Previous Posts

Subscribe

Basic feed (just the blog)

The Uberfeed (blog, pics & links)

Via e-mail:

Becky's T-Blog

Monday, July 10, 2006

The War of Becky's Guestbook

Ages ago I set up a little guestbook on my site. It was one of the last bits I wrote myself. Before that it was hosted by Bravenet, and very naff.

When I wrote it I thought that it would be too small a concern for anyone to bother to spam, but I was quickly proved wrong. Within days it had got it's first spam message, and quickly started to fill up with them.

So I put a little CAPTCHA in. Nothing complicated, I basically stole Miss K's idea for a non-programmatic static GIF that's not machine readable.

That worked for a few days, then the spam started again. I guessed that spammers had programmed customised settings for sites like mine. It was a little scary, to be honest. Up until then I'd assumed that the spams were from automated spiders who just recognised likely comment forms and filled them in; but this showed that there was at least some human element and I was being targeted for spam.

I gave up for a while and ignored the flood of guestbook spam.

Then last week I had a brainwave: Blogger has a built-in CAPTCHA system for comments, why not use that? I set up a new blog on Blogger, and lobotomised my custom template to make it work purely as a guestbook. It worked quite well.

For about a day. I've already had at least 3 spams.

Which is really disturbing. It means that either the spammers have got to a level where Blogger's CAPTCHA is no longer a hurdle, or there's at least one human out there being paid (I guess) to spam sites like mine manually.

What do you think is going on?

By the way, my guestbook is now CAPTCHA-protected and moderated, so no more spam. Just hassle for me.
Blogger jessica_sweet_tv  One of my first blog comments where something like "I love the color and images, on your blog, Keep up the good work. Tools" with a little link on "Tools", I was happy to receive a comment from someone nicknamed "Tools", just to realize it was a link to a machinery store :( 
Blogger Jessica  The spammers set up porn and warez sites where people have to type in captchas, they take the captchas from whatever system they want to spam and pass them back to these unwitting horny captcha monkeys that gladly type in the solutions, in their thousands. I hate spam and spammers as much as the next person but you can't help thinking there are some real geniuses out there 
Blogger Miss K  I also use IP blocks using .htaccess as well as the pseudo captcha but there's one spammer now who seems to be able to get by this.

"Luckily" they only tareget 4 particular posts, so cleaning up is a simple if tedious task. They seem to be from Moldova, according to the whois lookup. 
Anonymous Steven  I read about a good anti-spam for WordPress: Hashcash. It's javascript based, you should be able to extract the code from the wordpress package relatively easily. Basically it does some client side hashing, since robots can't do that (so far), it works pretty well. 
Blogger Joanna  Which is all well and good.. but will you buggers please visit my site and buy some Viagra? 
Blogger Karol Cross  I had a similar experiance a few months ago. I was gob smacked to find a spam message in my guest book. I've written the guestbook myself in asp and it was the shock that someone was targeting my low profile site which I found a bit creepy.

With in a couple of days I was getting a dozen spams a day, so as a quick fix I rearranged all the fields on the comments page and the spam stopped for a couple of days, until they tweaked their program to work with the new layout and away they went again.

Finally, I rewrote the page so I now moderate all comments and eventually after three months of hassle the spam seems to have dried up. I really don't know what they expect to achieve, but I guess it shows they're getting desparate if their targeting sites like mine which only get about 1,000 hits a day. W*nkers! 
Anonymous Sarah F.  Sound like time for hamster authentication. 
Blogger sanane  hi 

Post a CommentPermalink     Subscribe to comments: this post | all posts

<< T*Blog Home