bigguy
Member
    
Posts: 2684
VRCC# 30728
Texarkana, TX
|
 |
« on: March 14, 2012, 08:12:27 AM » |
|
I run a little board for a local group of riders. It's got a total of 23 members, about 4 of whom are active. As small and innocuous as this little board is, I've had to go to admin conformation on registration because even with CAPTCHA I still get 10 to 15 bogus pre-registrations per day. Checking the IP addresses, I see about half of them are from China, the rest come from Japan, some Scandinavian countries, and a very few from the US. The reasons given for wanting to join vary from a random list of letters to computer interpreted phrases such as these: Admin, Im...want make a purchase want chat mmm want searching info just...want interesting info mmm..want interested so want reading board Admin, Im...want interested Admin, Im...need reading ..want searching info well..look for chat Every time I get one of these, I block a 254 IP range of addresses using a "deny from" statement in my htaccess file, based on the address from the offending request. I've got about 600 entries so far. That's more than 152,000 individual IP addresses. Yet the volume of crap has yet to slow. I get a real kick out of reading about how we're desperate to migrate to IPV6 because we're running out of IPV4 addresses. I'm thinkiong maybe we just need to thin the herd. We had a saying back in Gillett Arkansas: "It takes all kinds, but there's some kinds I could do without."
Thanks for listening to my rant. I feel a little better now.
|
|
|
|
|
Logged
|
Here there be Dragons. 
|
|
|
Jack
Member
    
Posts: 1889
VRCC# 3099, 1999 Valk Standard, 2006 Rocket 3
Benton, Arkansas
|
 |
« Reply #1 on: March 14, 2012, 08:20:23 AM » |
|
Gilett, Arkansas: home of the Coon Supper!
|
|
|
|
|
Logged
|
"It takes a certain kind of nut to ride a motorcycle, and I am that motorcycle nut," Lyle Grimes, RIP August 2009.  
|
|
|
bigguy
Member
    
Posts: 2684
VRCC# 30728
Texarkana, TX
|
 |
« Reply #2 on: March 14, 2012, 08:24:42 AM » |
|
Gilett, Arkansas: home of the Coon Supper!
Indeed it is. I even served coon there a couple of years to then Governor William Jefferson Clinton as a member of the Farmers and Business mens club. We also served ham for those who couldn't bring themselves to try the coon. Can't recall which the future/former prez selected. Did you ever make one?
|
|
|
|
« Last Edit: March 14, 2012, 09:18:06 AM by bigguy »
|
Logged
|
Here there be Dragons. 
|
|
|
|
Moonshot_1
|
 |
« Reply #3 on: March 14, 2012, 08:39:40 AM » |
|
I run a little board for a local group of riders. It's got a total of 23 members, about 4 of whom are active. As small and innocuous as this little board is, I've had to go to admin conformation on registration because even with CAPTCHA I still get 10 to 15 bogus pre-registrations per day. Checking the IP addresses, I see about half of them are from China, the rest come from Japan, some Scandinavian countries, and a very few from the US. The reasons given for wanting to join vary from a random list of letters to computer interpreted phrases such as these: Admin, Im...want make a purchase want chat mmm want searching info just...want interesting info mmm..want interested so want reading board Admin, Im...want interested Admin, Im...need reading ..want searching info well..look for chat Every time I get one of these, I block a 254 IP range of addresses using a "deny from" statement in my htaccess file, based on the address from the offending request. I've got about 600 entries so far. That's more than 152,000 individual IP addresses. Yet the volume of crap has yet to slow. I get a real kick out of reading about how we're desperate to migrate to IPV6 because we're running out of IPV4 addresses. I'm thinkiong maybe we just need to thin the herd. We had a saying back in Gillett Arkansas: "It takes all kinds, but there's some kinds I could do without."
Thanks for listening to my rant. I feel a little better now.
My Father was King of Scamovia and as you may know, was killed in our war torn land. I am looking for a trusted friend to help handle my Father's vast fortune....
|
|
|
|
|
Logged
|
Mike Luken
Cherokee, Ia. Former Iowa Patriot Guard Ride Captain
|
|
|
Willow
Administrator
Member
    
Posts: 16863
Excessive comfort breeds weakness. PttP
Olathe, KS
|
 |
« Reply #4 on: March 14, 2012, 09:04:16 AM » |
|
We use stopforumspam.com to weed out the bulk of the spammers. I reject every request from mainland China. I feel badly for that if we really do have a Valkyrie rider or two in China, but most of the bogus names and email addresses are recognizable as such.
It surprises me how many apply using an invalid email address.
We currently have almost fifty on the list that either haven't bothered to activate or weren't serious in the first place. I remove requests after two months.
We've been pretty successful at keeping out the trash. I can't help but wonder if we've missed out on some legitimate members in the process.
|
|
|
|
|
Logged
|
|
|
|
bigguy
Member
    
Posts: 2684
VRCC# 30728
Texarkana, TX
|
 |
« Reply #5 on: March 14, 2012, 09:14:54 AM » |
|
Thanks for info Willow. I'll check out stopforumspam.com.
|
|
|
|
|
Logged
|
Here there be Dragons. 
|
|
|
|
ptgb
|
 |
« Reply #6 on: March 14, 2012, 09:16:30 AM » |
|
We've been pretty successful at keeping out the trash.
Well, I made it in! And by the way... 楊柳吃炒麵和嚎叫在月球 If your interested: http://translate.google.com/
|
|
|
|
« Last Edit: March 14, 2012, 09:18:14 AM by ptgb »
|
Logged
|
 Lower Lakes 1000 - 07/07 & 09/10 * Bun Burner GOLD - 09/10 Lake Superior 1000 - 07/11 * Lake Michigan 1000 - 09/11 * Lake Huron 1000 - 09/11 Saddlesore 2000 - 09/11 * Ohio 1000 - 07/13
|
|
|
|
|
Willow
Administrator
Member
    
Posts: 16863
Excessive comfort breeds weakness. PttP
Olathe, KS
|
 |
« Reply #8 on: March 14, 2012, 09:21:17 AM » |
|
We've been pretty successful at keeping out the trash.
Well, I made it in! And by the way... 楊柳吃炒麵和嚎叫在月球 If your interested: http://translate.google.com/ Obviously we weren't 100% successful.

Noodles, you say?
|
|
|
|
« Last Edit: March 14, 2012, 09:23:38 AM by Willow »
|
Logged
|
|
|
|
|
|
|
czuch
|
 |
« Reply #10 on: March 14, 2012, 09:51:17 AM » |
|
Prefer seafood delight.
|
|
|
|
|
Logged
|
Aot of guys with burn marks,gnarly scars and funny twitches ask why I spend so much on safety gear
|
|
|
|
Jess Tolbirt
|
 |
« Reply #11 on: March 14, 2012, 10:06:31 AM » |
|
i too run a small board with 12 active members,,i have it set up to where I have to approve them,,i send them a form email asking what thier name isand simply reply,,,no answer in 2 days they get deleted,,,about at least 50 per day..
|
|
|
|
|
Logged
|
Valkyrie member # 23084 Started out on old forum on day one but lost my member number.
|
|
|
Scott in Ok
Chief Worker Ant
Administrator
Member
    
Posts: 1157
Oklahoma City, Ok
|
 |
« Reply #12 on: March 14, 2012, 01:05:36 PM » |
|
Consider yourself lucky. We were getting 100's per day. Its been a tough and frustrating journey to where we are today, to say the least. We now get a few per day that get past our first line of defense. The second line of defense catches those.
I'm not sure what forum software you use, but if there is a plugin/mod/extension for StopForumSpam for your board, install it. It will help you identify the bad guys as they register. Thats our second line of defense. First line of defense is a script installed on the server that rejects almost all the bad guys before they can enter. We've had some false positives we've had to work through which required some modification of the script, but so far its worked well. PM me if you would like some info.
-Scott
|
|
|
|
|
Logged
|
Never underestimate the power of stupid people in large numbers!
|
|
|
|
DFragn
|
 |
« Reply #13 on: March 14, 2012, 01:39:50 PM » |
|
I emailed you an htaccess file to remedy your issues. It's too large to post here [3,800 lines]
It will do what you need sans constant monitoring & editing foreign IP's to manually block. You can remove your foreign blocks you have if you want or just precede them with a # to disable them. I guarantee you'll have no more foreign issues using this. No Charge to you. Use as you wish...
This is only the first few lines. Make sure you get it all & that you received 100% to the last line = </Limit>
<files .htaccess> order allow,deny deny from all </files> <Limit GET POST> order deny,allow # Country: UNITED STATES # ISO Code: US # Total Networks: 40,747 # Total Subnets: 1,539,114,880 Allow from w3.org htmlhelp.com googlebot.com --->Error I forgot to clean this line up completely in the email. Delete it entirely. You should leave the "Allow from googlebot.com" in there to keep the site searchable. allow from 3.0.0.0/8 allow from 4.0.0.0/8 allow from 6.0.0.0/8 allow from 7.0.0.0/8 allow from 8.0.0.0/8 allow from 9.0.0.0/8 allow from 11.0.0.0/8 allow from 12.0.0.0/8 allow from 13.0.0.0/8
If the email file I sent doesn't end with </Limit> then it did not transmit completely and/or your email service limited the file.
|
|
|
|
« Last Edit: March 14, 2012, 03:02:08 PM by DFragn »
|
Logged
|
|
|
|
|