Home | Webstore
Latest News: OOTP 25 Available - FHM 10 Available - OOTP Go! Available

Out of the Park Baseball 25 Buy Now!

  

Go Back   OOTP Developments Forums > Prior Versions of Our Games > Earlier versions of Out of the Park Baseball > Earlier versions of OOTP: Online Leagues > Earlier versions of OOTP: Commissioner's Corner
Register Blogs FAQ Calendar Today's Posts Search

Earlier versions of OOTP: Commissioner's Corner Want to run an online league? Want to learn about the 'ins' and 'outs' of being a commish? This is the place!

Reply
 
Thread Tools
Old 03-09-2009, 08:43 PM   #1
f.montoya
Hall Of Famer
 
f.montoya's Avatar
 
Join Date: Nov 2004
Posts: 6,069
War on Spam is over!

At least it is for OOTP online league sites.

2nd EDIT: Explanations in posts below and wanted to attach the file here

3rd EDIT: I've added instructions for Joomla and PHPBB 3. Also revised to recommend placing the script into only the php files that run the registration process.

DontSpamMe.zip

As I said below, I hope it works for you like it has for me!
__________________
Fidel Montoya

Asahi2 Baseball ex-Commissioner(Historical League Since 2004)
www.allsimbaseball.com (OOTP web hosting - Customized sites for online leagues - Sign up, Connect OOTP and Play!)
Share Your Mods - Free, unlimited and easy to upload to share your Mods instantly(free site registration required)

Last edited by f.montoya; 03-14-2009 at 06:53 AM. Reason: Update to the attachment
f.montoya is offline   Reply With Quote
Old 03-09-2009, 09:27 PM   #2
canadiancreed
Hall Of Famer
 
Join Date: Aug 2004
Posts: 11,660
Blog Entries: 1
You have nukes pointed at <insert country that does a lot of spamming>?
canadiancreed is offline   Reply With Quote
Old 03-09-2009, 10:35 PM   #3
f.montoya
Hall Of Famer
 
f.montoya's Avatar
 
Join Date: Nov 2004
Posts: 6,069
Quote:
Originally Posted by canadiancreed View Post
You have nukes pointed at <insert country that does a lot of spamming>?
Lol. No, but I found a very angry individual out there who has done a helluva job compiling the goods that selectively kill off only the bad guys, so you don't have to nuke a whole country. And this guy is at it everyday! Works well for me especiall since my old .htaccess file was not doing the job. I'm still going through everything at the moment, testing things but I'm impressed nonetheless.
__________________
Fidel Montoya

Asahi2 Baseball ex-Commissioner(Historical League Since 2004)
www.allsimbaseball.com (OOTP web hosting - Customized sites for online leagues - Sign up, Connect OOTP and Play!)
Share Your Mods - Free, unlimited and easy to upload to share your Mods instantly(free site registration required)
f.montoya is offline   Reply With Quote
Old 03-09-2009, 11:05 PM   #4
kq76
Global Moderator
 
kq76's Avatar
 
Join Date: Nov 2002
Location: Vancouver, Canada
Posts: 10,698
We don't get much, if any, spamming since we updated our boards, but I'd be interested nonetheless. Just to be clear, this is about pure spam, not that i-frame stuff, right?
kq76 is offline   Reply With Quote
Old 03-09-2009, 11:40 PM   #5
f.montoya
Hall Of Famer
 
f.montoya's Avatar
 
Join Date: Nov 2004
Posts: 6,069
I don't get spam either, mostly because I don't allow user registrations at all. That doesn't prevent them from visiting and filling out my webforms with garbage that I later have to filter.

Anyway, I've been trying a new .htaccess file for the past week and have noticed nothing but silence. The guy that put it together updates it religiously so whatever new crap he finds he adds to the file rather quickly. While i-frame threats are not the specific focus, securing the site from any kind of threat is.

The main idea here is that I want real visitors to have total access to my site.

Here's what the guy does in his own words...

Quote:
When I detect hostile or unwanted activity in my access logs I note the IP addresses from which these events emanated. Then I run them through specialized lookup tools to determine whether they came from residential or business computers - via an ISP, or from a web hosting company's servers, a proxy service, or from a co-located server in a data center. Since residential customers usually have dynamic or semi-static IP addresses, which are frequently changed by their ISPs, it makes no sense to block them. The next person who is assigned that IP may be a potential customer! Instead, I concentrate most of my efforts on blocking servers, which have static (non-changing) IP's. Additionally, I identify businesses with static IP's, who have compromised workstations and file servers that are controlled by hackers and spammers and which are trying to mess with my logs or my website security. With the exception of co-located and privately owned servers, almost all of these offending visitors (human and robot) come from companies that are assigned ranges of IP addresses, which are called a CIDR. Some CIDRs are very small (4 to 8 IP's), while others may include thousands of usable addresses. Once I determine that a hostile action came from a server and not an ISP, I lookup the CIDR to which it belongs and add it to a blocklist.
I'll post a copy of the .htaccess soon. I had to compile it from 4 sources but it was easier to do than I originally thought.
__________________
Fidel Montoya

Asahi2 Baseball ex-Commissioner(Historical League Since 2004)
www.allsimbaseball.com (OOTP web hosting - Customized sites for online leagues - Sign up, Connect OOTP and Play!)
Share Your Mods - Free, unlimited and easy to upload to share your Mods instantly(free site registration required)
f.montoya is offline   Reply With Quote
Old 03-09-2009, 11:47 PM   #6
Corsairs
Hall Of Famer
 
Corsairs's Avatar
 
Join Date: Aug 2007
Posts: 2,360
I'll be looking forward to this with great anticipation. We are constantly being hit by spammers. They aren't getting access to the site since all registrations have to be authorized by me, but good God it's annoying! Anything that will ward them off will be a Godsend.
__________________
Founder of the Planetary Extreme Baseball Alliance (PEBA)
Premiere OOTP fictional league where creativity counts and imagination is your only limitation
Check for openings - contact us today!
Corsairs is offline   Reply With Quote
Old 03-10-2009, 12:05 AM   #7
f.montoya
Hall Of Famer
 
f.montoya's Avatar
 
Join Date: Nov 2004
Posts: 6,069
Quote:
Originally Posted by Corsairs View Post
I'll be looking forward to this with great anticipation. We are constantly being hit by spammers. They aren't getting access to the site since all registrations have to be authorized by me, but good God it's annoying! Anything that will ward them off will be a Godsend.
I've just uploaded one to your website and forum, John. email me and let me know in a few days what you think.
__________________
Fidel Montoya

Asahi2 Baseball ex-Commissioner(Historical League Since 2004)
www.allsimbaseball.com (OOTP web hosting - Customized sites for online leagues - Sign up, Connect OOTP and Play!)
Share Your Mods - Free, unlimited and easy to upload to share your Mods instantly(free site registration required)
f.montoya is offline   Reply With Quote
Old 03-10-2009, 06:25 AM   #8
canadiancreed
Hall Of Famer
 
Join Date: Aug 2004
Posts: 11,660
Blog Entries: 1
Sounds similar to spamhaus or what not. Intresting.
canadiancreed is offline   Reply With Quote
Old 03-10-2009, 06:49 AM   #9
Corsairs
Hall Of Famer
 
Corsairs's Avatar
 
Join Date: Aug 2007
Posts: 2,360
Quote:
Originally Posted by f.montoya View Post
I've just uploaded one to your website and forum, John. email me and let me know in a few days what you think.
Thanks Fidel! I'll be sure to report back on how this works.
__________________
Founder of the Planetary Extreme Baseball Alliance (PEBA)
Premiere OOTP fictional league where creativity counts and imagination is your only limitation
Check for openings - contact us today!
Corsairs is offline   Reply With Quote
Old 03-10-2009, 09:50 AM   #10
satchel
Hall Of Famer
 
satchel's Avatar
 
Join Date: Apr 2002
Location: Ft Smith AR
Posts: 2,681
Sounds good to me, there are constantly a few 'bots or something, lurking on my site. You said something about posting this. Is it something that others can use, who aren't on your service, FM?
satchel is offline   Reply With Quote
Old 03-10-2009, 10:54 AM   #11
Stu
All Star Starter
 
Stu's Avatar
 
Join Date: Dec 2005
Posts: 1,255
For sites that have vbulletin an easy way to eliminate spam bots is to add a dummy question to the registration. We have something like What is 11+7? and if they enter anything but 18 it doesn't allow them to register. This is usually enough to confuse the bots enough to move on.
__________________
Brewers League Baseball
Stu is offline   Reply With Quote
Old 03-10-2009, 11:03 AM   #12
Bluenoser
Hall Of Famer
 
Bluenoser's Avatar
 
Join Date: Mar 2002
Location: In The Moment
Posts: 13,680
I applaud your efforts, however the title of this thread coudn't be further from the truth.

The War on Spam will never be over, everytime someone creates something to stop spam, the spammers come up with another effort to get through loop holes. It's a never ending cycle.
Bluenoser is offline   Reply With Quote
Old 03-10-2009, 11:35 AM   #13
RchW
Hall Of Famer
 
RchW's Avatar
 
Join Date: Jul 2004
Location: The big smoke
Posts: 15,628
Warren Spahn thanks you.
__________________
Cheers

RichW

If you’re looking for a good cause to donate money to please consider a Donation to Parkinson’s Canada. It may help me have a better future and if not me, someone else. Thanks.

“Conservatism consists of exactly one proposition …There must be in-groups whom the law protects but does not bind, alongside out-groups whom the law binds but does not protect.” Frank Wilhoit
RchW is offline   Reply With Quote
Old 03-10-2009, 12:14 PM   #14
Corsairs
Hall Of Famer
 
Corsairs's Avatar
 
Join Date: Aug 2007
Posts: 2,360
Since this morning our website has been running extremely slow. I've never experienced anything like this and have received a number of email complaints from owners. I'm guessing it has something to do with the new anti-spam protection since it was uploaded to our server overnight. Fidel, can you take a look into this?
__________________
Founder of the Planetary Extreme Baseball Alliance (PEBA)
Premiere OOTP fictional league where creativity counts and imagination is your only limitation
Check for openings - contact us today!
Corsairs is offline   Reply With Quote
Old 03-10-2009, 01:11 PM   #15
kq76
Global Moderator
 
kq76's Avatar
 
Join Date: Nov 2002
Location: Vancouver, Canada
Posts: 10,698
Quote:
Originally Posted by canadiancreed View Post
Sounds similar to spamhaus or what not. Intresting.
That's what I was thinking, but I couldn't remember the name. It sounds thorough, but I wonder: if this guy is that into this he could probably save a lot of time by using one of those services. EDIT: Chances are he probably knows about them, but for some reason likes his methods or results better though.

Quote:
Originally Posted by satchel View Post
Sounds good to me, there are constantly a few 'bots or something, lurking on my site. You said something about posting this. Is it something that others can use, who aren't on your service, FM?
Keep in mind not all bots are bad. Google bots, etc help your site get noticed and indexed.

Quote:
Originally Posted by Stu View Post
For sites that have vbulletin an easy way to eliminate spam bots is to add a dummy question to the registration. We have something like What is 11+7? and if they enter anything but 18 it doesn't allow them to register. This is usually enough to confuse the bots enough to move on.
Yeah, we did that and it worked pretty well. I read that it's not just bots that spam, that there are humans in 3rd world countries employed to spam as well. Assuming they could do basic math I made the questions about baseball. Now, mind you, they were pretty easy questions any fan should know, but I don't think we got any spam using that.

Last edited by kq76; 03-10-2009 at 05:48 PM.
kq76 is offline   Reply With Quote
Old 03-10-2009, 05:38 PM   #16
f.montoya
Hall Of Famer
 
f.montoya's Avatar
 
Join Date: Nov 2004
Posts: 6,069
Quote:
Originally Posted by BruceM View Post
I applaud your efforts, however the title of this thread coudn't be further from the truth.

The War on Spam will never be over, everytime someone creates something to stop spam, the spammers come up with another effort to get through loop holes. It's a never ending cycle.
In the case of OOTP online league websites, we are not on the internet to increase exposure or get our ads clicked. We simply want to enjoy a game with other members of our league without the intrusions from those with no interest in OOTP leagues other than to sell some viagra. In that sense, I'm done fighting with spammers. Will spam find a way in in the future? Well, probably, but not so soon by the the usual methods. And that's what I'm happy about.

Quote:
Originally Posted by satchel View Post
Sounds good to me, there are constantly a few 'bots or something, lurking on my site. You said something about posting this. Is it something that others can use, who aren't on your service, FM?
Absolutely. I'll post a link soon, satchel. It's nothing more than a very well compiled .htaccess file that I had nothing to do with making. The fact that someone else takes the time to do this is very much appreciated by me. I want to make a donation to this guy's cause, if I can find the site again(I'm on a different pc at the moment).


Quote:
Originally Posted by Corsairs View Post
Since this morning our website has been running extremely slow. I've never experienced anything like this and have received a number of email complaints from owners. I'm guessing it has something to do with the new anti-spam protection since it was uploaded to our server overnight. Fidel, can you take a look into this?
I sent you an email, John. Your site was loading quickly for me. I've been keeping an eye on it though.
__________________
Fidel Montoya

Asahi2 Baseball ex-Commissioner(Historical League Since 2004)
www.allsimbaseball.com (OOTP web hosting - Customized sites for online leagues - Sign up, Connect OOTP and Play!)
Share Your Mods - Free, unlimited and easy to upload to share your Mods instantly(free site registration required)

Last edited by f.montoya; 03-10-2009 at 06:47 PM.
f.montoya is offline   Reply With Quote
Old 03-10-2009, 05:57 PM   #17
f.montoya
Hall Of Famer
 
f.montoya's Avatar
 
Join Date: Nov 2004
Posts: 6,069
The other part of this is actually something I wrote and had trouble getting to work until now. After struggling with much more difficult scripts for weeks, a super simple and very small script turned out to work the best(kicked myself when I finally figured that out). You can add this script to any php based CMS or forum and what it does is disallow proxy connections to your site. While there are plenty of legitimate and legal uses and users of proxies, they are far outnumbered by those with illegal intentions. Spammers almost always use proxies when spamming forums and blogs, etc. Traditional IP blocking after the fact doesn't do much good as there are thousands and thousands of proxies and plenty of new ones appear every day. The spammer simply uses another proxy and hits your site again.

As I stated previously, we play a game and communicate with others that play that game with us. With that in mind, why would anyone need to hide their identity when visiting our OOTP online league site? I can't think of any. I know the first and last names of all my league members and some of us know where eachother live. Not much identity hiding going on. So by requiring a visitor to disable/not use proxies, it removes yet another vast source of spam and is not an unreasonable request.

The .htaccess file, coupled with anti-proxy, has indeed ended my war. Will there be another war? Sure. But not today.

About Spamhaus, I believe they focus on email spam for the most part. Am I correct?
__________________
Fidel Montoya

Asahi2 Baseball ex-Commissioner(Historical League Since 2004)
www.allsimbaseball.com (OOTP web hosting - Customized sites for online leagues - Sign up, Connect OOTP and Play!)
Share Your Mods - Free, unlimited and easy to upload to share your Mods instantly(free site registration required)

Last edited by f.montoya; 03-10-2009 at 07:13 PM.
f.montoya is offline   Reply With Quote
Old 03-10-2009, 07:13 PM   #18
f.montoya
Hall Of Famer
 
f.montoya's Avatar
 
Join Date: Nov 2004
Posts: 6,069
Everything is in here...

DontSpamMe.zip


Hope it works for you like it has for me!!!
__________________
Fidel Montoya

Asahi2 Baseball ex-Commissioner(Historical League Since 2004)
www.allsimbaseball.com (OOTP web hosting - Customized sites for online leagues - Sign up, Connect OOTP and Play!)
Share Your Mods - Free, unlimited and easy to upload to share your Mods instantly(free site registration required)

Last edited by f.montoya; 03-14-2009 at 06:54 AM.
f.montoya is offline   Reply With Quote
Old 03-10-2009, 08:53 PM   #19
satchel
Hall Of Famer
 
satchel's Avatar
 
Join Date: Apr 2002
Location: Ft Smith AR
Posts: 2,681
Thanks Fidel! I will try it and report.
satchel is offline   Reply With Quote
Old 03-10-2009, 11:36 PM   #20
satchel
Hall Of Famer
 
satchel's Avatar
 
Join Date: Apr 2002
Location: Ft Smith AR
Posts: 2,681
Since I've installed it, the only 'bot that's gotten through is an MSN indexer.

It's early in the game, but I like it so far!
satchel is offline   Reply With Quote
Reply

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 05:47 PM.

 

Major League and Minor League Baseball trademarks and copyrights are used with permission of Major League Baseball. Visit MLB.com and MiLB.com.

Officially Licensed Product – MLB Players, Inc.

Out of the Park Baseball is a registered trademark of Out of the Park Developments GmbH & Co. KG

Google Play is a trademark of Google Inc.

Apple, iPhone, iPod touch and iPad are trademarks of Apple Inc., registered in the U.S. and other countries.

COPYRIGHT © 2023 OUT OF THE PARK DEVELOPMENTS. ALL RIGHTS RESERVED.

 

Powered by vBulletin® Version 3.8.10
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
Copyright © 2020 Out of the Park Developments