republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » BBR Feedback » Site Bugs » Todays DDOS (site down)
Uniqs:
6859
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Customized timezone not working since DDOS »
« Board is corrupting my scripts grrrrr  
page: 1 · 2

justin
Australian
join:1999-05-28
Brooklyn, NY

Host:
IPv6
Business Connectiv..
Home/Office setup ..
Console/Handheld g..
Console Tech

Todays DDOS (site down)

Hey, glad to see you got here, by hook or by crook.

So we have a pesky DDOS and it is still on the curve upwards, over 1000 IPs so far and any which of them will attempt to hammer or occupy request slots.

Sad and annoying but thems the breaks on the internetz

It started at 4am eastern and got worse as time wore on.

I've mitigated it enough to serve pages (the site-is-down message) but the front-end is currently too slow dealing with the dregs to handle real pages.. hence the need to bring up the site on another IP address if only for members.

LBDSL
Lightning Bolt
VIP
join:2002-01-07
Auburn Hills, MI

Re: Todays DDOS (site down)

Keep up the hard work

justin
Australian
join:1999-05-28
Brooklyn, NY

Host:
IPv6
Business Connectiv..
Home/Office setup ..
Console/Handheld g..
Console Tech

Re: Todays DDOS (site down)

The traffic is small in size, but is entirely composed of tiny open-connection requests from an ever growing list of IPs. I'm black holing about 5 new ones a minute and we're over 1100 now.

»i.dslr.net/stats/eth0-day.gif

Now I'll have time to try a different front-end server that may be more resistant to the type of open connection request this botnet is employing.

izy
Premium,MVM
join:2000-09-21
Naples, FL

And why on earth would someone feel the need to do this I will never figure it out...

Fame? nope... Fortune? nope... Taking it in the rear after you drop the soap? Ding ding ding!!!

Thanks for all the effort Justin. I was heartbroken when i sat down with my cup of coffee this morning to read the front page only to find the site down message.

justin
Australian
join:1999-05-28
Brooklyn, NY

Re: Todays DDOS (site down)

We are back @ www.dslreports.com , I've managed to mitigate it better this time, although the flood continues.

LBDSL
Lightning Bolt
VIP
join:2002-01-07
Auburn Hills, MI

Re: Todays DDOS (site down)

said by justin See Profile :

We are back @ www.dslreports.com , I've managed to mitigate it better this time, although the flood continues.
I get timeouts using dslreport.com, the IP given earlier still works fine.
--
Lightning Bolt Technologies

Bubba17
Less is More
Premium
join:2006-09-21

said by justin See Profile :

We are back @ www.dslreports.com , I've managed to mitigate it better this time, although the flood continues.
Great work, justin.

From here, you're riding extra tall in the saddle.
--
"Fast is fine, but accuracy is everything" --Wyatt Earp

33591094

join:2002-11-19
Canada
It's nice and peppy for me, currently.

Glad you're back - my morning surf was thrown right off (but only for a couple of hours)

jabarnut
Light Years Away
Premium,MVM
join:2005-01-22
Galaxy M31

Thanks justin.
What a PITA huh?

I never realize how much I miss this place until I go to log in and it ain't here.
--
I had a life once.....now I have a Computer and a Modem.

Jeffrey
too dark too early
Premium
join:2002-12-24
Dix Hills,NY
clubs:
·Optimum Online
·Verizon FIOS
·Vonage
·magicjack.com

Site is responding pretty well for me here. Like someone else said, I load up CNN, MSNBC, Fox, and BBR in no particular order every AM when I get to work for 5-10 mins just to check the headlines. Bummed when I saw the message here.

Went on to read about some 21 year old woman suing AA for an issue on her plane...

Glad the site is back!
--
And so castles made of sand, slip into the sea, eventually.

I'm the Dude. So that's what you call me. You know, that or, uh, His Dudeness, or uh, Duder, or El Duderino if you're not into the whole brevity thing.

CalamityJane
Premium,VIP,MVM
join:2002-08-27
Eustis, FL
Glad we are back!

And blogged here FYI:
»www.lavasoft.com/company/blog/?p=360

plk
bo may sleep in loft
Premium
join:2002-04-20
Ogden, IA
Keep up the fine work. I call this place home.

Doctor Four
My other vehicle is a TARDIS
Premium
join:2000-09-05
Dallas, TX
·AT&T U-Verse


1 edit
Who would have the motivation (and the means, apparently)
to DDoS BBR?

Adware purveyors, VXers, criminal scam gangs, the RBN
(Russian Business Network)?

Any and perhaps even all of the above.

As has happened in the past with security & anti-spam/scam
sites, BBR may have been targeted by one of these groups
of criminals who don't like their operations being outed.
--
"The trouble with computers, of course, is that they are very sophisticated idiots." - Doctor Who (from Robot)

La Luna
Surviving Ashraful
Premium
join:2001-07-12
Warwick, NY
clubs:
Well, I missed the, errr, "excitement", but things seem good now.

Glad to see somone apparently has nothing better to do with their life than mess with DSLR.

kkb
You go Gura

join:2000-06-11
Montrose, CO
Welcome back Justin! Thank you for your effort and the great site.

dliw
Running Dog
Premium
join:2003-03-09
Dog Pound
clubs:
·Atlantic Broadband

Re: Todays DDOS (site down)

said by kkb See Profile :

Welcome back Justin! Thank you for your effort and the great site.
Hear~Hear!

PolarBear
The bear formerly known as aaron8301
Premium
join:2005-01-03
·CableOne

Re: Todays DDOS (site down)

said by dliw See Profile :

said by kkb See Profile :

Welcome back Justin! Thank you for your effort and the great site.
Hear~Hear!
I second -er, third that!

David
No,there is another.
Premium,VIP
join:2002-05-30
Granite City, IL
clubs:

justin

Do you need anything for me to turn over to security on our end (at&t that is)?

Let me know, or if you want post the IP's in the direct forum.

Thanks
david

justin
Australian
join:1999-05-28
Brooklyn, NY

Host:
IPv6
Business Connectiv..
Home/Office setup ..
Console/Handheld g..
Console Tech

Re: justin

thanks, but don't worry about it. I actually didn't expect individual IPs to be shut off (although I should have thought about it harder, the list wasn't 100% clean) my intent was for someone to id and possible kick over the command/control machine which normally requires snooping the traffic to a zombie to see where it is getting instructions from.

taking out individual hosts is kind of a losing proposition - labor intensive, and the hosts are easily replaced by others. The vast majority of these IPs were overseas anyway.

they've fallen silent now anyway so as far as the site goes it is over with..

David
No,there is another.
Premium,VIP
join:2002-05-30
Granite City, IL
clubs:

Re: justin

Ok, yea I guess that would be kind of labor intensive nailing them one at a time.

I guess next time I can have your people talk with mine?

La Luna
Surviving Ashraful
Premium
join:2001-07-12
Warwick, NY
clubs:
I wonder if this had anything to do with it?

»site being DDOS??

Anonymous_
Anonymous
Premium
join:2004-06-21
127.0.0.1
clubs:

1 edit

Re: Todays DDOS (site down)

yes the fourms were getting upto 40,000 hits per min that day
--
Underwater bogeyman continues secret mission...

JeepMatt
Delaware Fios
Premium
join:2001-12-28
Wilmington, DE

Re: Todays DDOS (site down)

Seeing major 50% Packet loss to the site as of 6pm.

Anyone else reporting this????
--
"ONE team - ONE city - ONE dream!!"

Anonymous_
Anonymous
Premium
join:2004-06-21
127.0.0.1
clubs:
·RoadRunner Cable
·Time Warner Cable
·Time Warner VOIP


1 edit

Re: Todays DDOS (site down)

i am getting 100% loss i do not think it's an big deal if your pings are timing out
Turbocpe
Premium
join:2001-12-22
IA

said by JeepMatt See Profile :

Seeing major 50% Packet loss to the site as of 6pm.

Anyone else reporting this????
If it really were 50% packet loss, you would either not be able to access the site, or it would be extremely slow and nearly impossible to access. It's likely just a priority issue. Since one of the last attacks, it has been mentioned that you can no longer ping BBR with accurate results as it doesn't always respond to the ICMP requests.

koitsu
Premium
join:2002-07-16
Mountain View, CA

Grah, that really sucks guys. :-(

As a fellow SA, my UNIX flag is at half-mast for you. (Good lord that sounds phallic...) Don't let this crap get your spirits down.
--
Making life hard for others since 1977.
I speak for myself and not my employer/affiliates of my employer.

chaud
Serious Business

join:2004-07-09
Anderson, SC
Glad to see it functioning again.

pokesph
It Is Almost Fast
Premium
join:2001-06-25
Sacramento, CA
clubs:
·Comcast

hey it's just good training..
we've all had to deal with these stupid script-kiddies / botnets, but hey look at from the positive side, you get to train on your defenses, gain anice list of compromised IPs and so on.

Good job so far too.. only saw an error page a few times since I've woken up (6 am PDT) here

exocet_cm
In memory of dadkins
Premium
join:2003-03-23
New Orleans, LA
clubs:
·Cox HSI
·Suddenlink
·Cingular Wireless
·AT&T Southeast
·Charter Pipeline


2 edits
Click for full size
Grab your laptops and remote-bots, lets hunt some DDOS'ers!
doppler

join:2003-03-31
Blue Point, NY

I always thought you can turn the tables on these guys.

A couple of times I ran a small limited FTP for a few forum
friends. To pass about a couple of large files. I only
limited to 2 open connections and not anon. Of course some
jerks, would not follow the 2 rules.

Since this was a while back. And they all were running
windoze boxes. Simple ping-of-death was possible, to knock
off the offender.

I know, you will not get the botmaster. But maybe a few
slaves would wonder why they froze and fix there damn systems.

Maybe I am being to simplistic and assuming some intelligence
of the end-parties.

panda
Visualize Whirled Peas

join:2000-01-08
Danvers, MA

Re: Todays DDOS (site down)

said by doppler See Profile :

I always thought you can turn the tables on these guys.

A couple of times I ran a small limited FTP for a few forum
friends. To pass about a couple of large files. I only
limited to 2 open connections and not anon. Of course some
jerks, would not follow the 2 rules.

Since this was a while back. And they all were running
windoze boxes. Simple ping-of-death was possible, to knock
off the offender.

I know, you will not get the botmaster. But maybe a few
slaves would wonder why they froze and fix there damn systems.

Maybe I am being to simplistic and assuming some intelligence
of the end-parties.
The fact that their IP is pwned is proof of their limited or non-existent intelligence.

And, your "forum friends" with the learning disability are further proof of limited intelligence.

I too tried running an ftp server, but nobody followed "the rules". I guess my friends are even dumber than yours.

I like the idea of ddos-ing the botnets, though. I wish there was an automatic way to do that...


--
"[He] couldn't get a clue if he stripped naked, rubbed himself with clue musk, went to the middle of the clue breeding grounds at the height of clue breeding season when it was full of horny clues and did the clue mating dance for days."

agaprazr
What...Me Worry?
Premium
join:2005-01-08
Salem, OR
·Comcast Formerly ..
·DSL Northwest

Missed the excitement, but glad it was fixed by the time I logged on this morning. It is good to know that BBR has such a competent staff to take care of problems like this. Thanks for your hard work Justin.
--
...and the greatest of these is love. 1Cor.13:13

ptrowski
Got Helix?
Premium
join:2005-03-14
Putnam, CT
clubs:
·VOIPo
·Metrocast Communic..
·AT&T DSL Service
·ViaTalk

I will chime in also and say thanks for the hard work Justin. There have been some truly great things to come out of many of the forums here over the years, especially in the security forum, and it looks like someone got a bit pissy and wanted revenge.

Thanks for keeping the site going!

MagMan
Life is simpler when you tell the truth.
Premium
join:2003-10-01
Westlake, OH
I missed the whole thing oh well.

Running fine here thanks.

Name Game
Premium
join:2002-07-07
North Myrtle Beach, SC


2 edits
Click for full size
Some members over in the UK still can not get to the DSLR either with the DNS or URL

NICK ADSL UK asked me to post this for you as his trace route.

hmm..I see he is not alone in the problem reaching us..

last post for the ukchat forum was 18th Mar 09:45PM
»UK Chat

last for the ukboardband forum was 17th Mar 04:44AM

»UK Broadband

--
Gladiator Security Forum »www.gladiator-antivirus.com/
Missing Kids
»www.missingkids.com/

poacher 1rtd
Premium
join:2004-02-25
oxford UK

1 edit

Re: Todays DDOS (site down)


I`ve got no problems getting the forum from the UK.
Its running perfectly, I`ve been getting it off and on most of the day.

Keep up the good work justin, glad we`re back.
(topic locked)
Forums » The Site » BBR Feedback » Site BugsCustomized timezone not working since DDOS »
« Board is corrupting my scripts grrrrr  
page: 1 · 2


Monday, 30-Nov 18:23:46 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [36] Broadband Killed The Game Console
· [33] Baltimore To Ban Lazy Cable Installs
· [29] Rural Carriers Quickly Embracing Fiber
· [26] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
· [19] Midcontinent Socked With Easement Lawsuit
· [14] Charter Exits Chapter 11
· [3] Monday Morning Links
Most people now reading
· Heating - my dad gave me this advice... [Home Repair & Improvement]
· Is Microsoft Technet ok to use for my family PC's? [Microsoft Help]
· Windows 7 boot manager editing questions [Microsoft Help]
· [Internet] Gaming problem for "Heroes of Newerth" ( New bell Upd [Bell Canada]
· Portable power for blackouts? [Home Repair & Improvement]
· Wind getting a little more aggressive [TekSavvy]
· Are GPS's better today? [General Questions]
· [Future9] Guaging interest. [VOIP Tech Chat]
· Dr. Tim Ball On the Significance of the CRU Hacked Documents [Canadian Chat]
· Is Gear Score now the new requirement to get pug invite? [World of Warcraft]