vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vBulletin 3.8 Add-ons (https://vborg.vbsupport.ru/forumdisplay.php?f=235)
-   -   vBFirewall v1.0 (https://vborg.vbsupport.ru/showthread.php?t=196791)

MentaL 01-14-2009 08:20 PM

The moment I enabled this I had 12 emails sent to me about hack attempts... safe to say that this app has some issues.

djbaxter 01-14-2009 10:29 PM

Indeed. I don't know if it does what one would want it to do but it clearly does a whole lot of things that nobody would want to have done on a forum.

Should be moved to the Graveyard, IMO.

Reeftanksonline 01-14-2009 10:59 PM

This worked twice for me so far.....a big thanks!

djbaxter : Im not to smart on this subject can you please explain what you mean?

momo2 01-14-2009 11:54 PM

Installed, hope it works, i do not know how, but I'll try it.. here is what i did to improve against dos attacks, i change from apache to LiteSpeed and i am very happy and speed doubled !!!!

gamerscms 01-15-2009 12:12 AM

Quote:

Originally Posted by djbaxter (Post 1712653)
Indeed. I don't know if it does what one would want it to do but it clearly does a whole lot of things that nobody would want to have done on a forum.

Should be moved to the Graveyard, IMO.

This works well and has logged a few for me, i think you should be moved to the graveyard!

cionfs 01-15-2009 03:43 PM

Installed. Thank You. :)

MOTM nominated ;)

Orakk 01-16-2009 03:58 AM

Quote:

Originally Posted by cionfs (Post 1713512)
Installed. Thank You. :)

MOTM nominated ;)

Are you saying subscribe to thread function still works on your forum and if so, which vB version are you using? :eek:

Reeftanksonline 01-18-2009 10:08 PM

had a problem with vbadvanced links, the redirect was seen as a hacker

cionfs 01-19-2009 04:30 PM

Quote:

Originally Posted by Orakk (Post 1714187)
Are you saying subscribe to thread function still works on your forum and if so, which vB version are you using? :eek:


I'm uninstalled this product for subscription thread problem. :(

Mr. Hoddz 01-19-2009 09:49 PM

I'm not keen on installing because the log file is stored on a public directory. Can this be moved to a folder outside? Like maybe in ./home/private_html/ rather than ./home/public_html/ as I feel that is a bit of a joke to have that file viewable.

If you can change the location of it then I am interested in the mod for sure!!

GNDI 01-20-2009 01:12 AM

Been loged when I try to unsubscribe from a post, not good

RvG2 01-21-2009 03:40 PM

this project is dead already? :(

paintballer.ie 01-21-2009 06:35 PM

A lot of people seem to have trouble with this. I havent installed it my self, but I use crawltrack instead and is very easy to integrate with vb. Tracks hacks and spiders, uses its own database also.

http://www.crawltrack.net/

Orakk 01-23-2009 08:14 PM

Quote:

Originally Posted by cionfs (Post 1718039)
I'm uninstalled this product for subscription thread problem. :(

Cheers for reply Cionfs, :up:

Phaedrus 01-24-2009 02:41 AM

Does this do anything to spiders?

djbaxter 01-24-2009 03:33 AM

Quote:

Originally Posted by Phaedrus (Post 1722919)
Does this do anything to spiders?

Yes. Read the thread. It blocks spiders. That's one of the major problems with this add-on. Don't install it.

Phaedrus 01-25-2009 08:51 PM

Quote:

Originally Posted by djbaxter (Post 1722971)
Yes. Read the thread. It blocks spiders. That's one of the major problems with this add-on. Don't install it.

Thanks. I didn't want to read 10 pages to find that out. It was the first thing that popped in my head when I saw the code...

;)

Phaedrus 01-25-2009 09:06 PM

Quote:

Originally Posted by paintballer.ie (Post 1720380)
A lot of people seem to have trouble with this. I havent installed it my self, but I use crawltrack instead and is very easy to integrate with vb. Tracks hacks and spiders, uses its own database also.

http://www.crawltrack.net/

This looks promising. Open source and free. Does it add any copyrights to the footer, and if so does it have links?

Where do you add your tag for the correct results?

Loaded and working...

It does not add copyrights to the footer, and I found that adding the tag to global.php gave me full results...

;)

RedDevil 02-01-2009 07:20 PM

Tried this had to uninstall, its stopping notices being displayed. I will keep an eye out.

The error i get is if you add a new notice, all i get is the notice box shrunk and empty. the existing notices display fine so ive no idea what the cause is, also the subscription fix didnt work. been messing ages just thought i would turn off this and bingo displaying fine.

Phaedrus 02-01-2009 09:40 PM

What about spiders? I don't want spiders blocked. That is a bad idea...

TheInsaneManiac 02-02-2009 01:58 AM

Quote:

Originally Posted by Phaedrus (Post 1731352)
What about spiders? I don't want spiders blocked. That is a bad idea...

Spiders are blocked.

RvG2 02-02-2009 02:42 AM

Quote:

Originally Posted by paintballer.ie (Post 1720380)
A lot of people seem to have trouble with this. I havent installed it my self, but I use crawltrack instead and is very easy to integrate with vb. Tracks hacks and spiders, uses its own database also.

http://www.crawltrack.net/

How to install this?

Galex55 02-02-2009 12:25 PM

LoL i get an hack Attack today, The Plugin send me an email with his IP adress etc.. Many Thanks :D

MasterofWorlds 02-02-2009 04:48 PM

thank you for this, sounds very interesting and must have

D-Manthing 02-05-2009 12:14 PM

disables subscriptions...

MasterofWorlds 02-10-2009 04:58 PM

can you please fix this so that it will work with vbAnonymizer 3.0? all vbAnonymizer link are stopped and logged as a hack. So until this is fixed i had to uninstall the firewall.

Alexey? 02-10-2009 05:01 PM

nice, but i dont think it protect's 100%

Barteh 02-14-2009 11:57 PM

An unsubscribe action from a thread is for some reason picked up by vBfirewall and blocked...

Offending action: do=removesubscription&t=19531

mikeinjersey 02-15-2009 07:34 PM

sounds promising...i'll install once all the bugs are worked out.

Merjawy 02-16-2009 09:45 AM

got a long error message when I try to subscribe/unsubscribe to a thread..

michi123 02-16-2009 11:58 AM

Quote:

Originally Posted by Galex55 (Post 1731823)
LoL i get an hack Attack today, The Plugin send me an email with his IP adress etc.. Many Thanks :D

if u got many attacks, ask your webspace provider for the webserver logs (specially of the attackers ip!), goto http://www.db.ripe.net/whois type in the ip of the attacker and look for the abuse email! write the logs (vbfirewall + webserver logs if u can get them) to the abuse team, with the exact time and date + time zone, and voala - this was the last time, that the same attacker will attack u again ;)! i also started to do this, and the hacker are reduced to a minimum :D!

btw - its impossible to open new pm notifications in an extra window - the vbfirewall thinks, that this is some attack! how can i fix this?

Notorious Jay 02-21-2009 03:23 AM

Well I installed this the other night to see if it worked, it did send me some emails saying there were hack attempts, but all of them except for 1 were legitimate board request. How can I be so sure, well my i.p. created them.

Since then None of my members can log into the site and I keep getting error messages non stop literally for the past 14 hours. I had 24000 new error emails when I logged in to my gmail account.

So my question to you is could this be because the information in the config.php file does not correspond with the real password for the root directory. t.b.h. I am not sure if it is still correct or not as we do not own the server that we run the boards on and we do not have permission to access the root directory. We only have permission to access the forums directory and lower. I messaged the server owner, hopefully he will know if the passwords match up and maybe be able to fix them if this is the case. Here is the message maybe you can tell me for sure if it could even be created by your hack or if I should be looking into another problem.

Database error in vBulletin :

Cannot use database XXX_XXXXXX <--- where XXX = directory of forum location & XXXXXX = forum home directory

MySQL Error : Access denied for user 'XXX_XXXXXX'@'localhost' to database 'XXX_XXXXXX' ^
Error Number : 1044
Request Date : Friday, February 20th 2009 @ 11:26:12 PM
Error Date : Friday, February 20th 2009 @ 11:26:12 PM
Script : Varies Obviously with what the user is trying to do
Referrer :
IP Address : varies obviously by user
Username :
Classname : vb_database
MySQL Version :

Oh and to conclude, since the problem I've uninstalled the hack and am still getting the same problem...

michi123 02-21-2009 07:51 AM

first, i think this error msg hasnt todo anything with the firewall! this looks like u changed the /includes/config.php name and/or path! https://vborg.vbsupport.ru/showthread.php?t=198856 i think u didnt change the xxxxx to the new path/name of your config.php!

u shud post the script!
Code:

Script : Varies Obviously with what the user is trying to do
if u dont do that, noone can help u! vbfirewall is blocking some internous board things like pm in new pop up window - in that pop up window u get the vbfirewall hack attempt message, and thread subscriptions etc.. but u can fix this by configuring the firewall - its hard todo that if u duno anything about it, but its easy if u look over it - easy to understand!

Notorious Jay 02-21-2009 09:13 AM

^ Yeah, I am not even sure myself if it was caused by firewall... but we never had that problem until it was installed. Config.php is still /includes/config.php

the script has literally been everything... every time someone tries to do anything at all(post or view a thread or even log in they are getting an error)...
some examples
/index.php
/forums/icash.php?do=donate&to=xxx
/forums/search.php?do=finduser&userid=8427&searchthreadid= 45331
/forums/showthread.php?p=241423
/forums/misc.php?do=whoposted&t=40409
/forums/showthread.php?goto=newpost&t=28640

and on and on and on

the server owner has fixed the password so they match and now I'm not getting the errors but now it's like I have two databases... :-X

the old database loads in ie (by old I mean the one that was current until the problem.)
and the new database loads in mozilla.... (by new I mean the database as it was save last on the server and all new posts that have happened since the server owner changed the information in config)

it's one of the weirdest problems I've encountered and I haven't figrued out what could have caused it. Nothing on the board has changed in the past week except installing vBFirewall :-X...

I'm hoping I don't have to dump the database and start from scratch.

Notorious Jay 02-21-2009 08:19 PM

nvm. I found the plugin that didn't remove itself.

michi123 02-22-2009 10:57 AM

which plugin was the prob???

gmerin 02-22-2009 06:45 PM

1 Attachment(s)
i had an issue just now that is solved by disabling vbfirewall: with the mod enabled, when i attempt to go to admincp-> vb options -> cookies & http header options i get a white screen and this message: 1||1235333916||||||||Error Opening Logfile. (see post attachment)

On a v3.7.3 system i get this message:

1||1235334329||nnn.nnn.nnn.nnn||do=options&dogroup =http||http://www.blahblah.com/admincp/opti...0||Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US; rv:1.9.0.6) Gecko/2009011913 Firefox/3.0.6Access Denied, you have been logged.

Disabling the mod fixes the issue. Tested on two separate v3.8.1 systems and one v3.7.3 system

desirulez 02-23-2009 12:26 AM

1||1235352914||||||||
1||1235353109||||||||
1||1235353127||||||||

what is this means

Jim Pauley 02-23-2009 12:44 AM

trying to access the adminlogs I get this error


1||1235350146||72.171.0.145||do=view&script=&u=2||http://mastercatters2.com/admincp/ad...y||Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; FunWebProducts; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30618)Access Denied, you have been logged.

other than that it does a great job of logging and emailing me with the hack attempt :rolleyes:

turned it off and the error goes away and I can access the logs

config.php was set up properly for me and the other two admins 1,2,3

and I retained my 2 as the superadmin

Notorious Jay 02-23-2009 04:03 PM

Quote:

Originally Posted by michi123 (Post 1751305)
which plugin was the prob???

TBH I don't remember what the plugin was called :-X
sorry...

When I removed the entire mod it left a stray plugin on the board. I went to plugin manager and it was the only one left under the heading vBFirewall. Since I uninstalled it I haven't had any problems.

I still can't say for sure what caused the problem. I would venture to guess there must be a clash with another mod that we have installed or with the type of server we have. ? ? ?

It's strange that people are getting an error to view their admin logs, that is one error I didn't receive. I check them everytime that I log in so I would have noticed.


All times are GMT. The time now is 12:47 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01338 seconds
  • Memory Usage 1,830KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_code_printable
  • (11)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (4)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (40)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete