PHP Web Host - Quality Web Hosting For All PHP Applications Free RavenNuke(tm) Add Ons
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
STALKERllllllD
New Member
New Member


Joined: Feb 28, 2005
Posts: 3

PostPosted: Tue Dec 04, 2007 11:04 am Reply with quote Back to top

i've been getting a lot of blocked ips for the last week or so and they look something like this

Query String:
Only registered users can see links on this board!
Get registered or login to the forums!


Query String:
Only registered users can see links on this board!
Get registered or login to the forums!


anything be done or just let NS do its thing?
View user's profile Send private message
spasticdonkey
RavenNuke(tm) Development Team


Joined: Dec 02, 2006
Posts: 1362
Location: Texas, USA

PostPosted: Tue Dec 04, 2007 1:13 pm Reply with quote Back to top

pretty common, I've been getting the same ones... most of them look like fairly simple, easily foiled cross-site scripting attacks so I wouldnt lose to much sleep over it. The IP's are all over the board so they are probably using a proxy so not sure there a whole lot you can do, but I'm no NS expert either...

the chat.ru domain has alot of incoming ones lately... i assume it's a free hosting service but I can't read russian, so.....
View user's profile Send private message
montego
Site Admin


Joined: Aug 29, 2004
Posts: 9133
Location: Arizona

PostPosted: Tue Dec 04, 2007 8:12 pm Reply with quote Back to top

HHhhhmmmmm... i had added @mail.ru to my NS string blocker about a year back and now it looks like I need to add chat.ru....
View user's profile Send private message Visit poster's website
slackervaara
Worker
Worker


Joined: Aug 26, 2007
Posts: 234

PostPosted: Tue Dec 04, 2007 9:53 pm Reply with quote Back to top

I have added modrewrite statements in my .htaccess and I don't get these bans in Sentinel although I have the latest version. I presently use this in my .htaccess:

RewriteEngine On

RewriteCond %{HTTP_USER_AGENT} ^libwww(-FM|-perl) [OR]
RewriteCond %{HTTP_USER_AGENT} Indy\ Library [NC,OR]
RewriteCond % _CONF [OR]
RewriteCond % tool25 [OR]
RewriteCond % cmd.txt [OR]
RewriteCond % r57shell [OR]
RewriteCond % c99 [OR]
RewriteCond % THEME_DIR
RewriteRule ^.* - [F,L]

RewriteCond %{QUERY_STRING} .*http:\/\/.*
Rewriterule ^.* - [F]
View user's profile Send private message
spasticdonkey
RavenNuke(tm) Development Team


Joined: Dec 02, 2006
Posts: 1362
Location: Texas, USA

PostPosted: Tue Dec 04, 2007 10:52 pm Reply with quote Back to top

hmm looks interesting Smile
I'll give it a try and see how it works for me Smile
View user's profile Send private message
montego
Site Admin


Joined: Aug 29, 2004
Posts: 9133
Location: Arizona

PostPosted: Wed Dec 05, 2007 5:11 am Reply with quote Back to top

slackervaara, that is all you have in yours? Wink I swear that my .htaccess is larger than my largest PHP script. killing me
View user's profile Send private message Visit poster's website
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum