Help - Search - Members - Calendar
Full Version: Web Bugs - Invisible Privacy Threats
B.I.S.S. Forums > Internet Security Forum > Internet Security Discussion
Moore
Thanks to Minoka from the Outpost forum for the links to these web bug reports cool.gif

You can view the most current reports from this page/link below, just click on web bug reports in the free reports list section :

http://www.securityspace.com/s_survey/data/index.html

################################################################

Web Bug Report

################################################################

Report Description

The Web Bug Report documents the usage of web bugs on the internet.

What are web bugs?

QUOTE
They are objects (images, iframes, etc.) that are imbedded on a web site that cause part of the web page to be retrieved from a completely different web site.

In the process, this second web site gets to know that you visited the original web site. The most common web bugs are banner ads. Advertising agencies that have banner ads placed on a web site know pretty much all traffic that the web site gets.


Are Web Bugs Bad?

There isn't a clear answer to this question. To some people, they are. Others don't care.

The issue is the potential abuse of information: the placement of a web bug on a page allows the "bugger" (e.g. the site hosting the banner ad) to know your IP address, the page that you visited, and can even further be correlated to cookie information that may be sent by your browser as part of the request to retrieve the page.

QUOTE
A Web bug is a graphic on a Web page or in an Email message that is designed to monitor who is reading the Web page or Email message.
Web bugs are often invisible because they are typically only 1-by-1 pixel in size.
They are represented as HTML IMG tags.

What information is sent to a server when a Web bug is viewed?

The IP address of the computer that fetched the Web bug
The URL of the page that the Web bug is located on
The URL of the Web bug image
The time the Web bug was viewed
The type of browser that fetched the Web bug image
A previously set cookie value


http://www.privacyfoundation.org/resources/webbug.asp
http://www.cyberspyder.com/webbug.html

The Reports

We publish two different web bug reports, each showing slightly different information.

Bugged Site Count
This report counts the number of sites that have web bugs, identifies the domains doing the "bugging" (we'll call them "buggers"), and then orders the buggers in the report so that the biggest offenders show up at the top of the list.

#################################################################

Web Bug Site Count Report

#################################################################


Understanding The Report

The table in this report illustrates the top 100 web sites that are benefiting from web bugs.
This is based on a sample of 8036068 pages retrieved from 924391 different sites.

The reader should note the following

Domain: We track the domain doing the bugging, not the site. In this way, if sites A and sites B had, as an example, images served from banner ad servers called host_1.somedomain.com and host_2.somedomain.com, the domain somedomain.com will be credited with having bugged two different sites.

Sites: Sites are the number of unique sites that were found to have a web bug placed on them referencing the domain. The values are based on a sample size of 924391 sites.

Type of Bugs: In this column, we list all the different tag types that were found referencing the specified domain. The percentage represents the number of bugged sites that use the specified tag. Since a single site may use multiple tags, these percentages can and often do exceed 100%.

Domain Sites Types of Bugs :

googlesyndication.com 16822 (1.8%) script[99.3%], img[41.2%], s[0.7%], br[0.0%], c4[0.0%], iframe[0.0%]
qksrv.net 14868 (1.6%) img[99.8%], frame[0.4%], iframe[0.1%], script[0.0%], bd[0.0%]
amazon.com 11604 (1.3%) iframe[14.0%], img[95.8%], input[53.7%], script[9.4%], frame[0.1%], image[0.1%], i[0.1%], im[0.0%], s[0.0%], ximg[0.0%], 17f6[0.0%], embed[0.0%], area[0.0%], cursive[0.0%]
doubleclick.net 11303 (1.2%) iframe[45.4%], script[27.5%], img[81.8%], layer[3.3%], frame[0.1%], ifra[0.0%], ilayer[0.1%], s[0.1%], cd8[0.0%], 9c2[0.0%], div[0.0%], embed[0.0%]
linksynergy.com 10477 (1.1%) img[99.5%], frame[0.3%], script[0.3%], iframe[0.0%], a[0.0%], input[0.0%], font[0.0%]
bfast.com 10097 (1.1%) img[98.6%], script[4.2%], iframe[1.1%], frame[0.3%], s[0.0%], a[0.0%], input[0.0%], table[0.0%], im[0.0%]
yimg.com 8790 (1.0%) img[96.1%], input[2.5%], script[3.2%], 1000[0.0%], image[0.0%], a[0.0%], embed[0.0%]
extreme-dm.com 8118 (0.9%) img[100.0%], a[0.0%]
nedstatbasic.net 6614 (0.7%) script[77.3%], img[34.4%], s[0.5%], frame[0.0%], iframe[0.0%], im[0.0%]
newclick.net 6610 (0.7%) img[100.0%]
akamai.net 6379 (0.7%) img[97.4%], script[53.5%], iframe[28.1%], input[5.9%], i[0.8%], a6d[0.7%], 81f[0.0%], embed[0.3%], im[0.2%], font[0.0%], a[0.0%], 72c[0.0%], 22d2[0.0%], c7d[0.0%]
sitemeter.com 6369 (0.7%) script[78.3%], img[96.8%], s[0.6%], frame[0.0%]
powells.com 5910 (0.6%) img[99.9%], input[99.8%]
mircx.com 5908 (0.6%) frame[100.0%], iframe[0.0%], script[0.0%], img[0.0%]
fast.net 5900 (0.6%) img[100.0%]
mentalfloss.com 5892 (0.6%) img[100.0%]
abebooks.com 5887 (0.6%) input[99.9%], img[99.9%], frame[0.1%], script[0.0%]
chinaberry.com 5876 (0.6%) img[100.0%], input[100.0%]
bookcrossing.com 5876 (0.6%) embed[99.7%], img[100.0%]
deviantart.com 5618 (0.6%) script[99.2%], img[100.0%], iframe[99.2%], im[1.0%], b50[0.1%], i[1.2%], 5a8[0.5%], 1ed1[0.0%], e9e[0.0%], 1933[0.0%], 1f8d[0.0%], 1cb2[0.0%], scr[0.0%], 2000[0.1%], sc[0.0%], 1df7[0.0%], a[0.1%], 1ea3[0.0%], frame[0.0%], 17de[0.0%], scrip[0.0%], 18c4[0.0%]
211.239.159.7 5511 (0.6%) script[100.0%], s[0.0%]
213.130.62.6 5403 (0.6%) img[100.0%]
69.20.34.42 5387 (0.6%) script[100.0%]
oingo.com 5235 (0.6%) frame[80.8%], iframe[15.1%], layer[4.1%], img[0.0%], input[0.0%]
myareaguide.com 5082 (0.5%) img[100.0%], input[98.6%], script[25.6%], in[0.0%], i[0.0%]
rambler.ru 5024 (0.5%) img[99.9%], iframe[0.3%], ximg[0.0%], im[0.0%], embed[0.1%], script[0.1%], input[0.0%], frame[0.0%]
mortgage101.com 4976 (0.5%) script[97.2%], frame[1.6%], iframe[0.8%], img[0.4%]
eventinventory.com 4907 (0.5%) script[99.6%], frame[0.3%], iframe[0.1%], img[0.1%]
westernunion.com 4880 (0.5%) img[100.0%]
webbanners.net 4841 (0.5%) img[100.0%]
citiesunlimited.com 4840 (0.5%) img[100.0%], iframe[99.9%], script[32.4%], ifram[0.0%]
vogon-data-recovery.com 4797 (0.5%) img[100.0%]
yahoo.com 4698 (0.5%) img[72.2%], input[11.0%], script[15.2%], frame[4.2%], image[0.1%], iframe[0.5%], embed[0.2%], body[0.0%], bgsound[0.0%], s[0.0%], undef_script[0.0%]
bravenet.com 4674 (0.5%) img[70.4%], script[60.5%], frame[0.4%], input[0.0%], iframe[0.1%], a[0.0%], s[0.1%], p[0.0%]
list.ru 4421 (0.5%) img[100.0%], ximg[0.0%], frame[0.0%]
yandex.ru 4416 (0.5%) img[57.8%], script[68.3%], embed[13.5%], frame[0.2%], iframe[0.3%]
spylog.com 4403 (0.5%) img[100.0%], script[1.3%], s[0.0%]
google.com 4348 (0.5%) img[99.4%], frame[0.3%], input[0.1%], image[0.0%], iframe[0.1%], a[0.0%], i[0.0%], imd[0.0%]
lycos.com 4185 (0.5%) layer[77.1%], script[9.3%], img[26.7%], frame[0.5%], input[0.6%], iframe[0.1%], s[0.0%]
naver.com 4094 (0.4%) img[98.8%], frame[0.9%], iframe[0.5%], input[0.6%], script[0.3%], embed[0.1%], bgsound[0.0%]
yahoo.co.kr 4049 (0.4%) img[100.0%], input[0.1%], script[0.1%], frame[0.1%]
hanmail.net 4025 (0.4%) img[100.0%], embed[0.0%], input[0.1%]
empas.com 4025 (0.4%) img[100.0%], iframe[0.1%], input[0.0%], script[0.0%]
nate.com 4020 (0.4%) img[99.9%], script[0.2%], iframe[0.1%], i[0.0%], im[0.0%], frame[0.0%]
servicemagic.com 3973 (0.4%) img[99.9%], script[1.6%], input[1.6%], frame[0.1%]
gemius.pl 3946 (0.4%) script[98.2%], img[2.9%], s[0.2%]
wunderground.com 3717 (0.4%) img[99.4%], frame[0.7%], iframe[0.1%], image[0.0%], i[0.0%], adv[0.0%], script[0.1%], font[0.0%], input[0.1%], a[0.0%]
bcentral.com 3610 (0.4%) img[96.3%], input[4.3%], script[1.4%], frame[0.1%]
blogger.com 3556 (0.4%) img[99.7%], script[2.8%]
blog.pl 3446 (0.4%) img[99.6%], frame[0.4%], iframe[0.0%]
geocities.com 3396 (0.4%) img[36.4%], frame[60.9%], script[3.7%], iframe[0.2%], embed[1.1%], bgsound[0.4%], dimg[0.0%], image[0.0%], a[0.1%], table[0.0%]
linkexchange.com 3360 (0.4%) iframe[63.2%], img[97.2%], br[0.0%], im[0.0%], ifr[0.0%], i[0.0%], frame[0.0%], p[0.0%]
65.77.210.11 3322 (0.4%) img[100.0%]
homestead.com 3280 (0.4%) img[92.0%], frame[7.9%], script[32.0%], input[1.6%], embed[0.4%], iframe[0.2%], bgsound[0.1%]
blogblog.com 3225 (0.3%) img[100.0%]
jungdn.com 3141 (0.3%) img[100.0%]
paypal.com 3051 (0.3%) input[36.7%], img[68.0%], image[0.1%], mg[0.0%], a[0.0%]
aboutwebservices.com 3001 (0.3%) iframe[100.0%], img[0.1%], if[0.0%], 1000[0.0%]
hotlog.ru 2953 (0.3%) img[100.0%], script[1.9%], input[0.1%], embed[0.0%]
hitbox.com 2788 (0.3%) script[27.5%], img[87.2%], iframe[2.4%], input[0.3%], a[0.0%], frame[0.0%]
x10.com 2787 (0.3%) img[93.0%], script[7.0%]
foreclosureworld.net 2763 (0.3%) img[100.0%]
monster.com 2744 (0.3%) img[100.0%], iframe[1.4%], script[1.8%], input[0.5%], embed[0.1%], frame[0.0%]
gospelcom.net 2710 (0.3%) img[99.7%], script[0.3%], bgsound[0.0%], frame[0.1%]
tripod.com 2676 (0.3%) frame[18.5%], img[79.1%], bgsound[0.2%], script[2.3%], input[2.7%], image[0.1%], embed[0.8%], iframe[0.0%]
hardhathosting.com 2659 (0.3%) img[100.0%], input[100.0%]
66.216.68.97 2647 (0.3%) script[100.0%]
qsrch.com 2642 (0.3%) iframe[99.4%], img[0.6%], frame[0.0%]
roommates.com 2631 (0.3%) img[99.7%], iframe[0.3%]
friendtofriend.com 2623 (0.3%) img[100.0%]
mediatrends.net 2620 (0.3%) img[100.0%]
pathwayhosting.com 2615 (0.3%) embed[100.0%], img[100.0%]
supermedia.pl 2367 (0.3%) img[99.9%], script[0.3%], iframe[0.5%], s[0.1%], frame[0.0%], defanged_script[0.0%]
weather.com 2335 (0.3%) input[43.1%], img[55.9%], script[34.8%], frame[4.2%], s[0.4%], iframe[0.3%], embed[0.0%]
cliff1976.com 2106 (0.2%) img[93.0%], iframe[13.2%]
digits.com 2060 (0.2%) img[99.9%], input[0.0%], frame[0.0%]
moreover.com 1880 (0.2%) script[97.7%], img[58.4%], s[0.5%], input[1.3%], frame[0.1%], iframe[0.2%], scri[0.1%]
infoseek.co.jp 1879 (0.2%) img[99.2%], input[78.8%], script[16.9%], embed[3.7%], frame[0.3%], a[0.1%], bgsound[0.1%]
creditsoup.com 1822 (0.2%) img[100.0%]
e-net.net 1766 (0.2%) img[100.0%]
hostingprod.com 1745 (0.2%) script[99.9%], img[0.1%], frame[0.1%], iframe[0.1%]
images.myareaguide.co 1728 (0.2%) img[100.0%]
superstats.com 1721 (0.2%) script[98.0%], img[81.9%], s[0.1%], comment[0.1%]
xiti.com 1699 (0.2%) img[100.0%]
123student.com 1653 (0.2%) iframe[100.0%]
shinystat.it 1616 (0.2%) script[92.0%], img[94.4%], s[0.5%], font[0.1%]
61.100.14.144 1603 (0.2%) img[100.0%]
domainsponsor.com 1591 (0.2%) frame[95.0%], iframe[5.0%]
tradedoubler.com 1562 (0.2%) img[68.8%], iframe[16.1%], script[42.8%], frame[0.3%], scr[0.1%], s[0.4%], input[0.1%]
expedia.com 1546 (0.2%) img[99.3%], script[1.3%], input[0.1%]
free.fr 1503 (0.2%) frame[31.2%], img[67.5%], script[2.6%], iframe[0.7%], s[0.1%], input[0.3%], embed[4.5%], bgsound[0.4%]
asian-asian.com 1469 (0.2%) script[100.0%]
innfo.com 1425 (0.2%) img[100.0%]
infospace.com 1409 (0.2%) img[99.4%], iframe[0.5%], script[0.4%], input[0.3%], frame[0.1%]
cu2day.nl 1385 (0.1%) frame[100.0%]
areaguide.net 1366 (0.1%) img[100.0%]
163.com 1363 (0.1%) img[9.9%], script[92.3%], input[4.5%], iframe[4.2%], embed[3.3%], frame[0.7%], bgsound[0.1%]
interia.pl 1357 (0.1%) img[90.5%], frame[7.4%], script[35.2%], bgsound[2.8%], embed[1.7%], iframe[0.2%], input[0.2%]
medem.com 1310 (0.1%) img[99.9%], frame[0.1%]
everyone.net 1250 (0.1%) script[86.6%], img[85.4%], iframe[50.7%], frame[3.0%]


################################################################

Web Bug Traffic Count Report

################################################################
March 1st, 2004

Understanding The Report

The table in this report illustrates the top 100 web sites that are benefiting from web bugs.
This is based on a sample of 8036068 pages retrieved from 924391 different sites.

The reader should note the following

Domain: We track the domain doing the bugging, not the site. In this way, if sites A and sites B had, as an example, images served from banner ad servers called host_1.somedomain.com and host_2.somedomain.com, the domain somedomain.com will be credited with having bugged two different sites.

Relative Traffic Weight: This is a cumulative sum of the weight of each bugged site. The weight of a bugged site originates from our referral report, and is a measure of how authorative a site is, based on the number of other sites that link to it. The idea is that the more authorative a site is, the more traffic it has. By calculating the cumulative sum of weights, we come much closer to ranking "buggers" by the amount of traffic they have bugged. This should have the effect of elevating the rank of buggers that focus on high traffic sites.

Type of Bugs: In this column, we list all the different tag types that were found referencing the specified domain. The percentage represents the number of bugged sites that use the specified tag. Since a single site may use multiple tags, these percentages can and often do exceed 100%.

Domain Relative Traffic Weight Types of Bugs
newclick.net 89024 img[100.0%]
googlesyndication.com 49051 script[99.3%], img[41.2%], s[0.7%], br[0.0%], c4[0.0%], iframe[0.0%]
doubleclick.net 44465 iframe[45.4%], script[27.5%], img[81.8%], layer[3.3%], frame[0.1%], ifra[0.0%], ilayer[0.1%], s[0.1%], cd8[0.0%], 9c2[0.0%], div[0.0%], embed[0.0%]
qksrv.net 31990 img[99.8%], frame[0.4%], iframe[0.1%], script[0.0%], bd[0.0%]
bfast.com 29199 img[98.6%], script[4.2%], iframe[1.1%], frame[0.3%], s[0.0%], a[0.0%], input[0.0%], table[0.0%], im[0.0%]
linksynergy.com 27634 img[99.5%], frame[0.3%], script[0.3%], iframe[0.0%], a[0.0%], input[0.0%], font[0.0%]
amazon.com 24987 iframe[14.0%], img[95.8%], input[53.7%], script[9.4%], frame[0.1%], image[0.1%], i[0.1%], im[0.0%], s[0.0%], ximg[0.0%], 17f6[0.0%], embed[0.0%], area[0.0%], cursive[0.0%]
extreme-dm.com 21037 img[100.0%], a[0.0%]
211.239.159.7 18836 script[100.0%], s[0.0%]
akamai.net 18337 img[97.4%], script[53.5%], iframe[28.1%], input[5.9%], i[0.8%], a6d[0.7%], 81f[0.0%], embed[0.3%], im[0.2%], font[0.0%], a[0.0%], 72c[0.0%], 22d2[0.0%], c7d[0.0%]
oingo.com 17680 frame[80.8%], iframe[15.1%], layer[4.1%], img[0.0%], input[0.0%]
currentconditions.com 16843 img[100.0%]
yimg.com 16738 img[96.1%], input[2.5%], script[3.2%], 1000[0.0%], image[0.0%], a[0.0%], embed[0.0%]
pinkyahoo.com 15867 img[100.0%]
myareaguide.com 15309 img[100.0%], input[98.6%], script[25.6%], in[0.0%], i[0.0%]
mortgage101.com 14802 script[97.2%], frame[1.6%], iframe[0.8%], img[0.4%]
eventinventory.com 14754 script[99.6%], frame[0.3%], iframe[0.1%], img[0.1%]
westernunion.com 14737 img[100.0%]
webbanners.net 14634 img[100.0%]
citiesunlimited.com 14633 img[100.0%], iframe[99.9%], script[32.4%], ifram[0.0%]
realsearch.com 14626 img[100.0%]
vogon-data-recovery.com 14590 img[100.0%]
nedstatbasic.net 14512 script[77.3%], img[34.4%], s[0.5%], frame[0.0%], iframe[0.0%], im[0.0%]
asian-asian.com 14124 script[100.0%]
servicemagic.com 13918 img[99.9%], script[1.6%], input[1.6%], frame[0.1%]
65.77.210.11 13115 img[100.0%]
foreclosureworld.net 12769 img[100.0%]
google.com 12769 img[99.4%], frame[0.3%], input[0.1%], image[0.0%], iframe[0.1%], a[0.0%], i[0.0%], imd[0.0%]
x10.com 12717 img[93.0%], script[7.0%]
deviantart.com 12554 script[99.2%], img[100.0%], iframe[99.2%], im[1.0%], b50[0.1%], i[1.2%], 5a8[0.5%], 1ed1[0.0%], e9e[0.0%], 1933[0.0%], 1f8d[0.0%], 1cb2[0.0%], scr[0.0%], 2000[0.1%], sc[0.0%], 1df7[0.0%], a[0.1%], 1ea3[0.0%], frame[0.0%], 17de[0.0%], scrip[0.0%], 18c4[0.0%]
monster.com 12537 img[100.0%], iframe[1.4%], script[1.8%], input[0.5%], embed[0.1%], frame[0.0%]
gospelcom.net 12535 img[99.7%], script[0.3%], bgsound[0.0%], frame[0.1%]
roommates.com 12327 img[99.7%], iframe[0.3%]
qsrch.com 12290 iframe[99.4%], img[0.6%], frame[0.0%]
friendtofriend.com 12271 img[100.0%]
mediatrends.net 12268 img[100.0%]
pathwayhosting.com 12263 embed[100.0%], img[100.0%]
pinkcount.com 11264 img[100.0%]
yahoo.com 10714 img[72.2%], input[11.0%], script[15.2%], frame[4.2%], image[0.1%], iframe[0.5%], embed[0.2%], body[0.0%], bgsound[0.0%], s[0.0%], undef_script[0.0%]
hardhathosting.com 10521 img[100.0%], input[100.0%]
sitemeter.com 10126 script[78.3%], img[96.8%], s[0.6%], frame[0.0%]
innfo.com 10098 img[100.0%]
tradedoubler.com 9949 img[68.8%], iframe[16.1%], script[42.8%], frame[0.3%], scr[0.1%], s[0.4%], input[0.1%]
hitbox.com 9885 script[27.5%], img[87.2%], iframe[2.4%], input[0.3%], a[0.0%], frame[0.0%]
springstreetnetworks.com 9782 script[90.0%], img[27.5%], embed[17.5%], iframe[5.0%]
pinkyakuza.com 9709 img[99.8%], embed[0.6%]
kansas-real-estate.org 9408 img[100.0%]
powells.com 9117 img[99.9%], input[99.8%]
fast.net 9010 img[100.0%]
mentalfloss.com 8980 img[100.0%]
abebooks.com 8975 input[99.9%], img[99.9%], frame[0.1%], script[0.0%]
chinaberry.com 8964 img[100.0%], input[100.0%]
rambler.ru 8553 img[99.9%], iframe[0.3%], ximg[0.0%], im[0.0%], embed[0.1%], script[0.1%], input[0.0%], frame[0.0%]
xiti.com 7985 img[100.0%]
humanclick.com 7968 script[87.6%], s[0.5%], img[40.3%], zscript[0.1%]
yahoo.co.kr 7653 img[100.0%], input[0.1%], script[0.1%], frame[0.1%]
pink-tv.com 7536 img[100.0%], input[1.1%]
naver.com 7523 img[98.8%], frame[0.9%], iframe[0.5%], input[0.6%], script[0.3%], embed[0.1%], bgsound[0.0%]
inavang.com 7366 img[100.0%]
list.ru 7334 img[100.0%], ximg[0.0%], frame[0.0%]
empas.com 7285 img[100.0%], iframe[0.1%], input[0.0%], script[0.0%]
hanmail.net 7280 img[100.0%], embed[0.0%], input[0.1%]
nate.com 7270 img[99.9%], script[0.2%], iframe[0.1%], i[0.0%], im[0.0%], frame[0.0%]
japanbanner.com 7020 img[100.0%]
spylog.com 6912 img[100.0%], script[1.3%], s[0.0%]
tengoku.net 6791 img[100.0%]
wunderground.com 6773 img[99.4%], frame[0.7%], iframe[0.1%], image[0.0%], i[0.0%], adv[0.0%], script[0.1%], font[0.0%], input[0.1%], a[0.0%]
linkexchange.com 6596 iframe[63.2%], img[97.2%], br[0.0%], im[0.0%], ifr[0.0%], i[0.0%], frame[0.0%], p[0.0%]
bravenet.com 6304 img[70.4%], script[60.5%], frame[0.4%], input[0.0%], iframe[0.1%], a[0.0%], s[0.1%], p[0.0%]
213.130.62.6 6185 img[100.0%]
69.20.34.42 6164 script[100.0%]
advance.net 6109 img[84.6%], input[15.4%], iframe[15.4%], frame[7.7%], script[38.5%], embed[15.4%]
bookcrossing.com 5975 embed[99.7%], img[100.0%]
mircx.com 5968 frame[100.0%], iframe[0.0%], script[0.0%], img[0.0%]
tripod.com 5861 frame[18.5%], img[79.1%], bgsound[0.2%], script[2.3%], input[2.7%], image[0.1%], embed[0.8%], iframe[0.0%]
yandex.ru 5764 img[57.8%], script[68.3%], embed[13.5%], frame[0.2%], iframe[0.3%]
images.myareaguide.co 5731 img[100.0%]
gemius.pl 5617 script[98.2%], img[2.9%], s[0.2%]
abcinternational.com.pl 5539 img[100.0%]
lygo.com 5527 input[64.0%], img[70.4%], script[1.6%]
allegro.pl 5485 img[99.7%], frame[0.3%]
dvdshop.pl 5384 img[100.0%]
superstats.com 5363 script[98.0%], img[81.9%], s[0.1%], comment[0.1%]
pink-kink.com 5327 img[100.0%]
of.pl 5265 img[82.4%], frame[15.1%], bgsound[1.1%], iframe[0.7%], script[1.4%]
xo.pl 5120 img[97.1%], frame[2.3%], bgsound[0.6%], script[0.6%]
paypal.com 5100 input[36.7%], img[68.0%], image[0.1%], mg[0.0%], a[0.0%]
polki-amatorki.pl 5082 img[100.0%]
pornoworld.pl 5082 img[99.3%], embed[99.3%], iframe[1.3%]
naildesign.pl 5081 script[100.0%]
sonderposten.pl 5080 embed[100.0%]
poroworld.pl 5080 img[100.0%]
bcentral.com 4959 img[96.3%], input[4.3%], script[1.4%], frame[0.1%]
hotlog.ru 4831 img[100.0%], script[1.9%], input[0.1%], embed[0.0%]
lycos.com 4712 layer[77.1%], script[9.3%], img[26.7%], frame[0.5%], input[0.6%], iframe[0.1%], s[0.0%]
blogger.com 4689 img[99.7%], script[2.8%]
emailpink.com 4685 img[100.0%]
pinknavi.com 4561 img[100.0%]
asian3p.com 4534 iframe[100.0%]
blog.pl 4514 img[99.6%], frame[0.4%], iframe[0.0%]


########################################################################
GuruGuru
wink.gif
So how do we go about blocking these ?
It it a simple HOSTS file addition or something else unsure.gif
Moore
the sites that are simply ad-servers i block by IP and HOSTS file and a .PAC file would be good also.

larger sites with tons of ips and cross site domains that you want to visit like yahoo and hotmail etc may have to be filtered individually i guess, you can block the 1x1 IMG webbugs with a firewall that has active content filtering like outpost or tools like admuncher or proxomitron / webwasher.

and if anyone else has other ways let us know, please lol. biggrin.gif
r00ted
QUOTE (GuruGuru @ Mar 31 2004, 06:01 AM)
wink.gif
So how do we go about blocking these ?
It it a simple HOSTS file addition or something else unsure.gif

yep, some of those domain names mentioned are actually already in the HOSTS file tongue.gif I've been keeping my IE and Mozilla browsers on a "prompt" access, for cookie control. Usually this will it will alert me if theres any 1x1 img bugs on the page. hehe.
coq
A bit late on posting but maybe it will help someone.

While trying to enter a File Transfer Server site, my FireFox wheel indicating connection activity kept turning without further progress. Looking at the address bar at the bottom, GoogleSyndication was showing, even after stopping and starting the transfer.

GoogleSyndication was then blocked in my Host file and in Protowall. Poof, no more waiting for the File Transfer Server site to appear and work.

All cookies are blocked in the Cooky option of FireFox, excepting those I place in the Exclusive option.

I now have experienced the problem of "Web bugs" and it is not a small one.

May I suggest blocking all cookies and adding those you need in the "Exclusive list of cookies". If your connection time seems longer than required, look at the address bar when entering a site for deviations of that address to other leeching sites. Note the name and find the IP; following with an entry into Protowall and/or Host file.

GoogleSyndication IP was introduced into the General IP blocks from Bluetack at a later date. Fine find, members of Bluetack! grin.gif

Hope this enlivens this topic, as it is important IMHO.
Moore
Latest web bug reports:
http://www.securityspace.com/s_survey/data...ebbug_site.html

Google is still winning biggrin.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2012 Invision Power Services, Inc.