![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
|
New Webmasters ask "How-To" questions here. This is where other fucking Webmasters help. |
|
Thread Tools |
![]() |
#1 |
Confirmed User
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
|
How to stop a massive attack ?
i am receiving multiple solicitudes from different ips trying to enter my member zone
almost all ips are from China and asia countries. what teh best to stop this ? |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#2 |
small trip to underworld
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
|
easiest thing u can do .. put htaccess file in your website and block them
__________________
automatic exchange - paxum , bitcoin,pm, payza . daizzzy signbucks caution will black-hat black-hat your traffic ignored forever :zuzana designs
|
![]() |
![]() ![]() ![]() ![]() |
![]() |
#3 |
Confirmed User
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
|
not so easy..
at this time, it stops, but there were some like 4 hours, some like 20 or 30 different china and russian ips per minute ! this is what we can name as a denial of service attack ? |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#4 |
Confirmed User
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
|
sorry. a small correction
tehy don't stop... appears that this m**fuck**s only take a breath |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#5 |
small trip to underworld
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
|
so did u tried to deny them via htaccess ? i think this small ddos maybe your site need to protected by firewall
__________________
automatic exchange - paxum , bitcoin,pm, payza . daizzzy signbucks caution will black-hat black-hat your traffic ignored forever :zuzana designs
|
![]() |
![]() ![]() ![]() ![]() |
![]() |
#6 |
Confirmed User
Industry Role:
Join Date: Jul 2011
Location: The Land of the Inkas
Posts: 226
|
yes is a slow dos attack, to down my server, but idiots this guys because they point to a password protected url, so it only take some bytes per each request... smart guys better point to urls with dozen of pictures...
the problem using htaccess is that i need to send them to another website, and since is not a real person cannot take advantage of the traffic. |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#7 |
small trip to underworld
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
|
i understand , but htaccess is least thing u can do here typically a root access to your server to install firewall if u running vps or detected server its necessary and i'm not going to lie this need more experience with network troubleshooting .. i'm not sure if shared hosting can handle that its not guaranteed to stop this attacks 100% but it will help u to lower the connections from strangers /bots
the attackers trying to break these protected pages or stopping other users from using them contact the hosting see if they can help u
__________________
automatic exchange - paxum , bitcoin,pm, payza . daizzzy signbucks caution will black-hat black-hat your traffic ignored forever :zuzana designs
|
![]() |
![]() ![]() ![]() ![]() |
![]() |
#8 |
Registered User
Industry Role:
Join Date: Nov 2013
Posts: 39
|
htaccess block or ask hoster for help, sometimes they do....
|
![]() |
![]() ![]() ![]() ![]() |
![]() |
#9 |
Confirmed User
Industry Role:
Join Date: Sep 2010
Location: The Land Of Gods
Posts: 167
|
Are you on a vps or shared hosting account?
On a vps with nginx (geoip module included) is pretty easy to ban entire countries as follows Code:
http { ..... map $geoip_city_country_code $allowed_country { default yes; CN no; JP no; } server { if ($allowed_country = no) { return 444; .... .... } } |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#10 |
Confirmed User
Industry Role:
Join Date: Jul 2001
Posts: 3,766
|
You need to run something to protect you, the best options are:
https://www.bettercgi.com/strongbox/ or http://www.proxigence.com/pp-about.html If you want to save cash: look at the usernames being used and change the passwords of those members
__________________
![]() be our partner - join nichepartners today will.assum.producer @ AmateurCanada.com / icq: 30146166 / facebook.com/will.assum / #amateurcanada |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#11 | ||||
Confirmed User
Industry Role:
Join Date: Jan 2013
Location: Nashville,TN. Music City U.S.A.
Posts: 2,248
|
Quote:
Quote:
Quote:
Quote:
Please answer the following: What type of hosting plan are you using? Shared Hosting with cpanel/other server control panel? This is a common situation that usually requires some web host support intervention. Managed VPS with Cpanel/Plesk/other server control panel? This is a common situation that may require some web host support intervention. UnManaged VPS with Cpanel/Plesk/other server control panel? This usually involves installing and adjusting some plug ins based on your server software Dedicated Server with Cpanel/Plesk/other server control panel? This usually involves installing and adjusting some plug ins based on your server software Basic information is needed to offer real solutions. If you have subscribers in those countries your blocking will need to be more IP specific. There are plug ins that may help, that limit the number of connections or terminate requests that hang for an extended time. There are multiple solutions in order to suggest the best options more information about your host situation is required. Give some details to help us help you.
__________________
Please HELP |
||||
![]() |
![]() ![]() ![]() ![]() |
![]() |
#12 |
Confirmed User
Industry Role:
Join Date: Oct 2003
Location: L.A.
Posts: 5,740
|
That is not a denial of service attack. That is a brute force attack to try and guess a members login credentials.
__________________
![]() ![]() * Handwritten * 180 C Class IPs * Permanent! * Many Niches! * Bulk Discounts! GFYPosts /at/ J2Media.net |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#13 |
Confirmed User
Industry Role:
Join Date: Nov 2013
Posts: 234
|
Check out http://www.cloudflare.com/. Can help alot with this matter.
__________________
PornDeals.com - WebcamDeals.com - GayDeals.com - PornCoupons.com new! david{att}porndeals{dott}com (email) porndeals.d (skype) -- Looking for HQ hardlinks in all niches!!! -- Looking to buy websites with income & stable traffic! Contact me if you have something interesting ![]() |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#14 |
Confirmed User
Join Date: May 2008
Posts: 2,348
|
A real solution that you need is a server that you can backup and move with a push of a button. Stream your content to that server. The server will have a new ip when ever you move it, this should not take longer then 10 min to be back up and running.
But to combat the stream of attacks you can look into a service like this https://www.1h.com/products/guardian https://www.1h.com/products/hawk it doesn't cost much and helps a ton.
__________________
skype: codercarlos |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#15 |
Confirmed User
Industry Role:
Join Date: Nov 2013
Posts: 234
|
Dont use htaccess to block ips. I suggest u using cloudflare.com. Its free, filters your traffic and allows u go block incoming traffic before they come to your server. Actually it switches your dns servers and hides your true location plus it helps with server load by caching media and pages and does cdn service.
Check it out. Works wonders.
__________________
PornDeals.com - WebcamDeals.com - GayDeals.com - PornCoupons.com new! david{att}porndeals{dott}com (email) porndeals.d (skype) -- Looking for HQ hardlinks in all niches!!! -- Looking to buy websites with income & stable traffic! Contact me if you have something interesting ![]() |
![]() |
![]() ![]() ![]() ![]() |
![]() |
#16 | |
small trip to underworld
Industry Role:
Join Date: Mar 2012
Location: first gen intel 80386/nintendo-gb/arcade/ps1/internet person
Posts: 4,927
|
Quote:
![]()
__________________
automatic exchange - paxum , bitcoin,pm, payza . daizzzy signbucks caution will black-hat black-hat your traffic ignored forever :zuzana designs
|
|
![]() |
![]() ![]() ![]() ![]() |
![]() |
#17 |
Confirmed User
Industry Role:
Join Date: Sep 2003
Location: NZ
Posts: 673
|
__________________
-- react |
![]() |
![]() ![]() ![]() ![]() |