Welcome, Guest. Please login or register.

Author Topic: Spam being received in PM form.  (Read 4480 times)

Description:

0 Members and 1 Guest are viewing this topic.

Offline SystemTopic starter

  • Full Member
  • ***
  • Join Date: Jul 2003
  • Posts: 199
    • Show only replies by System
    • http://amiga.org
Spam being received in PM form.
« on: July 15, 2004, 09:48:44 PM »
Logic forms to follow that it was inevitable that we've received the first real complaints of spam sent via Private Message.  Accordingly, the "glad225" account (which was established today and instantly started sending spam PM's) was deleted and all the PM's they ever sent were removed from the system.

Personally speaking, I am rather frustrated over this new development, because unlike some other CMS systems, Xoops 2.x has yet to put in the anti-bot verifications to keep this type thing from happening.

We will be watching new registrations carefully, and will not hesitate to remove bogus accounts (and ban their IP) in the future.  Should this problem accelerate, we have very few options left to us other than to move to another, more secure content management system, or to hire a developer to add protections to the current system.  Neither of which are really feasible right now....

Suggestions, or nuclear weapons, would be appreciated.

Wayne
 

Offline alx

Re: Spam being received in PM form.
« Reply #1 on: July 15, 2004, 10:10:37 PM »
Is there some site where you can post the IP so other webmasters can block it?  If not, you could always set up your own...

Offline minator

  • Hero Member
  • *****
  • Join Date: Jan 2003
  • Posts: 592
    • Show only replies by minator
    • http://www.blachford.info
Re: Spam being received in PM form.
« Reply #2 on: July 15, 2004, 10:42:15 PM »
Quote
Suggestions, or nuclear weapons, would be appreciated.


Will this do  :-D
 

Offline cecilia

  • Amiga Snob
  • Hero Member
  • *****
  • Join Date: Mar 2002
  • Posts: 4875
  • Country: 00
    • Show only replies by cecilia
    • http://cecilia.sawneybean.com/
Re: Spam being received in PM form.
« Reply #3 on: July 15, 2004, 10:58:27 PM »
if everyone who gets anything like this reports it to you, and you know the IP, etc, reporting that to the FTC (federal trade commision) uce@ftc.gov may be the best way to go at the moment.
the no CARB diet- no Cheney, Ashcroft, Rumsfeld or Bush.
IFX CD Tutorial
 

Offline Acill

Re: Spam being received in PM form.
« Reply #4 on: July 16, 2004, 03:41:29 AM »
What the hell? That is just plain nutz!! Spammers are getting out of hand. I hope something in the future is done to get after them for things like that. Couldnt this be considered hacking?
Proud Retired Navy Chief!

A4000T - CSPPC - Mediator
Powerbook G4 15", 17"
Powermac G5 2GHZ
AmigaOne X5000
Need Amiga recap or other services in the US? Visit my website at http://www.acill.com and take a look or on facebook at http://facebook.com/acillclassics
 

Offline Matt_H

Re: Spam being received in PM form.
« Reply #5 on: July 16, 2004, 05:17:31 AM »
I really don't like weapons, but spammers are the one case where I would welcome their availability and use.
 

Offline whabang

  • Hero Member
  • *****
  • Join Date: Mar 2002
  • Posts: 7270
    • Show only replies by whabang
Re: Spam being received in PM form.
« Reply #6 on: July 16, 2004, 06:03:30 AM »
Quote
Suggestions, or nuclear weapons, would be appreciated.
Report them!
Beating the dead horse since 2002.
 

Offline platon42

  • Hero Member
  • *****
  • Join Date: Jul 2002
  • Posts: 573
    • Show only replies by platon42
    • http://www.platon42.de/
Re: Spam being received in PM form.
« Reply #7 on: July 16, 2004, 09:50:29 AM »
Nuts? It's getting desperate. Last year, spammers started spamming guestbooks. I run one on my homepage, and gladfully have two questions that nicely protect me against these entries (age and toothbrush color). A few days ago, I had 20 attempts within 4 minutes to generate spam entries (each using a different IP address) -- all of them in vain (once in a while, some get through, but normally these are typed in by some poor people in india making a living on that kind of work -- have to remove these manually). Nevertheless, I do get a notification email about this. It *is* annoying.
--
Regards, Chris Hodges )-> http://www.platon42.de <-(
hackerkey://v4sw7CJS$hw6/7ln6pr7+8AOP$ck0ma8u2LMw1/4Xm5l3i5TJCOTextPad/e7t2BDMNb7GHLen5a34s5IMr1g3/5ACM
 

Offline Framiga

  • Hero Member
  • *****
  • Join Date: May 2003
  • Posts: 4096
    • Show only replies by Framiga
Re: Spam being received in PM form.
« Reply #8 on: July 16, 2004, 10:18:38 AM »
Hi

often it's not so easy to detect the real source of the spammer.

I don't know in this particular situation, if the return path is really by the user account or he is a victim himself!

The risk is to report an abuse, to a guy that has no fault.

Ciao
 

Offline Brian

  • Hero Member
  • *****
  • Join Date: Mar 2003
  • Posts: 1604
    • Show only replies by Brian
    • http://www.syntaxsociety.se
Re: Spam being received in PM form.
« Reply #9 on: July 16, 2004, 10:33:18 AM »
It's not that hard to see if a source is true or false but it can be hard to find the true sources IRL information.

When banning with Xoops2 have you the abillity to ban not only IP but also MAC adresses? Static IP isn't all that common so ban of IP isn't helping much these days (Doomy is a prime example).

Offline SystemTopic starter

  • Full Member
  • ***
  • Join Date: Jul 2003
  • Posts: 199
    • Show only replies by System
    • http://amiga.org
Re: Spam being received in PM form.
« Reply #10 on: July 16, 2004, 03:42:24 PM »
Suggestion; use a CMS that DOES have anti-bot checks? :)

Neko
 

Offline Piru

  • \' union select name,pwd--
  • Hero Member
  • *****
  • Join Date: Aug 2002
  • Posts: 6946
    • Show only replies by Piru
    • http://www.iki.fi/sintonen/
Re: Spam being received in PM form.
« Reply #11 on: July 16, 2004, 07:16:39 PM »
Quote
When banning with Xoops2 have you the abillity to ban not only IP but also MAC adresses?

MAC address is not visible outside of your collision domain. That is the MAC address is only visible within your LAN.

This means you can't ban anyone by the NICs MAC address.

Also: MAC addresses are not unique, and most NICs allow you to change the MAC address if needed. It wouldn't work anyway...
 

Offline Brian

  • Hero Member
  • *****
  • Join Date: Mar 2003
  • Posts: 1604
    • Show only replies by Brian
    • http://www.syntaxsociety.se
Re: Spam being received in PM form.
« Reply #12 on: July 16, 2004, 09:10:22 PM »
That's weird cause I was mod on a onlinegame a few years back and the bansystem worked on both IP and MAC. I also thought that the MAC was unique but if not and it can in deed be changed then never mind.

Offline Hyperspeed

  • Hero Member
  • *****
  • Join Date: Jun 2004
  • Posts: 1749
    • Show only replies by Hyperspeed
Re: Spam being received in PM form.
« Reply #13 on: July 17, 2004, 03:11:55 AM »
Y'know the Russians and Americans have in the past had 3,000
atmospheric tests each of those atom bombs. Where on earth did they
test them? They complained the French were testing a few underground
years ago but the 2x super continents are just crackpots!

With regards to this spam, a week ago I had my first spam EVER and I'm
pretty sure it was due to Amiga.org.

I had one e-mail asking me to go to Woolwich.co.uk and verify my
account details, the other was HSBC I think. Classic phishing really
but still quite an eerie feeling that someone is that cunning out
there and thinks you are that stupid.

I hope when Wayne goes hunting the spammers he forgives genuine users
who have deliberately altered their e-mail addresses to avoid the
Xoops spammers!

:-o
 

Offline SystemTopic starter

  • Full Member
  • ***
  • Join Date: Jul 2003
  • Posts: 199
    • Show only replies by System
    • http://amiga.org
Re: Spam being received in PM form.
« Reply #14 on: July 17, 2004, 03:50:22 AM »
In an online game, the MMAC address can be passed as part of the packet itself, but normal Web browsers don't currently pass that information.  It can be changed on certain operating systems, but honestly I can only see illicit reasons for doing so, such as software piracy.