Page 1 of 1
Phoca Guestbook hacked
Posted: 03 Nov 2010, 00:49
by ivanzuelox
Hello, you automatically add comments to my guest book in Russian language and some commercials, this is the link of my website:
http://gameschile.net/tienda/index.php? ... Itemid=218
I need help and prevent this from happening, Thanks
Re: Phoca Guestbook hacked
Posted: 03 Nov 2010, 13:48
by Jan
Hi,
the best protection against spam is allowing only registered to leave a comment.
If the guestbook is for public, than:
- be sure you have the latest Phoca Guestbook version
- you have enabled all three Captcha and combination of them so if there is a spam robot, it gets everytime other type of captcha
- set a suffix for session name (in parameters)
- add IP ban or add a part of url (which is pasted as link) to Not Allowed URL Identification Words parameter:
https://www.phoca.cz/documents/3-phoca-g ... -menu-item
- check your site (this will be difficult) if it does not include some other place which is open to add an entry to database (if you look at your database, to phoca guestbook tables and you will see, the spam topics do not include the same filled values like normal topics, then it seems they were added through some other way then through Phoca Guestbook form)
Jan
Re: Phoca Guestbook hacked
Posted: 03 Nov 2010, 18:05
by ivanzuelox
Thanks for your help proves that tells me