Register Members List Search Today's Posts Mark Forums Read

Closed Thread
 
Thread Tools
  #1  
Old 18 Apr 2016, 09:44
Master-Guy Master-Guy is offline
 
Join Date: Oct 2007
Account hijack attempt on your site

Dear administrators,

Please note that there is a hijack bot attacking your website.
It originates from the IP address 114.111.167.229, which is a known source of trouble.
Would you please be so kind to permanently block this IP from your website, and prevent it from attempting to brute-force accounts? Your 15 minute block seems to have slowed it down for now.

With kind regards,
"Master-Guy" Marcel
  #2  
Old 18 Apr 2016, 10:15
harleyknd1 harleyknd1 is offline
 
Join Date: Dec 2013
I can confirm this, it uses proxy IP's to bypass the timers, last attack attempt on my account came from: 101.254.188.198

I suggest all users to change their passwords to a md5 string which should make brute force impossible
  #3  
Old 18 Apr 2016, 10:15
NovoCiv NovoCiv is offline
 
Join Date: Aug 2010
There is also a bot attacking from 202.100.167.169

This IP comes up in a lot of spam reports so it's also safe to block.
  #4  
Old 18 Apr 2016, 12:27
sanoja sanoja is offline
 
Join Date: Nov 2010
Also known attack IP coming from 120.55.167.192
  #5  
Old 18 Apr 2016, 12:28
ForceHSS's Avatar
ForceHSS ForceHSS is offline
 
Join Date: Apr 2008
This happens every few months nothing to worry about
  #6  
Old 18 Apr 2016, 13:49
Duke49th Duke49th is offline
 
Join Date: Sep 2014
Same here guys:

Dear Duke49th,

Someone has tried to log into your account on vBulletin.org Forum with an incorrect password at least 5 times. This person has been prevented from attempting to login to your account for the next 15 minutes.

The person trying to log into your account had the following IP address: 87.229.235.202

All the best,
vBulletin.org Forum
The only thing making me worry a bit is that he tried vbulletin.org - I used the same email adress on linuxmint forums which was hacked two times a couple of weeks ago. (but I use different random passwords now everywhere since that day)

Someone else was registered there with the email he used here? Is it really happening randomly here in this forum?

@ForceHSS: I have a stalker thats why I am a bit nervous also^^

Last edited by Duke49th; 18 Apr 2016 at 13:55.
  #7  
Old 18 Apr 2016, 14:28
ForceHSS's Avatar
ForceHSS ForceHSS is offline
 
Join Date: Apr 2008
Originally Posted by Duke49th View Post
Same here guys:



The only thing making me worry a bit is that he tried vbulletin.org - I used the same email adress on linuxmint forums which was hacked two times a couple of weeks ago. (but I use different random passwords now everywhere since that day)

Someone else was registered there with the email he used here? Is it really happening randomly here in this forum?

@ForceHSS: I have a stalker thats why I am a bit nervous also^^
If you have a strong password you don't need to worry and on your email make sure you have the two step security put in place it will stop them getting into your email system
  #8  
Old 18 Apr 2016, 23:01
TheLastSuperman's Avatar
TheLastSuperman TheLastSuperman is offline
 
Join Date: Sep 2008
Real name: Michael Miller Jr
Originally Posted by Duke49th View Post
Same here guys:



The only thing making me worry a bit is that he tried vbulletin.org - I used the same email adress on linuxmint forums which was hacked two times a couple of weeks ago. (but I use different random passwords now everywhere since that day)

Someone else was registered there with the email he used here? Is it really happening randomly here in this forum?

@ForceHSS: I have a stalker thats why I am a bit nervous also^^
Great! Always do this for every site! Problems remembering passwords? Don't have your browser do it (virus on pc and all passwords now known ) instead purchase a black ledger book or similar from local store, write down all passwords in there - a different one for each site .

Yes it happens here and on other forums randomly, they do this because quite a few people still use the password... "password" which is silly at best! Using your birthday if Dec 20th for example 1220 as a password is also silly. The moral of the story is... you guessed it - Don't be silly! (lol). 18+ character/digit passwords using upper+lower case letters numbers and symbols, if you can go more than 18 characters then by all means do so.

Originally Posted by ForceHSS View Post
If you have a strong password you don't need to worry and on your email make sure you have the two step security put in place it will stop them getting into your email system
^^ Force is a regular member on here, his advice on this is solid. Closing thread like the countless others i.e. this has been posted before but no one ever uses the search they just post to cause mass panic J/K J/K . I'll bug Paul about having the email being sent changed so there is some form of info/disclaimer regarding why you shouldn't post and so you know it happens every now and then no promises but I will follow up to see about it.

DO NOT USE THE SAME PASSWORD FOR EVERY SITE!
__________________
Daddy Does Dios and Figs!
https://www.linkedin.com/in/thelastsuperman

Search - Use the search feature to find similar issues/answers.
Information - Include screenshots, copy/pasted error codes, url etc.
Fixed - Please return to your thread/post and let us know how it was fixed!
Thanks - For participating! Click the "Like" on a post if someone helped you!

Last edited by TheLastSuperman; 18 Apr 2016 at 23:10.
Closed Thread

Similar Threads
Thread Thread Starter Forum Replies Last Post
Profile Enhancements Add Your LinkedIn Account To Your postbit/postbit_legacy metalguy639 vBulletin 3.8 Template Modifications 17 24 Jul 2012 01:59



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


New To Site? Need Help?

All times are GMT. The time now is 00:27.

Layout Options | Width: Wide Color: