Blue Hat Technique #14 - Other Spammers: The Ultimate Proxy
So since my last lame post on What Are Proxy Servers? the inexperienced promoters are now hopefully caught up with the wonderful world of proxy servers and loving them right about now. So I think this would be a great time for me to fuck up that pretty little proxy planet you’re on and teach you how to exploit spammers using proxies to your own little spammy or even nonspammy purposes.
Cruel Intentions
The intent behind this post will be to teach you how to use massive amounts of trusting spammers to help do your own little spam. Every good spammer knows public proxies are real hit and miss. Some work many don’t. Yours will work, it’ll just accomplish your work not the spammers. I’m going to assume that you’ve already done your research and know about public proxies. I’m also going to assume that you are well aware of the many public proxy lists out there. Every good web spammer has a huge solid list of proxies, and we’re just going to fuck it up for the rest of them. Sound like fun? Good it will be.
First Things First
1. Create yourself a public proxy. There are tons of proxy software out there.
CC Proxy is a good Windows based one.
A few open source proxy server software
There are also TONS of good ones for linux. I recommend using linux if you are able to do so. Just feel free to do a bit of research on this step before you take the plunge.
2. Make the proxy server open. This means don’t make it anonymous. Anonymous proxy server means your IP shows up for every request. Make it so their ip directly makes the pull on every request. This is perfectly acceptable. Most spammers don’t bother filtering their lists for ones that claim to be anonymous yet aren’t. They just slam and clean the list from failures.
3. Block EVERYTHING with your proxy server. You can easily block sites and domains with your new kick ass proxy server. You may also set what default site they are redirected to everytime they make a request through your server and have it result in a successful pull. So just block everything and focus on the page all their requests will return with. I will call this page your “return blocked page” because many proxy servers have different terms for it. Wanna see an example? Try using proxy 205.221.223.1 on port 80. It’ll result in every site you go to returning with CAL Community School District website.
4. Build your return blocked page. This page will be your weapon. Whatever you would normally do through a proxy can be accomplished or even redirected through this page. Want to slam an advertisers form? Want to post to guestbooks or blogs? How about just slamming a referrer list or even having them post a fake post on your forum? Whatever and however you want! The world is yours. Their IP accomplishes the task. No worries about cpu usage or failed proxy connections. The spammers ip and scripts does all the work. Your server just sends the redirect. Since you will eventually have hundreds to thousands of spammer using your server the page pulls will seem natural and randomly timed. Aside from the absolute huge amounts of them of course.
If creativity isn’t your strong suite and you can’t think of a good way to utilize this step just settle with using it to raise your Alexa rank or even have it search for your terms in one IFrame with Yahoo or something then have it click on your link in another iframe. This should help Yahoo see your site as getting a higher CTR on your search terms. That got you grinning didn’t it? How about having it bookmark your site in social bookmark sites for quick indexing? *waves to SEOStomp*
5. Submit your awesome new “anonymous” public proxy server to some repositories. This will get it some normally unwanted attention and give it a little bit of time to spread around like cancer. Just remember to advertise it as a anonymous server. Most won’t ever double check that. Infact their scripts will report back a successful pull everytime on your server. It won’t be until they actually check the content that they will stand a chance of figuring removing your server from their list.
Here’s a few hundred to start out on.
There ya go. I could spend the next 100 pages giving you ideas on what to do with your now ultimate proxy server. By ultimate proxy server i didn’t mean your actual server i meant the chumps using your server and their virgin ip addresses. Just remember, no one EVER manually goes through their proxy lists and checks for these things. They may check the returned content to see if its what they expected to get, but if it doesn’t chances are they won’t sit there and manually pull it and find out what your doing. However if you are paranoid about them knowing about the technique your using then feel free to be a little sneaky about your redirect or frames.
If you are a complete white hat and just want to have a little fun. Feel free to boost your friends population on their forums and such by having every single spammer you catch inadvertantly signup Hell, I won’t condone it but it would be pretty funny to have them automatically email their ISP with the what they are trying to do. Remember email spammers use proxies to.
PS. I lied I didn’t sell out I’ll keep writing Blue Hat Techniques as long as people keep finding use for them.
Great article!
Thanks,
JF
Ich mag deine Artikel, der einen guten Artikel ist Oh!
yeah soo true gr8 one.
Call me an idiot, but i still did not figired where to submit “your awesome new “anonymous�? public proxy server” on that lists….
Thanks Jose,
James: email it to them. i did forget to mention to add a bunch of other ones to the list and kind of slip yours in there. They’ll filter your list with theirs and remove all the dupliates. Alsso posting it on forum topics work well too. It’s not as hard as it sounds. Once you get a few people to know about your proxy it’ll spread faster than you can imagine. Just don’t try to be too public about it. Mix it in other lists and redistribute those.
awesome. seriously.
yeah awsome…
Bravo Man.
Eli, good work - awsome read… Seeya at the office.
Also if you wanted to accurately contact their isp. Rather than traceroute’ing which can have bogus web addresses as host names.. You can use the ARIN (American Registery of Internet Numbers) to lookup the owner of the IP. The person who pays to lease the IP address. The link is http://www.arin.net/whois/
Eli,
I think I’m missing something. You said “The world is yours. Their IP accomplishes the task”… but surey the reason they’re using the proxy is to use YOUR IP, not theirs.
So how does their’s get used?
Andy
Andrew, very good question. Their ip gets used because it is them who actually does the task. Not your server. Your server simply blocks anything they do. So if they go to google through your proxy. Your website comes up. If they try to search Yahoo through your proxy. Your website still comes up. So its not really a proxy. Think of it like a broken proxy. Now since you have them at your website no matter what they try to do or where they try to go you can redirect them however you would like. So if you make it so anyone who goes to your website gets redirected to Google search. So they are the ones that are actually doing the google search, your proxy server didn’t pull the google search their browser or script did. Therefore it uses their ip to accomplish the task. I hope that clears it up a bit for you.
I think I’m there. So it’s a bit like setting up set up a 301 from your proxy to (say) Google search. Is that it?
Let me put it more concretely. I use proxies to post RSS feed URLs to feedping.com, and checking the response back from them. The problem that I was having was seeing how this would work in your model - I don’t think it would, since I can’t get their browser to post details to feedping in the same way as my PHP script does.
But I *could* have their browser point to any URL and pass in GET parameters, right? Just not POST parameters.
Andy
If I set up blocked proxy
Thats exactly right Andrew. Through javascript however there are ways to do a post method. Its just kind of tricky.
The possibilities for this are mind boggling - GREAT idea - thanks!
Matt
gr8 idea….
I think I missed something when u talk about landing pages, I suppose spammers use proxy to tunnel their spamming script, not to surf hiding their IP, so I don’t fine something useful serving an adsense page to a script
and don’t forget that, when u enter in some public proxies list, at the same time u enter in some other ip proxies list that bans public proxies to get access to their apps…
—
so I don’t fine something useful serving an adsense page to a script
—
You’re missing the point entirely, this isn’t to serve adsense up to them it’s to inflate visitor stats, etc…
WOW !! I WILL USE THIS FER SURE !!!!!!!!
Hey,
Newb question: how exactly do you script out the action the proxy users will be doing for you?
Script? Program? What?
Where should I be look? elance?
Hi,
I’m kindda new to this proxy thinggy. I have 2 questions here:
1) Eli, in your reply at 2006-11-03 22:41:39, you said that “If they try to search Yahoo through your proxy. Your website still comes up.” Do you mean “they” as a real visitor? Does that mean I could redirect them through my “broken” proxy to a website that sells something to have more visitors which will resulted in more sales?
2) I’m interested in the Yahoo & iframe redirect to gain high yahoo rank. How does that works? I mean I’m trying to build 3 pages (2 iframes & 1 container), however the redirected iframe said that the referer is from the container not from the other iframe. Could somebody explain more on how to build this system?
Regards,
this is a great post indeed. i won’t be surprised if a chinese guy uses this technique to load a 0 iframe page that automatically perform searches and commit click fraud.
“i won’t be surprised if a chinese guy uses this technique to load a 0 iframe page that automatically perform searches and commit click fraud.”
I won’t be surprised, also…
Wow. This is sweeettt !
ohh Myy GOD…
soooo sooo soooooooo sweettttt
Great articel , i really enjoyed reading.
well I’ve been in the proxy industry for some time now and as usual AdSense always fluctuates. I emailed Google a while back and asked them why my earnings have decreased and if i was smart priced.
Thanks for the information. I think I will try it just for fun
Peter
lawls dude after reading that post you must think spammers are retarded but most of them are paranoid. Yes, there are free proxy lists out there but I have seen private high anonymity proxy for rent sites come up. I myself use proxies to safeguard my ip from being attacked. I’ve got 2 proxies from www.proxiesforrent.com. I’m sure spammers are all up on that though. Do you really think there is a true silver bullet for defeating spam? I don’t.
I have always wondered with those proxy servers were and what they are needed for. Now I know!
CGi proxys work the best!
cgi proxy? what about some socks5 or http?
Nice posting!
great article.
i learn many things from this article.
Thanks
from my experience cgi proxy works best for this
Can you post some code for causing the proxy user to click the page, or to submit a form?
Proxy is very important!
Well you got here some nice tips on proxy servers. Thanks for the article
Another great post admin. This is such good info for my research. I will bookmark your post here on Digg.
now lets say i have a botnet… how would i go about making it into a proxy server.. or private proxy server
This is great article
yeah gr8
having known about proxy servers for years I have never thought of this sneaky way lol I fear for my ethics after reading this knowing the full possibilities of what one can achieve.
Great article!!
The information you provided was very useful. Because of your help, thank you.
When you think of happy
Thank you Eli for sharing your tips on proxy uses, I only used it to unanimously surf the net but I can see now there is much more to it.
Good information as always, keep updating you blog with new stuff as there are a lot of hungry readers out there.
Funny… spam the spammer.
hahahaha
8I think am just having some problems with subscribing to RSS feed here.
rI so enjoyed every bit of this site and I’ve bookmarked your blog to keep up with the new topics you will post in the future
It’s good to hear Chico’s still around and coming out with a new cd soon. I’ve been a fan of the brother for a while now and was glad you mentioned his first hit, “Talk to Me”. I wish you could’ve gotten him to talk about his relationship with Janet Jackson, though, as well as the stabbing incident in Philly a few years ago.
I have always felt that blogging has been an art where people express their experiences in the best manner.This is something that is very informational.I must appreciate your article writing skills.Every time i come here i see something very new.Thanks for sharing the information.I love when you share your views through the best articles.Keep sharing and posting articles like these.This article has helped me a lot.Keep posting this stuff.
don’t know how to use proxy
The possibilities for this are mind boggling - GREAT idea - thanks!
Lol i’ll second that
I do agree with all of the ideas you have presented in your post. They’re really convincing and will definitely work. Still, the posts are too short for newbies. Could you please extend them a bit from next time? Thanks for the post.
I’m truly experiencing reading your nicely written content articles. It appears like you invest a lot of work and time on your blog.
Could you please extend them a bit from next time? Thanks for the post.
Balenciaga Handbags Shophfh
nice chat p7bk good website bloog chat egypt girl
change comment plz :@
OKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKK
Nahi sudhrega sale tu
ja niti PK kr k aa is ka hahahha..
stop spamin
YESSSSSSSSSSSSSSSSSSSSSSSSSS
Great Post Eli
yeah Good One….
The blog is really appreciable and i like to keep on visiting this site once again that it would help me in further thanks for sharing the info.
haha. Right. This is really good coz you will always be given a chance to protect your sites from spammers.
okkkkkkkkkkkkkkkkkkkkkk
yesssssssssssss
اووووووووووووك
This is such a great resource that you are providing and you give it away for free
This is the exact information I was looking for from a couple of days.
I have lot of knowledge proxy server but from your info i have gained more info. Your research is really awesome. Great
I am very glad that I find your regular post here. Which seems to be very important and it made good time pass for me. I will always give a nice thrust look in to you from my bookmark feed. I don’t actually comment and don’t like to spend time in typing the comment. But here I have to do this because this deserves a good like.
The lift Blender Mixer is suitable for the high-speed stirring, dissolving and dispersion of the paints, dyes, inks, paints, cosmetics, resins, adhesives, latex, pharmaceuticals, petroleum, and other liquid phase and liquid-powder-phase Homogenizer.
Proxy server can be changed and manipulated…that is the beauty of it
The truth is, this does work and very well may I add. It appears that you simply don’t know what you’re doing.
Thanks for publishing valuable information.
Webdesign Limburg
That was so great sites of yours. As i saw in your others statement it comes in a time that there some point there that give me some knowledge about that one.
I think I’m missing something. You said “The world is yours. Their IP accomplishes the task”… but surey the reason they’re using the proxy is to use YOUR IP, not theirs.
Wow. This is sweeettt !
Ich mag deine Artikel, der einen guten Artikel ist Oh!thán
thansk for sharing this proxy trick
The conference was inspiring and great reminder about making time and space for mindfulness. It sounds like you’re much better about that than me!
thanks man
it’s very good article
hmm, it seems the code has been stripped out of the above. its the php require posts dot php that was meant to show between the “”
thansk for sharing this proxy trick
How helpful this article I never see in another website too good,
proxy so cool!
we live for proxy!
Miami SEO The intent behind this post will be to teach you how to use massive amounts of trusting spammers to help do your own little spam.
I’ve made a little linking research, and at this moment I agree with you
yes,indeed>..its the ultimate proxy