Excessive downloading - possible robotic
Posted: 17 Jan 2013, 11:59
Joomla 2.5.8
all extensions up to date.
Phoca download.
Custom templates.
========================
Hi,
I have installed this great product on a couple of development sites and a couple of client sites.
I was amazed to find that on non-SE- indexed development sites with zero normal traffic, someone/thing was downloading files at what appeared to be a random rate of each file 2 or 3 times per "run". This "attack" occurs with a weekly frequency.
What is even more amazing is this is happening whilst these development sites are protected under a DNS routing cloud based system that is supposed to stop spam bots/and other robots from doing this type of bandwidth theft.
Another interesting thing is that even when making the categories accessible to "special" users only [ leaving the files public ], the files are still being excessively downloaded.
The only way I have found to prevent this type of downloading is to make all files available only by registered or above access levels.
I have had to think about this issue as there appears to be no motivation that makes sense. The files being downloaded are charity newsletters and have no intrinsic value to any one other than information about the charities.
This leads me to believe that the software is being deliberately targeted for harassment purposes, attempting to force the software into uselessness, due to persistent and wasteful bandwidth usage. [either that or the development sites generally are being targeted ]
Another key indicator is that even after banning numerous Ip addresses from accessing the site the downloader would re-appear using new Ip addresses [ this clearly indicates a robotic downloader, as the random downloading seems to stay with in a "range" of deviation ]
Given that the domains and there web sites are DNS routed through a security system and knowing that Phoca products are being plagued by significant spamming attacks [ ie. guest book etc] leads to the belief that Phoca products are being "specifically" targeted in a rather malicious manner possibly in an attempt to compromise Phoca as a commercial entity.
======================
There is a possibility to discover whether Phoca products are being deliberately targeted.
I am prepared to install a dummy Phoca download package onto an existing live site under the DNS routing security system and attempt to fathom how the robots are getting through the security systems. [ as all other highly aggressive Chinese and Russian Spamming bots are refused access] it is rather intriguing and somewhat disturbing to see this sort of spamming/downloading still occurring.
And I happen to like Phoca products and wanted to install the guest book but can not do so until this issue sees some progress.
Note:
Jan, you may wish to move this topic somewhere else on the board.
all extensions up to date.
Phoca download.
Custom templates.
========================
Hi,
I have installed this great product on a couple of development sites and a couple of client sites.
I was amazed to find that on non-SE- indexed development sites with zero normal traffic, someone/thing was downloading files at what appeared to be a random rate of each file 2 or 3 times per "run". This "attack" occurs with a weekly frequency.
What is even more amazing is this is happening whilst these development sites are protected under a DNS routing cloud based system that is supposed to stop spam bots/and other robots from doing this type of bandwidth theft.
Another interesting thing is that even when making the categories accessible to "special" users only [ leaving the files public ], the files are still being excessively downloaded.
The only way I have found to prevent this type of downloading is to make all files available only by registered or above access levels.
I have had to think about this issue as there appears to be no motivation that makes sense. The files being downloaded are charity newsletters and have no intrinsic value to any one other than information about the charities.
This leads me to believe that the software is being deliberately targeted for harassment purposes, attempting to force the software into uselessness, due to persistent and wasteful bandwidth usage. [either that or the development sites generally are being targeted ]
Another key indicator is that even after banning numerous Ip addresses from accessing the site the downloader would re-appear using new Ip addresses [ this clearly indicates a robotic downloader, as the random downloading seems to stay with in a "range" of deviation ]
Given that the domains and there web sites are DNS routed through a security system and knowing that Phoca products are being plagued by significant spamming attacks [ ie. guest book etc] leads to the belief that Phoca products are being "specifically" targeted in a rather malicious manner possibly in an attempt to compromise Phoca as a commercial entity.
======================
There is a possibility to discover whether Phoca products are being deliberately targeted.
I am prepared to install a dummy Phoca download package onto an existing live site under the DNS routing security system and attempt to fathom how the robots are getting through the security systems. [ as all other highly aggressive Chinese and Russian Spamming bots are refused access] it is rather intriguing and somewhat disturbing to see this sort of spamming/downloading still occurring.
And I happen to like Phoca products and wanted to install the guest book but can not do so until this issue sees some progress.
Note:
Jan, you may wish to move this topic somewhere else on the board.