<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/">
   <channel>
      <title>Making Light :: Lolita, damn her :: comments</title>
      <link>http://nielsenhayden.com/makinglight/archives/003771.html#comments </link>
      <description>Language, fraud, folly, truth, history, and knitting. Et cetera.</description>
      <language>en</language>
      <lastBuildDate>Sat, 11 Oct 2003 16:01:08 -0500</lastBuildDate>
      <generator>http://www.sixapart.com/movabletype/?v=4.34-en</generator>
      
      <item>
      <title>Lolita, damn her</title>
      <description>Apologies to anyone who clicked on the name &quot;Lolita&quot; in the spam messages posted to seven of my old comments...</description>
      <content:encoded>Apologies to anyone who clicked on the name "Lolita" in the spam messages posted to seven of my old comments...</content:encoded>
      <link>http://nielsenhayden.com/makinglight/archives/003771.html</link>
      </item>

      
      <item>
         <title>Lolita, damn her -- comment #1 from qB</title>
         <description>comment from qB on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>You can find out exactly who it was at <a href="http://chujoe.net/archives/000154.html" rel="nofollow">Reading and Writing</a> [http://chujoe.net/archives/000154.html] where Joseph Duemer did a bit of detective work.</p>]]>
	 &lt;p&gt;Posted October 11, 2003  4:01 PM by qB&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29211</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29211</guid>
         <pubDate>Sat, 11 Oct 2003 16:01:08 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #2 from brian w</title>
         <description>comment from brian w on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>I've seen that bug you refer to about the comment text replacing the entry; it's an auto-fill bug in Safari, I think (the comment page text field is named "text" and so is the field on the entry page). As long as you don't hit "save" on the entry page, the entry won't be replaced by the comment. All the "Lolita" spams I've gotten have come from the same IP address so I just banned it from commenting within the MT interface. I can't wait until the MT-Blacklist is done.</p>]]>
	 &lt;p&gt;Posted October 11, 2003  4:16 PM by brian w&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29213</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29213</guid>
         <pubDate>Sat, 11 Oct 2003 16:16:36 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #3 from TalkLeft</title>
         <description>comment from TalkLeft on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>We have been getting these comments posted constantly--this morning we had to delete and resave 15 posts.  It's a huge pain, because the time we spent deleting this garbage could have writing our own stuff.  </p>]]>
	 &lt;p&gt;Posted October 11, 2003  4:23 PM by TalkLeft&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29214</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29214</guid>
         <pubDate>Sat, 11 Oct 2003 16:23:07 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #4 from Alicia</title>
         <description>comment from Alicia on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>Thanks, guys. I have had this same problem on my site and was checking into it myself. Nice to find the answer where I wasn't looking!</p>

<p>And Teresa, I am reading "Making Book" for the first time. I am enjoying it tremendously. </p>]]>
	 &lt;p&gt;Posted October 11, 2003  4:42 PM by Alicia&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29215</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29215</guid>
         <pubDate>Sat, 11 Oct 2003 16:42:15 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #5 from Tim Hall</title>
         <description>comment from Tim Hall on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>Comes from Florida; could have guessed.</p>

<p>&lt;Traveller&gt;<br />
Nuke the state from orbit; it's the only way to be sure.<br />
&lt;/Traveller&gt;</p>

<p>On a more serious topic, <a href="http://www.movabletype.org/support/index.php?s=9335af41514bbbcd6251cade3bbe64ce&act=ST&f=10&t=28706&st=0" rel="nofollow">this</a> post on the Movable Type message boards has a suggestion for dealing with these roaches by setting up a trap that automatically bans them.<br />
</p>]]>
	 &lt;p&gt;Posted October 11, 2003  5:14 PM by Tim Hall&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29216</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29216</guid>
         <pubDate>Sat, 11 Oct 2003 17:14:17 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #6 from Patrick Nielsen Hayden</title>
         <description>comment from Patrick Nielsen Hayden on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>I've read those Movable Type message-board suggestions; unfortunately, they hover just beyond my level of technical understanding.</p>

<p>I desperately want the MT people to address this with some kind of patch or option that non-stupid, but non-technical, people like me and Teresa can understand.  Now.  Because if this problem isn't addressed in a hurry, it won't be long before we give up on this hobby.</p>]]>
	 &lt;p&gt;Posted October 11, 2003 10:39 PM by Patrick Nielsen Hayden&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29217</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29217</guid>
         <pubDate>Sat, 11 Oct 2003 22:39:32 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #7 from Teresa Nielsen Hayden</title>
         <description>comment from Teresa Nielsen Hayden on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>Electrolite just got hit with a slew of Lolitas. Patrick is deeply displeased.</p>]]>
	 &lt;p&gt;Posted October 11, 2003 10:47 PM by Teresa Nielsen Hayden&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29218</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29218</guid>
         <pubDate>Sat, 11 Oct 2003 22:47:28 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #8 from Teresa Nielsen Hayden</title>
         <description>comment from Teresa Nielsen Hayden on 11.Oct.03</description>
         <content:encoded><![CDATA[<p><i><b>THIRTY-TWO OF THEM!!!</b></i> Electrolite got hit with <i>thirty-two</i> Lolitas. The first thirty hit in a wave, and then the last two got posted while he was banning the sender.</p>

<p>I hunted down and killed every one of them. It was tedious and time-consuming. I could have been writing.</p>

<p>If you have a weblog or guestbook and have the abililty to block posts, I suggest you add 209.210.176.20 to your gag list RIGHT NOW.</p>]]>
	 &lt;p&gt;Posted October 11, 2003 11:29 PM by Teresa Nielsen Hayden&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29219</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29219</guid>
         <pubDate>Sat, 11 Oct 2003 23:29:00 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #9 from spacewaitress</title>
         <description>comment from spacewaitress on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>I've got a DIY Movable Type setup and it has a few quirks, one being that I can't identify IP addresses.</p>

<p>I woke up this morning to find 15 Lolita comments.  I was not happy.  Deleted every one, wrote to the guy who hosts my blog to see if we can maybe finally implement IP banning.</p>]]>
	 &lt;p&gt;Posted October 11, 2003 11:32 PM by spacewaitress&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29220</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29220</guid>
         <pubDate>Sat, 11 Oct 2003 23:32:01 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #10 from adamsj</title>
         <description>comment from adamsj on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>Hi, Patrick and Teresa,</p>

<p>There are a fair number of technically-skilled people who read these weblogs and who would be perfectly thrilled to help you out with the suggested fix.</p>

<p>It's not my area of expertise, but if push comes to shove, I'd take a shot at doing it for you.</p>

<p>(There! That should shame someone better than me into helping you out.)</p>]]>
	 &lt;p&gt;Posted October 11, 2003 11:33 PM by adamsj&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29221</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29221</guid>
         <pubDate>Sat, 11 Oct 2003 23:33:02 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #11 from spacewaitress</title>
         <description>comment from spacewaitress on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>Addendum:  I've been getting all kinds of spam comments on my blog lately.  One-word comments that say "interesting" or "cool," and then the commenter's URL is something like www.us-discount-insurance.com.  AAARRRRGHHH!  I've also gotten, on one post where I discuss an email service I really like, about 15 comments from Nigerians hoping I can introduce them to Bill Gates.</p>

<p>Somewhat more understandable, but no less annoying, are the "my-blog-is-awesome-come-read-it" spam comments.  Trust me, if you leave this kind of comment, you can rest assured that I will <i>not</i> go read your blog.</p>]]>
	 &lt;p&gt;Posted October 11, 2003 11:35 PM by spacewaitress&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29222</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29222</guid>
         <pubDate>Sat, 11 Oct 2003 23:35:02 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #12 from Teresa Nielsen Hayden</title>
         <description>comment from Teresa Nielsen Hayden on 11.Oct.03</description>
         <content:encoded><![CDATA[<p>j, I know I'd appreciate the help. I expect Patrick will too, when he calms down a little. Right now his opinion is as follows: "My idea of how to <i>technically</i> address this problem is that someone should go to this guy's apartment -- <i>we have his address!</i> -- and <i>technically</i> punch him in the nose, after which he should be <i>technically</i> chased down the street, <i>on foot!</i>, by a <i>pack of wild dogs</i>." Then he started ranting about <i>marine predation</i>, a scenario which I gather involves crustaceans nibbling on this guy's eyeballs.</p>

<p>I have no objections. In the meantime, though, I want to implement some spam-blocking measures. Lolita's proprietors aren't the only spammers who've been hitting my site. My guess is that the knowledge of how to spam weblog comments sections is spreading in the spammer community. Best batten down the hatches now.</p>]]>
	 &lt;p&gt;Posted October 11, 2003 11:52 PM by Teresa Nielsen Hayden&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29225</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29225</guid>
         <pubDate>Sat, 11 Oct 2003 23:52:05 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #13 from Erik V. Olson</title>
         <description>comment from Erik V. Olson on 12.Oct.03</description>
         <content:encoded><![CDATA[<p>What it looks like the posted script is trying to do is set a trap cgi, that, if accessed, will put a block into the .htaccess file. </p>

<p>I'm not convinced that this would be effective, since the easiest way to find the cgi for the message boards is to follow the link on the weblog page, and .htaccess only works if your apache server is configured to use it -- something J. Random Weblogger may not have access to change.</p>

<p>Worse, given the email spammer wars, I think you are in for a long, and quite possibly futile, war of attack and countermeasure. I like to think that  filtering works -- but I've gotten over 100,000 spam emails hitting my server, despite more and more desperate attempts to stem the tide.</p>

<p>The more complex solution in the link, at first glance, looks more effective. Dropping IP addresses into a gag file may work for a while -- until they start using cracked machines as proxy servers, in which case, they'll dance from machine to machine.</p>

<p>I wish I could offer you a better answer. But, in truth, in the war against spam, we're losing, and badly.</p>]]>
	 &lt;p&gt;Posted October 12, 2003 12:32 AM by Erik V. Olson&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29229</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29229</guid>
         <pubDate>Sun, 12 Oct 2003 00:32:07 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #14 from Erik V. Olson</title>
         <description>comment from Erik V. Olson on 12.Oct.03</description>
         <content:encoded><![CDATA[<p>Oh, yeah. The fastest and safest way to delete them is to talk to the database directly. This presumes MySQL -- other SQL will be similar, other than step 1.</p>

<p>1) From the shell, type</p>

<p>mysql -u <i>username</i> -p</p>

<p>Give it the password. The user and pass should be set in the MT interface somewhere.</p>

<p>Once in, you'll get the MySQL prompt. First, we find them.</p>

<p>SELECT FROM mt_comment WHERE comment_url LIKE '%http://COMMENT_SPAM_URL%' OR comment_text LIKE '%http://COMMENT_SPAM_URL%';</p>

<p>Replace  the %http://COMMENT_SPAM_URL% with the actual URL they are using, but you will need the single quotes around the string. This should return a bunch of spam -- and no real posts. If so, you can then blow them away with...</p>

<p>DELETE FROM mt_comment WHERE comment_url LIKE '%http://COMMENT_SPAM_URL%' OR comment_text LIKE '%http://COMMENT_SPAM_URL%';</p>

<p>In most SQL implementations, the capitalization of anything not in single quotes is unimportant, but tradition is you all cap keywords of the language, and lc variables and the like.</p>

<p>If you return, and nothing comes back except for a prompt, you almost certainly forgot the semicolon at the end. SQL statements end with a semicolon, if you don't put on, the SQL interpreter will thing you aren't done, and just ask for more. If you did forget, just put the semicolon on the next line, and it'll work. Most complex SQL statements are entered on multiple lines, so don't fret.</p>

<p>When in doubt, do a SELECT, which just retrieves, rather than a DELETE. If you are paranoid, and your database supports it, start with.</p>

<p>START TRANSACTION;</p>

<p>and do the deletes, if you screw up, run</p>

<p>ROLLBACK; </p>

<p>and it'll come back to the point where you typed START TRANSACTION. If you're happy,</p>

<p>COMMIT;</p>

<p>ends the transaction and makes it permanent. There are certain SQL commands that are implicit COMMITs, but that gets complex -- in general, anything that alters the structure of the database or the tables themselves, rather than the data within them, will automatically COMMIT all transactions before execution.</p>

<p>However, you can SELECT to your heart's content without hurting anything. And, when in doubt, "man mysql" wouldn't hurt<br />
</p>]]>
	 &lt;p&gt;Posted October 12, 2003 12:50 AM by Erik V. Olson&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29232</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29232</guid>
         <pubDate>Sun, 12 Oct 2003 00:50:09 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #15 from Teresa Nielsen Hayden</title>
         <description>comment from Teresa Nielsen Hayden on 12.Oct.03</description>
         <content:encoded><![CDATA[<p><i>Queep,</i> Erik. </p>

<p>Thank you for the information, which reads as though it ought to be admirably clear once I find out what the nouns mean. I'll start tomorrow with "SQL", and go on from there. </p>

<p>I'm sorry to hear that the bad guys are still winning the spam wars. Would it be so terribly wrong to launch DOS attacks againt outfits that advertise via spam?</p>]]>
	 &lt;p&gt;Posted October 12, 2003  1:30 AM by Teresa Nielsen Hayden&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29236</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29236</guid>
         <pubDate>Sun, 12 Oct 2003 01:30:44 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #16 from Erik V. Olson</title>
         <description>comment from Erik V. Olson on 12.Oct.03</description>
         <content:encoded><![CDATA[<p>SQL: "Structured Query Language" Copyeds are naturals at it. You'll grok it in a half day. (Database design is another thing, but you don't need to design the MT database, you just need to read from it, and delete items in it. Piece o' cake. If you played Zork, you'll find that oddly familar. SQL, at it's simplest, is VERB NOUN from NOUN.)</p>

<p>As to DOS. </p>

<p>1) They own many, many, many more machines that you do. You can try -- they'll either ignore you, or slap you down. Note the number of anti-spam lists that have gone away under severe and sustained DOS attacks.</p>

<p>2) DOS attacks not only attack the bad guy, they attack anyone between you and them. Saturate a T3 feeding a router, and everyone connected to that router falls down.</p>

<p>3) Spammers may be more desperate that you are. </p>]]>
	 &lt;p&gt;Posted October 12, 2003  1:40 AM by Erik V. Olson&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29237</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29237</guid>
         <pubDate>Sun, 12 Oct 2003 01:40:23 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #17 from Tracy</title>
         <description>comment from Tracy on 12.Oct.03</description>
         <content:encoded><![CDATA[<p>You can report these assholes to the FBI, online, by filling out a nifty little form.  There is more info <a href="http://crazytracy.com/blog/archives/001263.html" rel="nofollow">here.</a>  I don't delete the whole post.  I just put this in its place:  THIS COMMENT HAS BEEN DELETED. THE PERSON WHO LEFT THIS COMMENT IS A CHILD PORNOGRAPHER. ALL HEADER INFORMATION OF THIS POST HAS BEEN REPORTED TO THE CYBERCRIMES AGAINST CHILDREN DIVISION OF THE FBI.</p>]]>
	 &lt;p&gt;Posted October 12, 2003  1:11 PM by Tracy&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29327</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29327</guid>
         <pubDate>Sun, 12 Oct 2003 13:11:48 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #18 from adamsj</title>
         <description>comment from adamsj on 12.Oct.03</description>
         <content:encoded><![CDATA[<p>Teresa,</p>

<p>If you didn't tell it to use MySQL, you're probably using BerkeleyDB (I think--I haven't read up on MT 2.6). And again, let me reiterate--use this form, without the wildcard, to block a range:</p>

<p>209.210.176.</p>

<p>Erik is right that these SOBs <b>can</b> overpower you, but that doesn't mean they <b>will</b>.</p>]]>
	 &lt;p&gt;Posted October 12, 2003  1:16 PM by adamsj&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29328</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29328</guid>
         <pubDate>Sun, 12 Oct 2003 13:16:24 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #19 from adamsj</title>
         <description>comment from adamsj on 12.Oct.03</description>
         <content:encoded><![CDATA[<p>Sorry--I was in a hurry to post, and forgot to add that it's not so simple to delete with BerkeleyDB. I think someone would have to write you a script to do it--no command-line prompt.</p>

<p>As the cheerleaders (hopefully, not pre-teen) say:</p>

<p>Block that range! Block that range! Block that range!</p>]]>
	 &lt;p&gt;Posted October 12, 2003  1:19 PM by adamsj&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29330</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29330</guid>
         <pubDate>Sun, 12 Oct 2003 13:19:01 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #20 from Mean Dean</title>
         <description>comment from Mean Dean on 12.Oct.03</description>
         <content:encoded><![CDATA[<p>Sometimes I wish I weren't so straight-laced. Otherwise I might consider a solution I learned on slashdot recently:</p>

<p>http://yro.slashdot.org/comments.pl?sid=77014&threshold=-1&commentsort=3&tid=111&mode=thread&cid=6855944</p>

<p>Instead, I'll just volunteer to help Jay test his application on an older version of MT.</p>]]>
	 &lt;p&gt;Posted October 12, 2003 11:06 PM by Mean Dean&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29417</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29417</guid>
         <pubDate>Sun, 12 Oct 2003 23:06:55 -0500</pubDate>
      </item>
      
      <item>
         <title>Lolita, damn her -- comment #21 from James D. Macdonald</title>
         <description>comment from James D. Macdonald on 13.Oct.03</description>
         <content:encoded><![CDATA[<p>Sometime in the last two months, in this web log, there was a two-word post, "Nice site," in a comment thread that hadn't gotten a post in years. It didn't make any sense in context.</p>

<p>I didn't follow the link from the poster's name.</p>

<p>I wonder now if that might not have been the first shot in this war.<br />
</p>]]>
	 &lt;p&gt;Posted October 13, 2003 11:08 AM by James D. Macdonald&lt;/p&gt;</content:encoded>
         <link>http://nielsenhayden.com/makinglight/archives/003771.html#29450</link>
         <guid isPermaLink="true">http://nielsenhayden.com/makinglight/archives/003771.html#29450</guid>
         <pubDate>Mon, 13 Oct 2003 11:08:19 -0500</pubDate>
      </item>
      
   </channel>
</rss>