Is the DDoS'ing you are experiencing partly caused by the spam that got through?
Thank you!
Well actually on the forum, once we turned the medium level captcha on (this was part of SMF), the new spam accounts stopped. It does bring up a good point though, we should go and clean up any old spam that got in back then - I just made a todo note for that.
No, in this case, this was specific to the foundations RX pool. Some wiseguys were hitting certain ports (I believe for brute force hacking) and this left the ports open with TIME_WAIT which caused port exhaustion. I figured out later that the default windows firewall had some ports for SAMBA enabled, and disabling those finally stopped that vulnerability.
We also had to add some ban rules in the pool that close sockets if they get abused.
I think its becoming stable now, God willing.