vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   VB really this terrible????? Can it Be (https://vborg.vbsupport.ru/showthread.php?t=119099)

Andromeda2875 06-20-2006 09:50 PM

Quote:

Originally Posted by Revpolar
Not if you use this hack. Try it out. https://vborg.vbsupport.ru/showthrea...ighlight=proxy

And adding them to unalterable is an excellent idea.


Thank you very much. Only one issue with adding them to unalterable I would have to add 7K member id's. If I where to change all member id numbers and a person had an old copy of the DB, would they still be able to gain access with their username and passes?

Revpolar 06-20-2006 10:05 PM

Im not trying to ask a stupid question but I have no choice. How would they have a copy of your DB? And if they did then do they have access to the phpmyadmin or some way to edit your database now. If so then that is how your getting hacked. Now that I think about it thats the only way it makes sense. If I were you I would change the access username and password to the DB and edit the config.php with the new info. Make sure your config.php isnt CHMOD to 777 or something. Make it 644. If I were you I would change the ftp account info also. If he can read the config.php by downloading it through ftp then he will know your DB info. And if you think this person has a copy of the DB then you should do a few things.
1. make all passwords expire.
2. Prune out any members who have been inactive for a long time. I usually do this on a 90 days basis but its purely up to you.
3. Ban those IP's you know are the person.
And change all access info. FTP, DB, and anything else Im forgeting.

Reeve of shinra 06-20-2006 10:12 PM

adding users to unalterterable users would not stop the usergroup from being manually changed in the db.

Revpolar 06-20-2006 10:36 PM

Quote:

Originally Posted by Reeve of shinra
adding users to unalterterable users would not stop the usergroup from being manually changed in the db.

I think ashkarita meant just the mods, supermods, and admin.

Trana 06-20-2006 11:34 PM

You guys are missing the point. He KNOWS FOR SURE that it is VB. PERIOD. It is definately not his server, OS, userIDs, directory permissions, mysql, php, proxies, network, video card drivers, Starcraft Brood Wars, SCSI cable, LEDs, multicast Bidir PIM, IPv6, Duke Nukem Forever, iPod Shuffle....

All your suggestions are a waste of time, it is VB. PERIOD. He is POSITIVE. PERIOD.

KW802 06-20-2006 11:36 PM

Quote:

Originally Posted by Trana
You guys are missing the point. He KNOWS FOR SURE that it is VB. PERIOD. It is definately not his server, OS, userIDs, directory permissions, mysql, php, proxies, network, video card drivers, Starcraft Brood Wars, SCSI cable, LEDs, multicast Bidir PIM, IPv6, Duke Nukem Forever, iPod Shuffle....

All your suggestions are a waste of time, it is VB. PERIOD. He is POSITIVE. PERIOD.

... which is why people telling him to seek support on vBulletin.com is the proper avenue.

HostileAdam 06-20-2006 11:51 PM

I run vb 3.0.7 and i added this double login for my admin panel, its so they need to login with that login before they can login to real admin, i haven't been hacked once yet. Maybe you should try it.

Zachery 06-21-2006 02:28 AM

Quote:

Originally Posted by KW802
... which is why people telling him to seek support on vBulletin.com is the proper avenue.

So we can tell him its not vB, and he can disagree with us? :)

KW802 06-21-2006 02:35 AM

Quote:

Originally Posted by Zachery
So we can tell him its not vB, and he can disagree with us? :)

Since he won't believe anybody here on .org that it's not a vB problem and he is absolutely, positively convinced it is.... then just think of the fun thread it will make for on .com! :D

:banana:

Gio~Logist 06-21-2006 03:26 AM

Try to be a bit more open minded and accept people's suggestions and input. If you are asking as a regular vbulletin user, learn from what the more advanced users tell you. Being set in your own ways and thinking that you know the problem will make it so that people can't help you. If you know it all, then you shouldn't be having this problem ;)

It can be a server issue because user's can give do whatever they'd like with any account (including there's) via phpmyadmin and such. Also, if it keeps happening to the same user, that is rather suspicious, is this the case? If so, it can be a problem with the user. Try giving every usergroup regular user permissions accept for you (temporarily), and see how things go.


All times are GMT. The time now is 07:45 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.03754 seconds
  • Memory Usage 1,740KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (5)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (4)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete