• Resolved Dartshop

    (@dartshop)


    Hi Guys.

    I just finished building a site and it has only been live 4 weeks.

    Almost every single day, and it is three times today, the site has emailed me saying there has been a failed login on an account, which is the Admin account, but i do not call it that.

    I am guessing it is a brute force attempt to hack me?? The reported ip is 178.162.211.200 on this occasion, should i go to CPanel and block that IP? I have been doing that but built up 30 or so blocked ip’s in only 5 weeks.

    I have a 20 minute lockout after the 4th attempt of a wrong password and then a 22hr lockout after 4 more attempts. Should i do anything else?

    Any advice would be greatly appreciated.

Viewing 2 replies - 1 through 2 (of 2 total)
  • You’re doing enough now, but you can block IP’s like that if you like. I tried that for ages, and it didn’t do much but make the bots switch to another IP address.

    As a note, what you’re seeing there is pretyt much nothing. A few of my sites have seen figures ike 700 failed attempts every hour for about a week. My record so far is a bit over 5,000 24-block bans (like 123.123.123.000 – 123.123.123.255), so that’s more than a million IP’s that are blacklisted permanantly from logging into a site. With that I still get between 10 and 30 notices every day for new IP’s that have been blocked.

    Thread Starter Dartshop

    (@dartshop)

    So basically i can ignore it because it is going to happen and something i just need to live with.

    The passwword i have is very hard so i cant do much else.

    Thanks for the reply and the information, i appreciate it ??

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘Failed Log In Attempts – Hacking??’ is closed to new replies.