Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

 

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
New Webmasters ask "How-To" questions here. This is where other fucking Webmasters help.

 
Thread Tools
Old 11-28-2013, 07:38 PM   #1
LokoWilli
Confirmed User
 
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
How to stop a massive attack ?

i am receiving multiple solicitudes from different ips trying to enter my member zone
almost all ips are from China and asia countries.
what teh best to stop this ?
LokoWilli is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 11-28-2013, 09:24 PM   #2
CPA-Rush
small trip to underworld
 
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
easiest thing u can do .. put htaccess file in your website and block them
__________________

automatic exchange - paxum , bitcoin,pm, payza

. daizzzy signbucks caution will black-hat black-hat your traffic

ignored forever :zuzana designs
CPA-Rush is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 11-28-2013, 09:41 PM   #3
LokoWilli
Confirmed User
 
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
not so easy..
at this time, it stops, but there were some like 4 hours,
some like 20 or 30 different china and russian ips per minute !
this is what we can name as a denial of service attack ?

Last edited by LokoWilli; 11-28-2013 at 09:47 PM..
LokoWilli is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 11-28-2013, 09:47 PM   #4
LokoWilli
Confirmed User
 
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
sorry. a small correction
tehy don't stop...
appears that this m**fuck**s only take a breath
LokoWilli is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 11-28-2013, 10:12 PM   #5
CPA-Rush
small trip to underworld
 
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
so did u tried to deny them via htaccess ? i think this small ddos maybe your site need to protected by firewall
__________________

automatic exchange - paxum , bitcoin,pm, payza

. daizzzy signbucks caution will black-hat black-hat your traffic

ignored forever :zuzana designs
CPA-Rush is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 11-28-2013, 11:45 PM   #6
LokoWilli
Confirmed User
 
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
yes is a slow dos attack, to down my server, but idiots this guys because they point to a password protected url, so it only take some bytes per each request... smart guys better point to urls with dozen of pictures...
the problem using htaccess is that i need to send them to another website, and since is not a real person cannot take advantage of the traffic.
LokoWilli is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 11-29-2013, 12:56 AM   #7
CPA-Rush
small trip to underworld
 
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
i understand , but htaccess is least thing u can do here typically a root access to your server to install firewall if u running vps or detected server its necessary and i'm not going to lie this need more experience with network troubleshooting .. i'm not sure if shared hosting can handle that its not guaranteed to stop this attacks 100% but it will help u to lower the connections from strangers /bots

the attackers trying to break these protected pages or stopping other users from using them

contact the hosting see if they can help u
__________________

automatic exchange - paxum , bitcoin,pm, payza

. daizzzy signbucks caution will black-hat black-hat your traffic

ignored forever :zuzana designs
CPA-Rush is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 12-20-2013, 03:40 AM   #8
DONOVAN66
Registered User
 
Industry Role:
Join Date: Nov 2013
Posts: 39
htaccess block or ask hoster for help, sometimes they do....
DONOVAN66 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 12-20-2013, 02:31 PM   #9
Firestarter30
Confirmed User
 
Industry Role:
Join Date: Sep 2010
Location: The Land Of Gods
Posts: 167
Are you on a vps or shared hosting account?
On a vps with nginx (geoip module included) is pretty easy to ban entire countries as follows
Code:
http {
.....
map $geoip_city_country_code $allowed_country {
default yes;
CN no;
JP no;
}
server {
if ($allowed_country = no) {
return 444;
....
....
}
}

Last edited by Firestarter30; 12-20-2013 at 02:33 PM..
Firestarter30 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 12-26-2013, 10:03 PM   #10
amateurcanada
Confirmed User
 
amateurcanada's Avatar
 
Industry Role:
Join Date: Jul 2001
Posts: 3,766
You need to run something to protect you, the best options are:

https://www.bettercgi.com/strongbox/
or
http://www.proxigence.com/pp-about.html

If you want to save cash: look at the usernames being used and change the passwords of those members
__________________

be our partner - join nichepartners today
will.assum.producer @ AmateurCanada.com / icq: 30146166 / facebook.com/will.assum / #amateurcanada
amateurcanada is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 12-27-2013, 12:26 AM   #11
WDF
Confirmed User
 
WDF's Avatar
 
Industry Role:
Join Date: Jan 2013
Location: Nashville,TN. Music City U.S.A.
Posts: 2,248
Quote:
Originally Posted by LokoWilli View Post
i am receiving multiple solicitudes from different ips trying to enter my member zone
almost all ips are from China and asia countries.
what teh best to stop this ?
Quote:
Originally Posted by LokoWilli View Post
not so easy..
at this time, it stops, but there were some like 4 hours,
some like 20 or 30 different china and russian ips per minute !
this is what we can name as a denial of service attack ?
Quote:
Originally Posted by LokoWilli View Post
sorry. a small correction
tehy don't stop...
appears that this m**fuck**s only take a breath
Quote:
Originally Posted by LokoWilli View Post
yes is a slow dos attack, to down my server, but idiots this guys because they point to a password protected url, so it only take some bytes per each request... smart guys better point to urls with dozen of pictures...
the problem using htaccess is that i need to send them to another website, and since is not a real person cannot take advantage of the traffic.
This is not true if you use the DENY command in htaccess. check here: http://www.htaccess-guide.com/deny-v...by-ip-address/ search Google for "htaccess DENY IP".

Please answer the following:

What type of hosting plan are you using?

Shared Hosting with cpanel/other server control panel?

This is a common situation that usually requires some web host support intervention.

Managed VPS with Cpanel/Plesk/other server control panel?

This is a common situation that may require some web host support intervention.

UnManaged VPS with Cpanel/Plesk/other server control panel?

This usually involves installing and adjusting some plug ins based on your server software

Dedicated Server with Cpanel/Plesk/other server control panel?

This usually involves installing and adjusting some plug ins based on your server software

Basic information is needed to offer real solutions. If you have subscribers in those countries your blocking will need to be more IP specific. There are plug ins that may help, that limit the number of connections or terminate requests that hang for an extended time. There are multiple solutions in order to suggest the best options more information about your host situation is required.

Give some details to help us help you.
__________________
Please HELP

Last edited by WDF; 12-27-2013 at 12:32 AM..
WDF is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 12-27-2013, 01:17 AM   #12
PornDiscounts-V
Confirmed User
 
PornDiscounts-V's Avatar
 
Industry Role:
Join Date: Oct 2003
Location: L.A.
Posts: 5,740
That is not a denial of service attack. That is a brute force attack to try and guess a members login credentials.
__________________
Blog Posts - Contextual Links - Hardlinks on 600+ Blog Network
* Handwritten * 180 C Class IPs * Permanent! * Many Niches! * Bulk Discounts! GFYPosts /at/ J2Media.net
PornDiscounts-V is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 12-27-2013, 06:27 AM   #13
David-PD
Confirmed User
 
David-PD's Avatar
 
Industry Role:
Join Date: Nov 2013
Posts: 234
Check out http://www.cloudflare.com/. Can help alot with this matter.
__________________

PornDeals.com - WebcamDeals.com - GayDeals.com - PornCoupons.com new!

david{att}porndeals{dott}com (email)
porndeals.d (skype)

--

Looking for HQ hardlinks in all niches!!!

--

Looking to buy websites with income & stable traffic! Contact me if you have something interesting
David-PD is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 01-22-2014, 09:22 AM   #14
dirtymind
Confirmed User
 
Join Date: May 2008
Posts: 2,348
A real solution that you need is a server that you can backup and move with a push of a button. Stream your content to that server. The server will have a new ip when ever you move it, this should not take longer then 10 min to be back up and running.

But to combat the stream of attacks you can look into a service like this
https://www.1h.com/products/guardian
https://www.1h.com/products/hawk

it doesn't cost much and helps a ton.
__________________
skype: codercarlos
dirtymind is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 01-26-2014, 04:08 AM   #15
David-PD
Confirmed User
 
David-PD's Avatar
 
Industry Role:
Join Date: Nov 2013
Posts: 234
Dont use htaccess to block ips. I suggest u using cloudflare.com. Its free, filters your traffic and allows u go block incoming traffic before they come to your server. Actually it switches your dns servers and hides your true location plus it helps with server load by caching media and pages and does cdn service.

Check it out. Works wonders.
__________________

PornDeals.com - WebcamDeals.com - GayDeals.com - PornCoupons.com new!

david{att}porndeals{dott}com (email)
porndeals.d (skype)

--

Looking for HQ hardlinks in all niches!!!

--

Looking to buy websites with income & stable traffic! Contact me if you have something interesting
David-PD is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 01-26-2014, 04:23 AM   #16
CPA-Rush
small trip to underworld
 
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
Quote:
Originally Posted by dcernuta View Post
Dont use htaccess to block ips. I suggest u using cloudflare.com. Its free, filters your traffic and allows u go block incoming traffic before they come to your server. Actually it switches your dns servers and hides your true location plus it helps with server load by caching media and pages and does cdn service.

Check it out. Works wonders.
__________________

automatic exchange - paxum , bitcoin,pm, payza

. daizzzy signbucks caution will black-hat black-hat your traffic

ignored forever :zuzana designs
CPA-Rush is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
Old 01-26-2014, 07:48 AM   #17
react
Confirmed User
 
Industry Role:
Join Date: Sep 2003
Location: NZ
Posts: 673
__________________
--
react
react is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook
 
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.