Announcement

Collapse
No announcement yet.

$20K in orders in 5 minutes!

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • $20K in orders in 5 minutes!

    :)

    However, the orders were abandoned. The user puts hundreds of items in your cart then abandons. And, signs up for newletter many many times. We checked the originating IP, and it's McAfee. So, looks like their scan bot is at it again. :(
    www.concession-supply.com

  • #2
    We've been getting the same thing--quantity 48 of a custom veil.

    Comment


    • #3
      What is the source IP for those?
      www.concession-supply.com

      Comment


      • #4
        For the last $13,000 order, (they ordered 99 custom veils) it was:

        70.146.148.55

        I've checked before and the IP's are never the same.

        Comment


        • #5
          Sounds like a new vulnerability in the cart.
          These types of bots shouldn't be happening.....:mad:
          www.concession-supply.com

          Comment


          • #6
            Originally posted by concession-supply.com View Post
            Sounds like a new vulnerability in the cart.
            These types of bots shouldn't be happening.....:mad:
            We did introduce a feature about 2 years ago that you can use to ban such IPs. Settings->General->IP Security

            Feel free to ban them if they are causing trouble on your store.

            You want to use the same IP on both boxes when you enter it as its just 1 IP (unless you know its a range then you can enter the range ie. 10.10.10.1 to 10.10.10.100)

            We don't want to impose any limits on IPs because if you did order a security scan from a vendor, and the bot is blocked from doing things on your store, it will fail the security scan.
            ----------------------------
            Gonzalo Gil
            3dCart Support
            800-828-6650 x111

            Comment


            • #7
              Are you saying we should ban the IPs from McAfee, your scanalert partner? :confused:

              Okay, will do.........
              Last edited by concession-supply.com; 10-18-2009, 10:37 PM.
              www.concession-supply.com

              Comment


              • #8
                No, please re-read my statement, "SHOULD" does not appear anywhere on the message.

                Furthermore, unless you purchased scan alert services, they have no business crawling your store. If you did purchase it, then, great, you know they are doing their job scanning your store for potential security flaws, the only way they can, which is to use it like a regular user would.
                ----------------------------
                Gonzalo Gil
                3dCart Support
                800-828-6650 x111

                Comment


                • #9
                  Okay, it must be a security scan. Thanks!
                  www.concession-supply.com

                  Comment

                  Working...
                  X