PHP Web Host - Quality Web Hosting For All PHP Applications Sign up for PayPal and start accepting credit card payments instantly
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 14943
Location: Kansas

PostPosted: Sun Oct 03, 2004 10:52 pm Reply with quote Back to top

This is only for those that do NOT use My_eGallery!

Just as I have done for the cgi hack attempts, I have now done for all these my_egallery exploit attempts. Make a honeypot as follows.

Create a folder called modules/My_eGallery
Create a sub-folder called public in My_eGallery
Create .htaccess file for the modules/My_eGallery/public folder as
Code:
RewriteEngine On
RewriteCond %{REQUEST_URI} "/modules/My_eGallery/public/.*$" [NC]
RewriteRule ^(.+) http://your_site.com/abuse/abuse.html


Now this assumes you are using Ganja's PC Killer templates. If not, direct them wherever you want Wink

You could also just add this to your main .htaccess file, but by layering it in the subfolders Apache does not have to process the directive everytime.
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
Nukeum66
Life Cycles Becoming CPU Cycles


Joined: Jul 30, 2003
Posts: 546
Location: Neurotic, State, USA

PostPosted: Mon Oct 04, 2004 12:55 am Reply with quote Back to top

I send them to know Browser Hijacking site.... Laughing
Give them a little dose of there own crap! Evil or Very Mad
View user's profile Send private message Visit poster's website MSN Messenger
blith
Life Cycles Becoming CPU Cycles


Joined: Jul 18, 2003
Posts: 938

PostPosted: Mon Oct 04, 2004 8:12 am Reply with quote Back to top

Raven, I do not have an abuse.html file in there it is an abuse.php. Is that the one to use? Thanks.
View user's profile Send private message Visit poster's website
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 14943
Location: Kansas

PostPosted: Mon Oct 04, 2004 9:02 am Reply with quote Back to top

Yes. GT changes it on mine Smile
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
sixonetonoffun
Spouse Contemplates Divorce


Joined: Jan 02, 2003
Posts: 2363

PostPosted: Fri Oct 22, 2004 3:49 pm Reply with quote Back to top

I set this up right after this post on a domain that is not being used.
Interesting results were exactly to date 100 hits on that funny displayCategory.php
Of those hits the majority were from 200.* 201.* and 218*
99 of those were using linux/Mozilla sposedly
1 was a win98 user and ate many many pages of abuse.php/abuse.js

I'm going to work out something to ban these nix users though since they don't appear to be redirecting at all. I'm guessing they aren't even using a browser for the most part.
View user's profile Send private message
darksied
Hangin' Around


Joined: Jan 27, 2004
Posts: 25
Location: New Jersey

PostPosted: Wed Mar 02, 2005 1:00 am Reply with quote Back to top

would these changes below work for coppermine

Code:
RewriteEngine On
RewriteCond %{REQUEST_URI} "/modules/coppermine/.*$" [NC]
RewriteRule ^(.+) http://your site.com/abuse/abuse.html


plus can some one tell me when RewriteEngine Off is used
View user's profile Send private message Visit poster's website AIM Address
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2008 by Raven
Proud to be listed at Lobo Links Web Directory

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::

:: fisubice Theme Recoded To 100% W3C CSS & HTML 4.01 Transitional Compliance by Raven and 64bitguy ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum