keeping-your-pc-safe/' rel='bookmark' title='Permanent Link: Keeping your PC safe'>Keeping your PC safe</a></li><li><a
href='http://www.redcardinal.ie/general/03-06-2008/seedcorn-a-perfect-example-of-how-to-ask-for-online-attention/' rel='bookmark' title='Permanent Link: Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION'>Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/general/13-11-2006/mozilla-thunderbird-1508-critical-bug/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Euro Business Guide Spam and Scam Warning</title><link>http://www.redcardinal.ie/general/10-11-2006/euro-business-guide-spam-and-scam/</link> <comments>http://www.redcardinal.ie/general/10-11-2006/euro-business-guide-spam-and-scam/#comments</comments> <pubDate>Fri, 10 Nov 2006 00:41:11 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/10-11-2006/euro-business-guide-spam-and-scam/</guid> <description><![CDATA[Beware the Euro Business Directory spam and scam emails.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/security/26-06-2007/euro-business-guide-scam/' rel='bookmark' title='Permanent Link: Euro Business Guide Scamming Again'>Euro Business Guide Scamming Again</a></li><li><a
href='http://www.redcardinal.ie/search-engines/14-08-2009/waldberghirsch-global-collections-more-scams-to-simply-ignore/' rel='bookmark' title='Permanent Link: Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore'>Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore</a></li><li><a
href='http://www.redcardinal.ie/ppc/20-07-2009/deceptive-practices-will-never-go-away/' rel='bookmark' title='Permanent Link: Deceptive Practices Will Never Go Away'>Deceptive Practices Will Never Go Away</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Just a quick warning to let people know that the fine folk from Euro Business Guide are at it again.</p><p>I just received the old sign-up for their CD-ROM. They seem to be cutting down on costs though &#8211; I&#8217;ve received it previously in hard copy but today it was a beautiful PDF attachment to a very short but sweet email (maybe times are tough?):</p><blockquote><p>Please print and fill the enclosed document and send it back to:<br
/> Euro Business Guide,<br
/> P.O. Box 2021,<br
/> 3500GA UTRECHT,<br
/> The Netherlands,<br
/> updating is free of charge!</p><p>If you want to unsubscribe send an email to ***</p></blockquote><p><img
id="image158" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/11/eucom-0510061.jpg" alt="Euro Business Directory Spam" /></p><p>For anyone who might feel tempted here&#8217;s the fine print from the PDF:</p><blockquote><p>I HEREBY ORDER A SUBSCRIPTION WITH SERVICE PROVIDER EU BUSINESS SERVICES LTD “EURO BUSINESS GUIDE”. I WILL HAVE AN INSERTION TO ITS DATA BASE FOR THREE YEARS. THE PRICE PER YEAR IS EURO 965. THE SUBSCRIPTION WILL BE<br
/> AUTOMATICALLY EXTENDED EVERY YEAR FOR ANOTHER YEAR, UNLESS SPECIFIC WRITTEN NOTICE IS RECEIVED BY THE SERVICE PROVIDER OR THE SUBSCRIBER TWO MONTHS BEFORE THE EXPIRATION OF THE SUBSCRIPTION.</p></blockquote><p>Please take care and if you receive this just throw it in the bin.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/security/26-06-2007/euro-business-guide-scam/' rel='bookmark' title='Permanent Link: Euro Business Guide Scamming Again'>Euro Business Guide Scamming Again</a></li><li><a
href='http://www.redcardinal.ie/search-engines/14-08-2009/waldberghirsch-global-collections-more-scams-to-simply-ignore/' rel='bookmark' title='Permanent Link: Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore'>Waldberg&#038;Hirsch Global Collections &#8211; More Scams To Simply Ignore</a></li><li><a
href='http://www.redcardinal.ie/ppc/20-07-2009/deceptive-practices-will-never-go-away/' rel='bookmark' title='Permanent Link: Deceptive Practices Will Never Go Away'>Deceptive Practices Will Never Go Away</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/general/10-11-2006/euro-business-guide-spam-and-scam/feed/</wfw:commentRss> <slash:comments>169</slash:comments> </item> <item><title>Did Someone Say That Internet Scams Were Becoming More Sophisticated</title><link>http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/</link> <comments>http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/#comments</comments> <pubDate>Wed, 01 Nov 2006 08:12:26 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Browsers]]></category> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Technology]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/01-11-2006/reverse-psychology-email-scams/</guid> <description><![CDATA[Using some reverse psychology to sell your phishing scam. Now if you could just get a decent English speaking copywriter you'll be emptying those PermanentTSB accounts in no time.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/' rel='bookmark' title='Permanent Link: Forresters Fund For Children &#8211; Vardis Scam Warning'>Forresters Fund For Children &#8211; Vardis Scam Warning</a></li><li><a
href='http://www.redcardinal.ie/browsers/04-10-2006/enterprise-ireland-website-broken/' rel='bookmark' title='Permanent Link: Enterprise Ireland Doesn&#8217;t Look Too Good'>Enterprise Ireland Doesn&#8217;t Look Too Good</a></li><li><a
href='http://www.redcardinal.ie/general/03-06-2008/seedcorn-a-perfect-example-of-how-to-ask-for-online-attention/' rel='bookmark' title='Permanent Link: Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION'>Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION</a></li></ol>]]></description> <content:encoded><![CDATA[<p>I got this in an E-mail box yesterday:</p><blockquote><p> Dear Sir/Madam,</p><p>Recent email scams have attempted to consume customers into disclosing their Online Banking security log-in details by re-directing them to a fake site.</p></blockquote><p>Well apart from the reference to scams &#8216;consuming&#8217; customers that opening sentence states a fact that the banks have been trying to get across to all their customers.</p><blockquote><p>We publish details about such scams on our security pages. However, we would like to get security warnings across to customers as many as possible.</p><p>That&#8217;s why we&#8217;re asking you to take a few minutes to check and update your account details. This will allow us to update your occasional security and Online Banking service information.</p></blockquote><p>Hmm.. so a bit of reverse psychology to draw us in. So you&#8217;re telling me about the risks of phishing schemes. Then you mention how important it is to get the message out about these scams. Seems fare enough. You couldn&#8217;t possibly be trying to pull the wool over my eyes. God knows, I might even have missed the obvious grammatical mistakes had I been reading this in a hurry.</p><p>But it&#8217;s your call to action that I love. After warning about the dangers of &#8216;recent email scams&#8217; you want me to follow your link so I can &#8216;check and update&#8217; my account details:</p><blockquote><p>Due to the recent security update, you are requested to follow the link below.</p></blockquote><p>And of course you have reinforce that call by preying on that most vulnerable human emotion &#8211; <b>fear</b>:</p><blockquote><p> *Important*<br
/> You are required to provide all necessary information completely and correctly otherwise, due to security reasons, we may have to close your account temporarily.</p><p>Security Advisor<br
/> Permanent Tsb</p></blockquote><p>The scary thing here is that should these guys get a native English speaker to create their copy I have no doubt these mails could get some conversions.</p><p>Of course if you have Firefox 2 installed you get this nice little message when you click on the link:<br
/> <img
id="image120" src="http://d3ohi9reiehxab.cloudfront.net/wp-content/uploads/2006/10/firefox-warning1.jpg" alt="Firefox anti-phishing protection" /></p><p>The site in question has been removed.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/security/14-02-2007/forresters-fund-for-children-vardis-scam/' rel='bookmark' title='Permanent Link: Forresters Fund For Children &#8211; Vardis Scam Warning'>Forresters Fund For Children &#8211; Vardis Scam Warning</a></li><li><a
href='http://www.redcardinal.ie/browsers/04-10-2006/enterprise-ireland-website-broken/' rel='bookmark' title='Permanent Link: Enterprise Ireland Doesn&#8217;t Look Too Good'>Enterprise Ireland Doesn&#8217;t Look Too Good</a></li><li><a
href='http://www.redcardinal.ie/general/03-06-2008/seedcorn-a-perfect-example-of-how-to-ask-for-online-attention/' rel='bookmark' title='Permanent Link: Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION'>Seedcorn &#8211; A Perfect Example of HOW TO ASK FOR ONLINE ATTENTION</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>How To Block IE7 in Windows Update (if you&#8217;re not too late!)</title><link>http://www.redcardinal.ie/browsers/27-07-2006/how-to-block-ie7/</link> <comments>http://www.redcardinal.ie/browsers/27-07-2006/how-to-block-ie7/#comments</comments> <pubDate>Thu, 27 Jul 2006 07:21:49 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[Browsers]]></category> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/27-07-2006/how-to-block-ie7/</guid> <description><![CDATA[How to block Windows Update from automatically installing Internet Explorer 7.Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/17-11-2006/browser-search-suggest-enabled/' rel='bookmark' title='Permanent Link: Does Google Know Your MSN &amp; Y! Searches?'>Does Google Know Your MSN &amp; Y! Searches?</a></li><li><a
href='http://www.redcardinal.ie/statistics/22-08-2007/microsoft-gatineau/' rel='bookmark' title='Permanent Link: Microsoft Gatineau'>Microsoft Gatineau</a></li><li><a
href='http://www.redcardinal.ie/browsers/16-11-2006/corkcorp-internet-explorer-7/' rel='bookmark' title='Permanent Link: If I Had Taken My Own Advice&#8230;.'>If I Had Taken My Own Advice&#8230;.</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Microsoft has announced that IE7 will be distributed via Windows Update with the &#8216;high-priority&#8217; tag.  If your like me (hardened FF user) you probably would rather block Windows from automatically installing the latest IE iteration from Microsoft (well at least till we see how buggy and insecure it is).</p><p>MS is offering a tool that lets you to disable automatic delivery of this update &#8211; its available at <a
href="http://www.microsoft.com/downloads/details.aspx?FamilyId=4516A6F7-5D44-482B-9DBD-869B4A90159C&#038;displaylang=en">the MS website</a>.</p><p>I just wonder if this is going to be another WGA fiasco?</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/17-11-2006/browser-search-suggest-enabled/' rel='bookmark' title='Permanent Link: Does Google Know Your MSN &amp; Y! Searches?'>Does Google Know Your MSN &amp; Y! Searches?</a></li><li><a
href='http://www.redcardinal.ie/statistics/22-08-2007/microsoft-gatineau/' rel='bookmark' title='Permanent Link: Microsoft Gatineau'>Microsoft Gatineau</a></li><li><a
href='http://www.redcardinal.ie/browsers/16-11-2006/corkcorp-internet-explorer-7/' rel='bookmark' title='Permanent Link: If I Had Taken My Own Advice&#8230;.'>If I Had Taken My Own Advice&#8230;.</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/browsers/27-07-2006/how-to-block-ie7/feed/</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>Keeping your PC safe</title><link>http://www.redcardinal.ie/general/19-07-2006/keeping-your-pc-safe/</link> <comments>http://www.redcardinal.ie/general/19-07-2006/keeping-your-pc-safe/#comments</comments> <pubDate>Wed, 19 Jul 2006 20:52:10 +0000</pubDate> <dc:creator>Richard Hearne</dc:creator> <category><![CDATA[General]]></category> <category><![CDATA[Security]]></category><guid
isPermaLink="false">http://www.redcardinal.ie/general/19-07-2006/keeping-your-pc-safe/</guid> <description><![CDATA[<p>I recently had to investigate an issue with a client&#8217;s website reported by a customer who was unable to use the website&#8217;s navigation..... Guess what? In 2006 they were still using Internet Explorer 5.0..... Here's an outline of some of the practices and software available that will help keep your PC safe and clean.</p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/' rel='bookmark' title='Permanent Link: Did Someone Say That Internet Scams Were Becoming More Sophisticated'>Did Someone Say That Internet Scams Were Becoming More Sophisticated</a></li><li><a
href='http://www.redcardinal.ie/security/25-08-2009/some-stats-on-malware-and-irish-web-hosting-companies/' rel='bookmark' title='Permanent Link: Malware Stats for Irish Web Hosting Companies'>Malware Stats for Irish Web Hosting Companies</a></li><li><a
href='http://www.redcardinal.ie/browsers/27-07-2006/how-to-block-ie7/' rel='bookmark' title='Permanent Link: How To Block IE7 in Windows Update (if you&#8217;re not too late!)'>How To Block IE7 in Windows Update (if you&#8217;re not too late!)</a></li></ol>]]></description> <content:encoded><![CDATA[<p>I recently had to investigate an issue with a client&#8217;s website reported by a customer who was unable to use the website&#8217;s navigation.  I gave the customer a call to see if we could replicate the problem.  The customer was from a SMB here in Ireland and my first question was what browser were they using.  They were unable to answer so I asked that they click on Tools->About.  Guess what? In 2006 they were still using Internet Explorer 5.0.   The issue was with CSS but afterwards I began thinking about just how much malware must be floating around their network.</p><p>So to get into the swing of this blogging thing I thought it might be useful to give an outline of some of the practices and software available that will help keep your PC safe and clean.</p><p><strong>Best Practice</strong></p><ol><li>My #1 piece of advice to anyone surfing the web is to dump Internet Explorer.  IE is a dated piece of software that has countless security vulnerabilities.  As the market leading web browser it is also the target of most malware attacks and the source of many malware infections on Windows based platforms.  I have been using <a
title="Get Firefox" href="http://www.mozilla.com/firefox">Mozilla Firefox</a> since version 0.7 and cringe whenever I am forced to use IE (generally when on vacation or using someone else&#8217;s PC).  I have also used <a
title="Opera" href="http://www.opera.com">Opera</a> and found it to be a well thought out browser.  However, for pure extendibility I find Firefox wins hands down.  You should really try one of these browsers &#8211; they copy over all your settings and bookmarks and I guarantee you will be impressed by the experience.</li><li>Keep your operating system and applications up to date. Software vendors often update their products fixing bugs, adding functionality and removing security vulnerabilities.  It is important that you regularly visit vendor websites or use in-built functionality to keep your products up to date.  Most importantly for Microsoft users, you should visit <a
title="Microsoft Update" href="http://update.microsoft.com/">Microsoft&#8217;s Update Site</a> every month to download the latest patches.  I know that many Irish computer users are limited to dial-up connections but if so you might consider leaving your computer on-line overnight some Saturday night so that it can properly update. The call charges shouldn&#8217;t be so obscene at that time.</li><li>Regularly scan your computers with up to date Antivirus software using the latest definitions available.  Most Antivirus software will allow you to schedule scans that run automatically.  I have included an <a
title="Antivirus Software" href="#Antivirus">Antivirus Software section</a> below with information and my own experience with many of the applications available.  You should also install some form of AntiSpyware application &#8211; there are many free and purchased solutions available (see <a
title="AntiSpyware Software" href="#AntiSpyware">AntiSpyware section</a> below for more details).</li><li>If you are not behind a corporate firewall then you should consider installing a software firewall on your PC.  Windows XP ships with the Windows Firewall but it is quite limited in the protection afforded (although, of course, better than nothing).  You can find out about various <a
title="Software Firewalls" href="#firewalls">software firewalls</a> below.</li><li>Something that I don&#8217;t see mentioned often is the use of anti-spam software on the mail server.  If your e-mail is provided as part of a hosting package you may also have access to anti-spam software. <a
title="Spamassassin" href="http://www.spamassassin.org">Spamassassin</a> is commonly bundled with Cpanel (you can find it in the Mail section on Cpanel) and uses both filters and heuristics to determine the likelihood of e-mails being spam.  You should ensure that it is activated.  You won&#8217;t lose any e-mail unless you explicitly set this option, but any mail that SpamAssassin believes is spam will be converted to plain text with a warning message in the title.  Attachments, which are a common source of malware, will also be converted to plain text and displayed in-line in the message &#8211; in effect these attachments become far more difficult to execute by the casual user which reduces the possibility of infection.</li></ol><p>In terms of the security software available here is a list of both free and paid applications that will help your PC remain healthy:</p><ol><li
id="AntiSpyware"><strong>Spyware Removal and Protections</strong><ul><li><a
title="Firefox" href="http://www.mozilla.org/firefox">Firefox</a> &#8211; as mentioned above dump IE and install a decent browser.  You would be amazed at the extra protection.</li><li><a
title="Spybot Search &#038; Destroy" href="http://www.safer-networking.org/en/index.html">Spybot Search &#038; Destroy</a> &#8211; a FREE and handy spy-ware detection and removal tool that has become more advanced over its lifetime.  I have used this for many years now and highly recommend it.  (oh, and curiously the company is run out of Greystones, County Wicklow!);</li><li><a
title="Spyware Blaster" href="http://www.javacoolsoftware.com/spywareblaster.html">Spyware Blaster</a> &#8211; another FREE tool that basically prevents you from visiting bad websites known to distribute malware.  While simply a prevention tool which doesn&#8217;t offer the protection afforded by more advanced software, it can be a useful piece of software and best of all it&#8217;s free;</li><li><a
title="Microsoft Defender" href="http://www.microsoft.com/athome/security/spyware/software/default.mspx">Microsoft Defender</a> &#8211; yet another free application (still in Beta but free for now anyhow) this software integrates technology acquired through Microsoft&#8217;s acquisition of Giant Software some years back.  I rarely use this app as I find that scans take hours and are very resource hungry but technically this is probably the best free anti0spyware tool.</li><li><a
title="Adaware" href="http://www.lavasoftusa.com/software/adaware/">Lavasoft Adaware</a> &#8211; available in both professional and free editions this software includes a scanner and removal engine.  I have used this in the past but cannot say what the detection rates are like currently.</li><li><a
title="Spysweeper" href="http://www.webroot.com/">Webroot Spysweeper</a> &#8211; this is probably my favourite anti-spyware software.  While not free, Spysweeper provides detection and removal technology that sets the benchmark in this area.  The one proviso I would give is that since updating to version 5.05 my system has had some serious instability issues.</li><li><a
title="Ewido" href="http://www.ewido.net/en/">Ewido</a> &#8211; Ewido is probably not so well know but I have heard increasingly good things about this software.  As with Spysweeper this software requires a subscription.</li></ul><p>If you can afford to buy Anti-Spyware software I would advise Spysweeper, however if you choose to install the top four apps above I reckon you will probably have a good level of protection.</p></li><li
id="AntiVirus"><strong>Anti-Virus</strong><ul><li><a
title="Eset Nod32" href="http://www.eset.com/index.php">Eset Nod32</a> &#8211; again a brand name probably not well known outside experienced users, but this Czech antivirus really works well.  Viewed as one of the best AV tools around, the only downside is that Eset NOD32  is slightly more technical in terms of the configuration options available.  I have used Eset Nod32 and highly recommend it.</li><li><a
title="Kaspersky Labs" href="http://www.kaspersky.com/">Kaspersky</a> &#8211; this time from Russia but widely viewed as having the best detection rates in the industry.  I have tried Kaspersky but had to uninstall due to persistent BSODs.  Pity because I read very good things about this AV.</li><li><a
title="BitDefender" href="http://www.bitdefender.com/">BitDefender</a> &#8211; I have not personally used this AV but again i have heard very positive feedback about its abilities.</li></ul><p>You may well wonder where are the Norton&#8217;s, the McAfee&#8217;s etc. The reason I don&#8217;t mention them is that, while providing sufficient protection for casual users, it is well known that they have the worst detection and removal records. I have included links to some <a
title="AV Comparative Sites" href="#AVcompSites">review and comparative sites</a> that you can have a look at.</p></li><li
id="firewalls"><strong>Firewalls</strong><ul><li><a
title="Agnitum Outpost" href="http://www.agnitum.com/products/outpost/">Agnitum Outpost</a> &#8211; widely viewed as the most effective software firewall for personal use. I believe that previously they also offered a watered-down free version but checking their website I can find no reference to the free version anymore.</li><li><a
title="ZoneAlarm" href="http://www.zonelabs.com/">ZoneAlarm</a> &#8211; I have used this particular firewall for a number of years and found the protection to be comprehensive. There have been some previous issues with the software corrupting certain Windows features but these seem to have been ironed out with the latest release. The only thing stopping me going to Agnitum is that ZoneAlarm hasn&#8217;t caused me any problems. I can recommend this product if you are looking for a good software firewall. They also offer a reduced feature free version which you could try.</li><li><a
title="Look 'n Stop" href="http://www.looknstop.com/En/index2.htm">Look &#8216;n Stop</a> &#8211; I have only heard of this product recently but everything I have heard seems to be positive.  Maybe worth a look.</li></ul><p>Again you may wonder where are the brand name Firewalls. Well again my answer is that the Norton&#8217;s and McAfee&#8217;s etc don&#8217;t offer the protection of the best products available.</p><p>NB ALL-IN-ONE SECURITY SUITES &#8211; My advice on this is that most security suites seriously degrade the performance of your PC. If you need the simplest user interface then one of these products *MAY* be for you. However, if you can suffer multiple products you will should reap the rewards in performance terms.</p></li><li><strong>AV Reviews and Comparatives</strong><ul><li><a
title="AVComparatives.org" href="http://www.av-comparatives.org/">AVComparative.org</a> &#8211; website giving impartial reviews and comparisons of all the major commercial AV software available. You might be surprised how well (or how poorly) some of the big names do.</li><li><a
title="Wilders Security" href="http://www.wilderssecurity.com/">Wilders Security</a> &#8211; online community dedicated to computer security issues. The website is an excellent resource for finding solutions to really nasty PC infections that many AV products cannot remove. You can also find user reviews of security software.</li></ul></li><li><strong>Online Anti-Virus Scans</strong><ul><li><a
title="Trend Micro HouseCall" href="http://www.trendmicro.com/hc_intro/default.asp">Trend Micro HouseCall</a> &#8211; a good free online scanner.  This will detect but not remove malware from your PC. If the scanner finds malware they will try to sell you their full software.</li><li><a
title="Panda ActiveScan" href="http://www.pandasoftware.com/activescan">Panda ActiveScan</a> &#8211; another online scanning engine with same removal limitations as Trend Micro HouseCall.</li><li><a
title="Kaspersky Online Scan" href="http://www.kaspersky.com/virusscanner">Kasperksy</a> &#8211; yet another online scanning engine. Probably better detection rates than previous two.</li></ul><p>These scanners can be useful if you do not have up to date AV software installed and are worried about malware on your PC.</p></li><li><strong>Single File Submission Tools</strong><ul><li><a
title="VirusTotal" href="http://www.virustotal.com/flash/index_en.html">VirusTotal</a> &#8211; this is a great tool for scanning single files that may be suspect. It uses multiple AV engines and reports the results usually within seconds.</li><li><a
title="Kaspersky Online Scanner" href="http://www.kaspersky.com/virusscanner">Kaspersky</a> &#8211; using the same tool as for online scanning except for single files that you submit to Kaspersky. Usually returns results instantly.</li></ul><p>Great for confirming single file threats that AV software flag as suspicious.</p></li><li><strong>Port Scanner</strong><ul><li><a
title="GRC Port Scanner" href="https://www.grc.com/x/ne.dll?bh0bkyd2">GRC</a> &#8211; a great tool for testing leaks in your firewall.</li></ul><p>You can use a port scanner to determine if you PC has left any ports open and vulnerable to attack.</p></li></ol><p>Phew! Well I hope the above is useful and maybe, just maybe, prevents someone from getting a nasty malware infection.</p><p>Want to read more?<ol><li><a
href='http://www.redcardinal.ie/browsers/01-11-2006/reverse-psychology-email-scams/' rel='bookmark' title='Permanent Link: Did Someone Say That Internet Scams Were Becoming More Sophisticated'>Did Someone Say That Internet Scams Were Becoming More Sophisticated</a></li><li><a
href='http://www.redcardinal.ie/security/25-08-2009/some-stats-on-malware-and-irish-web-hosting-companies/' rel='bookmark' title='Permanent Link: Malware Stats for Irish Web Hosting Companies'>Malware Stats for Irish Web Hosting Companies</a></li><li><a
href='http://www.redcardinal.ie/browsers/27-07-2006/how-to-block-ie7/' rel='bookmark' title='Permanent Link: How To Block IE7 in Windows Update (if you&#8217;re not too late!)'>How To Block IE7 in Windows Update (if you&#8217;re not too late!)</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://www.redcardinal.ie/general/19-07-2006/keeping-your-pc-safe/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (enhanced)
Content Delivery Network via Amazon Web Services: CloudFront: d3ohi9reiehxab.cloudfront.net

Served from: www.redcardinal.ie @ 2012-02-04 05:26:01 -->
