WordPress.org

Ready to get started?Download WordPress

Forums

Growmap Anti Spambot Plugin
[resolved] [closed] Help! My site is once again beset my spam (66 posts)

  1. harouni
    Member
    Posted 10 months ago #

    Well, Andy did release an update to the plugin. Its now at version 1.4.1, thought the Changelog is not reflecting this...

    Please update the plugin in your dashboard everyone and report back here if its working for you now.

  2. DaveMcK
    Member
    Posted 10 months ago #

    I've updated the plugin to 1.4.1 and I'm still getting spam. This plugin worked like a dream for years, so even if Andy doesn't manage to find a fix, I'm grateful for that.

  3. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    thanks Harouni, I didn't spot that

    if you're getting targetted by human spam or you're on a server that is getting targeted then there's isn't much that a plugin can do DaveMcK

    or perhaps there is a vulnerability in wp3.6 ?

  4. harouni
    Member
    Posted 10 months ago #

    My update to version 1.4.1 also has my blog spam inundated. Thankfully I'm using Cooments Evolved, http://wordpress.org/plugins/gplus-comments/, so its easy to turn the default comments on or off. Since comments on my site from other bloggers looking for a dofollow backlink via comluv wasn't a major hit with them, I'm happy to just have the G+ and Facebook for now.

    Perhaps it is a WP 3.6 issue, is there any way of finding out from the developers?

    Anyway, good luck everyone. Hope it sorts out soon...

  5. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    I think if many people are getting spam again after upgrading to wp3.6 you should report it to trac

    http://core.trac.wordpress.org/

  6. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    ok people, I have added one more function to GASP to check the referring page

    I am currently testing it on comluv.com and it has caught 77 bot comments so far

    I'll zip the file up and provide a url here after a few hours of it behaving nicely on my site

  7. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    the beta file is here

    http://ql2.me/gaspbeta

    please report any problems here or with a support ticket at http://commentluv.zendesk.com

    deactivate and delete the old plugin first
    (don't forget to clear your cache if you're using a cache plugin!)

  8. microberto
    Member
    Posted 10 months ago #

    Thanks to Andy for staying on top of this.

    I'm subscribing and awaiting the next official release here before rolling it out to all blogs.

    This plugin has been great and I'm sure you'll get caught up soon!

  9. Dave
    Member
    Posted 10 months ago #

    Latest version still seems to be letting spam in. Spam origins seems to coming from a USA/EU based servers.

    It also seems to be getting through Akismet

    Hope that helps.

  10. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    I was noticing it too and it appears there is a new module for scrape box which is able to learn what fields need to be sent with the comment form so anything I add to send with the comment for more security can be spoofed by the module

    So I have set up my main site to use the new anti back linker plugin which removes all links from comments until the user has had 3 approved comments

    And because scrape box is able to check if their spam comments went through and contained their links, it sees that leaving comments on my site doesn't get them any back links at all! Not even the name link

    ..and all legitimate commenters see their comments go through

    I'll be releasing it soon to CommentLuv premium members

    And possibly releasing a "lite" version for everyone else..

    Stay tuned!...

  11. snowballfighters
    Member
    Posted 10 months ago #

    this latest version is certainly better for me so far, not stopping everything but better than 2 weeks ago.

    Happy to provide information to assist if needed.

  12. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    thanks @snowballfighters!

    I have just done another edit and I think this will smash the spammers this time..

    turns out that scrapebox (a spamming tool) has a new learning module and it's that which learns your field names

    so if you change the name of the field, they can learn it again

    ..so I have made it so the secret key field name changes for every post

    .. and made it impossible to comment if they already have x comments in moderation.

    that means, the default setting of maximum moderated comments of 3 would mean scrapebox could only make a maximum of 3 spam comments over your whole site (using the same email address and if you haven't approved any of their comments)

    I'll release it soon, just tidying up the code and seeing how it performs on my fiddyp.co.uk site

  13. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    the new version has just been released (v1.5)

  14. zadro
    Member
    Posted 10 months ago #

    Thanks for all your hard work on this plugin! Hopefully the mod fix helps a bit...

    What happened with the styling? I have a handful of blogs using this plugin and the checkbox/label fields have strange alignment issues.

    Please advise.

  15. James
    Member
    Posted 10 months ago #

    @zadro - have a look at this thread as it might help solve your alignment issues:
    http://wordpress.org/support/topic/why-is-tick-box-width-styled-by-php-not-css?replies=5

  16. RedofM3
    Member
    Posted 10 months ago #

    I noticed the increase when I went to 3.6, but the upgrade came timely. It has created a new issue. The spam is still piling in (secret changing did not help) and now my regular commenters are all listed as spam bots. My email box has exploded with people who have been leaving comments for years who think I have unplugged them.

    I deleted, cleared cache and reinstalled. All my old settings (and changed text were there). Any ideas on how to purge it more completely? Should I ftp it out and try again?

    It may not help to tell you the errors are not consistent. I have one commenter who could not; I told her refresh; she could. Tonight, I got a friend to test it. She managed to leave one, but her second one was blocked. She used a new email address and was admitted to moderation with no issues.

    http://mommasmoneymatters.com

  17. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    It appears that a lot of users are using cache plugins and not clearing their cache when they upgrade or change settings in the plugin so the comment form is still using the old values which is why people are seen as spammers (the incorrect values are being sent).

    I have done another update to the plugin which adds a url to view the page with query args on the url in the error message to help prevent this and added some error codes so the user can tell you what happened.

    I'll update it later today

  18. James
    Member
    Posted 10 months ago #

    Zero spam comments on my site today, looks promising although guess I better now check that it is still possible for humans to leave comments!

    Like the spam comments caught counter on the settings page - useful to know that the plugin is actually doing something. Note that the versions number shown here is out of date though - it is showing version 1.4 still.

    Cheers for your efforts with the plugin Andy.

  19. RedofM3
    Member
    Posted 10 months ago #

    Andy, just installed the new pack as a fresh install. I deactivated the old one and deleted via FTP. I cleared my cache afterward and again this morning (and twice during testing last night with GASP removed).

    When I installed the pack, it still held my old info, all the way down to the number of bots it had "stopped". I am quoting "stopped" because about half of them were live friends I had helping me isolate browsers and platforms. I cleared the cache again after install.

    While it works perfectly (and the last version did as well) on mobi sites, it was only on computers where the issues arose across most browsers (Chrome, FF, IE, Safari). The only one we did not try last night was Opera.

    For now, it appears to be working. I am still concerned the fresh install held my old information. Any ideas why?

  20. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    I haven't seen issues with it on any pc browser I've tested with on this latest version..

    be sure to ask the user for the error code on the error message

    I've added them to 1.5.2 so it will be easier to track down users who cannot comment

  21. RedofM3
    Member
    Posted 10 months ago #

    Keep your fingers crossed. So far, attendees can comment. I have a few hours before the WP crowd arrives. They had the most issues. As long as they were not Gravatar connected, it did not seem to be a problem. (last release)

    I think you nipped whatever it was. Thank you, Andy.

  22. aptharsia
    Member
    Posted 10 months ago #

    Thank you Andy! Still got spam but it's half of what it was before. Thanks for updating it.

  23. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    great to know @aptharsia! thanks for the feedback

  24. Dave
    Member
    Posted 10 months ago #

    I updated to the latest once it was available. The good news is that it seems to be once again stopping 100% of spam comments!

    No other issues. Regular comments are coming in just fine and spammers are not.

    Great job Andy and thank you!

  25. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    That's wonderful news Dave!
    Thanks for letting me know :)

  26. Scapido
    Member
    Posted 10 months ago #

    Andy,

    I really appreciate the work you've put in on this but I've updated to the new version but it's made no difference.

    What am I doing wrong?

  27. usera
    Member
    Posted 10 months ago #

    experiencing the same problem. does this still work on multisite?

    all the spam coming in is with commentluv.

  28. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    it's important to remember that this plugin will not stop comments that just look like spam.

    So if you have humans leaving messages that are spammy then it wont stop that.

    it is to stop the automated bots that flood your blog with 50-100 comments a day so if you're still getting spammy comments after installing it then you might be being targeted by human spammers who are interested in the keywords that your blog is good for

    you can try switching on the refer check in the settings and see if that works for you but if you're getting real humans leaving comments then it might not help with that.

    the only thing that seems to work for me is my commentluv premium plugin with the new anti backlinker module which removes links from comments until the user has been whitelisted

    no links = no incentive to spam

    when they see that they get no links then they move on to spamming another site that does give links

    sorry I can't be more help but spam from humans is very difficult to prevent.

    @usera - spam coming in with commentluv just means the spammers have a feed on their site so commentluv can find a link

  29. Scapido
    Member
    Posted 10 months ago #

    Just for your information, Andy, the comments I am still getting are definitely spam bot comments - the usual ludicrous, spun crap.

    Actually, I'm only getting about 20 a day but that is 20 more than I was getting before this 'new wave' and still enough to bother my inbox!

    I'm thinking of reinstalling deleting and reinstalling one more time (with W3 Total Cache) disabled (which I am 99% certain I did when I updated the plugin).

    Do you think that is worth a try?

  30. Andy Bailey
    Member
    Plugin Author

    Posted 10 months ago #

    might be worth it.

    try temporarily deactivating your cache plugin and see if that makes a difference

Topic Closed

This topic has been closed to new replies.

About this Plugin

About this Topic

Tags

No tags yet.