HomemadeTurbo - DIY Turbo Forum

HomemadeTurbo - DIY Turbo Forum (https://www.homemadeturbo.com/)
-   General Discussion (https://www.homemadeturbo.com/general-discussion-6/)
-   -   Spam bots on the webpage (https://www.homemadeturbo.com/general-discussion-6/spam-bots-webpage-67590/)

jinxy 09-01-2006 12:03 PM

Spam bots on the webpage
 
maybe changing the name of the register action script or adding a verification will stunt these bitches...

Jorsher 09-01-2006 12:25 PM

Re: Spam bots on the webpage
 
Yeah changing the action to something like nignog or adding verification definitely would.

There aren't updates for this forum?

2stockrocketz 09-01-2006 12:26 PM

Re: Spam bots on the webpage
 
what made the spam fucks come here all of a sudden?? i've been on here for years and never saw spam...but now it's daily

PureCRXtasy 09-01-2006 12:46 PM

Re: Spam bots on the webpage
 

Originally Posted by 2stockrocketz
what made the spam fucks come here all of a sudden?? i've been on here for years and never saw spam...but now it's daily

It has nothing to do with "here". They just target any board running this particular PHP script. As stated previously, it's quite trivial to put measures into place to prevent it. Any of the "type these obfuscated looking number images" on the registration page would do the trick.

Tom-Guy 09-01-2006 01:06 PM

Re: Spam bots on the webpage
 
There's a forum update that adds verification scripting, but it requires a back up in case things go and get themselves completely fucked. The powers that be haven't had the time, but it's coming in the next couple weeks.

Jorsher 09-01-2006 01:35 PM

Re: Spam bots on the webpage
 

Originally Posted by Joseph Davis
There's a forum update that adds verification scripting, but it requires a back up in case things go and get themselves completely fucked. The powers that be haven't had the time, but it's coming in the next couple weeks.

Awesome, good luck with it

Tom-Guy 09-01-2006 01:44 PM

Re: Spam bots on the webpage
 
Don't wish me luck, I'm just the resident loudmouth. I think it's a Bliss/Frank collaboration.

jinxy 09-01-2006 02:23 PM

Re: Spam bots on the webpage
 
The bots use expolits in the forum script to run text/ini files as code to register their names and post messages.

The bots scan through IP ranges looking for webservers trying all of the get command exploits they know on a given server
if the server runs the script then it makes the post
the bot probably logs the ip adress of sucessfull connections
all you have to do is find what exploit is allowing access and change the name, or download the scripts they're using on yoru computer and change the action name on the form
say change
https://www.homemadeturbo.com/forum/...ction=register
to
https://www.homemadeturbo.com/forum/...?action=nignog
it wouldn't be able to run its premade register scripts anymore

It looks something like this, sorry for the huge screen shot, but i couldn't paste the text because the forum software was trying to hyperlink all of those IP's and it woudn't post.

The verification warped numbers thing might not do much because the bots dont nessiciaiy go that route to register. they get the server to run code on its self to register.

Whats in the red is the file containing the code of the expolit they're trying to run.
this ---- is easy to counter. most of those get's even in the yellow are attemps to exploit the server, but i just highlighted that one specific thing
http://img106.imageshack.us/img106/6734/un1hh4.jpg

edit, piece of ---- photobucket

Tom-Guy 09-01-2006 02:38 PM

Re: Spam bots on the webpage
 
nignog>register

fork 09-01-2006 05:28 PM

Re: Spam bots on the webpage
 
https://www.homemadeturbo.com/forum/...3834#msg803834


All times are GMT -5. The time now is 03:45 PM.


© 2024 MH Sub I, LLC dba Internet Brands