New Mars Forums

Official discussion forum of The Mars Society and MarsNews.com

You are not logged in.

Announcement

Announcement: This forum is accepting new registrations by emailing newmarsmember * gmail.com become a registered member. Read the Recruiting expertise for NewMars Forum topic in Meta New Mars for other information for this process.

#1 2006-05-01 14:17:45

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

I'm starting to delete sp@mmers on the wiki, and give a less descriptive 'reason' why, because it looks like the bots are getting smarter, and I don't want to give them ideas...

I have an inkling that whenever you write "delete: spammer", bots can read that too, and get 'lured' by it, so I'd rather write sp@mmer or defacement.


(I need to get out more)

Offline

#2 2006-05-03 05:17:33

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

Likewise, I think it might be a good idea to start banning for a year, instead of infinite: these bots aren't likely to keep their handle for that long, and banning for infinite time will in effect fill up the logs w/ hundreds of botnames for eternity...

Offline

#3 2006-05-11 10:30:00

maxie
Banned
From: Europe
Registered: 2005-02-15
Posts: 84

Re: sp@mmerzzz

I think someone with proper privileges should start updating the wiki software and adding some extensions against spam. Read this for more info:

http://meta.wikimedia.org/wiki/Anti-spam_Features

Offline

#4 2006-05-14 11:28:54

John Creighton
Member
From: Nova Scotia, Canada
Registered: 2001-09-04
Posts: 2,401
Website

Re: sp@mmerzzz

I think someone with proper privileges should start updating the wiki software and adding some extensions against spam. Read this for more info:

http://meta.wikimedia.org/wiki/Anti-spam_Features

hey, that is a cool  8) idea smile


Dig into the [url=http://child-civilization.blogspot.com/2006/12/political-grab-bag.html]political grab bag[/url] at [url=http://child-civilization.blogspot.com/]Child Civilization[/url]

Offline

#5 2006-05-15 20:29:39

John Creighton
Member
From: Nova Scotia, Canada
Registered: 2001-09-04
Posts: 2,401
Website

Re: sp@mmerzzz

Help! I just deleted a bunch of spam yesterday and all the same spam is back there today  :shock:


Dig into the [url=http://child-civilization.blogspot.com/2006/12/political-grab-bag.html]political grab bag[/url] at [url=http://child-civilization.blogspot.com/]Child Civilization[/url]

Offline

#6 2006-05-15 20:53:34

John Creighton
Member
From: Nova Scotia, Canada
Registered: 2001-09-04
Posts: 2,401
Website

Re: sp@mmerzzz

Aside from the above suggestion which would be really cool B) some added security features we should have:
Image Verification (Make sure it is not a bot)
Email Verification
Some kind of member ranking system, where new members can only edit one topic per day and after so many edits they can gain rank and get more privileges.

Or even better some kind of point system where each edit uses so many points, different points could be assigned to different topics. New members would only be able to do so many points a day. As there privileges increase the number of points they can edit per day increases. 

Some kind of flood system would be cool to where we could restrict the number of new registries per day based on the ip subnet.


Dig into the [url=http://child-civilization.blogspot.com/2006/12/political-grab-bag.html]political grab bag[/url] at [url=http://child-civilization.blogspot.com/]Child Civilization[/url]

Offline

#7 2006-05-16 09:27:44

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

It's indeed getting out of hand. sad

I'm an admin on another wiki, my sole job there being killing spambots, heh... http://wise-nano.org/w/Main_Page and we have *just* implemented the regex thingy.

Too early to say, but looks like it does its job... the regex is just the flagging of the 'trick' they use to make spam inviible

discussion with the sysop:

...simply added... $wgSpamRegex = "overflow:\s*auto;\s*height:\s*[0-4]px;/i";
to LocalSettings.php.

Then I went to test it, and discovered that one of our spams used a
different technique. So now the line reads:
$wgSpamRegex = "<div
style=\"display:none\">|overflow:\s*auto;\s*height:\s*[0-\4]px;/i";
....
There are two spaces between div and style; perhaps they tweak that to
mess up braindead string-compares?

Offline

#8 2006-05-16 20:06:55

John Creighton
Member
From: Nova Scotia, Canada
Registered: 2001-09-04
Posts: 2,401
Website

Re: sp@mmerzzz

It's indeed getting out of hand. sad

I'm an admin on another wiki, my sole job there being killing spambots, heh... http://wise-nano.org/w/Main_Page and we have *just* implemented the regex thingy.

Too early to say, but looks like it does its job... the regex is just the flagging of the 'trick' they use to make spam inviible

discussion with the sysop:

...simply added... $wgSpamRegex = "overflow:\s*auto;\s*height:\s*[0-4]px;/i";
to LocalSettings.php.

Then I went to test it, and discovered that one of our spams used a
different technique. So now the line reads:
$wgSpamRegex = "<div
style=\"display:none\">|overflow:\s*auto;\s*height:\s*[0-\4]px;/i";
....
There are two spaces between div and style; perhaps they tweak that to
mess up braindead string-compares?

If you copy the current version onto a text editor you can delete the article and repost it. This makes it so spam can't be retrieved from the wiki history. I am not sure if any search engine bots index the wiki history but incase they do I thought it would be good to totally cleanse it.


Dig into the [url=http://child-civilization.blogspot.com/2006/12/political-grab-bag.html]political grab bag[/url] at [url=http://child-civilization.blogspot.com/]Child Civilization[/url]

Offline

#9 2006-05-17 00:11:31

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

simpler to go back with the history button, untill you find the 'clean' version, then hit reply and simply repost it, w/o doing any typing, the later (spammed) pages are then automatically deleted.

Offline

#10 2006-05-17 07:53:41

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

:evil: the regex approach spawns an arms race...

@ the Wise-Nano Wiki, we now get spammers using

 <div  style="display:none">
[We are delicate. We do not delete your content.]
[l_sp3]

So simply using three spaces, gets through the filter, argh!

Offline

#11 2006-05-17 07:55:36

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

BTW: I'm delicate too: when I meet a spammer, I will only break his legs, not his neck  lol

Offline

#12 2006-05-20 09:11:44

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

space-insensitive Regex installed @ wise-nano, let's see how them spambots will react...

Offline

#13 2006-05-22 05:20:25

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

update:

Wise-Nano has had no spam attacks since the space-insenitive Regex was implemented; in that same timeframe, New Mars had three waves of spam, so it looks like the Regex implementation is working.

Offline

#14 2006-05-22 05:27:20

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

space-insenitive Regex:

on second thought... Deleted, would be too easy for spammers to know what we're up to, grin

Offline

#15 2006-05-26 05:02:02

maxie
Banned
From: Europe
Registered: 2005-02-15
Posts: 84

Re: sp@mmerzzz

OK, but who does have enough privileges to modify the source code of NewMars Wiki ?

Offline

#16 2006-05-26 05:10:55

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

Josh.

But from the looks of it, he's not around ATM (?)

Offline

#17 2006-05-29 02:59:03

Josh Cryer
Moderator
Registered: 2001-09-29
Posts: 3,830

Re: sp@mmerzzz

PM/email it to me Rxke. Sorry for the absence guys. sad


Some useful links while MER are active. [url=http://marsrovers.jpl.nasa.gov/home/index.html]Offical site[/url] [url=http://www.nasa.gov/multimedia/nasatv/MM_NTV_Web.html]NASA TV[/url] [url=http://www.jpl.nasa.gov/mer2004/]JPL MER2004[/url] [url=http://www.spaceflightnow.com/mars/mera/statustextonly.html]Text feed[/url]
--------
The amount of solar radiation reaching the surface of the earth totals some 3.9 million exajoules a year.

Offline

#18 2006-05-29 03:18:25

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

sent.

Don't worry too much about being not around. New Mars is self-cleaning lol

Offline

#19 2006-05-29 07:49:08

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

Update:

Josh PMmed to say the Regex rule is in place, so if all goes as expected, the spamming should diminish significantly.







... Untill them lowlifes come up with other dirty tricks.

Offline

#20 2006-05-30 10:38:08

maxie
Banned
From: Europe
Registered: 2005-02-15
Posts: 84

Re: sp@mmerzzz

Seems like it's working  :shock:

Good job Rxke !

Offline

#21 2006-05-30 10:48:36

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

You have to either thank Chris Phoenix for coming up with the particular regex or Josh for implementing it, I did nothing.

But yes, seems like it works, gringrin-gringrin  (feels so good to pester them spammers  :twisted:  )

Offline

#22 2006-05-30 11:23:12

maxie
Banned
From: Europe
Registered: 2005-02-15
Posts: 84

Re: sp@mmerzzz

OK, thank you Josh for implementing it, thank you Chris Phoenix for writing it.  smile

Offline

#23 2006-05-30 12:28:20

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

heehee!

Offline

#24 2006-06-10 01:10:07

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

Weird...

Yesterday I banned user Bucalo and deleted his spam-post.

Today it was back up, my deletion and banning vanished  :?  :?  :?

Offline

#25 2006-06-10 01:13:10

Rxke
Member
From: Belgium
Registered: 2003-11-03
Posts: 3,669

Re: sp@mmerzzz

Help! I just deleted a bunch of spam yesterday and all the same spam is back there today  :shock:

Is this the same thing that happened to me? Initially I read this as: I deleted entries, but a day later someone (else) put these entries back up...

If so, there's a bug somewhere...

Offline

Board footer

Powered by FluxBB