Better spam control?

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • ShadowStriker
    New Member
    • Jul 2007
    • 12

    Better spam control?

    Hi I heard of a new virus called Xrumer that targets forums.

    Its designed to bypass security measures like captchas and stuff.

    It can publish comments on sites created by phpBB, PHP-Nuke (with
    some modification), yaBB, VBulletin, Invision Power Board, IconBoard,
    UltimateBB, exBB, and phorum.org.

    Is this possible? Can it really bypass vbulletin spam control? If it can will spam control be updated in version 3.7?
  • Adrienne
    Senior Member
    • Dec 2006
    • 190
    • 3.0.7

    #2
    I never heard of this before, but it sure looks tailor-made for spamming.

    From their website at botmaster,net:

    "# Exclusive feature! Automatic account registration on cashette,com has been added (besides autoregistration on mail.ru) "
    Last edited by Adrienne; Sat 4 Aug '07, 5:09am.

    Comment

    • feldon23
      Senior Member
      • Nov 2001
      • 11291
      • 3.7.x

      #3
      Xrumer is like 2 years old. And it has not cracked vBulletin 3.6's advanced Captcha.

      Comment

      • Interdit
        Senior Member
        • May 2002
        • 248
        • 3.8.x

        #4
        The NoSpam! plugin should be integrated to Vbulletin, where the admin can put a question such: 3+3 equals ? and the user types in the answer, since we put that on our boards, no more spam.

        Captcha is not a solution anymore.
        BPowers.com: Eu Web Hosting Solutions
        Shared hosting with Cpanel/Fantastico
        Live Help: http://www.bpowers.com

        Comment

        • Steve Machol
          Former Customer Support Manager
          • Jul 2000
          • 154488

          #5
          You can already do that without an add-on:

          Steve Machol, former vBulletin Customer Support Manager (and NOT retired!)
          Change CKEditor Colors to Match Style (for 4.1.4 and above)

          Steve Machol Photography


          Mankind is the only creature smart enough to know its own history, and dumb enough to ignore it.


          Comment

          • Interdit
            Senior Member
            • May 2002
            • 248
            • 3.8.x

            #6
            Nice, then a default one should be activated.
            BPowers.com: Eu Web Hosting Solutions
            Shared hosting with Cpanel/Fantastico
            Live Help: http://www.bpowers.com

            Comment

            • Jobe1986
              Senior Member
              • Jan 2007
              • 629
              • 4.2.x

              #7
              Although Xrumer claims to be able to get around vBulletin forums that is only partly true in that it is limited to older outdated versions of vBulletin. As of yet on the many vBulletin boards im a member on and/or staff on I havnt seen many spam registrations and when I have its usually human registrations or a lot of human interaction which for most spammers just isnt viable and useful for spamming in that it takes too much of their time. Immagine having to register on say 100 (fictional number that has no relevence to the ACTUAL number of vBulletin forums) forums yourself, at about 2 mins per registration, another 1-5 mins if email activation is also required and then another 1-2 mins to post Thats 15 hours just for 100 forums. Would you then want to spend that ammount of time just to spam 100 forums?
              http://data.collectiveirc.net/status/user/Jobe.png

              Comment

              • Dilly
                Senior Member
                • Mar 2005
                • 1812

                #8
                Originally posted by Interdit
                Nice, then a default one should be activated.
                No. As soon as you add it by default the spammers will crack it.

                Comment

                • Freddie Bingham
                  Former vBulletin Developer
                  • May 2000
                  • 14057
                  • 1.1.x

                  #9
                  XRumer can not currently bypass our captcha if you set it to true type / GD (not simple fonts) and enable random slant. Enable random shapes or, better yet, upload your own fonts and it has 0% success.

                  I know this because I've tested it, I've logged what it guesses and compared it to the actual answer.

                  Comment

                  widgetinstance 262 (Related Topics) skipped due to lack of content & hide_module_if_empty option.
                  Working...