Site Links
Home
Features
Documentation
Pricing & Order
Members Area
Support Options
UBBDev.com
UBBWiki.com
Who's Online
1 registered (gliderdad), 40 Guests and 13 Spiders online.
Key: Admin, Global Mod, Mod
Featured Member
Registered: 03/22/07
Posts: 416
Top Posters (30 Days)
Ruben 50
DennyP 24
Gizmo 24
Dunny 17
SteveS 14
AllenAyres 12
dbremer 10
SD 9
drkknght00 9
driv 8
Latest Photos
OK Corral Shoot Out
Testing
Basildon Train Station
Basildon Town Centre looking from the rounderbout
Basildon Town Square
Page 1 of 2 1 2 >
Topic Options
#164952 - 09/03/06 08:11 AM Spammers are using "REPORT POST" ?
skydiver Offline
stranger
Registered: 09/03/06
Posts: 1
I'm running UBB.classicTM 6.3.1.1.

Lately I've gotten a lot of Spammers logging in, but I delete them usually within hours.

Here's my real problem:

Me and my Moderators are getting slammed with "REPORT POSTS" and I "think" is some sort of Trogan or back door ability of Spammers to infiltrate my board.

For instance, here is a sample REPORT POST:

A user (Irene at IP 125.182.71.26) has requested that you review the following post by Murphymum in a forum you moderate:

( the body of the post is legitimate, but then:)

The user's reason for this request is:

Thank you!
http://vjxthhfh.com/mvlc/xulf.html | http://jizlxftc.com/njow/brgz.html


And here's a few more examples of endings:

The user's reason for this request is:

Thank you!
http://nbqkpvyo.com/pciq/khkk.html | http://ahvyiagx.com/frot/txta.html


The user's reason for this request is:

Good design!
My homepage | Cool site


DOES ANYONE KNOW HOW THIS IS BEING DONE AND WHAT TO DO ABOUT IT? MY MODERATORS ARE GOING CRAZY WITH THESE "REPORT POSTS" EVERY DAY.

Thanks!

Jerry


Edited by skydiver (09/03/06 08:16 AM)
Top
Express Hosting
Express Hosting "We are the official hosting company of UBB.threads. Ask us about our free migration services to migrate your UBB.threads installation."
#164953 - 09/03/06 02:03 PM Re: Spammers are using "REPORT POST" ?
AllenAyres Offline
Registered: 12/29/03
Posts: 1995
Loc: Texas
Probably the simplest fix would be to upgrade to 6.7.3 - there's been many exploits fixed in the last few years since 6.3.1.1 was released:

http://www.ubbcentral.com/support/version.php?product=UBB.classic
_________________________
- Allen
- ThreadsDev | PraiseCafe
Top
#167198 - 10/28/06 10:24 AM Re: Spammers are using "REPORT POST" ? [Re: skydiver]
Mikey Offline
stranger
Registered: 10/28/06
Posts: 8
Skydiver, I feel your pain. We have the identical problem.

I was all set to post a workaround not requiring upgrading: it involves disabling REPORT POST completely, but rejiggering the UBBFriend feature as a means for registered members to still report spam postings.

Unfortunately... Even after disabling REPORT POST, we are STILL getting spam.

If I can get the REPORT POST spam to stop (even after disabling that option), I will gladly post exactly what our workaround was. But as it stands at least for us, disabling REPORT POST has NOT stopped the REPORT POST spam.

Mikey
Top
#167207 - 10/28/06 02:32 PM Re: Spammers are using "REPORT POST" ? [Re: Mikey]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
I'd like to add that UBB.Threads6 and UBB.Classic6 are two completely differant products which are coded in two differant coding languages (PHP vs Perl); so where a script may work for one it likely won't work for the other...

Also keep in mind that both products had differant people working on the code, and the UBB.C guru (Charles Capps) is no longer with Groupee.

The best coarse of action would be either upgrading to the latest UBB.C (which will, as allen pointed out) fix numerous security issues), or even go so far as to upgrade to the new UBB.T7.
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
#167329 - 10/30/06 04:30 PM Re: Spammers are using "REPORT POST" ? [Re: Gizmo]
Mikey Offline
stranger
Registered: 10/28/06
Posts: 8
I think I may have solved this problem using existing UBB Classic 6.5 functionality - look here.
Top
#167338 - 10/30/06 05:41 PM Re: Spammers are using "REPORT POST" ? [Re: Mikey]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
You can completely nerf the "Report Post" capability by removing the following code block in ultimatebb.cgi:
Code:
if ($ubb eq 'report_a_post') {
	&RequireCode("$vars_config{CGIPath}/ubb_lib_misc.cgi");
	&report_a_post;
	exit(0);
}    #end report_a_post


Please note that there have been numerous security issues fixed in newer versions of UBB.Classic.
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
#167350 - 10/30/06 11:18 PM Re: Spammers are using "REPORT POST" ? [Re: Gizmo]
AllenAyres Offline
Registered: 12/29/03
Posts: 1995
Loc: Texas
Numerous

_________________________
- Allen
- ThreadsDev | PraiseCafe
Top
#167351 - 10/30/06 11:42 PM Re: Spammers are using "REPORT POST" ? [Re: AllenAyres]
Gizmo Offline

Registered: 06/05/06
Posts: 14994
Loc: Portland, OR; USA
Lots and Lots... lol...

I'd like to see the old changelogs added back to the site so we can use them for notifying our clients of the stuff added...
_________________________
Forums: UGN Security & VNC Web Design & Development
UBB.Threads: UBB.Wiki, My UBBSkins, UBB.Sitemaps
Longtime UBB Supporter, UBB Beta Tester & Resident Post-A-Holic.
UBB Modifications, Styling, Coding Services, Disaster Recovery, and more!
Top
#167353 - 10/31/06 12:15 AM Re: Spammers are using "REPORT POST" ? [Re: Gizmo]
Mikey Offline
stranger
Registered: 10/28/06
Posts: 8
Thanks. I plan on letting Groupee do the hosting for us within a couple of months. Thanks for this board, a great resource
Top
#169424 - 11/30/06 05:12 PM Re: Spammers are using "REPORT POST" ? [Re: Mikey]
phoebe Offline
member
Registered: 10/06/06
Posts: 102
Hi, I guess I've found "my people"

hope someone sees this as I am having some similar problems for the first time with ubbclassic in all the years we've been running it. Have always felt so secure but perhaps we are big enough now to be noticed by spammers. I don't want to upgrade....is this silly...because our ranking on google is so high with the html pages ubbclassic creates for us.

So I am running UBB.classic 6.7.1 and no spammers are using the report posts, but there is a sudden deluge of about three registrations a day that are obviously bogus. They don't post. They register with one ip and come back on another....the only advantage to registering I guess is that they get some info about the site in the email that comes back with their password and that in their profile and even in their name is some advertisement for Dr.Pill or xxxsexypornstarsxxx etc.

Are they doing this by registering in realtime or are they using some back door way in? Most are from germany or denmark.

SO MY QUESTIONS ARE:

1. Any insights?
2. Is there an upgrade for us that will maintain our ranking?
Top
Page 1 of 2 1 2 >



Shout Box

Today's Birthdays
No Birthdays
Recent Topics
Ability to "like" individual posts (not Facebook "likes)
by doug
09:03 AM
Island Permissions
by ThreadsUser
05/22/12 03:03 PM
streaming video
by prkrgrp
05/20/12 07:02 PM
New Posts Corrupted? Can someone help?
by PianoWorld
05/19/12 09:41 AM
Custom forum permissions
by ntdoc
05/18/12 02:07 PM
Forum Stats
10489 Members
36 Forums
33840 Topics
181692 Posts

Max Online: 978 @ 06/24/07 11:19 PM
Random Image