Gallery Hacked

webtrix

Joined: 2005-06-30
Posts: 13
Posted: Sat, 2007-09-15 02:33

Gallery URL (optional but very useful):http://www.northerncountrymorels.com/pgallery
Gallery version: 1.5.2
Apache version:
PHP version 4.3.11
Graphics Toolkit: imageMagick
Operating system: Windows XP Home
Web browser/version Firefox

Hello,

I hope someone here can help me out. First of all I know this is my fault for not updating to the latest version.

My gallery seems to have been hacked. There are hundreds of comments related to porn and spam in every gallery. It will take forever to delete them all and I know it probably will keep occurring. Now I don't know if there is a way to remove all these comments all at once. I hope so. Also, if I am able to remove them all will updating to the latest version prevent this from happening again or is thee maybe a back door.

Thanks for any help,
Mike

 
Tim_j
Tim_j's picture

Joined: 2002-08-15
Posts: 6818
Posted: Tue, 2007-09-18 08:27

Hello,

your Gallery was not really hacked.
You were just flooded by automatic spam scripts.

You can add keywords in the blacklist to find bad comments.
Then you can delete all those comments in a bunch.

Jens
--
Last Gallery v1 Developer.
Tryout the TEST-Version of Gallery 1.6

 
webtrix

Joined: 2005-06-30
Posts: 13
Posted: Wed, 2007-09-19 03:55

Hi Jens,

Thanks for your response But what do you mean by adding key words in the black? Also how do I prevent this from happening again? Thanks, Mike

 
webtrix

Joined: 2005-06-30
Posts: 13
Posted: Sun, 2007-10-28 02:09

Hello again. I am still having problems with porn sites spamming the heck out of my comments. I finally set the comments to "No" but for some reason these spam bots are still posting comments. How can this happen and is there a way I can stop the comments?

Thanks

 
trbailey
trbailey's picture

Joined: 2007-04-16
Posts: 172
Posted: Sun, 2007-10-28 02:29

Change the permissions on your public galleries so nobody can add without a login.
i.e. remove "all access" for "everybody" and assign add permissions only to those who you want to be able to upload. I have a public gallery and I know it's only a matter of time before they find it and do the same and at 3000 kbps inbound they can upload a lot of crap while I'm sleeping. It's a risk we all take in having a public gallery. I keep one gallery for public stuff so worse case I just ix nae the entire album. You can always move interesting stuff from the public album to a more suitable place after it's uploaded. I'm a bit nervous having an add-via-email thing. It's not published anywhere but it's still only a matter of time. They are like a drug addict snooping in your bathroom; stealing the toilet paper. Why ask why? There is no reason to stupidity; as if I'm going to purchase Viagra, or even CLICK on one of those email links!! Yea, RIGHT! My privates are just fine, thanks. But I do need an "EXPENSIVE" watch...maybe...it's almost Christmas...

While you can't make choices for them. meaning you can't stop them from trying, you can stop them from uploading and eventually they'll remove you from their spam script. I get dozens of email like that every day. I also have had to restrict posting and comments in my weblog to logged in users so I don't get comment-spammed. Some of their scripts act like a bot so you can check your logs. If you get really pissed there is a third option but it only works for a while. Add the ip(s) to your webserver reject list and they won't be able to even connect :) Now that's P.O.W.E.R. *chuckle* that is why you have a web site, isn't it?
-Tom

 
webtrix

Joined: 2005-06-30
Posts: 13
Posted: Sun, 2007-10-28 02:46
Quote:
Change the permissions on your public galleries so nobody can add without a login.

Thanks but how do I do this?

 
morgad

Joined: 2007-08-11
Posts: 39
Posted: Sun, 2007-10-28 12:23
webtrix wrote:
Hello again. I am still having problems with porn sites spamming the heck out of my comments. I finally set the comments to "No" but for some reason these spam bots are still posting comments. How can this happen and is there a way I can stop the comments?

Thanks

Do you actually want any user comments?

On my gallery I have uninstalled the comment module plugin.

site admin > plugins > extra data > comments
then de-activate and uninstall

edit: just noticed you were useing gallery1, not gallery2, so my reply may not be of any use, feel free to ignore it :-)

Dave
--
http://www.morgad.co.uk/gallery2/main.php

 
webtrix

Joined: 2005-06-30
Posts: 13
Posted: Sun, 2007-10-28 15:43

Ok, so I guess I need to upgrade to Gallery 2 then? Is there a link for this with an upgrade guide?

 
trbailey
trbailey's picture

Joined: 2007-04-16
Posts: 172
Posted: Sun, 2007-10-28 18:17
 
spurrymoses

Joined: 2004-02-22
Posts: 12
Posted: Sun, 2008-06-01 03:20

I really hope someone gives a 'straight' answer here. How do you delete comments in bulk in Gallery1?
I have 200 comments underneath every single image in my gallery, obviously I can't click checkboxes 200x200 times.
How do I delete all of them?

I find it pretty unbelievable that the page 'Find and remove comment spam' doesn't actually allow you to find and delete spam.

It's just a 'blacklist', which gives no indication it will or is able to delete comments.

 
Tim_j
Tim_j's picture

Joined: 2002-08-15
Posts: 6818
Posted: Sun, 2008-06-01 09:16

Hello,

there is currently no possibility to remove comments in bulk from G1.
Except the way you already find.

I don't understand what you mean with:

Quote:
doesn't actually allow you to find and delete spam.

It's just a 'blacklist', which gives no indication it will or is able to delete comments.

The page is *exactly* for that purpose.
And a blacklist (which can handle regular expressions) is in my opinion not that bad to find spam comments.

I am open for suggestions.

Jens
--
Last Gallery v1 Developer.
Tryout the TEST-Version of Gallery 1.6

 
superkev

Joined: 2005-11-03
Posts: 7
Posted: Tue, 2008-11-04 17:44
Tim_j wrote:
Hello,

there is currently no possibility to remove comments in bulk from G1.
Except the way you already find.

I don't understand what you mean with:

Quote:
doesn't actually allow you to find and delete spam.

It's just a 'blacklist', which gives no indication it will or is able to delete comments.

The page is *exactly* for that purpose.
And a blacklist (which can handle regular expressions) is in my opinion not that bad to find spam comments.

I'm actually struggling with this too. I've got an extensive blacklist, but it doesn't seem to work. Spam comments still get through. Also, when I try to click the "Find blackisted comments" link, the page just refreshes and nothing seems to happen. All the spam comments are still there. Is this feature broken? I'm using 1.5.6 on Redhat FC7.

 
superkev

Joined: 2005-11-03
Posts: 7
Posted: Tue, 2008-11-04 18:19

Ok. I managed to fix this problem. My blacklist of 3000+ items was too big for Apache's security module. I temporarily adjusted the allowed size of the response body to 4MB and deleted my blacklist.dat file and started again with just a basic blacklist with the key offenders in it. Then I was able to clear out the spam.

 
Tim_j
Tim_j's picture

Joined: 2002-08-15
Posts: 6818
Posted: Thu, 2008-11-06 22:51

Hi,

problem solved in 35min! great!

Thanks for reporting your solution.

Jens
--
Gallery Developer