stopping the spammers

Tannin

Storage? I am Storage!
Joined
Jan 15, 2002
Messages
4,448
Location
Huon Valley, Tasmania
Website
www.redhill.net.au
Doug, you probably know about this already, but just in case .... On one of the wikis I run, spam was a problem until I installed recaptcha - http://recaptcha.net/ - whick killed it stone dead. Free, good cause, very easy to use, recomended. If you want something to lock the bots out, this has worked for me. It even has a ready-made plug-in for Mediawiki, so I imagine getting it to work with vBulletin would be falling of a log easy.
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
Thanks Tony. I was looking at the vbulletin website and I believe the latest version now includes the actual reCaptcha code that you mentioned. I'll look into getting this installed soon. I don't know where this most recent flood of spammers is coming from. We had been fine for a while until the past couple days.
 

Tannin

Storage? I am Storage!
Joined
Jan 15, 2002
Messages
4,448
Location
Huon Valley, Tasmania
Website
www.redhill.net.au
Yeah, we seem to get waves of spam, followed by periods of quiet that last quite a while. I get the same on the sites I run. It's just whenever someone happens to write and distribute a new batch of bots, I guess.
 

ddrueding

Fixture
Joined
Feb 4, 2002
Messages
19,859
Location
Horsens, Denmark
Aren't there settings to prevent a users first post from including links or images? I think that would fix a big chunk of it.
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
I'll have to check, but I don't think the permissions are that granular. Just keep reporting them like you have been, it's been helping, so I thank you much.
 

udaman

Wannabe Storage Freak
Joined
Sep 20, 2006
Messages
1,209
I'll have to check, but I don't think the permissions are that granular. Just keep reporting them like you have been, it's been helping, so I thank you much.

Suggest you check with vB forums. I have seen another site @3.6.6? that probably is using another hack, after you reg, the 1st post most be approved by Admn, before it appears in a thread, you get an pop-up message that your post has been submitted for review by Admn.

Or you can use the one here, though the hacks seem to be buggy (didn't read all 15 pages):

Forbid Users from Posting Links or Images if They Have Fewer than 15 Posts
http://www.vbulletin.org/forum/showthread.php?t=96018


which I got to from here:
Restriction on newbie URL posting

http://www.vbulletin.org/forum/showthread.php?t=101346



Probably could PM the mod who posted the link and ask for any others known?
 

[Edit]

What is this storage?
Joined
Jun 30, 2007
Messages
30
Location
Cydonia
Patricia
Join Date: Feb 2008
Posts: 0

Re: Edit

---------------

Hi,
I'm new here, how's it going?

"Buddhism has the characteristics of what would be expected in a cosmic religion for the future: it transcends a personal God, avoids dogmas and theology; it covers both the natural & spiritual, and it is based on a religious sense aspiring from the experience of all things as a meaningful unity" - Albert Einstein

---
Patricia


Mmmmmmmmmmm! SPAM!!! I love the smell of SPAM in the morning. Well, not as much as the smell of napalm in the morning. But, otherwise, thanks for the free SPAM, Patricia!
 

DrunkenBastard

Storage is cool
Joined
Jan 21, 2002
Messages
775
Location
on the floor
We got a significant surge of "Russian Spam" in the last couple of days. Produced quite a burden on our anti-spam services/servers.
 

LunarMist

I can't believe I'm a Fixture
Joined
Feb 1, 2003
Messages
17,497
Location
USA
Perhaps I'm being paranoid, but lately there are many new members with suspicious names. ;)
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
Yes, and I go through them every few days to delete. None of them can post until I validate them, and none of them have contacted me to ask for permissions, so I'm not worried about it.
 

LunarMist

I can't believe I'm a Fixture
Joined
Feb 1, 2003
Messages
17,497
Location
USA
The names are sillier yet. The kids have nothing else to do? :)
 

udaman

Wannabe Storage Freak
Joined
Sep 20, 2006
Messages
1,209
The names are sillier yet. The kids have nothing else to do? :)

Otay!

U mean the spam bots... like.... "Edit", "Splash" "wavemaker" "discfarm"...etc, there was a rash of postings in rapid succession by those recently :D
 

LunarMist

I can't believe I'm a Fixture
Joined
Feb 1, 2003
Messages
17,497
Location
USA
There is a new member added seemingly every time I log it in.
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
They don't give up at all. I have all new registration moderated. I should just disable new registration.
 

ddrueding

Fixture
Joined
Feb 4, 2002
Messages
19,859
Location
Horsens, Denmark
They don't give up at all. I have all new registration moderated. I should just disable new registration.

Not entirely sure about that. Although it seems likely that we will get new members, or that those members will be a good match to our interactions, we could at least hold out some hope...
 

ddrueding

Fixture
Joined
Feb 4, 2002
Messages
19,859
Location
Horsens, Denmark
The spammers are relentless, but considering they can no longer post, we are safe from the storm. Imagine if every new user just make one post per forum...ick.
 

LunarMist

I can't believe I'm a Fixture
Joined
Feb 1, 2003
Messages
17,497
Location
USA
Have any legitimate prospective members been found recently or are they automatically rejected?
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
I give them a while (several weeks) before deleting them. There are a few like the one mentioned above that I do active when the PM me.
 

LunarMist

I can't believe I'm a Fixture
Joined
Feb 1, 2003
Messages
17,497
Location
USA
Hey, why do they continue? Now some ED treatment scammers... :p)
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
I purged that one. vbulletin 3.7 is now out with more spam-related functionality like reCAPTCHA. I'll upgrade and hopefully it'll reduce the number of spam accounts we get.
 

hacksaw

What is this storage?
Joined
Apr 7, 2008
Messages
10
Hey, I'm real, and I'm not a spammer!

I'm getting flooded with spammy email lately though. It's gone through the roof in the past couple of days.
 

ddrueding

Fixture
Joined
Feb 4, 2002
Messages
19,859
Location
Horsens, Denmark
I use Google to host the mail for my domain, so I have no idea how much SPAM comes in. I actually get about one a month, Google's SPAM filter is the best in the world IMHO.
 

LunarMist

I can't believe I'm a Fixture
Joined
Feb 1, 2003
Messages
17,497
Location
USA
It appears that the spammers have returned to SF. Are they are creating accounts manually or is there a bot exploit?
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
Could be automated now. Most were manual because of the way the signup process makes you answer simple random questions. Perhaps they've figured out the questions and answers now, so I'll just change the questions.
 

Bozo

Storage? I am Storage!
Joined
Feb 12, 2002
Messages
4,396
Location
Twilight Zone
On some sites, you must copy some letters and/or numbers into a box. These letters/numbers are hard to read and change with each register.
Would that help here?
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
On some sites, you must copy some letters and/or numbers into a box. These letters/numbers are hard to read and change with each register.
Would that help here?

It used to help (CAPCHA) and we used to use it, but was easily broke a while ago. I stopped using it and have tried other things to stop automated systems from getting through so easily.
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
I've been using this stop forum spam website to reference the e-mail addresses that have been coming in. It's a handy tool and they offer an API with it. I'd like to integrate it with the forum to check the registering e-mail address before allowing them an account.
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
The spam has been immense lately for some unknown reason. I've deleted at least 75 new registrations and a multitude of spam posts that many of you have reported to me.

I've disabled new registration for the time being until I can figure out a better solution.
 

jtr1962

Storage? I am Storage!
Joined
Jan 25, 2002
Messages
4,469
Location
Flushing, New York
This might be of help. Spamming was a problem on CPF until the new policy was put into effect. Specifically, here's what was done:

In an effort to reduce spam in the forums by new members who only register in order to post spam, restrictions have been imposed on all new registrations.

1) The first 2 (two) posts that a new member makes (regardless of registration date) are put into a moderation queue before being posted in the open forums. A CPF moderator or administrator then reviews the post and the user account for validity and suitability. If the post is nothing but spam, the account is immediately banned and the post never sees the light of day in the forums. If the post is not spam, it is approved and shows up where it was intended to be posted. After 2 posts have been approved by a member of the CPF staff, the 3rd post will not need moderation and the user account is "promoted" to full posting privileges.

2) Until a new user account has been approved and vetted in the above manner, the account has NO private message privileges. Again, this is due to new users registering for spamming purposes only. They use the PM system without ever making a post in the forums. As with above, once the new member has posted 2 posts and the account has been approved and vetted, full board privileges are instated.
 

Handruin

Administrator
Joined
Jan 13, 2002
Messages
13,964
Location
USA
That is a possibility, but we lack the high volume readership that they have in order to manage the moderation. Have they mentioned any specific modifications to vbulletin for spam management? I didn't see any specifics in the post you linked to, but if you could find out, I could try implementing them here.
 
Top