vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   Modification Graveyard (https://vborg.vbsupport.ru/forumdisplay.php?f=224)
-   -   Administrative and Maintenance Tools - Email notification if someone attempts to access your Admin or Mod CP (https://vborg.vbsupport.ru/showthread.php?t=169376)

Boofo 01-31-2008 10:00 PM

Email notification if someone attempts to access your Admin or Mod CP
 
Email notification if someone attempts to access your Admin or Mod CP for vBulletin vB3.7.0 beta 4
Version 1.0.2
(By Boofo)

What does this modification do?
When someone tries to login to your Admin CP or Mod CP, you will get an email that contains the username they tried, their IP address, hostname, number of strikes, referrer, script, and the date & time of the attempt. It also will now distinguish itself in the message subject between a failed Admin CP attempt and a failed Mode CP attempt, so you will know right off which CP they tried to login to.

NOTE: Those who respectfully donate will be have access to the password version of this hack by sending me a PM after donation.

Credits:
Thanks to EvilLS1 for making the vB 3.0 version of this modification on which this update is based and released with permission.

Version Information:
Version 1.0.1 --Initial release
Version 1.0.2 --Removed password code for security reasons.

Installation overview:
--------------------------------------
Files to edit: (1)
--login.php


What it looks like in the Mod CP when an anonymous user tries to login:

-----------------------------------------------------
Someone is trying to login to your Your Forums Mod CP!
-----------------------------------------------------
Username tried: Ned
IP Address: 1.123.23.4
Host: 1-123-23-4.some.name.com
Strikes: 4 out of 5
Referer: http://www.yoursite.com/forums/modcp/
Script: http://www.yoursite.com/forums/login.php
Date & Time: Thursday, January 31st, 2008 at 8:22:29 am
-----------------------------------------------------

What it looks like in the Mod CP when a user from your site tries to login:

-----------------------------------------------------
Someone is trying to login to your Your Forums Mod CP!
-----------------------------------------------------
Username tried: Boofo
IP Address: 1.123.23.4
Host: 1-123-23-4.some.name.com
Strikes: 4 out of 5
Referer: http://www.yoursite.com/forums/modcp/
Script: http://www.yoursite.com/forums/login.php
Date & Time: Thursday, January 31st, 2008 at 8:22:29 am

USER ATTEMPT: Your Forums has identified this registered user as: Boofo

NOTE: If you do not click install, you do not need support.

SwollenCranium 02-01-2008 08:16 PM

Does this use the "contact us" email address by default ?

** EDIT**

Nevermid ... read the code, I see where it goes.

Boofo 02-01-2008 08:21 PM

It uses your webmaster email setting in the Admin CP.

Magnumutz 02-01-2008 09:13 PM

Dude... this is AWESOME !!

Nominated fo' MOTM.

Later Edit: Oh man... too bad it needs file edits. Is there any way you could turn this into a product?

Boofo 02-01-2008 09:28 PM

Sorry, there aren't any hooks in those files to be able to do it that way.

Magnumutz 02-01-2008 09:36 PM

I see... i'm securing my AdminCP with .htpasswd now, it'll be a bit safer.

Boofo 02-01-2008 09:58 PM

That just lets you know what password they try in case it is close to yours or what method they are trying to use to get in. I wouldn't run my site without this.

Don't forget the install buttion. ;)

Freesteyelz 02-01-2008 10:13 PM

I tagged this mod. :)

BOOFO is back everyone! :up:

Boofo 02-01-2008 10:17 PM

This will work from 3.6 on up.

And I don't recall seeing you visitng at all, or did I miss that? ;)

Freesteyelz 02-01-2008 10:45 PM

You missed it. :)

iogames 02-01-2008 11:30 PM

This must be standard! we all know that we work hard for our communities!

1. What happen to the right password? or everything the Administrator login?
2. What if they know ur password and want to change it?

cajunboy2208 02-02-2008 09:11 AM

Quote:

Originally Posted by iogames (Post 1434280)
This must be standard! we all know that we work hard for our communities!

1. What happen to the right password? or everything the Administrator login?
2. What if they know ur password and want to change it?

Well, if they get that... then that is why you do daily backups.
Just log onto your server, get the backup, reup it, and change your pw.

Alfa1 02-02-2008 09:50 AM

Please make a product out of this. As this is a template edit, it is currently in the wrong section.

Marco van Herwaarden 02-02-2008 09:57 AM

Quote:

Originally Posted by Alfa1 (Post 1434479)
Please make a product out of this. As this is a template edit, it is currently in the wrong section.

Quote:

Installation overview:
--------------------------------------
Files to edit: (2)
--incudes/adminfunctions.php
--login.php
How is this a template edit if PHP files are edited?

KURTZ 02-02-2008 10:00 AM

interesting hack boofo ... :)

Alfa1 02-02-2008 11:37 AM

Quote:

Originally Posted by Marco van Herwaarden (Post 1434486)
How is this a template edit if PHP files are edited?

erm. I'll go and buy glasses.

Boofo 02-02-2008 10:17 PM

The password code in this hack has been removed due to security concerns by the staff of vbulletin.org.

Hornstar 02-04-2008 08:30 AM

I used to like the one that showed the attempted passwords lol

Marco van Herwaarden 02-04-2008 08:38 AM

Quote:

Originally Posted by Boofo (Post 1434904)
The password code in this hack has been removed due to security concerns by the staff of vbulletin.org.

The concerns we had was more about the wording of your original thread, stating that no plaintext password would be sent from the server. Although this was technically correct, it did sent the plaintext passwords (over the internet) to the server upon any CP-login. As sending plaintext passwords over the internet is considered reducing the standard security, we requested that text to be changed to reflect the fact that the modification did sent plaintext passwords.

Instead the author choose to remove the password from the modification, thus circumventing any possible security degradation.

vietdjclub 02-04-2008 08:41 AM

to sercurity your admin login just rename admincp to other folder name
ex:

admincp --> xxx2x
modcp-->zzz2x

dont forget edit on config file

Marco van Herwaarden 02-04-2008 08:44 AM

Quote:

Originally Posted by hornstar1337 (Post 1435921)
I used to like the one that showed the attempted passwords lol

On a personal note: This was something i never liked about this modification. If you are an admin on many forums, you might by mistake try the password for board A to login to board B. If they password used is sent to the admin of Board A, then he might be able to "guess" your admin login for Forum B. I always refused to be an admin on a board that had this modification installed.

PS Boofo know my opinion on this, we already discussed that many years ago.

princeedward 02-04-2008 11:10 AM

gonna try this...hope its good and bring no problem...thanks for this bro... ;)

Boofo 02-04-2008 12:10 PM

This hack has never brought anyone any problems. That is not what it is for. ;)

iogames 02-04-2008 08:30 PM

Quote:

Originally Posted by Marco van Herwaarden (Post 1435933)
On a personal note: This was something i never liked about this modification. If you are an admin on many forums, you might by mistake try the password for board A to login to board B. If they password used is sent to the admin of Board A, then he might be able to "guess" your admin login for Forum B. I always refused to be an admin on a board that had this modification installed.

PS Boofo know my opinion on this, we already discussed that many years ago.

Ok so the password 'attempted' is sent to who???

Conner85 02-05-2008 06:12 PM

So... do I edit ALL login.php files? I just edited the yoursite.com/login.php. Am I supposed to edit /modcp/login.php and /admincp/login.php?

Boofo 02-05-2008 06:23 PM

Only edit the one file in your forums directory. The hack states only 1 file edit plus most hacks usually have the full path to any files needing editing.

iogames 02-07-2008 11:23 PM

Then... who receives the notification? :(

dwh 03-11-2008 07:43 AM

Interesting hack. If you use .htaccess to block AdminCP, does this do anything extra since the login.php is inside the forums directory?

Too bad that the plugin system requires vB to manage all these hooks.

Since vb is developed using svn and each line of code is probably logged somewhere, it would be so cool if they could come up with a way to dynamically create your own hooks with just vb file version and line number...I know, sounds really complicated but so is the hooks system ;)

Boofo 03-11-2008 10:34 AM

Quote:

Originally Posted by iogames (Post 1438560)
Then... who receives the notification? :(

The Admin receives the notification, but the password feature has been removed in this version as it wasn't worth the headache of listening to a few people complain about the so-called security issues.

Alfa1 03-11-2008 04:24 PM

Is it a good idea to just upload the new login.php here, so that others do not have to do the bit of editing the file?

Boofo 03-11-2008 06:42 PM

Sorry, not allowed to upload vb files here. Besides, the edits aren't that bad. ;)

Alfa1 03-13-2008 07:46 AM

No, it's very easy to do.

Bounce 03-20-2008 09:13 PM

*Installed*;)

FRANKTHETANK 2 03-23-2008 01:52 AM

i have this thing going off like crazy after i installed it and it wont give me an ip address any suggestions on what to do?

Boofo 03-23-2008 02:02 AM

The IP address should show up fine if you did all the edits correctly. I would say make sure the edits are done correctly first.

FRANKTHETANK 2 03-23-2008 02:10 AM

i have and i know what I'm doing. Lets say the person isn't registered to the site and they try to log in will it still show the ip. The site is new and i have an enemy at a site called darksidehackers.com and i can't get him off my back.

Boofo 03-23-2008 02:14 AM

Yes, it picks up the IP from whoever it is.

FRANKTHETANK 2 03-24-2008 04:57 AM

This is all i get in the email

Someone is trying to login to your Nextgen Squad Mod CP!

Strikes: 0 out of 5

or

Someone is trying to login to your Nextgen Squad Admin CP!

Strikes: 0 out of 5

Boofo 03-24-2008 06:58 AM

Then you haven't done all the file edits properly.

FRANKTHETANK 2 03-24-2008 07:53 PM

hm
i redid them like 10 times and i get the same thing


All times are GMT. The time now is 05:03 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01488 seconds
  • Memory Usage 1,818KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (8)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (2)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (40)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete