Results 1 to 6 of 6
  1. #1
    Join Date
    Feb 2007
    Location
    Pennsylvania
    Posts
    806
    Plugin Contributions
    0

    Default Large Carts and Fake Accounts

    Hi All,
    So for many years now we'll occasionally get new accounts with first last name combos like SDFUBEugsuGSDGH IEJJFNdhfyrGHFN with a company name of normally either google or microsoft. These are usually tied to an IP address over seas. Aside from this we also have had very large active shopping carts with anywhere from 50 to 100 or more items in the cart.

    Lately both of these have ramped up significantly. I'm pretty sure I've taken care of the bogus accounts issue, but I'm wondering what do either of these have to gain by doing what they're doing, and how can we prevent these large carts that have no intention of purchasing?

    Thank you,
    John

  2. #2
    Join Date
    Feb 2014
    Location
    Germany
    Posts
    95
    Plugin Contributions
    0

    Default Re: Large Carts and Fake Accounts

    I saw something similar at a customers Shopware 5 store.
    After purging the account the bot immidiately created a new account.
    Also subscriped to the newsletter in high frequency.

    The used mail account was an account which doesn't accept mail e.g. example.com so the mail server always send an error report to the customer who was restricted using his mail system effectively.
    I added honey pots to both registration and newsletter subscription to stop these attacks.
    My Zen-Cart Vespa Shop.
    GDPR compliant Webhosting in Germany.

  3. #3
    Join Date
    Sep 2009
    Location
    Stuart, FL
    Posts
    12,498
    Plugin Contributions
    88

    Default Re: Large Carts and Fake Accounts

    My Access Blocker (https://www.zen-cart.com/showthread....Support-Thread), based on the threats identified by https://ipdata.co, can help. That will result in a reduction in (a) contact-us/ask-a-question spam and (b) limit login/create-account actions for any identified threats. You can also add specific IP addresses/ranges and/or countries to its processing.

  4. #4
    Join Date
    Feb 2006
    Location
    Tampa Bay, Florida
    Posts
    9,703
    Plugin Contributions
    123

    Default Re: Large Carts and Fake Accounts

    That Software Guy. My Store: Zen Cart Modifications
    Available for hire - See my ad in Services
    Plugin Moderator, Documentation Curator, Chief Cook and Bottle-Washer.
    Do you benefit from Zen Cart? Then please support the project.

  5. #5
    Join Date
    Feb 2007
    Location
    Pennsylvania
    Posts
    806
    Plugin Contributions
    0

    Default Re: Large Carts and Fake Accounts

    Hey Lat9. Sounds like a great mod. I used the bot check field in the tpl_modules file and the includes/modules file to actually ask for user input. But adding the question in the field label in text seemed to defeat the purpose. Instead I put the text question in an image and called that in there. So far... zero fake accounts. On the contact pages I added a time on site minimum. less than 20 seconds on the site and it wont send an email. I might check out your mod in the near future.

    Thank you,
    John

  6. #6
    Join Date
    Feb 2007
    Location
    Pennsylvania
    Posts
    806
    Plugin Contributions
    0

    Default Re: Large Carts and Fake Accounts

    Quote Originally Posted by swguy View Post
    Hey Scott. I have been wanting to auto add ip addresses to the htaccess for years now, but have always been super hesitant about automatically updating it sort of blindly. I saw your idea for adding ips to a table or even a text file and then using a cron to update the htaccess file. Genius! I love the idea and may work it out in the very near future. The only issue I can see is that I sometimes add ips manually and they're not being blocked. I guess the ip is somehow being spoofed. Like they aren't interested in the response from the server... they just want the massive number of requests...?

    John

 

 

Similar Threads

  1. Large Number of Fake Accounts
    By thegoodlifestore in forum Managing Customers and Orders
    Replies: 3
    Last Post: 12 Jul 2021, 06:18 PM
  2. v154 fake accounts regex for bots not working
    By edvon in forum General Questions
    Replies: 4
    Last Post: 11 Mar 2021, 09:44 AM
  3. v154 Russian fake accounts, but using old customer number
    By mcpisik in forum General Questions
    Replies: 4
    Last Post: 8 May 2019, 06:01 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
disjunctive-egg
Zen-Cart, Internet Selling Services, Klamath Falls, OR