Subscribe to Windows IT Pro

 

Get Newsletters

  • Get the Latest News
  • Product Updates
  • Helpful Tricks
  • Productivity Tips

Subscribe Now!

January 27, 2003 12:00 AM

Taking Out Your E-Garbage

Effective techniques for minimizing and eliminating spam
Windows IT Pro
InstantDoc ID #37611
Rating: (6)

Much to the chagrin of Hormel Foods, maker of the canned meat product SPAM, the term spam has become synonymous with email abuse. In the Internet age, spam—unsolicited email—fills the world's Inboxes every day. This endless deluge of e-garbage is more than an annoyance. Spam is nothing short of computer shoplifting, consuming prodigious amounts of Internet bandwidth and costing us all time and money. According to Ferris Research, this year people will spend an average of $400 per Inbox and 15 hours of their time deleting unwanted email. Spam is reaching epidemic proportions: A Gartner study showed that spam increased fivefold in 2001, and the Radicati Group estimates that spam comprises nearly one in three corporate messages currently exchanged, a ratio Radicati expects to grow to 39 percent by 2006.

Controlling Spam
Because spam is so difficult to avoid and eliminate, it might be a bigger problem than email-borne viruses. You can usually avoid viruses simply by scanning incoming email and not opening suspect attachments, but you can't slam-dunk spam because of the possibility that you might filter out legitimate messages. Losing 1 important email message is worse than clicking through 50 pieces of junk mail. I can't give you a magic bullet to eliminate spam, but you and your users can minimize the amount you receive by following a few commonsense measures:

  • Don't do business with spammers. If you buy something, you simply encourage spam practices.
  • Avoid using your real email address online when posting to newsgroups, Web sites, or other public forums that spammers mine for targets.
  • Never respond to spam, not even to click the remove me from this list link. Any response only verifies that your address is live and makes your address valuable property that the spammer can continue to target or trade with other spammers.

The above tactics can help new users minimize spam, but for many of us, these measures are probably too little, too late. Legislation might one day impose fines and other restraints on spammers, but such laws won't see the light of day soon.

Stiffer Measures
For longtime Internet users, antispam products are the better bet. Spam-fighting products cover a range of technologies and include email-filtering services (e.g., Brightmail Anti-Spam 4.0), email security appliances (e.g., CipherTrust's IronMail), Exchange add-ons (e.g., Trend Micro's ScanMail eManager for Exchange), and client email filters (e.g., Sunbelt Software's iHateSpam). Microsoft Outlook also includes rudimentary tools for blocking spam.

Spam blockers typically use at least one of three techniques to identify spam. The most effective method is to block spam at the gateway by checking incoming email against a realtime "black-hole" list (i.e., a list of the IP addresses and domains of known spammers) and deleting mail from listed spammers. Many ISPs automatically do this for you, and Exchange security products include this feature.

Other products filter spam based on email header attributes. The email header shows the route the message took to its destination and includes information about the message, such as the sender, a message ID, when the message was created, and the subject. Spammers try to hide their identity by forging email headers or by relaying mail to hide the message's real source. Checking for valid email headers is an effective way of eliminating spam.

A third technique filters messages by content. Such products filter messages that contain specific words or phrases. More sophisticated products assign scores to certain words, then set an overall threshold per email message, letting you identify which messages the filter should block without incurring false positives. This approach is the last line of defense for messages that make it through the black-hole list and header filters.

Like taking out household garbage, minimizing and removing spam needs to become part of your routine. A combination of commonsense precautions and technology does the most effective job.

Related Content:

ARTICLE TOOLS

Comments
  • Brian
    3 years ago
    Aug 31, 2009

    @ericfoulds You might want to check out some of our recent buyer's guides on antispam products to get your search started:
    "Antispam Solutions for Business," InstantDoc ID 94326
    "Hosted Antispam Solutions," InstantDoc ID 101497

    The product tables with these articles will give you a good snapshot of some of the leading products as well as a glimpse at what features they offer. There's certainly no shortage of antispam options for Exchange 2007!

    Hope this helps.

    B. K. Winstead
    Associate Editor

  • ericfoulds
    3 years ago
    Aug 28, 2009

    Decent article but unfortunately, my company email recieves a TON of spam... I need a solution for Exchange 2007 desides the built in filtering (it quarantines too many based on false positives, high SCL ratings)...

  • Paul Messer
    8 years ago
    Jan 15, 2004

    I just read Michael Otey's Editorial: "Taking Out Your E-Garbage" (February 2003, http://www.winnetmag.com, InstantDoc ID 37611). I've been administering networks and email for 15 years; spam is an ever-growing problem. My company uses Gordano's NTMail to filter messages by content and redirect messages by mail clause, which helps control spam but doesn't completely solve the problem. I've been trying to get my users to adopt a concept that I dreamed up the other month. I call it positive filtering. Basically the concept is that you treat email like the snail mail you receive at home and work. You scan through mail to see whether it looks important or whether it's just another credit-card application form. You trash without opening any mail that isn't obviously important.

    Email positive filtering works in a similar way, and you have two disposal methods. You set up a filter within the email client to put email sent directly to you (i.e., email that has your email address in the To field) in a folder called something like "My Real Mail." Everything else stays in the Inbox, and you review or delete that email whenever you want to.

  • Jim Jones
    9 years ago
    Apr 05, 2003

    Another great anti spam product that plugs right into Outlook that I highly recommend is Giant Company's Spam Inspector. http://www.spaminspector.com My entire company uses it and it blocks over 95% of all spam.

You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

White Papers

Get your Windows 7 deployment off to the right start by implementing PC lockdown. A locked-down environment is easier and cheaper to support since users are less likely to make unnecessary changes to the core system configuration - read more here!

Essential Guides

Is your iSCSI "lossy"? The reality is that most off-the-shelf Ethernet hardware deployed for iSCSI can lose packets, resulting in slow performance or application downtime. Learn how to assess your current iSCSI infrastructure and engineer an advanced iSCSI SAN infrastructure.

Web Seminars

What's the best way to keep your network safe from malware? In this web seminar, security expert Greg Shields suggests an alternative method to the traditional blacklisting approach that is common with anti-virus and anti-malware solutions.

eLearning Series

We bring the experts direct to you to share their real-world perspective and expertise. During each event, three sessions stream in real time, so you can learn, ask questions, and get solutions.
Upcoming event: Getting the Most with Exchange 2010 with Paul Robichaux

Subscribe to Windows IT Pro!

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.