CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
spacer spacer

Spamming the Gallery

 
Post new topic   Reply to topic       All -> FavForums -> Spam [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
sundog

Captain
Captain


Joined: Mar 02, 2004
Posts: 363
Location: Australia

PostPosted: Wed Oct 08, 2008 3:54 am    Post subject: Spamming the Gallery
Reply with quote

Yesterday I received a request to allow someone to register in my family photo gallery. I did and was spammed in about twenty comment boxes. I deleted the user and thought that was the last. Now I have another request for a registration in the "coppermine" family gallery.

Same type of user name, not a member of the family unless one of them is a spammer so I am sure it is the same person or someone of the same type.

Can I get any details on this person or do anything to make them miserable apart from deleting the request?


_________________
Everywhere is being measured and possessed by unmagical minds, it's sacred places overrun, and their guardians driven to drink and despair (Clive Barker, Everville)
Back to top
View users profile Send private message Visit posters website Yahoo Messenger
ahoier

SIRT Handler


Joined: Jan 14, 2006
Posts: 1113
Location: USA

PostPosted: Wed Oct 08, 2008 2:29 pm    Post subject:
Reply with quote

Contact the photo gallery abuse/support department?

This sounds like the typical "blog spam"/comment spam, though only propogating through a different medium (image galleries) - but really, the same concept - they attempt to gain your trust, once you allow them (grant them access) - they attempt to spam their wares (spammed domains) throughout your gallery (or comments..)

Back to top
View users profile Send private message Visit posters website AIM Address Yahoo Messenger MSN Messenger
sundog

Captain
Captain


Joined: Mar 02, 2004
Posts: 363
Location: Australia

PostPosted: Wed Oct 08, 2008 4:01 pm    Post subject:
Reply with quote

Uh Oh. Contact the gallery abuse department!!!. I have a feeling here is something else I have not yet taught myself. I am the domain owner and admin of both the gallery and the domain.

I have been teaching myself how all that works but not really doing anything unless it needed doing. Is this one of those things? Or is this the area of the web hosts and server owners.

They will not get in again. My family just isn't that big or anonymous that they can register without me knowing who they are anymore. I hate the fact that the spammers are sitting there waiting for me to stuff up and let them in though


_________________
Everywhere is being measured and possessed by unmagical minds, it's sacred places overrun, and their guardians driven to drink and despair (Clive Barker, Everville)
Back to top
View users profile Send private message Visit posters website Yahoo Messenger
ahoier

SIRT Handler


Joined: Jan 14, 2006
Posts: 1113
Location: USA

PostPosted: Wed Oct 08, 2008 4:20 pm    Post subject:
Reply with quote

ooooops, my mistake Wink I was thinking a gallery like fotki(.net or .com I can't remember) or something like that Wink

I guess you could consider an IPfilter, grant/deny rules or some such.

I know a cpl weeks back there was a great article posted to the DDoS forum, detailing how to use PeerGuardian2 (or Moblock for *NIX) to block malicious botnet activity....but it surely could be expanded to block/prevent activity as simple as this.

Back to top
View users profile Send private message Visit posters website AIM Address Yahoo Messenger MSN Messenger
downie

PIRT Handler


Joined: May 19, 2006
Posts: 3974

Phishing Squad

PostPosted: Thu Oct 09, 2008 10:17 am    Post subject:
Reply with quote

I'm sure your version is up-to-date,
but for the benefit of any other Coppermine users out there,
I still see hackers exploiting this vulnerability:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2006-2514


_________________
"For evil to triumph utterly, it is only necessary that good men do nothing."
Back to top
View users profile Send private message
Display posts from previous:   
Post new topic   Reply to topic       All -> FavForums -> Spam All times are GMT
Page 1 of 1

 
Quick Reply:
Username: 

Quote the last message
Attach signature (signatures can be changed in profile)
 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer