Go Back   vb.org Archive > vBulletin 3 Discussion > vB3 General Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 08-25-2006, 12:47 AM
Webdude? Webdude? is offline
 
Join Date: Jan 2002
Posts: 48
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Someone getting ready to mass forum spam??

On my forums I am noticing a lot of new signups. However, they never post. For example, search the username "neabyzteplz" in Google. Something like 13,000 and all forum usernames, same with these other names. So I think someone is messing around, about to do a TON of massive spam on forums all across the internet all at once. Once you have a list of various usernames and passwords from forums all over, it would be easy enough to write scripts to go about this several ways.

Maybe this has already been noticed and some sort of counter-measure hack released... I dont know. The only thing I can think of that would prevent it is an image verification to submit posts. Anything like that already written?
Reply With Quote
  #2  
Old 08-25-2006, 01:17 AM
Phaedrus Phaedrus is offline
 
Join Date: Jul 2006
Location: Colorado
Posts: 617
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I believe that they are adds for the home pages that are listed for those "users"... They are like spambots but not quite. They are made to create the user with the home page and nothing else.
Reply With Quote
  #3  
Old 08-25-2006, 01:22 AM
Webdude? Webdude? is offline
 
Join Date: Jan 2002
Posts: 48
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Nope, soon as I got your reply via email, I checked a number of them. No homepages in their profiles.
Reply With Quote
  #4  
Old 08-25-2006, 01:59 AM
Phaedrus Phaedrus is offline
 
Join Date: Jul 2006
Location: Colorado
Posts: 617
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Hmmm... They always had them in the other site that I used to be at before I created my own. I haven't had any of these yet...
Reply With Quote
  #5  
Old 08-25-2006, 07:18 AM
mambo9 mambo9 is offline
 
Join Date: Apr 2006
Posts: 5
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

their onto my site as well,

lot of new 0 post users.

Some of the names have started to spam now, but a lot of the names are just idling.


Cant we do anything about theese rats?


Edit:

As a final crackdown on them we might use

https://vborg.vbsupport.ru/showthread.php?t=109258

But i believe the dammage would already have been done
Reply With Quote
  #6  
Old 08-25-2006, 07:28 PM
Torqued Torqued is offline
 
Join Date: Oct 2004
Location: Houston, TX
Posts: 180
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I periodically will run usernames and emails of new registrations to my site through google. I've caught a few spammers that way.

The SpamBuster addon is great, BUT...

You still have to go in and clean up all the moderated SPAM messages.

What we *really* need is a way to stop messages from being posted at all if they have spam terms in them. I've been "archiving" most of the spam that I've been getting, and if we had a separate "censored words" list that would block the message from posting instead of just *'ing out the words, it would eliminate over 95% of the post spam that I'm getting.

As I get new spam, I add the obvious keywords that would not be used on my forums as well as the domain names to my censored words list. I'm finding that I'm getting fewer and fewer spam messages posted that don't have at least one of the censored words in the message. If only I could simply block those messages from being posted at all!!

I've made the above suggestion in the SpamBuster thread as well as over at vBulletin.com (here and here)

I think this type of functionality would really make a significant dent in both bot and person posted spam.
Reply With Quote
  #7  
Old 08-25-2006, 07:38 PM
tracylee tracylee is offline
 
Join Date: May 2004
Posts: 27
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I use an extreme measure because so many of our members were ignoring the rules altogether and causing trouble.

I have a phpESP survey set up as a quick 10-question quiz, also asking for registered username and password. The link and explanation go out on the user registration confirmation e-mail. The results of the quiz are the forwarded to 4 of us on the admin/super-mod team to review and approve or not. If approved, the user is moved to a group with posting permissions.

Yes, it takes more time, but we have a very active group of people who know what we allow and what we don't allow.

It's just too much work for most spammers to go through.
Reply With Quote
  #8  
Old 08-25-2006, 09:12 PM
Webdude? Webdude? is offline
 
Join Date: Jan 2002
Posts: 48
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Well as I stated before, simply having a image verification to post a reply should be sufficient, right? I dont want to have to do that, but if someone builds that hack, I will probably add it.
Reply With Quote
  #9  
Old 08-25-2006, 10:16 PM
davidw's Avatar
davidw davidw is offline
 
Join Date: Jul 2005
Location: Arkansas
Posts: 2,815
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

This hack works pretty well - https://vborg.vbsupport.ru/showthread.php?t=96018
Most spammers I've seen hit a couple other forums I frequent never get to the posting part because of this hack. I even set the minimum down to 3 on one site and 5 on another and it works great. It allows legitimate posters the chance to prove themselves, but that's my opinion. Yes it does work on 3.6 (for those reading and wondering).
Reply With Quote
  #10  
Old 09-06-2006, 06:28 AM
ThatSnowGuy ThatSnowGuy is offline
 
Join Date: Nov 2003
Posts: 3
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

They are just starting to register on my site, and two of my friends sites as well. I am moderating all new members to stop them. Not that hard considering my site is industry specific. One of the problems we came across is that they are registering the same username twice, with the same e mail address, and registration IP address. We have our forums set to not allow multiple usernames, yet they some how get through that. Also, it took a few days, but they have all done the e mail validation. And one last thing, for some odd reason, they are all registering with the birthdate January, 1, 1980. None of them list a home page in their profile....

~Chuck
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 03:31 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.05409 seconds
  • Memory Usage 2,255KB
  • Queries Executed 13 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (1)pagenav_pagelink
  • (10)post_thanks_box
  • (10)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (10)post_thanks_postbit_info
  • (10)postbit
  • (10)postbit_onlinestatus
  • (10)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete