WebSite X5Help Center

 
Hanspeter H.
Hanspeter H.
User

Cannot stop adding spam to blog answers  en

Author: Hanspeter H.
Visited 2822, Followers 2, Shared 0  

blog/answers/ directory fils up with spam entries although in blog settings i have unchecked the possibility to add comments to blog entries

I had previously allowed users to comment on blog entries. Because the comment facility led to hundreds of spam comments and the captcha mechanism is not capable to stop this, I had to disallow adding comments to blog entries. I unchecked the box in the blog settings page, exported the website but the spammers are in spite of thet capable to add comments. These are not seen by the users but the directory blog/answers quickly fills up with spam entrie, each entry consuming 2 to 3 K of disk space.

This is obvously a severe error, if spammers can add comments inspite of the fact, that comments are disabled. Below is an example content of a file called X5_pc0nik72k0 :

<?xml version="1.0" encoding="UTF-8"?>
<comments>
<comment>
<name><![CDATA[brand cialis name online order]]></name>
<email><![CDATA[***]]></email>
<url><![CDATA[http://wikireceitas.com.br/index.php?title=Buy_Cialis_Online_And_Obtain_The_Most_Effective_ED_Solution6134342]]>
<body><![CDATA[, &lt;a href=&quot;http://www.isolve.com.br/neodroid/index.php?title=Buy_Cialis_Online_For_The_Most_Suitable_ED_Treatment1975497">cialis for women&lt;/a&gt;, &lt;a href=&quot;http://wiki.weba.ru/index.php?title=Buy_Cialis_Online_And_Obtain_The_Most_Effective_ED_Remedy7886577">buy real cialis&gt;cialis professional 20 mg&lt;/a&gt;, ]]></body>
<abuse><![CDATA[0]]></abuse>
<timestamp><![CDATA[25-02-2013 22:52:37]]></timestamp>
<approved><![CDATA[0]]></approved>
</comment>
<comment>
<name><![CDATA[Free-Vpn-Account-And]]></name>
<email><![CDATA[***]]></email>
<url><![CDATA[http://dolbeer317.20m.com/usvpnmacfree22.html]]>
<body><![CDATA[Trustworthy VPN Service &lt;a href=&quot;http://dolbeer317.20m.com/usvpnmacfree22.html" rel=&quot;nofollow&quot;&gt;Free Vpn Account Android&lt;/a&gt; or &lt;a href=&quot;http://dolbeer317.20m.com/doesrokusupportvpn63.html" rel=&quot;nofollow&quot;&gt;How To Unblock Blocked Sites&gt;How To Unblock Youtube Netgear Firewall&lt;/a&gt;]]></body>
<abuse><![CDATA[0]]></abuse>
<timestamp><![CDATA[25-02-2013 22:54:01]]></timestamp>
<approved><![CDATA[0]]></approved>
</comment>
</comments>

Posted on the
4 ANSWERS
Hanspeter H.
Hanspeter H.
User
Author

Forgot to mention that I am using X5 V9 latest download.

Read more
Posted on the from Hanspeter H.
Nigel W.
Nigel W.
User

I found this problem with my forum.

I seemed to have stopped it by using a string of characters and letters and asking each newbie to copy out, for example, the capitals...so Ht65yP6YfrmnP...they would write HPYP.

This setup would have to be programmed in by Incomedia.

(I find it better to use independent addons such as blogs, forums, guestbooks, etc. and just have a Website5 page entry)

Read more
Posted on the from Nigel W.
Incomedia
Claudio D.
Incomedia

Hello Hanspeter,

Try to change the permission to the file of the comments to 500 and then it will be no more possible to write in the file. It would be a good solution to delete all files on the server and then upload the project again and this will stop the comments. If you have any comments you wantto keep, make a copy of them before and then when you exported t he project again you can put them back.

Please let me know if this helps.

Read more
Posted on the from Claudio D.
Hanspeter H.
Hanspeter H.
User
Author

Hi

Thanks for your answer. Originally I changed the blog properties to disallow comments, deleted all files in /blog/answers/ and then updated the project on the server. This process did not stop the spam entries, the directory write permission were not changed by the x5 update process.

I have now manually removed the write permission of the directory on the server.  This seems to have worked so far. But this result should be achievable thru X5 customization without manual user changes on the server.

Hanspeter

Read more
Posted on the from Hanspeter H.