So, I'm setting up my new website. So far things are going great, and
believe me when I say that there's a lot going on behind the scenes.
One of the things I'd like to add to my site, though, is something to
give spammers a real headache. I'm going to make a page on a
subdomain of my site, subtly linked to from other portions of my site,
with a collection of links to various spam-bot honeypots such as
http://www.monkeys.com/spammers-are-leeches/ or
http://www-lmmb.ncifcrf.gov/~toms/spam/trap.html or
http://69.5.2.49/trap.html I'm also considering making one of my own,
and here's where my question comes in:
What would the consequences be to setting the MX record for just the
trap subdomain (not the main domain) to 127.0.0.1? I know some
spammers have used this trick themselves, and I was thinking that
using it in conjunction with a very very large list of semi-random
addresses @trap.dreamhart.org would result in both their own databases
being poisoned with false data, and them effectively performing a DOS
attack on themselves when they try to send spam out and hit their
local machine as the mailserver.
Would this potentially work? Would there be any drawbacks to this
approach? Would you like to contribute to my list of spambot
honeypots?
Thank you for playing.... ;-)
believe me when I say that there's a lot going on behind the scenes.
One of the things I'd like to add to my site, though, is something to
give spammers a real headache. I'm going to make a page on a
subdomain of my site, subtly linked to from other portions of my site,
with a collection of links to various spam-bot honeypots such as
http://www.monkeys.com/spammers-are-leeches/ or
http://www-lmmb.ncifcrf.gov/~toms/spam/trap.html or
http://69.5.2.49/trap.html I'm also considering making one of my own,
and here's where my question comes in:
What would the consequences be to setting the MX record for just the
trap subdomain (not the main domain) to 127.0.0.1? I know some
spammers have used this trick themselves, and I was thinking that
using it in conjunction with a very very large list of semi-random
addresses @trap.dreamhart.org would result in both their own databases
being poisoned with false data, and them effectively performing a DOS
attack on themselves when they try to send spam out and hit their
local machine as the mailserver.
Would this potentially work? Would there be any drawbacks to this
approach? Would you like to contribute to my list of spambot
honeypots?
Thank you for playing.... ;-)