Register Members List Search Today's Posts Mark Forums Read

Closed Thread
 
Thread Tools
  #16  
Old 02 Feb 2013, 16:06
DivisionByZero's Avatar
DivisionByZero DivisionByZero is offline
 
Join Date: Dec 2002
Real name: Chris
Originally Posted by Paul M View Post
Better prepared for what exactly ? The software is doing its job.
People who use OOB software and call themselves entrepreneurs want everything in one big package. Most are disappointed though when they discover that websites are not Chia Pets. You don't just add water and watch it grow. You actually have to do some work and know what you're doing.
__________________
Professional vB development since 2002.
References & Praise: 1|2|3|4|5|6|7|8
  #17  
Old 02 Feb 2013, 16:24
---MAD--- ---MAD--- is offline
 
Join Date: Jun 2005
I've received 56 in the last 4 days as well. Is there no way to stop these e-mails other than labelling them as spam?
  #18  
Old 02 Feb 2013, 16:35
Digital Jedi's Avatar
Digital Jedi Digital Jedi is offline
 
Join Date: Oct 2006
Real name: Mark Daniel Martinez
Here's a quick question, guys. Why would you NOT want to know that someone failed hacking into your account, considering the prevailing attitudes towards websites who never tell them anything about what they do behind the scenes?
__________________
  #19  
Old 02 Feb 2013, 18:53
DivisionByZero's Avatar
DivisionByZero DivisionByZero is offline
 
Join Date: Dec 2002
Real name: Chris
99% of SPAM comes from China. I have no reason for anyone in China to view any content on my servers, so I block all Chinese IP space at the firewall level.

The current IP list by country is available from ARIN or here: http://www.nirsoft.net/countryip/cn.html

I get maybe one or two a month at this rate and ASL blocks the IP of any suspicious activity forever.
__________________
Professional vB development since 2002.
References & Praise: 1|2|3|4|5|6|7|8
  #20  
Old 02 Feb 2013, 19:01
Amaury Amaury is offline
 
Join Date: Nov 2011
Real name: Amaury
Just got 10 e-mails saying my account was locked.

Like Paul said, though, if you have a strong password, there's nothing to worry about.

EDIT: Just got more. XD
__________________
I am a former vBulletin user and am no longer regularly active here.

KH-Flare moved to XenForo on January 1, 2014.

Last edited by Amaury; 02 Feb 2013 at 19:10.
  #21  
Old 02 Feb 2013, 20:57
Amit86 Amit86 is offline
 
Join Date: Feb 2008
Real name: Amit K.
Just received 180 emails about my account being locked for wrong password
  #22  
Old 02 Feb 2013, 20:58
Amenadiel's Avatar
Amenadiel Amenadiel is offline
 
Join Date: Sep 2006
A few more IPs from last hours

111.221.3.218
85.133.162.132
84.241.52.97
213.154.203.148
59.57.15.71
111.161.30.218
187.5.228.123
42.121.16.222
180.250.130.186
62.210.226.142
202.69.105.154
190.153.5.95
78.134.255.43
111.221.3.218
77.110.120.200
210.14.143.53
186.95.122.150

at least they bothered to hire a botnet to perform the attack.
  #23  
Old 02 Feb 2013, 21:10
Alex_Grist Alex_Grist is offline
 
Join Date: Jan 2008
I've also had over 150 emails regarding my account being locked due to someone attempting to brute force my password; VBulletin should be better prepared for something like this, surely having an account locked means you can't attempt at all for 15 minutes? This is annoying spam that needs to be prevented.

Edit:

Added a GMail filter to automatically delete the annoying emails.

Last edited by Alex_Grist; 02 Feb 2013 at 21:15.
  #24  
Old 02 Feb 2013, 22:00
Azunai Azunai is offline
 
Join Date: Feb 2012
Well how about an email WHENEVER someone SUCCESSFULLY logs into your account
this would be very intersting to now + avoid "login try" spam
  #25  
Old 02 Feb 2013, 22:11
BarelyHangingOn BarelyHangingOn is offline
 
Join Date: Feb 2003
I am getting a pole load of them too. Annoying.
  #26  
Old 02 Feb 2013, 22:18
DAMINK DAMINK is offline
 
Join Date: Jun 2010
I changed locations for my admin and mod areas.
Never had an issue with false logins unless its me screwing up (happens often).

I made a fake admin/mod area that ultimately leads to a trap and .htaccess bans that ip address.
Nice simple easy solution.
I imagine these attacks are automated and looking for /admincp/ sort of thing.

I highly recommend renaming your admin and mod areas.
Not to mention hiding your version number as they often use the 2 as a means of targeting the desired board.
__________________
FTW Forum <- Home of the damned!
  #27  
Old 02 Feb 2013, 22:50
Bluemax712 Bluemax712 is offline
 
Join Date: Oct 2010
Yes - it should be redesigned to lockout for 15 minutes from any IP
I got 14 emails listing 14 different IPs within 5 minutes

or maybe it is locking out from all IPs for 15 minutes
and it's the message that should be changed when there are more attempts from different IPs during the lockout period:

Account already locked but another attempt has been made by xxx.xxx.xxx.xxx

Last edited by Bluemax712; 02 Feb 2013 at 23:05.
  #28  
Old 02 Feb 2013, 22:57
AuroraStorm's Avatar
AuroraStorm AuroraStorm is offline
 
Join Date: Nov 2006
Yep...I got the same thing from an IP 180.241.113.26 that I tracked to Indonesia...
  #29  
Old 02 Feb 2013, 23:01
Digital Jedi's Avatar
Digital Jedi Digital Jedi is offline
 
Join Date: Oct 2006
Real name: Mark Daniel Martinez
Originally Posted by Alex_Grist View Post
I've also had over 150 emails regarding my account being locked due to someone attempting to brute force my password; VBulletin should be better prepared for something like this, surely having an account locked means you can't attempt at all for 15 minutes? This is annoying spam that needs to be prevented.

Edit:

Added a GMail filter to automatically delete the annoying emails.
Better prepared? The didn't get in. They got locked out. Your account did not get compromised. AND you were informed. Exactly what would be better than that?
__________________
  #30  
Old 02 Feb 2013, 23:18
Beretta1526 Beretta1526 is offline
 
Join Date: Mar 2008
More IP's from about 45 minutes ago, and then 36 minutes ago:

190.37.38.210
190.221.174.130
186.103.129.84
177.53.104.9
186.103.136.228
84.55.76.228

I guess it's a good thing I didn't use "monkey" for my password, huh?

.
Closed Thread



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


New To Site? Need Help?

All times are GMT. The time now is 23:55.

Layout Options | Width: Wide Color: