The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
vBFirewall v1.0 Details »» | |||||||||||||||||||||||||||
This is my first mod for vBulletin and I have tried to make it as better as I could.
What is vBFirewall? Its a PHP script which blocks all kinds of attacks on your vBulletin Forum! Like: URL Poisoning, Remote File Inclusion, SQL Injection, XSS and other kinds of attacks. I have tested each and every function of this mod before releasing it and have used it myself for 1 month It has a attacker logger, which logs the IP and many details of the attacker so that you can reach him This is still in beta version and I will add more features in it to make your vBulletin more secure Suggestions are always welcome. How to install? 1) Go to Admin and Import the xml file product-firewall_vb_rs.xml using the plugin manager. 2) Keep an eye on the log file which can be found here: www.yourvbforumurl.com/logfile_worms.txt (This file will only be created when a attack occour) 3) Your website is now secure from hackers Thanks Download Now
Show Your Support
|
Благодарность от: | ||
Naijasite |
Comments |
#112
|
||||
|
||||
my site is good, because i copy on my server root .htaccess file. if this file is missing, my site isnt good, my antivirus is lock my site
|
#113
|
|||
|
|||
I use a third party product called ASL which does the same thing as this mod on a global scale (server wide) and much more (linux servers only). Cost of that is less then the vb license too.
|
#114
|
|||
|
|||
Ditto. This is a deal breaker for me.
|
#115
|
|||
|
|||
Also users have having problems subscribing to threads (I applied the unsubscribe patch)
The command getting caught is do=addsubscription |
#116
|
||||
|
||||
Tried and installed this on vbulletin 3.8.0 rc 2 and 3.7.4 locks admin out of certain parts of the acp could you add to the script that if the user has a valid admin login they can gain access to the acp if not then reject them.
|
#117
|
|||
|
|||
i have this...
i got 5 emails saying it blocked 5 attempts from hacking... then it bypassed and now im hacked.... fixed it once, then they hacked again.... www.ripthemic.org heres wut it showed when prevented... 1||1230677435||66.156.165.120||do=viewsubscription ||http://www.ripthemic.org/forums/usercp.php||Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.17) Gecko/20080829 Firefox/2.0.0.17 1||1230677439||66.156.165.120||do=viewsubscription ||http://www.ripthemic.org/forums/usercp.php||Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.17) Gecko/20080829 Firefox/2.0.0.17 1||1230677448||66.156.165.120||do=viewsubscription ||http://www.ripthemic.org/forums/usercp.php||Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.17) Gecko/20080829 Firefox/2.0.0.17 1||1230734502||124.187.20.43||do=removesubscriptio n&t=3||http://ripthemic.org/forums/showthre...1||Mozilla/5.0 (Windows; U; Windows NT 5.1; en-GB; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3 1||1230765308||67.167.16.183||do=viewsubscription| |http://www.ripthemic.org/forums/usercp.php||Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 1.1.4322; InfoPath.2) is it possible that people are having problems with subscriptions because theres a security issue??? all the actions have to do with subscriptions and everyone is talking about having issues with subscriptions.... last email i got was at 6:16 PM today, right before the site went down... Had Me Site Fixed AGAIN... They Hacked AGAIN!!! This Time It Shows Me... 1||1230777472||98.100.180.113||do=viewsubscription ||||Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5 1||1230777561||98.100.180.113||do=viewsubscription ||||Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5 1||1230816616||86.96.229.88||s=&do=add&dostyleid=1 0&title=headinclude&group=all&searchstring=&expand set=10||http://ripthemic.org/forums/admincp/||Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.0.04506) 1||1230816628||86.96.229.88||s=&do=add&dostyleid=1 0&title=headinclude&group=all&searchstring=&expand set=10||http://ripthemic.org/forums/admincp/||Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.0.04506) This Doesnt Work Very Well... |
#118
|
||||
|
||||
<font face="Georgia">I installed this mod on my vB 3.6.7 forum yesterday. It significantly slowed my site down to a crawl. On top of that the so called attacks it said occurred since I installed it have been done by Googlebots and Yahoo Slurp bots.
Whatever! If anyone's vB forum has something to fear from Googlebots and Slurp bots then this mod is overly protective in my opinion. Time of Uninstall - 7:49pm</font> |
#119
|
|||
|
|||
This is attempt for hacking or only one error on script?
Report: ============================ 1||123108xxxx||90.145.22.71||cx=0085147425190053xx xx%3Astktp-0amaq&cof=FORID%3A9&q=java+script&do=process&showp osts=0&s=&x=0&y=0||http://www.mysite.com/forumdisplay.p...1||Mozilla/5.0 (Windows; U; Windows NT 6.0; nl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5 ============================ |
#120
|
|||
|
|||
Thanks
|
#121
|
|||
|
|||
Check with your host to see if you have mod security installed. If yes, this script really shouldn't be needed. You also cannot edit templates without first disabling this.
|
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|