Help - Search - Members - Calendar
Full Version: idle on geeknewz?
GeekNewz Community > General > Chit Chat
tom_3
topic says it all.
the same peaple have been signed on for two days..
is this just on my end.... unsure.gif
i don't really care just trying to understand....
jamie
Its a couple of bots I think, not sure what they are up to. Might shutdown the accounts if I can prove it.
tom_3
i was thinking the same thing, just didnt want to ruffle any feathers....
they seem to be active ...but you can see more than me.
tom_3
sorry about the double post ..
but i was snooping around and noticed a search engine link on the bottom of there profiles...
dont no if you noticed or not... wink.gif and the link dont work..
serges2
Yup, noticed as well but didn't really pay attention till Tom mentioned it, have a feeling there is something very strange going on there, followed their 'last clicks' while it was up, all very strange, 4 or 5 lurkers, unlikely all joining within several days of each other, maybe waiting for/to exploit a flaw? Who knows, which brings me to something I mentioned before, a couple of more required fields on the registration, nothing major or prying, but something that might help the mods weed out such interlopers (so sorry if yer not) may be in order (like hobbies, pet peeves or some such). Didn't notice the search engine link tom3, bizarre imo. Just a thought from the wet coast. smile.gif
tom_3
the search engine link is in the signature portion of there profile..
it points to some euro search info link..well hate to beat a dead horse so ill get over it and move on... rolleyes.gif
well at 8:14 am my time its seems the dead horse was buried..
serges2
You read it here first!
A GNz exclusive? Dunno but it is news of a sort I think. tongue.gif
My insatiable curiosity and my over-all hate of spammers got me on a Google hunt this morning. As some may have noticed there have been some strange goings on with some new mystery members, ones listing euro-search.info in their profiles. So I started with that as my search and low, all I got was turned around and pointed at a bunch of pages for French businesses eventually, not what I was looking for gah, I'd forgotten the hyphen. Next search I hit paydirt (so ta speak), voila, at least 7 different forums hit by the same sort of thing, all Invision Power Boards v2.1.7 or v2.1.6, among them chiangdao.com (interesting as the bots were listed as admins lol), silentwrytes.com (who seem to have closed their forums to outsiders, have no idea what they are about), santabarbara.com, poolspforum.com, pf.invisionzone.com and putera.com (some sort of other tech site in a language unknown to me). All suffering the same thing, spambots of some sort. All the suspects had a couple of things in common, all signed up on or around October 23-24 '06, all had euro-search.com non working links in their profiles and many had another lengthly list of links starting with 'republica.pl/products*** or .pl/casinos***', most were 'idling' as Tom wisely coined (reading board indexes, ya right lol) without any posts. The ones that did post, and I have little doubt this is all linked together somehow with the idlers, used the same style of spam, incorporating real members names in the start of their spews, weird links to credit card co.s, perscription drugs, singles sites, and other crap. Obviously these are not benign actions and, it seems to me, that these attacks should be taken seriously and treated as security risks by all sites hit and by the Invision Board folks. I am hoping by writing this that people on the other sites will run into this information and act accordingly on their own boards to nip this in the bud. I am not an expert in these matters by any means but there have to be measures that can be taken to filter this sort of abuse out, hopefully there might be something Invision can do to come up with a solution or two for their customers in response to these virtual parasites. Thats the story so far. think I'll get brave and try some of the other bot links and see if I can find a common thread to them, hm, raise security first me thinks.

Regards,

Serge
tom_3
there's never a cop around when you need one... dry.gif
iam starting to think this is a inside job..
please tell me iam wrong
D3m0n
Its an conspiracy.

*plays some x-files music*
tom_3
nah,i really dont think so.just wondering why they dont kick and or ban them.
do somthing before its to late.. biggrin.gif
tom_3
look at all the links to crap in this things profile...wow
http://www.geeknewz.com/board/index.php?
http://www.geeknewz.com/
http://www.geeknewz.com/board/index.php?act=boardrules
http://www.geeknewz.com/board/index.php?automodule=blog
http://www.geeknewz.com/board/index.php?act=Search&f=
http://www.geeknewz.com/board/index.php?act=Members
http://www.geeknewz.com/board/index.php?act=calendar
http://www.geeknewz.com/board/index.php?act=Help
http://www.geeknewz.com/board/index.php?showuser=6092#
http://www.geeknewz.com/board/index.php?showuser=3124
http://www.geeknewz.com/board/index.php?ac...aed90eff406a0de
http://www.geeknewz.com/board/index.php?au...og&mid=3124
http://www.geeknewz.com/board/index.php?ac...rCP&CODE=00
http://www.geeknewz.com/board/index.php?ac...amp;CODE=getnew
java script:buddy_pop();
http://www.geeknewz.com/board/index.php?act=Msg&CODE=01
http://www.geeknewz.com/board/index.php?act=idx
http://www.geeknewz.com/board/index.php?sh...#profileoptions
http://www.geeknewz.com/board/index.php?act=SF&f=
http://www.geeknewz.com/board/index.php?ac...=4&MID=6092
http://euro-search.info/
http://republika.pl/casino916
http://republika.pl/casino160
http://republika.pl/casino249
http://republika.pl/products732
http://republika.pl/casino132
http://republika.pl/products356
http://republika.pl/casino939
http://republika.pl/products266
http://republika.pl/casino79
http://republika.pl/products512
http://republika.pl/casino123
http://republika.pl/casino90
http://republika.pl/casino41
http://republika.pl/products778
http://republika.pl/products534
http://republika.pl/products836
http://republika.pl/products601
http://republika.pl/casino789
http://republika.pl/products891
http://republika.pl/products539
http://republika.pl/products540
http://republika.pl/casino362
http://republika.pl/products99
http://republika.pl/casino800
http://republika.pl/casino271
http://republika.pl/products862
http://republika.pl/products587
http://republika.pl/products224
http://republika.pl/products148
http://republika.pl/products702
http://republika.pl/products629
http://republika.pl/products823
http://republika.pl/casino189
http://republika.pl/products55
http://republika.pl/products549
http://republika.pl/casino969
http://republika.pl/products982
http://republika.pl/products798
http://republika.pl/casino923
http://republika.pl/products352
http://republika.pl/casino152
http://republika.pl/products460
http://republika.pl/casino561
http://republika.pl/casino122
http://republika.pl/products440
http://republika.pl/products8
http://republika.pl/casino247
http://republika.pl/products511
http://republika.pl/products75
http://republika.pl/pl107
http://www.geeknewz.com/board/index.php?ac...er&mid=6092
http://www.geeknewz.com/board/index.php?ac...er&mid=6092
http://www.geeknewz.com/board/index.php?ac...re&uid=6092
http://www.geeknewz.com/board/index.php?showuser=6092#
http://www.geeknewz.com/board/index.php?ac...02&MID=6092
http://www.geeknewz.com/board/lofiversion/index.php
http://www.invisionboard.com/ ermm.gif and there all about the same size 38.81 KB (39,746 bytes)
jamie
Probably someone experimenting with a new Bot, Can you guys PM me usernames you come across please, I will do some delete's and keep an eye on new sign ups.
serges2
Yup. Silly fammin spuggers.

GLACK!

So Tom, interesting eh?

James, please delete any member on said date (I believe Oct. 23-24), ban their IPs, whatever, this has been discussed. I think its a group effort, a nice bit of 'bottery'.

:cheers:
tom_3
yes serge it is kinda interesting.
i to hate spammers i get plenty in my inbox i dont need to see it on one of my home forums.
and geeknewz is such a nice place to live.... biggrin.gif
jamie
Deleted a couple, they seem to have left us alone at any rate so lets see.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2008 Invision Power Services, Inc.