SageTV Community  

Go Back   SageTV Community > General Discussion > General Discussion
Forum Rules FAQs Community Downloads Today's Posts Search

Notices

General Discussion General discussion about SageTV and related companies, products, and technologies.

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 08-14-2008, 07:16 AM
alphaman alphaman is offline
Sage User
 
Join Date: Feb 2007
Posts: 9
SPAM in PMs??

Hi,

Just got a pr0n-related SPAM in a PM to me. Any admins that want it so they can boot the spammer?

Aaron
Reply With Quote
  #2  
Old 08-14-2008, 08:11 AM
bhyman1 bhyman1 is offline
Sage Aficionado
 
Join Date: Mar 2005
Posts: 347
I got one too. username jettman
Reply With Quote
  #3  
Old 08-14-2008, 08:16 AM
gjvrieze gjvrieze is offline
Sage Advanced User
 
Join Date: Dec 2007
Posts: 116
I just got it from, gotuitdan, I PMed Opus4 concerning it too.....
__________________
Rackmount 20 drive hotswap case, 2x Intel e5410 Xeons, 4GB FBDIMM, 1x 80GB (OS), 14x 1TB in raid 5(DATA!!), Aerca 1280DML, Server 2k3 Enterprise x64 R2. Sage 6.4.8
Reply With Quote
  #4  
Old 08-14-2008, 08:20 AM
DaveWC DaveWC is offline
Sage User
 
Join Date: Feb 2008
Location: Oliver BC Canada
Posts: 68
I got one from MrLoopy.
Reply With Quote
  #5  
Old 08-14-2008, 08:23 AM
AntMan AntMan is offline
Sage User
 
Join Date: Aug 2007
Posts: 14
Me too. The username was "mrloopy". Sent Thu, 14 Aug 2008 05:39:20 -0700
Reply With Quote
  #6  
Old 08-14-2008, 09:43 AM
Motofreak75 Motofreak75 is offline
Sage Expert
 
Join Date: Oct 2005
Posts: 578
Send a message via ICQ to Motofreak75
looks like the member DB got hacked somehow


change your passwords to something that you don't use elsewhere


The member "Playnice" just sent me a msg.
__________________
12.04 server Sagetv7
HD-pvr / 2250 /PVR 500 / DVBS w/rotor & 36 inch dish
Reply With Quote
  #7  
Old 08-14-2008, 09:51 AM
Ryokurin's Avatar
Ryokurin Ryokurin is offline
Sage Aficionado
 
Join Date: May 2004
Posts: 455
Send a message via ICQ to Ryokurin Send a message via AIM to Ryokurin Send a message via Yahoo to Ryokurin
I've gotten them in other places over time. Its just that bots are smart enough to get past some captcha's now and they PM everyone who's online at the moment. At least they aren't making threads yet.
Reply With Quote
  #8  
Old 08-14-2008, 11:33 AM
alphaman alphaman is offline
Sage User
 
Join Date: Feb 2007
Posts: 9
Quote:
Originally Posted by Ryokurin View Post
I've gotten them in other places over time. Its just that bots are smart enough to get past some captcha's now and they PM everyone who's online at the moment. At least they aren't making threads yet.
Not the symptoms in this case -- I've not logged into the forum in several weeks.

I just noticed that the PM subsystem has been disabled. Obviously it's being worked on by the admins. Thanks, folks!
Reply With Quote
  #9  
Old 08-14-2008, 11:47 AM
Opus4's Avatar
Opus4 Opus4 is offline
Administrator
 
Join Date: Sep 2003
Location: NJ
Posts: 19,624
This appears to be a result of users using their username as their password.

And again:

That should be the first online rule to follow:


Your password should not be the same as your username.
"password" is no good either.



Those users have had their passwords reset.

I'll see about deleting the spam sent by those accounts, but you may need to delete the messages in your own accounts.

- Andy
__________________
SageTV Open Source v9 is available.
- Read the SageTV FAQ. Older PDF User's Guides mostly still apply: SageTV V7.0 & SageTV Studio v7.1.
- Hauppauge remote help: 1) Basics/Extending it 2) Replace it 3) Use it w/o needing focus
- HD Extenders: A) FAQs B) URC MX-700 remote setup
Note: This is a users' forum; see the Rules. For official tech support fill out a Support Request.
Reply With Quote
  #10  
Old 08-14-2008, 11:53 AM
jasmithvr6 jasmithvr6 is offline
Sage Advanced User
 
Join Date: May 2004
Posts: 90
Quote:
Originally Posted by Opus4 View Post
This appears to be a result of users using their username as their password.

And again:

That should be the first online rule to follow:


Your password should not be the same as your username.
"password" is no good either.



Those users have had their passwords reset.

I'll see about deleting the spam sent by those accounts, but you may need to delete the messages in your own accounts.

- Andy
As an FYI, I also received a SPAM private message today and my username and passwords are not the same.
Reply With Quote
  #11  
Old 08-14-2008, 11:57 AM
Opus4's Avatar
Opus4 Opus4 is offline
Administrator
 
Join Date: Sep 2003
Location: NJ
Posts: 19,624
Quote:
Originally Posted by jasmithvr6 View Post
As an FYI, I also received a SPAM private message today and my username and passwords are not the same.
No, this is spam sent FROM those accounts, not to them.

I'll work my way through their accounts & delete all their PMs eventually, but not all at once.

- Andy
__________________
SageTV Open Source v9 is available.
- Read the SageTV FAQ. Older PDF User's Guides mostly still apply: SageTV V7.0 & SageTV Studio v7.1.
- Hauppauge remote help: 1) Basics/Extending it 2) Replace it 3) Use it w/o needing focus
- HD Extenders: A) FAQs B) URC MX-700 remote setup
Note: This is a users' forum; see the Rules. For official tech support fill out a Support Request.
Reply With Quote
  #12  
Old 08-14-2008, 12:07 PM
mayamaniac's Avatar
mayamaniac mayamaniac is offline
Sage Icon
 
Join Date: May 2004
Posts: 2,177
Quote:
Originally Posted by Opus4 View Post
This appears to be a result of users using their username as their password.

And again:

That should be the first online rule to follow:


Your password should not be the same as your username.
"password" is no good either.



Those users have had their passwords reset.

I'll see about deleting the spam sent by those accounts, but you may need to delete the messages in your own accounts.

- Andy
vBulletin should've had a feature to prevent usernames being used as passwords, for security purposes. Maybe there's an add-on for such feature?
__________________
Mayamaniac

- SageTV 7.1.9 Server. Win7 32bit in VMWare Fusion. HDHR (FiOS Coax). HDHR Prime 3 Tuners (FiOS Cable Card). Gemstone theme.
- SageTV HD300 - HDMI 1080p Samsung 75" LED.
Reply With Quote
  #13  
Old 08-14-2008, 04:01 PM
matt91's Avatar
matt91 matt91 is offline
Sage Icon
 
Join Date: Feb 2005
Location: Washington, DC
Posts: 1,185
You should really flunk out of internet school if you Username + PW is the same
__________________
Server: Ubuntu 16.04 running Sage for Linux v9
Reply With Quote
  #14  
Old 08-14-2008, 04:24 PM
Opus4's Avatar
Opus4 Opus4 is offline
Administrator
 
Join Date: Sep 2003
Location: NJ
Posts: 19,624
Update: All the accounts have been cleaned up & passwords have been reset, including for those whose password was "password".

All PMs for those users where user == pwd have been removed, so if your account was affected & you lost an important PM... choose a better password next time. I indiscriminately deleted them all.

I guess it could have been worse: many such accounts were dormant and/or didn't post enough to even be allowed to send PMs. I guess it helps that I recently changed the forum so that PMs are disabled for low post count users.

- Andy
__________________
SageTV Open Source v9 is available.
- Read the SageTV FAQ. Older PDF User's Guides mostly still apply: SageTV V7.0 & SageTV Studio v7.1.
- Hauppauge remote help: 1) Basics/Extending it 2) Replace it 3) Use it w/o needing focus
- HD Extenders: A) FAQs B) URC MX-700 remote setup
Note: This is a users' forum; see the Rules. For official tech support fill out a Support Request.
Reply With Quote
  #15  
Old 08-14-2008, 04:42 PM
MeInMaui's Avatar
MeInMaui MeInMaui is offline
SageTVaholic
 
Join Date: Feb 2005
Location: Maui. HI
Posts: 4,203
Quote:
Originally Posted by Opus4 View Post
I guess it could have been worse: many such accounts were dormant and/or didn't post enough to even be allowed to send PMs. I guess it helps that I recently changed the forum so that PMs are disabled for low post count users.
Prescient is what I'd call it.
__________________
"Everything doesn't exist. I'm thirsty." ...later... "No, it's real!!! I'm full."
- Nikolaus (4yrs old)
Reply With Quote
  #16  
Old 08-14-2008, 04:43 PM
QueOnda's Avatar
QueOnda QueOnda is offline
Sage Icon
 
Join Date: Jan 2008
Posts: 1,093
I'm glad that I didn't have to change my password

My current password = OPUS4 is still working.
Reply With Quote
  #17  
Old 08-14-2008, 05:14 PM
Opus4's Avatar
Opus4 Opus4 is offline
Administrator
 
Join Date: Sep 2003
Location: NJ
Posts: 19,624
Quote:
Originally Posted by QueOnda View Post
I'm glad that I didn't have to change my password

My current password = OPUS4 is still working.
Yeah, that one will still work because no one would guess it, so you are safe.

Or, if you really want to use "password" as your password, then at least misspell it a little so looks like "penguin38" or something. Or, misspell your username so it isn't quite the same as the password & you'll be all set.

- Andy
__________________
SageTV Open Source v9 is available.
- Read the SageTV FAQ. Older PDF User's Guides mostly still apply: SageTV V7.0 & SageTV Studio v7.1.
- Hauppauge remote help: 1) Basics/Extending it 2) Replace it 3) Use it w/o needing focus
- HD Extenders: A) FAQs B) URC MX-700 remote setup
Note: This is a users' forum; see the Rules. For official tech support fill out a Support Request.
Reply With Quote
  #18  
Old 08-14-2008, 09:46 PM
Opus4's Avatar
Opus4 Opus4 is offline
Administrator
 
Join Date: Sep 2003
Location: NJ
Posts: 19,624
42 of their bots are still trying to log in from various 212.143.129.xxx IP addresses.

If a legit user uses an address within that range, you'll have to find another way to connect because that's all blocked.

I guess we'll see if they find a new generic password to exploit in the near future...

- Andy
__________________
SageTV Open Source v9 is available.
- Read the SageTV FAQ. Older PDF User's Guides mostly still apply: SageTV V7.0 & SageTV Studio v7.1.
- Hauppauge remote help: 1) Basics/Extending it 2) Replace it 3) Use it w/o needing focus
- HD Extenders: A) FAQs B) URC MX-700 remote setup
Note: This is a users' forum; see the Rules. For official tech support fill out a Support Request.
Reply With Quote
  #19  
Old 08-14-2008, 10:36 PM
alphaman alphaman is offline
Sage User
 
Join Date: Feb 2007
Posts: 9
Thanks for taking care of this so promptly, Opus4! You da... uh... Penguin!
Reply With Quote
  #20  
Old 08-15-2008, 07:47 AM
hogburgs's Avatar
hogburgs hogburgs is offline
Sage User
 
Join Date: Jun 2008
Posts: 24
Just want to echo my thanks too,great work!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Not Spam, Opus :-) Maxtor 500GB SATA-II for $90 @ Fry's.com bcjenkins The SageTV Community 1 07-09-2007 10:39 AM
Problem with setup wizard & SweetSpot (aka PMS video) card bob12dec04 Hardware Support 2 12-12-2004 04:46 PM
Spam complaint ku71 General Discussion 9 09-14-2003 04:29 PM
SageTV Spam? KJake General Discussion 4 05-27-2003 10:15 AM


All times are GMT -6. The time now is 02:53 PM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2023, vBulletin Solutions Inc.
Copyright 2003-2005 SageTV, LLC. All rights reserved.