NEWS

someone's pounding my account like a demon.

  • 10 Replies
  • 3341 Views

1

  • *
  • Guest
« on: <04-03-14/1359:15> »
Lots of IP addresses, lots of attempts. I actually do appreciate the notifications, but my bet is your server's getting pounded.

Just a heads up.

1

  • *
  • Guest
« Reply #1 on: <04-03-14/1450:50> »
34 attempts so far. Assuming they're only going after old unused accounts, that could still be a large number of attempts overall.

Namikaze

  • *
  • Freelancer Ltd
  • Prime Runner
  • **
  • Posts: 4068
  • I'm a Ma'fan of Shadowrun!
« Reply #2 on: <04-03-14/1505:57> »
What do you mean by "pounding your account"?  I'd like to see if my account is under attack as well.
Feel free to keep any karma you earned illicitly, it's on us.

Quote from: Stephen Covey
Most people do not listen with the intent to understand; they listen with the intent to reply.

1

  • *
  • Guest
« Reply #3 on: <04-03-14/1559:40> »
In my mailbox arrive the following. (38 so far with a wide variety of IP addresses)
_____________________

Hello 1,
We have detected a failed login attempt on your account.



IP address of the failed login attempt: 193.203.48.46
__________________

Needed to use the email a secure login feature to get in.

1

  • *
  • Guest
« Reply #4 on: <04-04-14/0659:04> »
56 attempts so far. Slow, but determined.

Would it be possible to increase the time people are locked out of their accounts for password fails to a day or a week?

1

  • *
  • Guest
« Reply #5 on: <04-05-14/0811:50> »
100 so far, so, determined, but I'm guessing other people have passwords higher up in dictionary files than I do. At this point, I'm washing my hands of the matter. If I spam you later. My apologies, but it wasn't me.

Namikaze

  • *
  • Freelancer Ltd
  • Prime Runner
  • **
  • Posts: 4068
  • I'm a Ma'fan of Shadowrun!
« Reply #6 on: <04-05-14/1141:07> »
The weird thing is, I think it's only happening to your account.  I looked to see if it was happening to mine, and nothing was happening.  Are you sure you don't have a malware running, like a bot?
Feel free to keep any karma you earned illicitly, it's on us.

Quote from: Stephen Covey
Most people do not listen with the intent to understand; they listen with the intent to reply.

FastJack

  • *
  • Administrator
  • Prime Runner
  • *****
  • Posts: 6367
  • Kids these days...
« Reply #7 on: <04-05-14/1651:38> »
I think it's most likely because of his account name being "1", which a lot of spammers try to establish as account.

Sendaz

  • *
  • Ace Runner
  • ****
  • Posts: 2220
  • Associate of Rywfol Emwolb Industries
« Reply #8 on: <04-06-14/1118:58> »
So you could say he is the chosen (by spammers) One. :P
Do you believe in a greater WIRELESS, an Invisible(WiFi) All Seeing(detecting those connected- at least if within 100'), All Knowing(all online data) Presence that we can draw upon for Wisdom(downloads & updates), Strength (wifi boni) and Comfort (porn) or do you turn your back on it  (Go Offline)?

1

  • *
  • Guest
« Reply #9 on: <04-07-14/0818:18> »
If it was malware it would originate from a single IP address. Of the 180 attempts so far, I don't believe there are any duplicate IP addresses. So, basically, a botnet.
My account has not been in use since close to the beginning of the creation of this forum. So it's an account that has long been inactive.
So if someone was looking to avoid people like me: i.e. people who would a) notice, and b) bother informing the forums one could.
1) grab the account list from the forum.
2) Throw out recently created accounts
3) Throw out accounts with high post contents.
4) Go for the rest.
5) Do slow and steady attacks on the rest, knowing the system only locks you out for a short period of time.

Why would someone bother? Honestly, heck if I know. Maybe they're trying to build a list of account name / passwords pairs to use on other locations. Maybe they're looking for personal information. Maybe they're hoping to sell more spam here. Maybe they're bored. Maybe they find the thought of doing a run on the Shadowrun forums to be a nice irony. Maybe they have a grudge and are looking to start a forum war with a bunch of old accounts as proxies. Who knows. I'm not concerned, but I figured someone ought to get a heads up in case they wanted to extend the account locked times or something.

1

  • *
  • Guest
« Reply #10 on: <04-08-14/0639:27> »
Deleting account. If it shows up again, it's not me.