HELP! Website is under attack...

  • Thread starter Thread starter Deleted member 752298
  • Start date Start date
Status
Not open for further replies.
it only shows 1840 requests in 24hrs thats hardly a DDoS. or did you just enable CF ?
did you check the webserver logs to verify? otherwise you need to figure out what kind of DDoS it is, if it really is one.
could also be that something else is wrong.
 
Depending on the host you can sometimes change the ip address, this more Cloudflare should suffice.
Regarding your IP you should have more information here: crimeflare.org

EDIT: No, it does not give your IP

domainwat.ch/site/festingerbhw.com ?
 
Last edited:
so that's why I couldn't log in. Good luck, hope you can solve this asap.
 
Last edited:
If they attack the IP, migrate your site to another region within your Closte account controlpanel, that way, you get another IP, on another server.
 
What has StackPath / CDN to do with DDOS attacks, or am I missing a feature?

BTW getting this error:

PHP Warning: PHP Startup: Unable to load dynamic library 'newrelic.so' (tried: /opt/alt/php74/usr/lib64/php/modules/newrelic.so (/opt/alt/php74/usr/lib64/php/modules/newrelic.so: cannot open shared object file: No such file or directory), /opt/alt/php74/usr/lib64/php/modules/newrelic.so.so (/opt/alt/php74/usr/lib64/php/modules/newrelic.so.so: cannot open shared object file: No such file or directory)) in Unknown on line 0
https://www.stackpath.com/products/ddos-protection/
 
Even big billion-dollar corporations are at the mercy of DDOS. Mitigation is all you can attempt to do until they get bored or arrested. I remember when WOW went down for a full week because of it, and countless other games I've played. Some solid advice in here tho to mitigate, Gl @Festinger . Not sure what kind of asshole would ddos one of the most helpful and friendly people on these forums. I guess it wouldn't take much for one of the Wordpress devs you pissed off to push an update and turn their plugins into DDOS botnets? rip
 
What a jealous man can do such a thing! Pity for him. (or maybe they attack whole VPS server?)
 
Well... this sucks. Just got my membership yesterday... Hope everything goes well
 
Sometimes get these. Find the offending IP in in Cpanel - visitor stats - account stats - domain hit stats - then you'll see the ip the attack is coming from.

Then go to Cloudflare - click on the domain - Firewall - Firewall rules - create firewall rule - then select ip and fill the details in. Can also block via country
 
Thank you all for the big help. It seems that a botnet is attacking my website which results in the 503 error. None of my services are working, as the attack is target at IP level and the accused one is using multiple DDOS stressor layers.
I'll have to wait for a reply from the host.
 
Hopefully you will be able to deal with this one soon. DDoS is always a PITA
 
You just have to wait it out. It’ll stop once the DDoS attack service ends or if it’s not a service then whenever the hacker gets bored.
 
I tried to login just right now and I got 503 page, and immediately wanted to inform you when I saw this thread! :eek:

I hope you will solve this soon, good luck!
 
This is cloudflare attack, disable it and you should be good to catch and filter the IPs.
I think its modded syn attack from mirai botnet. With out cf you should be OK for sometime
 
I think someone is mad against your website and its normal when its the best one.
Im up to send attack DDoS back to the enemy.

I wish you can fix it soon.
 
The problem with some DDOS's is they use an army of rats, or zombies, whichever one is the lingo these days. Due to that, the IP's / subnet masks will be different ranges, no pattern.

It's hard to defend against. However DDOS attackers generally use common protocols.

You can set lower SYN, ICMP, and UDP flood drop thresholds if that's the case. This will stop it as it will drop the packets if there is too many of one protocol.
 
Status
Not open for further replies.
Back
Top