Hi Stella,
Thanks for reaching out. I’m sorry to hear that you are receiving these spam orders.
We can’t really block this person by their email address, and it sounds like they’re changing that often anyway, so we should look for a different way to block them, such as by their IP address.
Do you have a way of looking up the time and date of these purchases? You could use the Live Traffic tool in Wordfence and set a filter for the date and time to track down the visits where these purchases happened.
Once you find them, you can see if they all share the same IP address, which you could block.
I also had a couple of questions that might help us figure out some other options:
1) Is the checkout process happening directly on your website or does TakePayments process these transactions on an external page hosted by them?
2) Can anyone go through checkout without creating an account or is it necessary to create one?
Thanks,
Mau.
Hello Mau,
Thank you for your reply, I will try to find the IP and I will let you know .
As for the questions,
1) When I choose pay with takepaymenets and then click place order it drives me to an external page of takepayments where I fill my card details.
2)Everyone can order without creating an account
I wish this helps.,,
Kind regards,
Stella
Also another question,
Can I block all the IP except from the UK ones? If yes, please can you tell me how?
Thank you in advance.
Kind regards,
Stella
Hello @wfmau , I hope you are well.
Do you think we need to change the payment method?
Hi @crystella17,
I’ll be taking over for @wfmau.
Were you able to obtain the IP address of the person submitting the spam orders?
To answer your question regarding blocking countries, if you’d like to block all countries except for UK IP addresses, it is possible to do so with Wordfence Premium. However, due to WordPress.org forum rules, we aren’t allowed to discuss Premium features here. If you reach out to us at presales @ wordfence.com, we’ll be happy to answer your questions about Premium directly.
As far as the payment method goes: since the order process directs the user to an external page (TakePayments), it’s possible that the spammer might be targeting that page directly. If that’s the case, the IP would need to be blocked from the TakePayments side and you’ll need to provide them with the IP address to request that.
Let me know if there’s anything else I can do to help!
Thanks,
Tiffany