Main Restorations Software Audio/Jukebox/MP3 Everything Else Buy/Sell/Trade
Project Announcements Monitor/Video GroovyMAME Merit/JVL Touchscreen Meet Up Retail Vendors
Driving & Racing Woodworking Software Support Forums Consoles Project Arcade Reviews
Automated Projects Artwork Frontend Support Forums Pinball Forum Discussion Old Boards
Raspberry Pi & Dev Board controls.dat Linux Miscellaneous Arcade Wiki Discussion Old Archives
Lightguns Arcade1Up Try the site in https mode Site News

Unread posts | New Replies | Recent posts | Rules | Chatroom | Wiki | File Repository | RSS | Submit news

  

Author Topic: SMF Forum bot attacks - login_detector patch  (Read 5108 times)

0 Members and 1 Guest are viewing this topic.

krick

  • Trade Count: (+1)
  • Full Member
  • ***
  • Offline Offline
  • Posts: 2006
  • Last login:May 23, 2025, 03:48:36 am
  • Gotta have blue hair.
SMF Forum bot attacks - login_detector patch
« on: March 26, 2011, 03:12:31 pm »
Saint,

Have you noticed your SMF error log filling up with invalid password login attemtps?

There's a bot attack that's been happening since January, I think.   They target all forums, but I think SMF was getting the worst of it.  It was hitting my forums pretty hard.   Not only does it eat up server resources, it also kicks your users out and causes them to have to log in again.

Anyway, you probably want to install the "login_detector" patch from here (I've also attached it to this post) which pretty much neutralizes the bots login attempts...

http://www.simplemachines.org/community/index.php?topic=416928.msg2960115#msg2960115
Hantarex Polo 15KHz
Sapphire Radeon HD 7750 2GB (GCN)
GroovyMAME 0.197.017h_d3d9ex
CRT Emudriver & CRT Tools 2.0 beta 13 (Crimson 16.2.1 for GCN cards)
Windows 7 Home Premium 64-bit
Intel Core i7-4790K @ 4.8GHz
ASUS Z87M-PLUS Motherboard

saint

  • turned to the Dark Side
  • Supreme Chancellor
  • Trade Count: (+6)
  • Full Member
  • *****
  • Offline Offline
  • Posts: 6149
  • Last login:July 05, 2025, 12:51:00 pm
  • I only work in cyberspace...
    • Build Your Own Arcade Controls
Re: SMF Forum bot attacks - login_detector patch
« Reply #1 on: March 26, 2011, 04:29:31 pm »
Thanks Krick - I did. I disabled the forgotten password link because of it. I'll check out the patch, much appreciate d:)
--- John St.Clair
     Build Your Own Arcade Controls FAQ
     http://www.arcadecontrols.com/
     Project Arcade 2!
     http://www.projectarcade2.com/
     saint@arcadecontrols.com

krick

  • Trade Count: (+1)
  • Full Member
  • ***
  • Offline Offline
  • Posts: 2006
  • Last login:May 23, 2025, 03:48:36 am
  • Gotta have blue hair.
Re: SMF Forum bot attacks - login_detector patch
« Reply #2 on: March 26, 2011, 08:03:16 pm »
When the bot attacks initially started, I tried everything to stop them, including a giant .htaccess deny list.

Then Arantor posted his little patch, which worked like magic so I abandoned the deny list.

The only other anti-bot mod that I'm using at the moment is the Anti-Spam Verification Questions for SMF mod.  This is to prevent automated account registration.

The only hard part is thinking up a tricky question that is easy for your users but hard for bots/spammers to guess.

Hantarex Polo 15KHz
Sapphire Radeon HD 7750 2GB (GCN)
GroovyMAME 0.197.017h_d3d9ex
CRT Emudriver & CRT Tools 2.0 beta 13 (Crimson 16.2.1 for GCN cards)
Windows 7 Home Premium 64-bit
Intel Core i7-4790K @ 4.8GHz
ASUS Z87M-PLUS Motherboard

BigJon

  • Trade Count: (0)
  • Full Member
  • ***
  • Offline Offline
  • Posts: 14
  • Last login:July 26, 2013, 09:52:30 am
    • BigJon Online
Re: SMF Forum bot attacks - login_detector patch
« Reply #3 on: April 08, 2011, 01:33:38 pm »
I'll have to consider these mods...I run an SMF forum as well and have been getting hit hard by spam bots.  I installed "Bad Behavior" about 2 weeks ago and the attacks seem to be leveling off a bit.

krick

  • Trade Count: (+1)
  • Full Member
  • ***
  • Offline Offline
  • Posts: 2006
  • Last login:May 23, 2025, 03:48:36 am
  • Gotta have blue hair.
Re: SMF Forum bot attacks - login_detector patch
« Reply #4 on: April 08, 2011, 02:12:26 pm »
The login_detector patch is only a couple of lines of code and it works like a charm against the recent bot-net attacks.

Read the thread on the SMF community forum and you see lots of happy users.

As far as other mods go, I used to use reCAPTCHA and the Stop Forum Spam mods but they really didn't seem to be very effective so I removed them both.

The best I've found is the verification questions mod.  If you come up with good questions, it stops spammers in their tracks.  Incidentally, I think that verification questions are a standard feature in SMF 2.0 (currently RC5, I think).
Hantarex Polo 15KHz
Sapphire Radeon HD 7750 2GB (GCN)
GroovyMAME 0.197.017h_d3d9ex
CRT Emudriver & CRT Tools 2.0 beta 13 (Crimson 16.2.1 for GCN cards)
Windows 7 Home Premium 64-bit
Intel Core i7-4790K @ 4.8GHz
ASUS Z87M-PLUS Motherboard

krick

  • Trade Count: (+1)
  • Full Member
  • ***
  • Offline Offline
  • Posts: 2006
  • Last login:May 23, 2025, 03:48:36 am
  • Gotta have blue hair.
Re: SMF Forum bot attacks - login_detector patch
« Reply #5 on: April 27, 2011, 05:23:26 pm »

Thanks Krick - I did. I disabled the forgotten password link because of it. I'll check out the patch, much appreciate d:)


Did you end up ever installing the patch?
Hantarex Polo 15KHz
Sapphire Radeon HD 7750 2GB (GCN)
GroovyMAME 0.197.017h_d3d9ex
CRT Emudriver & CRT Tools 2.0 beta 13 (Crimson 16.2.1 for GCN cards)
Windows 7 Home Premium 64-bit
Intel Core i7-4790K @ 4.8GHz
ASUS Z87M-PLUS Motherboard

ark_ader

  • Trade Count: (0)
  • Full Member
  • ***
  • Offline Offline
  • Posts: 5645
  • Last login:March 02, 2019, 07:35:34 pm
  • I glow in the dark.
Re: SMF Forum bot attacks - login_detector patch
« Reply #6 on: June 04, 2011, 10:57:49 am »
I installed SMF for a college project, and I got spammed to death.

Thanks for the patch, I had to disable forum posts until I had a solution.

Funny thing is, I came in here hoping to solve this very same issue.

Thanks again!  :applaud:
If I had only one wish, it would be for three more wishes.