Snitz Forums 2000
Snitz Forums 2000
Home | Profile | Register | Active Topics | Members | Search | FAQ
Username:
Password:
Save Password
Forgot your Password?

 All Forums
 Help Groups for Snitz Forums 2000 Users
 Help: General / Classic ASP versions(v3.4.XX)
 Security Breaches - unwanted people joining forum
 New Topic  Topic Locked
 Printer Friendly
Author Previous Topic Topic Next Topic  

cookrd1
Starting Member

9 Posts

Posted - 19 February 2007 :  11:28:16  Show Profile  Visit cookrd1's Homepage
A little background...

I operate a website at www.discoveryowners.com Many pages are restricted to members only by an asp-based login program (CMLogin).

The forum page is restricted to DOAI members. but I have been getting a rash of spambot-like new (non-DOAI) forum members. It is easy to spot them from the members list as they all use ICQ, use a strange name, and reference the same website for the home page and cool links.

Other than restricting people from joining, is there a way to stop this? How is this happening? Is anyone else having problems?

This was not too big a deal until one of these unwanted "members" posted some porn.

Please help, any ideas appreciated.

Bob

ruirib
Snitz Forums Admin

Portugal
26364 Posts

Posted - 19 February 2007 :  11:33:28  Show Profile  Send ruirib a Yahoo! Message
You can avoid that by configuring your forum so that an admin approve all new registrations. You can do that by turning Email Validation and Restrict Registration to On, in Admin Options -> Email Server Configuration.


Snitz 3.4 Readme | Like the support? Support Snitz too
Go to Top of Page

Aaron S.
Average Member

USA
985 Posts

Posted - 19 February 2007 :  11:34:47  Show Profile  Visit Aaron S.'s Homepage
This happened quite a bit on my forum, and the spam-bots would blast out private messages to all my members.

One way to reduce this was to have a tighter registration system.

People now have to enter a strings of digits to confirm that they are a real person when registering.

--Aaron

DOWNLOAD GREAT NEW MODS HERE
Go to Top of Page

JJenson
Advanced Member

USA
2121 Posts

Posted - 19 February 2007 :  11:36:18  Show Profile  Visit JJenson's Homepage
This has been discussed many of times try using the search. There are alot of mods that will takr care of this issue there is a captcha mod and also you can make other fields like birthday required this will require some code changes you will be able to find some of those around here as well. Take a look and if you run into problems let us know someone will help for sure.

Go to Top of Page

AnonJr
Moderator

United States
5768 Posts

Posted - 19 February 2007 :  11:37:11  Show Profile  Visit AnonJr's Homepage
Requiring e-mail validation has kept their registrations from actually going through on my forums. I've only had one slip by and he was locked before any damage was done. You will have to periodically purge the pending members list...

Also, there are numerous threads out there on different ways to cut down on this. The simplest being to make an additional field required (like birth-date); this way the programs that are registering all these accounts will be missing a required field and will therefore be unable to successfully register (until this is taken into account..). A more complex solution would be to use a Gatekeeper question and/or a CAPTCHA - those have their own pluses and minuses...

Just make sure you research each option and make sure that the drawbacks (there are always drawbacks) are something you can live with.
Go to Top of Page

AnonJr
Moderator

United States
5768 Posts

Posted - 19 February 2007 :  11:38:24  Show Profile  Visit AnonJr's Homepage
Guess I shouldn't take so much time when I type....
Go to Top of Page
  Previous Topic Topic Next Topic  
 New Topic  Topic Locked
 Printer Friendly
Jump To:
Snitz Forums 2000 © 2000-2021 Snitz™ Communications Go To Top Of Page
This page was generated in 0.46 seconds. Powered By: Snitz Forums 2000 Version 3.4.07