Register    Login    Forum    FAQ    PinSimDB.org

Board index » PinSimDB.org & GoPinball.com sites » Bug report and feature requests




Post new topic Reply to topic  [ 14 posts ]  Go to page 1, 2  Next
Author Message
 Post subject: Spam
 Post Posted: Wed Feb 12, 2020 2:42 pm 
Offline

Joined: Thu Aug 16, 2012 11:12 pm
Posts: 2777
Location: Arkansas, USA
We are getting so much spam that it is overwhelming. Is there some sort of feature we can add to limit the spam? Is the new web site less vulnerable?


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Wed Feb 12, 2020 4:45 pm 
Offline

Joined: Tue May 01, 2012 11:13 pm
Posts: 477
Location: Abbotsford
GeorgeH wrote:
We are getting so much spam that it is overwhelming. Is there some sort of feature we can add to limit the spam? Is the new web site less vulnerable?

Doubt it. Even with the brand new forums at Pinball Nirvana, we are getting 5 bots a day trying to get in. We have been doing a pretty good job of blocking them out, and use a spam database service to match what the bots put out, and their known ip, but we figure we will be able to automatically block about 80% before they post. The rest (especially the new versions of these bots) we will have to manually delete and report to the spam database.

The people who make these things constantly change the bots so they can sneak in. The problem here is phpbb is the most popular freeware forums, and isn't as high end or as well protected as the paid systems, so it's a very easy target. Add to the fact this site hasn't been updated in a long time and everything is quite old and out of date makes it really easy for the bots.

_________________
_____________________________________

Latest projects and rants at My Facebook Page
_____________________________________

Latest Project: fpxEngine


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Wed Feb 12, 2020 7:07 pm 
Offline

Joined: Mon Mar 25, 2013 4:02 pm
Posts: 1033
@blue and other GoPinball admins:
Few years ago i worked on shop webpage. We have same problem with bots and spams in comments section. I removed 99% of bots with this simple solution:

1. Add hide field to form, like this:
Code:
<input type="hidden" id="botcheckvalue" name="botcheckfield" value="i_am_stupid_bot">

2. Add javascript subrotine:
Code:
$(function() {
    $("#botcheckvalue").val("human_here");
});

So, it will set that hidden field value to "human_here" when webpage is loaded. This is jQuery. If you don't use jQuery, it can be easly done without it.

3. On server check if botcheckfield="human_here". If it is not, then it is spam from bot.

It checks if javascript is running in end user browser. For most users it is true. Only few users expect working webpage with disabled javascript. For normal users it is completely invisible.

I don't think, that any bot will run JS on own servers to bypass this solution.

-----
Other alternative is:
1. Set form url (action attribute) to somthing wrong, like "gopinball.com/spamSink.php"

I checkd current page and i see this:
Code:
<form action="./posting.php?mode=edit&amp;f=73&amp;t=27562&amp;p=112632" method="post" name="postform" enctype="multipart/form-data">

Lets change it to:
Code:
<form id="FormJS" action="./spamSink.php" realAction="./posting.php?mode=edit&amp;f=73&amp;t=27562&amp;p=112632" method="post" name="postform" enctype="multipart/form-data">

So, we added "id", correct value is stored in "realAction" attribute and "action" atribute is set to "spamSink".
This way, if bot just fill from and send spam, it will send all to "spamSink"

2. Add JS:
Code:
$(function() {
   $('#FormJS').attr('action',  $('#FormJS').attr("realAction"));
});

This code, will just copy for this form "realAction" attribute to "action" on webpage load.

Now on serwer, you don't need to change how it work.

_________________
http://www.ravarcade.pl
Better Arcade Mode
current BAM version: v1.5-289, released: May 10, 2020


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Thu Feb 13, 2020 4:54 pm 
Offline

Joined: Thu Aug 16, 2012 11:12 pm
Posts: 2777
Location: Arkansas, USA
Rafal,

I am not sure the admins would be knowledgeable enough to make these changes. Maybe they could give you admin privileges.

George


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Thu Feb 13, 2020 7:49 pm 
Offline

Joined: Tue May 01, 2012 11:13 pm
Posts: 477
Location: Abbotsford
Thanks Rav, will have a look and send JPH here as well. With this new software, we have to learn it just as much as VBulletin, in fact this is a lot higher end, but pretty sure we can insert the code within our admin, or if worse comes to worse, manually add it directly to the files and then upload it in ourselves.

Nice suggestion George, but we would rather have rav concentrate on BAM. JPH has 18 years running PN, and if you didn't know, I had my own tiny little site even longer, the direct descendant of it, sort of my grandchild if you think of it that way, is VPF. we should be cool.

_________________
_____________________________________

Latest projects and rants at My Facebook Page
_____________________________________

Latest Project: fpxEngine


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Thu Feb 13, 2020 11:15 pm 
Offline

Joined: Thu Aug 16, 2012 11:12 pm
Posts: 2777
Location: Arkansas, USA
I was actually interested in Rafal helping the GoPinball admins but hopefully PN will benefit too.


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Fri Mar 27, 2020 5:00 pm 
Offline

Joined: Thu Aug 16, 2012 11:12 pm
Posts: 2777
Location: Arkansas, USA
The amount of span is getting ridiculous. This is what the BAM topic looks like now:

Nathanbak

vipps approved canadian online pharmacies without a prescrip

walgreen online 423 mg

canadian pharmacy online cialis 376 mg

online pharmacy school programs 462 mg

top online pharmacies 416 mg

indian online pharmacy 34 mg

cialis online 393 mg

how does cialis work 124 mg

buy cialis pills online 30 mg

optumrx pharmacies 206 mg

VP-man and BAM - need help
[ Go to page: 1, 2 ]

ed pills online 458 mg

erectile dysfunction drugs online 65 mg

ed pills online 318 mg


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Sun Apr 05, 2020 11:23 am 
Offline

Joined: Thu Aug 16, 2012 11:12 pm
Posts: 2777
Location: Arkansas, USA
The amount of spam is getting much worse.


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Mon Apr 06, 2020 11:09 am 
Offline
User avatar

Joined: Thu Jul 01, 2010 3:02 pm
Posts: 342
Yes it has :(

I've asked LvR and TheNalex for help in this but haven't gotten any response.

-mark


Top 
 Profile  
 
 Post subject: Re: Spam
 Post Posted: Wed Apr 08, 2020 4:05 am 
Offline

Joined: Mon Nov 04, 2019 4:44 am
Posts: 11
Location: Germany
Horrible... I didn't visit this site for about two month, after my main PC stops working, and additionaly I was in Hospital with health problems caused by late effects from an acident.

I missing an option to report spamming members. But it's useles without active Mods and Admins here.


Top 
 Profile  
 
Display posts from previous:  Sort by  
 
Post new topic Reply to topic  [ 14 posts ]  Go to page 1, 2  Next

Board index » PinSimDB.org & GoPinball.com sites » Bug report and feature requests


Who is online

Users browsing this forum: No registered users and 7 guests

 
 

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to: