Today I am getting serious problems with anonymous attacks on my client's website.
On the history report link. Dashbord admin The website displays an access report like the following example:
http://www.mydomain.com/index.
php?route=product/category&
;path=268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_269
The anonymous ip that tries to access using the link pattern as above is very much around tens of ip in a few minutes. Which causes the server down.
Top processes
Last updated: 1 minute ago
CPU
Memory
mysqld 135.72%
php 35.02%
httpd 4.44%
watch 0.10%
nscd 0.07%
do-agent 0.03%
spamd 0.02%
Please help. How to solve the problem. Attacks are still going on at this time.
Thanks for your quick response and help
On the history report link. Dashbord admin The website displays an access report like the following example:
http://www.mydomain.com/index.
php?route=product/category&
;path=268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_268_268_268_268_
268_268_268_268_268_268_268_26
8_268_268_268_269
The anonymous ip that tries to access using the link pattern as above is very much around tens of ip in a few minutes. Which causes the server down.
Top processes
Last updated: 1 minute ago
CPU
Memory
mysqld 135.72%
php 35.02%
httpd 4.44%
watch 0.10%
nscd 0.07%
do-agent 0.03%
spamd 0.02%
Please help. How to solve the problem. Attacks are still going on at this time.
Thanks for your quick response and help
It's not related to OpenCart, it's a server issue. You need to contact your hosting provider on the matter.
Professional OpenCart extensions, support and custom work.
Contact me via email or Skype by support@thekrotek.com
What is the server'issue. any suggest to check it.
I created my own vps / shared hosting (for some client websites). But only 1 website that getting problem, Because of the above problems. Other websites are still okay and can be accessed. All website using opencart .
I created my own vps / shared hosting (for some client websites). But only 1 website that getting problem, Because of the above problems. Other websites are still okay and can be accessed. All website using opencart .
Like I said, contact your hosting provider.
Professional OpenCart extensions, support and custom work.
Contact me via email or Skype by support@thekrotek.com
Strictly technically, repeated URL-Call's could be re-directed also, to possibly
avoid a Server Break Down. But this only works, if the Link, used by the 'Visitor'
is exactly the same, as declared in the re-direct Extension.
I use this Re-Direct, in addition the the ACCESS DENY HTACCESS Routine,
in order to avoid someone using the same Links, but coming from another IP,
beeing able to try bad things. So, I just re-send them to a nice Place!
I even got indexed by Google this way, some years ago, ending up in Vegas!
Sample Redirect Link:
http://www.bigmax.ch/shop/index.php%3Fr ... xmlrpc.php
---
But don't take it personal, such attempts happen to my sites on a daily bases,
they just don't break down so far, because of such.
Good Luck!
Ernie
Just another Idea, trying to fight back a little at least. But it's a daily task, to make sure !
---
Some free OC Redirect Extensions:
https://www.opencart.com/index.php?rout ... n_id=27447
https://www.opencart.com/index.php?rout ... n_id=30762
found here:
https://www.opencart.com/index.php?rout ... search=301
---


---
my latest Root .htaccess Blocker file: Date: 20.06.2017 Time: 02.30 Swiss Time.
Since I don't sell anything, I can't loose valuable Customers, so, I act generously, by
blocking entire Ranges, instead of single and most likely changing IP's only.
avoid a Server Break Down. But this only works, if the Link, used by the 'Visitor'
is exactly the same, as declared in the re-direct Extension.
I use this Re-Direct, in addition the the ACCESS DENY HTACCESS Routine,
in order to avoid someone using the same Links, but coming from another IP,
beeing able to try bad things. So, I just re-send them to a nice Place!

I even got indexed by Google this way, some years ago, ending up in Vegas!
Sample Redirect Link:
http://www.bigmax.ch/shop/index.php%3Fr ... xmlrpc.php
---
But don't take it personal, such attempts happen to my sites on a daily bases,

they just don't break down so far, because of such.
Good Luck!
Ernie
Just another Idea, trying to fight back a little at least. But it's a daily task, to make sure !
---
Some free OC Redirect Extensions:
https://www.opencart.com/index.php?rout ... n_id=27447
https://www.opencart.com/index.php?rout ... n_id=30762
found here:
https://www.opencart.com/index.php?rout ... search=301
---
---
my latest Root .htaccess Blocker file: Date: 20.06.2017 Time: 02.30 Swiss Time.
Since I don't sell anything, I can't loose valuable Customers, so, I act generously, by
blocking entire Ranges, instead of single and most likely changing IP's only.
My Github OC Site: https://github.com/IP-CAM
5'600 + FREE OC Extensions, on the World's largest private Github OC Repository Archive Site.
Who is online
Users browsing this forum: paulfeakins, SohBH and 13 guests