Ongoing spam/fake orders
-
Since September we have been battling on and off with hundreds of spam/fake orders a day. I’m sure they are testing credit cards and using our site to do it. Very few actually go through, but I’ve been unable to prevent the orders from coming in. I have installed WooCommerce Anti Fraud and Wordfence Security along with other plug-ins that I’ve deleted as they didn’t help. reCaptcha is turned on for the Checkout page via WooCommerce Anti Fraud.
The IP addresses keep changing and they originate out of the country and in country. Many of the orders show 0% fraud risk, but some show geolocation issues and that they are behind a proxy. Initially the settings were too restrictive and we blocked many legitimate orders so I had to loosen it up a bit. I’ve even written some custom code to block orders based on the address/email patterns they use, but it doesn’t stop them.
Here’s an example order from IP 37.19.xxxx.xxxx (Texas, US)
Billing
[redacted by moderaor]Email address: [email protected]
Order Notes:- Payment provider declined the payment, please use a different payment method. OrderEndpoint.php:372 Order status changed from Pending payment to Failed.December 4, 2024 at 2:49 pm
- Order status changed from Draft to Pending payment.December 4, 2024 at 2:48 pm
- Stock hold of 15 minutes applied to:
– ITW Nexus 1″ D-Ring (ITWDR1) × 1December 4, 2024 at 2:48 pm
It appears these orders might be coming in programmatically – is there a way to prevent these from getting through? Not sure why or how the order changes from Draft to Pending payment as I normally don’t see that. Also, another tidbit is the Origin is always “Unknown” on these orders. Getting desperate, need to get this fixed as I’m wasting a lot of time and money.
- The topic ‘Ongoing spam/fake orders’ is closed to new replies.