cellio: (spam)
Monica ([personal profile] cellio) wrote2012-11-11 05:13 pm
Entry tags:

sock-puppets R us

I've been seeing more spam on my LJ entries than usual in recent weeks, but most of it is posted anonymously and gets auto-screened, so nobody else sees it. Two days ago I started getting the following message from LJ accounts that were presumably created just to post these comments (on, I assume, as many journals as possible as quickly as possible):

"Hey This is hard for me because I have never done anything like this.. but I have a huge crush on you. I have never been able to tell you for reasons which you would quickly identify as obvious if you knew who this was. I'm really attracted to you and I think you would be wanting to get with *Read FULL Card Here* [URL removed]"

These ones, coming from logged-in accounts, do show up (about 15 so far). I really don't want to have to start screening comments from people not on my subscription list; I prefer to be more open. (I didn't like having to screen the anonymous ones, but the spammers left me no choice.) I've been marking these as spam when I delete them, which blocks that particular LJ account from commenting on my journal again, but it would appear that creating bogus accounts is easy enough that the spammers don't care. This probably means that more-challenging captchas are in our future. (I struggle with them already.)

The pattern of attack is different, by the way. The anonymous spammers tend to latch onto the same three or four old posts to hit; this current wave is hitting random posts with, so far, no duplicates.

In semi-related news, I've seen no update on the journal-import problem over at Dreamwidth (entries come across fine, but comments don't). I've started to read regularly there in addition to here, so if you're there too and I haven't found you yet, please get in touch.

Update: I discovered that I can do something less severe than screening comments from non-friends: I can make them answer a captcha. Sorry, legitimate non-friends, but I'm going to see if this deters the bots.

Update #2: The captcha doesn't seem to be slowing them down, so either the spammers are humans, the spam-bots are good at captchas, or... the setting isn't working. Could somebody do me a favor? I'd like somebody who is not on my friends list to post a comment (while signed in, not anonymous) here and tell me if you got a captcha. Thanks!

[identity profile] devreux.livejournal.com 2012-11-11 10:58 pm (UTC)(link)
I have been getting the same spam, on old posts in a community (currently inactive) I own. Only three or four in the past week, so far.
unique_name_123: (Default)

[personal profile] unique_name_123 2012-11-11 11:19 pm (UTC)(link)
One other friend of mine who never uses her account except to check up on me is having the same problem.
siderea: (Default)

[personal profile] siderea 2012-11-11 11:33 pm (UTC)(link)
I got my first "Hey This is hard for me" spam... over on my coding journal. Which has exactly one public post.

I have no idea how anybody found it -- possibly spidering interests or community memberships. It has no friends.

Since then, a few days ago, I've been getting various spams for the first time on my regular LJ. This is remarkable, because I've basically never before gotten any before.

[identity profile] littlekatydid.livejournal.com 2012-11-11 11:50 pm (UTC)(link)
okie dokie I friended you on DW :)

[identity profile] hlinspjalda.livejournal.com 2012-11-12 01:02 am (UTC)(link)
I got one of those on an open post in a community. I deleted it, marked it as spam, and reported the username as spam.
fauxklore: (Default)

[personal profile] fauxklore 2012-11-12 04:53 am (UTC)(link)
I've just gotten a couple of those too.

I'd kind of like a way to lock all comments on an entry after some time, since my experience is that spammers (but not legitimate commenters) seem to hit random old entries.
ext_3679: (Default)

Test

[identity profile] fiddlingfrog.livejournal.com 2012-11-12 09:11 am (UTC)(link)
I should get a captcha before this comment posts.

Edit: But I didn't.
I don't think it matters though. If the spammers can solve the captcha to create an account, they can probably solve the captcha to leave a comment.
Edited 2012-11-12 09:14 (UTC)

[identity profile] hudebnik.livejournal.com 2012-11-12 12:37 pm (UTC)(link)
Captchas are intended to distinguish human beings from computer programs. They're not very good at distinguishing legitimate posters from minimum-wage workers being paid to answer a thousand captchas per hour.

I first got that "massive crush" comment this morning, on a public post from several months ago. I didn't check whether it was actually visible before deleting it. If I get it again, I'll check.
Edited 2012-11-12 12:38 (UTC)

[identity profile] dragonazure.livejournal.com 2012-11-12 02:16 pm (UTC)(link)
I did not receive a captcha. Oh. Wait. I'm on your friends list...
Edited 2012-11-12 14:17 (UTC)

[identity profile] dglenn.livejournal.com 2012-11-13 09:16 am (UTC)(link)
I've gotten three or four of those so far, one on a post from August, the rest on posts from more than two years ago, and so far only on LJ -- DW and IJ don't seem to have been hit yet, at least not my accounts there.
katybeth: (katy)

[personal profile] katybeth 2012-11-13 06:02 pm (UTC)(link)
Captcha for me.