Forum Replies Created

Viewing 15 replies - 16 through 30 (of 60 total)
  • Thread Starter usat009

    (@usat009)

    For the time being i added a javascript challenge to checkouts from various countries, ASNs, and IP address ranges. I was also forced to disable guest checkout and force account creation with a manual approval. Needless to say, conversions are way down, though the fraudulent orders have stopped. Fraudulent attempts to create an account come in once or twice a day, which i’m certain if they didn’t have to get manually approved it would start a bot order barrage. All in all, Woocommerce needs to add security into their plugin out of the box, because this is getting stupid.

    Thread Starter usat009

    (@usat009)

    It’s been nearly three weeks, is WP File Manager going to patch this?

    Thread Starter usat009

    (@usat009)

    So yes, the global problem is with any and all security plugins. WP File Manager needs to figure that out, as deactivating security during this age of massive bot incursions isn’t a solution.

    Thread Starter usat009

    (@usat009)

    I do not have that plugin either. I’m sure it’s a conflict with plugins, but it’s global regarding some specific functionality that is used across various plugins. And I can’t afford to remove any of the ones i’m using.

    Thread Starter usat009

    (@usat009)

    It’s fine, i just put a rate limiter on checkout that blocks access if anyone tries to submit orders at various intervals that aren’t indicative of human behavior. But i’m always running the most current version of WC.

    Thread Starter usat009

    (@usat009)

    Filezila with an SFTP is what I’m doing now, but i download WP File Manager so that i don’t have to go through all that rigamarole.

    Forum: Plugins
    In reply to: [WooCommerce] Bot Attacks
    Thread Starter usat009

    (@usat009)

    We had to switch to Bot Fight mode in Cloudflare, add a number of firewall rules and upgrade to Cloudflare Pro to use their WAF tool to beef up security and add a user registration plugin that requires manul approval just to fight this thing.

    Thread Starter usat009

    (@usat009)

    Is there a way to just force users to register before being able to checkout without the additional plugin? We’re already going to be using a plugin that allows for customized pricing by the user. I’d rather not keep adding more and more plugins. We just had 5 fraud orders in a row from different people that appeared legit to anti-fraud plugin, but if you call them or email them you get no one on the other side.

    Thread Starter usat009

    (@usat009)

    We believe it was a glitch from the Subscription module

    Thread Starter usat009

    (@usat009)

    Out of the box, standard woocommerce, what is the file name that styles each product page? Themes do not change your core naming conventions. or is it a number of different files acting in concert? and if so, what are the file names?

    I have no used any plugins to style the product pages.

    Thread Starter usat009

    (@usat009)

    I don’t think you read my full post, you stopped like halfway through.

    To recap, the question I posed to WooCommerce is below:

    As far as I can tell, I just need to know the file location for the javascript or css that creates the style for the shop pages, and then just add an exclusion to not Concatenate that particular file, so that i can still cache shop pages, while leaving that coding alone.

    Can you tell me where that file is located?

    Yes, but it’s very annoying, and no one wants to see it there. How can we get rid of it?

    Thread Starter usat009

    (@usat009)

    Themeco support was able to decude it’s a caching issue with WP-Rocket.

    Thread Starter usat009

    (@usat009)

    Yeah, that’s not helpful. That could take hours. I’ve used the same theme on every woocommerce store I’ve ever built.

    Thread Starter usat009

    (@usat009)

    
    ### WordPress Environment ###
    
    WordPress address (URL): https://usatcorp.com
    Site address (URL): https://usatcorp.com
    WC Version: 4.5.2
    REST API Version: ✔ 4.5.2
    WC Blocks Version: ✔ 3.1.0
    Action Scheduler Version: ✔ 3.1.6
    WC Admin Version: ✔ 1.5.0
    Log Directory Writable: ✔
    WP Version: 5.5.1
    WP Multisite: –
    WP Memory Limit: 512 MB
    WP Debug Mode: –
    WP Cron: ✔
    Language: en_US
    External object cache: –
    
    ### Server Environment ###
    
    Server Info: Apache
    PHP Version: 7.4.10
    PHP Post Max Size: 100 MB
    PHP Time Limit: 3600
    PHP Max Input Vars: 10000
    cURL Version: 7.58.0
    OpenSSL/1.1.1
    
    SUHOSIN Installed: –
    MySQL Version: 5.7.29-32-log
    Max Upload Size: 50 MB
    Default Timezone is UTC: ✔
    fsockopen/cURL: ✔
    SoapClient: ✔
    DOMDocument: ✔
    GZip: ✔
    Multibyte String: ✔
    Remote Post: ✔
    Remote Get: ✔
    
    ### Database ###
    
    WC Database Version: 4.5.2
    WC Database Prefix: wp_
    Total Database Size: 158.59MB
    Database Data Size: 130.94MB
    Database Index Size: 27.65MB
    wp_woocommerce_sessions: Data: 1.52MB + Index: 0.02MB + Engine InnoDB
    wp_woocommerce_api_keys: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_woocommerce_attribute_taxonomies: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_woocommerce_downloadable_product_permissions: Data: 0.02MB + Index: 0.06MB + Engine InnoDB
    wp_woocommerce_order_items: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_woocommerce_order_itemmeta: Data: 1.52MB + Index: 0.64MB + Engine InnoDB
    wp_woocommerce_tax_rates: Data: 0.02MB + Index: 0.06MB + Engine InnoDB
    wp_woocommerce_tax_rate_locations: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_woocommerce_shipping_zones: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_woocommerce_shipping_zone_locations: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_woocommerce_shipping_zone_methods: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_woocommerce_payment_tokens: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_woocommerce_payment_tokenmeta: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_woocommerce_log: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_actionscheduler_actions: Data: 1.52MB + Index: 0.59MB + Engine InnoDB
    wp_actionscheduler_claims: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_actionscheduler_groups: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_actionscheduler_logs: Data: 0.48MB + Index: 0.33MB + Engine InnoDB
    wp_bv_fw_requests: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_bv_ip_store: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_bv_lp_requests: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_commentmeta: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_comments: Data: 0.02MB + Index: 0.09MB + Engine InnoDB
    wp_db7_forms: Data: 0.34MB + Index: 0.00MB + Engine InnoDB
    wp_layerslider: Data: 0.22MB + Index: 0.00MB + Engine InnoDB
    wp_layerslider_revisions: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_links: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_mo2f_network_blocked_ips: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_mo2f_network_email_sent_audit: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_mo2f_network_transactions: Data: 13.52MB + Index: 0.00MB + Engine InnoDB
    wp_mo2f_network_whitelisted_ips: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_mo2f_user_details: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_mo2f_user_login_info: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_nextend2_image_storage: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_nextend2_section_storage: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_nextend2_smartslider3_generators: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_nextend2_smartslider3_sliders: Data: 0.05MB + Index: 0.00MB + Engine InnoDB
    wp_nextend2_smartslider3_sliders_xref: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_nextend2_smartslider3_slides: Data: 0.06MB + Index: 0.00MB + Engine InnoDB
    wp_options: Data: 3.52MB + Index: 0.27MB + Engine InnoDB
    wp_postmeta: Data: 56.52MB + Index: 8.03MB + Engine InnoDB
    wp_posts: Data: 13.52MB + Index: 0.94MB + Engine InnoDB
    wp_sbb_fingerprint: Data: 2.52MB + Index: 2.52MB + Engine InnoDB
    wp_sbb_http_tools: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_sbb_visitorslog: Data: 22.55MB + Index: 0.00MB + Engine InnoDB
    wp_taxjar_record_queue: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_termmeta: Data: 0.08MB + Index: 0.09MB + Engine InnoDB
    wp_terms: Data: 1.52MB + Index: 3.03MB + Engine InnoDB
    wp_term_relationships: Data: 1.52MB + Index: 1.52MB + Engine InnoDB
    wp_term_taxonomy: Data: 1.52MB + Index: 3.03MB + Engine InnoDB
    wp_tm_taskmeta: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_tm_tasks: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_usermeta: Data: 0.09MB + Index: 0.03MB + Engine InnoDB
    wp_users: Data: 0.02MB + Index: 0.05MB + Engine InnoDB
    wp_wc_admin_notes: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wc_admin_note_actions: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_wc_category_lookup: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wc_customer_lookup: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_wc_download_log: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_wc_order_coupon_lookup: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_wc_order_product_lookup: Data: 0.02MB + Index: 0.06MB + Engine InnoDB
    wp_wc_order_stats: Data: 0.02MB + Index: 0.05MB + Engine InnoDB
    wp_wc_order_tax_lookup: Data: 0.02MB + Index: 0.03MB + Engine InnoDB
    wp_wc_product_meta_lookup: Data: 0.11MB + Index: 0.16MB + Engine InnoDB
    wp_wc_reserved_stock: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wc_tax_rate_classes: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_wc_webhooks: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_wonderplugin_carousel: Data: 0.25MB + Index: 0.00MB + Engine InnoDB
    wp_wpfm_backup: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wpns_attack_logs: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wpns_backup_report: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wpns_files_scan: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_wpns_ip_rate_details: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wpns_malware_hash_file: Data: 0.02MB + Index: 0.05MB + Engine InnoDB
    wp_wpns_malware_scan_report: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wpns_malware_scan_report_details: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_wpns_malware_skip_files: Data: 0.02MB + Index: 0.00MB + Engine InnoDB
    wp_yoast_indexable: Data: 3.52MB + Index: 1.56MB + Engine InnoDB
    wp_yoast_indexable_hierarchy: Data: 0.06MB + Index: 0.05MB + Engine InnoDB
    wp_yoast_migrations: Data: 0.02MB + Index: 0.02MB + Engine InnoDB
    wp_yoast_primary_term: Data: 0.09MB + Index: 0.09MB + Engine InnoDB
    wp_yoast_prominent_words: Data: 1.52MB + Index: 3.03MB + Engine InnoDB
    wp_yoast_seo_links: Data: 1.52MB + Index: 0.63MB + Engine InnoDB
    wp_yoast_seo_meta: Data: 0.14MB + Index: 0.00MB + Engine InnoDB
    
    ### Post Type Counts ###
    
    attachment: 2178
    cs_global_block: 137
    cs_header: 3
    cs_template: 160
    faqs: 249
    nav_menu_item: 147
    oembed_cache: 17
    page: 99
    post: 788
    product: 243
    product_variation: 533
    shop_coupon: 3
    shop_order: 19
    shop_order_refund: 9
    wp3cxc2c_c2c_form: 1
    wpcf7_contact_form: 22
    x-portfolio: 1
    
    ### Security ###
    
    Secure connection (HTTPS): ✔
    Hide errors from visitors: ✔
    
    ### Active Plugins (36) ###
    
    3CX Live Chat and Talk: by 3CX – 1.7.1
    Akismet Anti-Spam: by Automattic – 4.1.6
    WordPress Backup & Security Plugin - BlogVault: by Backup by BlogVault – 4.36
    Bulk remove posts from category: by MasterNs – 3.1.1 – Installed version not tested with active version of WooCommerce 4.5.2
    Contact Form 7 Conditional Fields: by Jules Colle – 1.9.14
    WooCommerce Custom Related Products Pro: by WPCodelibrary – 1.3.0 – Installed version not tested with active version of WooCommerce 4.5.2
    Connects - Contact Form 7 Addon: by Brainstorm Force – 1.1.2
    Contact Form 7 Captcha Pro: by 247wd – 0.0.1
    Contact Form 7 - Dynamic Text Extension: by Chris Mavricos
    SevenSpark – 2.0.3
    
    Contact Form 7: by Takayuki Miyoshi – 5.2.2
    Contact Form CFDB7: by Arshid – 1.2.5.3
    Convert Plus: by Brainstorm Force – 3.5.12
    Custom Post Type UI: by WebDevStudios – 1.8.1
    Disable Comments: by WPDeveloper – 1.11.0
    Hide Page And Post Title: by Arjun Thakur – 1.5.5
    Jetpack by WordPress.com: by Automattic – 9.0.1
    Material Design for Contact Form 7 (Premium): by Addons for Contact Form 7 – 2.6.2
    miniOrange 2 Factor Authentication: by miniOrange – 5.4.21
    Novamodule : WooCommerce - NetSuite Integration: by Novamodule – 2.2.7 – Installed version not tested with active version of WooCommerce 4.5.2
    Search By SKU - for Woocommerce: by Unroll Digital – 0.7.1 – Installed version not tested with active version of WooCommerce 4.5.2
    TaxJar - Sales Tax Automation for WooCommerce: by TaxJar – 3.2.3
    Content Dock: by Themeco – 2.0.6
    Custom 404: by Themeco – 2.0.5
    Google Analytics: by Themeco – 3.0.2
    Wonder Carousel Pro: by Magic Hills Pty Ltd – 17.5C
    WooCommerce Anti Fraud: by WooCommerce – 2.9.1 – Installed version not tested with active version of WooCommerce 4.5.2
    WooCommerce Google Analytics Integration: by WooCommerce – 1.4.23 – Installed version not tested with active version of WooCommerce 4.5.2
    WooCommerce Lead Time: by Barn2 Plugins – 1.4.1 – Installed version not tested with active version of WooCommerce 4.5.2
    Merchant e-Solutions WooCommerce Payment Gateway - CC: by WooThemes – 0.0.1 – Installed version not tested with active version of WooCommerce 4.5.2
    Multi-Carrier Shipping Plugin for WooCommerce: by PluginHive – 1.8.2
    WooCommerce Services: by Automattic – 1.24.3 – Installed version not tested with active version of WooCommerce 4.5.2
    WooCommerce Shipment Tracking: by WooCommerce – 1.6.25
    WooCommerce: by Automattic – 4.5.2
    Yoast SEO Premium: by Team Yoast – 15.0
    WP File Manager: by mndpsingh287 – 6.9
    WP Rocket: by WP Media – 3.7.2
    
    ### Inactive Plugins (1) ###
    
    Export All URLs: by Atlas Gondal – 4.1
    
    ### Dropin Plugins (1) ###
    
    advanced-cache.php: advanced-cache.php
    
    ### Must Use Plugins (4) ###
    
    Force Strong Passwords - WPE Edition: by Jason Cosper – 1.6.4
    WP Engine Seamless Login Plugin: by WP Engine – 1.5.5
    WP Engine Security Auditor: by wpengine – 1.0.9
    WP Engine System: by WP Engine – 4.0.0
    
    ### Settings ###
    
    API Enabled: –
    Force SSL: –
    Currency: USD ($)
    Currency Position: left
    Thousand Separator: ,
    Decimal Separator: .
    Number of Decimals: 2
    Taxonomies: Product Types: external (external)
    grouped (grouped)
    simple (simple)
    variable (variable)
    
    Taxonomies: Product Visibility: exclude-from-catalog (exclude-from-catalog)
    exclude-from-search (exclude-from-search)
    featured (featured)
    outofstock (outofstock)
    rated-1 (rated-1)
    rated-2 (rated-2)
    rated-3 (rated-3)
    rated-4 (rated-4)
    rated-5 (rated-5)
    
    Connected to WooCommerce.com: ✔
    
    ### WC Pages ###
    
    Shop base: #16413 - /shop/
    Cart: #16414 - /cart/
    Checkout: #16415 - /checkout/
    My account: #16416 - /my-account/
    Terms and conditions: #211 - /company-policies/terms-conditions/
    
    ### Theme ###
    
    Name: Pro – Child Theme
    Version: 1.0.0
    Author URL: http://theme.co/
    Child Theme: ✔
    Parent Theme Name: Pro
    Parent Theme Version: 3.2.3
    Parent Theme Author URL: http://theme.co/
    WooCommerce Support: ✔
    
    ### Templates ###
    
    Archive Template: Your theme has a woocommerce.php file
    you will not be able to override the woocommerce/archive-product.php custom template since woocommerce.php has priority over archive-product.php. This is intended to prevent display issues.
    
    Overrides: pro/woocommerce/cart/cross-sells.php version 3.0.0 is out of date. The core version is 4.4.0
    pro-child/woocommerce/emails/admin-new-order.php
    pro-child/woocommerce/emails/customer-processing-order.php
    pro/woocommerce/loop/loop-end.php
    pro/woocommerce/loop/loop-start.php
    pro/woocommerce/loop/pagination.php
    pro/woocommerce/notices/error.php
    pro/woocommerce/notices/notice.php
    pro/woocommerce/notices/success.php
    pro/woocommerce/single-product/related.php
    pro/woocommerce/single-product/tabs/tabs.php
    pro/woocommerce/single-product/up-sells.php
    pro/woocommerce/single-product-reviews.php version 3.6.0 is out of date. The core version is 4.3.0
    
    Outdated Templates: ❌
    					
    					
    						Learn how to update
    
    ### Action Scheduler ###
    
    Complete: 2,189
    Oldest: 2020-09-06 18:54:56 +0000
    Newest: 2020-10-07 18:26:25 +0000
    
    Pending: 1
    Oldest: 2020-10-07 18:46:25 +0000
    Newest: 2020-10-07 18:46:25 +0000
    
    
Viewing 15 replies - 16 through 30 (of 60 total)