rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 09, 2015, 01:00:46 PM |
|
Following two more scam address:
1mf8XF6cM777vkGm47KVMsSRgkmaApt9f 1BgQKKqWLXHjUXq8k8858pr9UjLcdzMUMi
i think that is better option to update your first post, not than to add in single separate post. anyway thanks for sharing your info with us Yes. I will do this. This will kill 99% of proxy servers...put this in your htaccess file
snip
No, it won't. Anyone that is running a proxy server should know how to fake HTTP headers on requests, the things that this code is checking for. It will perhaps block about 1% of proxy owners that have no idea what they're doing. Dont block AWS if you are using funcapthca because thats what they use
As said blocking AWS would have no problems with using FunCaptcha or anything else running on an AWS web server. By blocking AWS you would be (I hope) checking the incoming information of a visitor then checking if the IP resolves to an AWS address, then blocking if necessary. While using FunCaptcha, it never actually visits your site. The FunCaptcha code runs in the back end and communicates with your website, therefore not being affected by any AWS blocks. Also, I would just like to point out, trying to stop bots by blocking BTC addresses is futile; an attacker can just create a new Bitcoin address automatically and use that one in the case of the previous being blocked. It is likely more of an inconvenience to you blocking them than to the attacker. What do you suggest them? Forget the proxy serves and keep walking?
|
|
|
|
minifrij
Legendary
Offline
Activity: 2324
Merit: 1267
In Memory of Zepher
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 10, 2015, 11:46:55 AM |
|
snip
What do you suggest them? Forget the proxy serves and keep walking? No, but trying to stop them by checking for HTTP headers and blocking BTC addresses is useless, as it does very little to stop those with any experience. Using code similar to this, which LosingAlpha posted could help significantly, though using strpos may not be the best as it can sometimes return false positives with similar hosts. $remoteHostname = gethostbyaddr($_SERVER['REMOTE_ADDR']); if(strpos($remoteHostname, 'amazonaws') !== false)die("No AWS, later jabroni!");
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 10, 2015, 06:06:31 PM |
|
Guys...
I'm thinking how could I redirect the Faucetbox blocked IPs, Domains and BC Address to an other URL.
I guess I shoul change some function into the index.php file. But I didn't found the exactily point to do this change.
Today, When a banned visitor try to claim, the faucet just reload/refresh the page. I think that redirecting I could do something smarter.
Could you help me?
|
|
|
|
instantbitcoin.win
Newbie
Offline
Activity: 26
Merit: 0
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 06:06:28 AM |
|
Guys...
I'm thinking how could I redirect the Faucetbox blocked IPs, Domains and BC Address to an other URL.
I guess I shoul change some function into the index.php file. But I didn't found the exactily point to do this change.
Today, When a banned visitor try to claim, the faucet just reload/refresh the page. I think that redirecting I could do something smarter.
Could you help me?
That is easy, if the condition banned == true, use this http://www.w3schools.com/php/func_http_header.asp
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 02:31:26 PM |
|
Guys...
I'm thinking how could I redirect the Faucetbox blocked IPs, Domains and BC Address to an other URL.
I guess I shoul change some function into the index.php file. But I didn't found the exactily point to do this change.
Today, When a banned visitor try to claim, the faucet just reload/refresh the page. I think that redirecting I could do something smarter.
Could you help me?
That is easy, if the condition banned == true, use this http://www.w3schools.com/php/func_http_header.aspDone. I' am facing an endless battle against the scammers... This will helps me. Thank you very much.
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 05:16:20 PM |
|
Guys, help me...
My faucet has...
1. a waiting time of 600 minutes 2. FunCaptcha with enforced security 3. 65 seconds wating to activate the claim button 4. amazon domain blocked 5. TOR Navigator blocked 6. A few proxy servers blocked 7. NastyHost.com IPs blacklist
But I'm receiving tons and tons of people which are claiming every single minute. They are draining my balance fast as a bullet.
They have three caracteristics: They never share my faucet as needed; They claim from infinites different bitcoin address 24h per day; They are all from the same referral address.
How could I fight against this?
What are you doing about these situations?
|
|
|
|
BitMaxz
Legendary
Online
Activity: 3290
Merit: 3020
BTC price road to $80k
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 05:24:20 PM |
|
Guys, help me...
My faucet has...
1. a waiting time of 600 minutes 2. FunCaptcha with enforced security 3. 65 seconds wating to activate the claim button 4. amazon domain blocked 5. TOR Navigator blocked 6. A few proxy servers blocked 7. NastyHost.com IPs blacklist
But I'm receiving tons and tons of people which are claiming every single minute. They are draining my balance fast as a bullet.
They have three caracteristics: They never share my faucet as needed; They claim from infinites different bitcoin address 24h per day; They are all from the same referral address.
How could I fight against this?
What are you doing about these situations?
I think you need block the address if were that site...... try it to block their ip addresss...
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 05:26:10 PM |
|
Guys, help me...
My faucet has...
1. a waiting time of 600 minutes 2. FunCaptcha with enforced security 3. 65 seconds wating to activate the claim button 4. amazon domain blocked 5. TOR Navigator blocked 6. A few proxy servers blocked 7. NastyHost.com IPs blacklist
But I'm receiving tons and tons of people which are claiming every single minute. They are draining my balance fast as a bullet.
They have three caracteristics: They never share my faucet as needed; They claim from infinites different bitcoin address 24h per day; They are all from the same referral address.
How could I fight against this?
What are you doing about these situations?
I think you need block the address if were that site...... try it to block their ip addresss... The problem is that I don't know how to discover their domain, URL or IP. I tried to search at Google and my Google Analytics but I didn't found nothing.
|
|
|
|
Satmaster
Newbie
Offline
Activity: 10
Merit: 0
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 06:20:10 PM |
|
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 06:22:24 PM |
|
Yes... Those two referral address ending in QJV and KBS are scamming me too. Really really bad situation.
|
|
|
|
gregory021998
Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 129
Merit: 11
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 06:47:08 PM |
|
Are you in a shared hosting?
|
|
|
|
|
gregory021998
Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 129
Merit: 11
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 11, 2015, 06:57:36 PM |
|
I suggest you to take a private server (vps) (crowncloud.net or similar) install all thing and put the site into the vps, when i was on shared hosting my faucet has been hacked ( http://www.zone-h.org/mirror/id/24731076) now that i'm on the vps all is ok
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 12, 2015, 03:44:19 AM |
|
These are confirmed super mega fucking scammers:
17dzhZ3JG5jfKMd45BowS1Pr1cH9FW8zzK 1CMam3ZHtFysv3jvLfzrDraXy4dNGDKQJv 1vEe4mDd94JQLCCTnX3Cdzy2KFfH6eKbS 15ohWaaQPVVCy7tniNRKWK1efXBYPHwLwT 3MLiBzj9QUvBUG2M1DaSSxf5VY8HbAro48
The first post was updated too.
|
|
|
|
krishnapramod
Legendary
Offline
Activity: 1470
Merit: 1078
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 12, 2015, 08:51:00 AM |
|
Guys, help me...
My faucet has...
1. a waiting time of 600 minutes 2. FunCaptcha with enforced security 3. 65 seconds wating to activate the claim button 4. amazon domain blocked 5. TOR Navigator blocked 6. A few proxy servers blocked 7. NastyHost.com IPs blacklist
But I'm receiving tons and tons of people which are claiming every single minute. They are draining my balance fast as a bullet.
They have three caracteristics: They never share my faucet as needed; They claim from infinites different bitcoin address 24h per day; They are all from the same referral address.
How could I fight against this?
What are you doing about these situations?
You have tried everything still bots and scammers are getting through. This suggestion might sound stupid, but it had worked for me. Enable cloudflare and enable DDos attack mode. Every user will need to solve cloudflare captcha first. Scammers would no bother about solving two captcha or either block a particular country. Blocking a bitcoin address does not make sense, there is no shortage of bitcoin address, you block one address, scammer will create a new one.
|
|
|
|
misterbit
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 12, 2015, 11:58:57 AM |
|
Not working them the NastyHost of the panel on security?
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 12, 2015, 05:51:34 PM |
|
Not working them the NastyHost of the panel on security?
No... :T
|
|
|
|
Gifted
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 13, 2015, 02:05:45 AM |
|
cloud flare will not stop bots
|
|
|
|
rkandrades (OP)
Sr. Member
![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif) ![*](https://bitcointalk.org/Themes/custom1/images/star.gif)
Offline
Activity: 392
Merit: 251
Bitcoin Faucet & Blog
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 13, 2015, 03:49:19 AM |
|
Tons of new bot address added into the first post.
Thanks to TheFaucetRunner
|
|
|
|
nawaraj
|
![](https://bitcointalk.org/Themes/custom1/images/post/xx.gif) |
October 13, 2015, 06:19:13 AM |
|
How to know scammer btc address? & How to know they Bots our faucet? Can you give me some tips & trick to find them.
|
|
|
|
|