Hey thanks for that! I've just banned the account and trimmed the posts.
-Mosquito sales and services Down Under-
(11-17-2016, 09:44 PM)mgrindel Wrote: Hey thanks for that! I've just band the account and trimmed the posts.

Unfortunately he'll probably be back under a new name.
I've cleaned and banned previous also --like the movie he'll be back
I've already cleaned and banned this guy several times. You'd think they would have better things to do with their time.
"He" is a 'bot, guys.  A soulless algorithm with deep data-mining resources.

That means they will be back and there's not a lot we can do about it.  In an international group of this size there are going to be several members who are not as assiduous about network security as they should be.  Anyone want to bet me that there isn't at least one member whose password is "mosquito"?

Then there are members who do a good job of making their passwords obscure (like "1Luv2Aut0") and change them regularly, but use a less-than-robust host like AOL, Yahoo!, or arkansasinternet& as their portal to the outside world.  Don't be fooled by the size of your "local" Internet provider.  Several years ago my DSL provider, Bellsouth, quietly moved my email host to and didn't notify anyone until it had been in place for a month.  Yahoo! has one of the worst security reputations in the industry but their growth business is supporting the email accounts of large corporations who don't want the bother.

Bottom line: there's nothing we can do about such bad actors, especially ones based in continents that have little regard for western sensibilities, like Africa and Asia.  The architecture of the Internet was not designed to deal with such threats.  I administer about a dozen discussion fora, listservers, and such, and my job has gotten exponentially harder each year.  The only thing we can do is stay on top of them, and exhort our members to change their passwords as frequently as their underwear.
N8421L Mosquito XE-285
Since they always come back under another name the best thing to do is leave the account intact but restrict posting.

That way they can still sign in but are unable to post.

I doubt the spam bot confirms their ability to post and only creates a new account when the old one is locked out or deleted.

The other thing you can do is block the domain via the firewall or filters.
I saw a good idea on a website the other day where you had to 'drag' a marker along a slider bar to confirm you were real before proceeding. Simple, fast and effective.

