• Here are the safeguards I am using now:

    Comment author must fill out name and e-mail
    Comment author must have a previously approved comment
    No more than three links per comment
    common spam words box filled in
    auto-close comments
    auth image
    changed name of wp-comments-post
    Blacklist comments from open and insecure proxies

    (I tried to use the Blacklist box, but doing so deleted every comment posted regardless of content.)

    I’m still getting spammed hundreds (literally) of times a day. The spam has no email addresses. How are they getting their comments in? This is killing me.

Viewing 15 replies - 1 through 15 (of 20 total)
  • Moderator James Huff

    (@macmanx)

    Thread Starter sylday

    (@sylday)

    Alright. Thank you. ??

    I’ve added the hashcash plugin to my line of defenses. *sigh* I hope this works. I’ve tried WP-Blacklist, Kitten’s Spaminator, and Spam-Karma in addition to the measures I listed above.

    I’m thinking there’s a backdoor somewhere that I’m missing. They’re not going through the comment form, I would think, or the e-mail requirement and auth image would catch them. My comments-post file is renamed. I just don’t get it.

    Thread Starter sylday

    (@sylday)

    Nope. Hashcash didn’t work.

    What’s the IP giving you the problem? Is it one IP or many? Time to do some digging and complain to the upstream ISP.

    Moderator James Huff

    (@macmanx)

    HashCash only protect you comments (and does a d*mn good job at it too). Are you getting TrackBack spam?

    https://codex.www.ads-software.com/Combating_Comment_Spam#Trackback_Spam

    Thread Starter sylday

    (@sylday)

    It’s many IPs. I do get Trackback spam but it is very minor compared to the comment spam. HashCash is not protecting my comments. I just woke up to a packed inbox of comment spam, just like yesterday and the day before. Nothing protects comments. Look at all the measures I’ve already tried.

    This is a new problem since I installed 1.5. In 1.2 the auth image worked to stop spam.

    Moderator James Huff

    (@macmanx)

    Have you tried the latest version of AuthImage?

    Thread Starter sylday

    (@sylday)

    macmanx,
    I don’t think they’re getting in through the comment form, otherwise why wouldn’t they need to enter their e-mail address? (None of my spam has e-mail addresses) Actual, bonafide commenters can’t post without an e-mail address or the auth image, but the spammers can.

    This is just gross:

    Emotional incest incest video, incest girl incest toons. Incest sex pics incest sex pics, incest art incest stories. Lesbian incest free incest thumbs, lesbian incest mom and son incest. Free incest galleries simpsons incest, true incest incest…

    Moderator James Huff

    (@macmanx)

    Try disabling “Comment author must have a previously approved comment”. If that doesn’t help, try the latest version of Spam Karma and install it manually.

    https://unknowngenius.com/blog/wordpress/spam-karma/

    Moderator James Huff

    (@macmanx)

    A little explanation for that, the WP admin panel seems to strip the email addresses from all comments. So, you really have no clue if it was posted with an email address or not. You may have accidentally approved a spam comment, which would have added that email address to the white list (due to “Comment author must have a previously approved comment”). White listed entries bypass all spam protection.

    Thread Starter sylday

    (@sylday)

    Okay, I just manually re-installed the latest SpamKarma. It’s sent three comments to hell already just in the last few minutes (I’m telling you, they were killing me with the number of spam), so I’ve got my fingers crossed that it will continue to do so.

    Moderator James Huff

    (@macmanx)

    It should. It’s done wonders for me.

    Thread Starter sylday

    (@sylday)

    I just received two of these:

    A new comment on the post # “” is waiting for your approval https://www.sylviaday.com/blog/2005/03/02//

    Author : (IP: , )
    E-mail :
    URL :
    Whois : https://ws.arin.net/cgi-bin/whois.pl?queryinput=
    Comment:

    What is that? Blank spam? *scratching head*

    Moderator James Huff

    (@macmanx)

    That’s a bug in SpamKarma. It’s being sorted out, nothing to be worried about.

Viewing 15 replies - 1 through 15 (of 20 total)
  • The topic ‘Help with Spam’ is closed to new replies.