grr argh spam

Message Bookmarked
Bookmark Removed
i deleted some spam on ilm, but the search function seems to not be reupdating (coz of drive issues?) so i can't hunt down the rest. anyway, keep yr eye out.

Sterling Clover (s_clover), Thursday, 28 July 2005 14:02 (twenty years ago)

for ref here is the remains of the msg
'Top 13 most overrated songs on the blog circuit'

Sterling Clover (s_clover), Thursday, 28 July 2005 14:06 (twenty years ago)

ip search brought that up as the only instance. Will keep eye out!

Pashmina (Pashmina), Thursday, 28 July 2005 15:32 (twenty years ago)

here's another: Chromeo- Needy Girl

Sociah T Azzahole (blueski), Thursday, 28 July 2005 15:44 (twenty years ago)

got it

mark p (Mark P), Thursday, 28 July 2005 16:16 (twenty years ago)

I just noticed that one.

James Mitchell (James Mitchell), Thursday, 28 July 2005 23:39 (twenty years ago)

huh, I just zapped another spam message on that same chromeo thread.

teeny (teeny), Friday, 29 July 2005 02:28 (twenty years ago)

Two more:

'Top 13 most overrated songs on the blog circuit'
Chromeo- Needy Girl

Michael Daddino (epicharmus), Friday, 29 July 2005 09:15 (twenty years ago)

Got 'em, thanks.

has spammer unknown written a script to insert such messages into the database, I wonder?

Pashmina (Pashmina), Friday, 29 July 2005 11:41 (twenty years ago)

ha! mark p got one as well!!

Pashmina (Pashmina), Friday, 29 July 2005 11:43 (twenty years ago)

it could just be a particularly loose-acting commentspambot.

if these things start to proliferate a code based solution may be in order. (a simple one would just to be to change the email, msg, &c fields to completely wrong names which would confuse a dummm spambot at least)

Sterling Clover (s_clover), Friday, 29 July 2005 15:41 (twenty years ago)

argghhhh:

'Top 13 most overrated songs on the blog circuit'

I'm Hi, Jared Fogle (ex machina), Friday, 29 July 2005 17:23 (twenty years ago)

got it.

asfdasfdfsadafsfdsafsa.

Sterling Clover (s_clover), Friday, 29 July 2005 17:32 (twenty years ago)

keep an eye out for the chap putting a phone number on threads randomly: (7!3)553-!256

i.e. on this thread: How Do I Copy A Tape Onto My PC?

gear (gear), Friday, 29 July 2005 22:47 (twenty years ago)

what i did, btw, was lock the two threads that kept getting hit from getting posts from unregistered users.

i think that it probably found those threads via some circuitous route rather than via the main ilx indeces, so for now that will hopefully shut it up.

Sterling Clover (s_clover), Friday, 29 July 2005 22:52 (twenty years ago)

ok phone #s fixed for now too.

Sterling Clover (s_clover), Friday, 29 July 2005 23:02 (twenty years ago)

More spam here: Pitchfork's Intonation Festival

Don't think anyone's noticed it yet.

James Mitchell (James Mitchell), Saturday, 30 July 2005 17:37 (twenty years ago)

Oh yes they did. Someone replied.

More poker spam on Momus Momus Momus

StanM (StanM), Saturday, 30 July 2005 18:16 (twenty years ago)

and also here

StanM (StanM), Saturday, 30 July 2005 18:20 (twenty years ago)

thanks!

StanM (StanM), Saturday, 30 July 2005 18:38 (twenty years ago)

is it automated?

StanM (StanM), Saturday, 30 July 2005 19:47 (twenty years ago)

Next one --
What browser do you use?

Truckdrivin' Buddha (Rock Hardy), Saturday, 30 July 2005 19:52 (twenty years ago)

Sorry, that's the one Stan linked.

Truckdrivin' Buddha (Rock Hardy), Saturday, 30 July 2005 19:52 (twenty years ago)

ok I think they're all zapped up to this point, thanks everyone for keeping your eye out for them.

teeny (teeny), Saturday, 30 July 2005 20:19 (twenty years ago)

It's back!

Momus Momus Momus

Michael Daddino (epicharmus), Sunday, 31 July 2005 05:45 (twenty years ago)

another!!!!

sounds like REBORE

ghetty green (eman), Sunday, 31 July 2005 05:46 (twenty years ago)

zapped 'em and a third.

i'm getting so mad at this.

Sterling Clover (s_clover), Sunday, 31 July 2005 06:19 (twenty years ago)

More on What browser do you use?

Forest Pines (ForestPines), Sunday, 31 July 2005 07:12 (twenty years ago)

Is it worth editing the code filter so that only logged-in users can post links?

I've a feeling that this spam is very bad for server performance, given the effect that trackbacks seem to have on it.

Forest Pines (ForestPines), Sunday, 31 July 2005 07:17 (twenty years ago)

ok if this keeps up we need to rilly get some coders in there to patch it. i think these are commentspambots and i suspect that just changing the forms will do it. if not, maybe a hidden field in the form that needs to be passed thru too. if not, then we'll need to get crazy creative. given how goofy ile is, keyword filters are out. there are good ip blacklists to link into but those'll mean a performance hit, as will capchas from unregistered users, which will also mean a hit on posts.

bleh.

Sterling Clover (s_clover), Sunday, 31 July 2005 07:50 (twenty years ago)

one easy solution could be requiring capchas or limiting threads to registered users after say 5 weeks or something.

which will cut down on spam if not kill it entirely.

Sterling Clover (s_clover), Sunday, 31 July 2005 07:52 (twenty years ago)

If we have anything that makes it more awkward for unregistered users to post, we'll also have to make it harder to automate registration.

How about something that changes the field names on the form based on something that can't be predicted by the client, but is still easy to work out? For example: a server-side token that changes every few hours, and is combined in some way with the client's HTTP headers to produce a different set of field names for each client? If the server is up to it - and it probably is - add in a one-way hashing function too.

We have a benefit here in that the ILXcode isn't open-source, so there's a small chance that security-by-obscurity will work.

Forest Pines (ForestPines), Sunday, 31 July 2005 08:11 (twenty years ago)

Weblog Response: NYLPM

jaymc (jaymc), Tuesday, 2 August 2005 19:17 (twenty years ago)

bah he beat me to it

j blount (papa la bas), Tuesday, 2 August 2005 20:06 (twenty years ago)

The Juan MacLean - Less Than Human

I'm Hi, Jared Fogle (ex machina), Thursday, 4 August 2005 16:22 (twenty years ago)

got it.

teeny (teeny), Thursday, 4 August 2005 16:52 (twenty years ago)

IT'S NOT FAIR!!

caitlin oh no (caitxa1), Friday, 5 August 2005 02:24 (twenty years ago)

i gots one i do i gots one!!!!!

broseph, Friday, 5 August 2005 02:31 (twenty years ago)

Yet more on What browser do you use?

Forest Pines (ForestPines), Friday, 5 August 2005 06:17 (twenty years ago)

May want to consider locking to non-registered until the spambot gets bored?

tissp! (the impossible shortest specia), Friday, 5 August 2005 13:15 (twenty years ago)

Unless of course this destroys ILX

tissp! (the impossible shortest specia), Friday, 5 August 2005 13:15 (twenty years ago)

there's like, three or so on "man bags" man bags

Kim (Kim), Friday, 5 August 2005 13:44 (twenty years ago)

sorry, as if man bags didn't look weird enough typed out ONCE.

Kim (Kim), Friday, 5 August 2005 13:46 (twenty years ago)

I got the man bag spam, man.

teeny (teeny), Friday, 5 August 2005 14:22 (twenty years ago)

What browser do you use?

we need easier ip blocking for admins!

I'm Hi, Jared Fogle (ex machina), Saturday, 6 August 2005 01:43 (twenty years ago)

Next:
man bags

Truckdrivin' Buddha (Rock Hardy), Saturday, 6 August 2005 01:49 (twenty years ago)

got those.

teeny (teeny), Saturday, 6 August 2005 02:41 (twenty years ago)

they don't all come from the same ip, i think! when our coders get back from vacation and dealing with more pressing matters, i think that the basic field name change wouldn't be a bad idea to try. it might not fool the bots, but it might and it would be really easy.

Secundus Covarient (s_clover), Saturday, 6 August 2005 02:42 (twenty years ago)

damn, man bags AGAIN. (right after the pic of Chewbacca)

Kim (Kim), Saturday, 6 August 2005 13:57 (twenty years ago)

got it.

teeny (teeny), Saturday, 6 August 2005 14:55 (twenty years ago)

oh haha that makes more sense!

teeny (teeny), Friday, 9 September 2005 15:05 (twenty years ago)

More spam here:

YOKO PERMANENT STRAIGHTENING of HAIR

Tuomas (Tuomas), Wednesday, 21 September 2005 10:40 (twenty years ago)

And another one:

SALE:RUSSIAN VIRGIN HAIR EXTENSION APPLICATION

Tuomas (Tuomas), Wednesday, 21 September 2005 10:56 (twenty years ago)

someone is taking the piss a bit here!

LOOKING FOR MODELS FOR CREATIVE PERM, CUT

Pashmina (Pashmina), Wednesday, 21 September 2005 11:10 (twenty years ago)

I've banned "Tamara" on the assumption that this is real spam, even though it's quite entertaining in a way. Happy to unlock her if people think this is harsh.

Tom (Groke), Wednesday, 21 September 2005 11:14 (twenty years ago)

Yeah, maybe I was a bit rash, it looks like she's a real person since she answered Gareth's question. Maybe you could unban her, and only ban her for sure if she keeps on advertising her hair salon.

Tuomas (Tuomas), Wednesday, 21 September 2005 11:20 (twenty years ago)

SORRY PEOPLY! :( I`m very upset that I made you so angry... I never had this situations before and I regret that I done it! Please help me to take all my adds from your web site! (I`m not advertising my salon, I don`t have one, I just want to finish my assestments in college were is always a problem to find a models, this why I`m trying to find another ways)

Tamara (Tamara), Wednesday, 21 September 2005 11:32 (twenty years ago)

Eep, I was just going to say that Tamara had emailed me - people seem to be just having fun with the threads now, but it would probably be a good idea if you removed her phone number from the posts?

The Brocade Fire (kate), Wednesday, 21 September 2005 11:34 (twenty years ago)

That seems fair enough. No more hair spam ads though!

Tom (Groke), Wednesday, 21 September 2005 11:38 (twenty years ago)

I have left a token hair spam thread as a memorial and deleted the other two. Also, you're free to post Tamara.

Tom (Groke), Wednesday, 21 September 2005 11:41 (twenty years ago)

Thank A lot for your help :)

Tamara (Tamara), Wednesday, 21 September 2005 11:49 (twenty years ago)

If only all random googlers were so polite!

The Brocade Fire (kate), Wednesday, 21 September 2005 11:56 (twenty years ago)

So did you make an appointment kate?

beanz (beanz), Wednesday, 21 September 2005 12:00 (twenty years ago)

Fall Fashion -- Don't Let It Pass You By

Spam, sort of

O'so Krispie (Ex Leon), Thursday, 22 September 2005 18:05 (twenty years ago)

got it.

teeny (teeny), Thursday, 22 September 2005 18:50 (twenty years ago)

Now they're creating entirely new threads:

we love google!

we love google!

James Mitchell (James Mitchell), Wednesday, 28 September 2005 01:46 (twenty years ago)

That person's hitting a lot of other threads too:

Bottom of US Dollar Coins - why the failure?

and

Bad experiences with doctors

Trayce (trayce), Wednesday, 28 September 2005 02:05 (twenty years ago)

Results 1 - 10 of about 104 for [email protected]. (0.10 seconds)

http://www.google.com/search?hl=en&q=iamtom%40hotmail.com&btnG=Google+Search

amon (eman), Wednesday, 28 September 2005 02:56 (twenty years ago)

we love google!

and now nicely NSFW

kingfish superman ice cream (kingfish 2.0), Wednesday, 28 September 2005 04:49 (twenty years ago)

Yeah I just found THAT out while at work grr.

Trayce (trayce), Wednesday, 28 September 2005 05:05 (twenty years ago)

i've only just noticed that we're getting TRACKBACK spam. how long has this been going on???

http://ilx.wh3rd.net/trackback.php?pageid=10&uid=5529377

Britain's Obtusest Shepherd (Alan), Wednesday, 28 September 2005 09:46 (twenty years ago)

Good grief Alan. Is there any way to block this? Or is it not actually affecting the functionality of the site, perhaps?

Pashmina (Pashmina), Wednesday, 28 September 2005 09:58 (twenty years ago)

Plus, of all the weird, desperate things? WTF, generally.

Pashmina (Pashmina), Wednesday, 28 September 2005 09:59 (twenty years ago)

it's not in anyone's face, which makes it rubbish spam anyway. i'll look at the trackback code (and sql table) to see if there's something simple to be done.

it was only the number of trackbacks on that thread that caught my eye in the first place

Britain's Obtusest Shepherd (Alan), Wednesday, 28 September 2005 10:01 (twenty years ago)

inter-linking increases google rankings, no?

Kim (Kim), Thursday, 29 September 2005 03:05 (twenty years ago)

this is RIFE. something like 9000 trackback entries with links to spam sites.

Britain's Obtusest Shepherd (Alan), Thursday, 29 September 2005 21:03 (twenty years ago)

i'll add a block to not register the trackback request if the excerpt contains an html link "<a href=". i'll check the trackback protocol but i'm pretty sure that html should be stripped out of excerpts anyway - out of courtesy if nothing else

Britain's Obtusest Shepherd (Alan), Thursday, 29 September 2005 21:37 (twenty years ago)

There's about 30 spam replies on this thread:

Clap Your Hands Say Yeah

James Mitchell (James Mitchell), Thursday, 29 September 2005 21:41 (twenty years ago)

I shitcanned all the spam, added a note and locked unregistered users out.

Pashmina (Pashmina), Friday, 30 September 2005 07:39 (twenty years ago)

Also, many thanks for all the work you're putting into this, Alan. (& also Zack, of course) (something I've been meaning to mention for a while)

Pashmina (Pashmina), Friday, 30 September 2005 08:11 (twenty years ago)

hilarious gay spam on this thread:

NYU conference on "It Takes a Nation of Millions"

amon (eman), Monday, 3 October 2005 11:12 (twenty years ago)

I shitcanned all the spam on the PE thread. I'd have left the story up if it'd been x/d slash or suchlike, but it wasn't, so I dumped it.

Apologies for any out-of contexness resulting from this.

Pashmina (Pashmina), Monday, 3 October 2005 14:40 (twenty years ago)

the spam is so much better than the copycat threads.

Sociah T Azzahole (blueski), Monday, 3 October 2005 14:58 (twenty years ago)

OK, I noticed that that old L L Bowen thread had popped up again, so I took a look to see what the latest crop of llb googler fans had to say, and I founf several instances of.....

LEATHER JACKET SPAM!!!

What next?!

I deleted them, tho I was kind of tempted to leave them up, just because of the wtf factor.

Pashmina (Pashmina), Tuesday, 4 October 2005 08:51 (twenty years ago)

Another lengthy gay pr0n spam on the public enemy thread. I deleted most of it, left a note, and have locked the thread to anyone not logged in. Again, apologies if this inconveniences anybody.

Spambots = bloody nuisance.

Pashmina (Pashmina), Friday, 7 October 2005 11:43 (twenty years ago)

two weeks pass...
Poker spam in ILE: Weblog: The Brown Wedge

Jaq (Jaq), Saturday, 22 October 2005 21:03 (twenty years ago)

Deleted.

Andrew (enneff), Saturday, 22 October 2005 22:19 (twenty years ago)

spam that is. black poker. texas holdem.

amon (eman), Sunday, 23 October 2005 03:16 (twenty years ago)

More here:

ILX0rs Go Down To The Sea In Ships

Can you remove, please? Thanks.

Paranoid Spice (kate), Thursday, 27 October 2005 10:48 (twenty years ago)

got it.

teeny (teeny), Thursday, 27 October 2005 11:04 (twenty years ago)

Thank you muchly.

Paranoid Spice (kate), Thursday, 27 October 2005 11:17 (twenty years ago)

one month passes...
Here

walter kranz (walterkranz), Wednesday, 30 November 2005 08:06 (twenty years ago)

And here.

Michael Daddino (epicharmus), Sunday, 4 December 2005 23:02 (twenty years ago)

got em

jim p. irrelevant (electricsound), Sunday, 4 December 2005 23:38 (twenty years ago)

two weeks pass...
done

jim p. irrelevant (electricsound), Monday, 19 December 2005 10:13 (twenty years ago)

Some on the Sharon Osborne thread, currently on ILM.

mark grout (mark grout), Monday, 19 December 2005 10:22 (twenty years ago)

got it.

Pashmina (Pashmina), Monday, 19 December 2005 11:04 (twenty years ago)

Another one on the same thread, this morn.

mark grout (mark grout), Tuesday, 20 December 2005 09:43 (twenty years ago)

indeed there was

jim p. irrelevant (electricsound), Tuesday, 20 December 2005 10:11 (twenty years ago)


This thread has been locked by an administrator

You must be logged in to post. Please either login here, or if you are not registered, you may register here.