Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
This forum is locked: you cannot post, reply to, or edit topics.   This topic is locked: you cannot edit posts or make replies.    Ravens PHP Scripts And Web Hosting Forum Index -> RN v2.10.01 - All Issues
Author Message
kevinkap
Involved
Involved



Joined: Apr 22, 2006
Posts: 356

PostPosted: Sat Nov 03, 2007 2:25 pm Reply with quote

Ok,

One site I run for a guy, he for some reason went in and tried to change the "god" admin pwd. After that, he got himself blocked, I had sentinel set to write to htaccess. I did not know he changed it and I got blocked out. I went in and removed our ip's from the access file and the db as well, but every time either of us tried to access the "edit admins" module, we were banned. So I finally had to go into the db and turn off all sentinel blockers that way.

Now I can get into the site and the admin section but cannot login as god admin. Everytime I try to edit admins I get blocked. I tried to change the god pwd back to the original one via the db but that did not work either. I now just get a white page saying "illegal operation".

I do have the tool box installed but everytime I try to access it I get an internal server error.

What has he done?

_________________
Kevin Kappes 
View user's profile Send private message
Raven
Site Admin/Owner



Joined: Aug 27, 2002
Posts: 17088

PostPosted: Sat Nov 03, 2007 3:05 pm Reply with quote

Hard to say, for sure. Use phpMyAdmin and edit the $prefix_authors table. Reset your password and be sure to select MD5 from the drop down box to the left of the password. Otherwise the password won't be properly encrypted. That should always reset the password.

The NukeSentinel(tm) issue will have to be addressed separately but not until you get the passwords reset.
 
View user's profile Send private message
kevinkap







PostPosted: Sat Nov 03, 2007 3:09 pm Reply with quote

I am seeing this in my error log

[client xx.xx.xx.xx] client denied by server configuration: a/b/public_html/admin.php
[Sat Nov 3 14:24:00 2007] [error] [client xx.xx.xx.xx] client denied by server configuration: a/b/public_html/admin.php
[Sat Nov 3 14:00:04 2007] [error] [client xx.xx.xx.xx] client denied by server configuration: a/b/public_html/NTB
[Sat Nov 3 14:00:04 2007] [error] [client xx.xx.xx.xx] client denied by server configuration: a/b/public_html/NTB

[client xx.xx.xx.xx] a/b/public_html/ntb/.htaccess: Invalid command 'php_flag', perhaps mis-spelled or defined by a module not included in the server configuration
[Sat Nov 3 13:45:16 2007] [alert] [client xx.xx.xx.xx] a/b/public_html/ntb/.htaccess: Invalid command 'php_flag', perhaps mis-spelled or defined by a module not included in the server configuration

Does this mean they may have changed something with the server to cause this to happen?
 
kevinkap







PostPosted: Sat Nov 03, 2007 3:15 pm Reply with quote

Ok, I was not using the md5. I am able to do as I should with admins right now. I will try to activate the sentinel blockers now.

Thanks Much!
 
kevinkap







PostPosted: Sat Nov 03, 2007 3:16 pm Reply with quote

I still cannot access ntb though
 
Raven







PostPosted: Sat Nov 03, 2007 3:18 pm Reply with quote

Please do not post your real path(s) or IP's. You're begging to be hacked Laughing

Your host does not allow php_flag options in .htaccess. Are you using PHP Cgi or an Apache module? If using cgi then you should put that command in your local php.ini file.

The denial message is saying that your IP is blocked in the .htaccess file.
 
kevinkap







PostPosted: Sat Nov 03, 2007 4:10 pm Reply with quote

Oh, man, I thought I x'd them out.

As far as php cgi or apache, I do not know. How would I find that out.

ps, glad to see you are feeling better.
 
Raven







PostPosted: Sat Nov 03, 2007 5:51 pm Reply with quote

Me too Wink .

Save this script to a file ?????.php (you fill in the ?????). ftp it to your site. Run it as http://xxx.your_domain.yyy/?????.php. At the top of the screen (usually the 3rd line will be Server API. If it says CGI you know it's CGI. Otherwise it's being run as an Apache module. If it's Apache then your host is blocking you from executing PHP commands or at least certain ones.

Be sure to delete the script from your server after using it

Code:
<?

phpinfo();
?>
 
kevinkap







PostPosted: Sun Nov 04, 2007 10:45 am Reply with quote

Ok, it is CGI. You mentioned, "local php.ini" file. Do I need to have one? There is not one that I see.

It appears that the other issues with the admin and passwords are sorted out. I wonder if they did some upgrading that night, since those issues just happened then and not before.

For some reason on this same site, some users are being blocked when trying to access the forums. They are getting "You have been blocked from entering this site.
You have attempted to improperly access the admin area of this site."

This has happened a couple times and I do not know why. One person is still getting it. You may want this in a seperate thread, I do not know.
 
Raven







PostPosted: Sun Nov 04, 2007 12:15 pm Reply with quote

Make sure their IP is not blocked in NukeSentinel(tm).

Does your host use use phpsuexec? If so, all php_flag entries in .htaccess have to be moved to a local php.ini file usually in your public_html file. Your host will need to assist you with all of that.
 
kevinkap







PostPosted: Sun Nov 04, 2007 12:29 pm Reply with quote

I do not see his ip in sentinel or in htaccess. I do not even have the admin blocker on yet after the issues yesterday. So if it is off, why would it be triggering?
 
Raven







PostPosted: Sun Nov 04, 2007 12:36 pm Reply with quote

That is NukeSentinel(tm). If you look in abuse/abuse_admin.tpl you will see that exact message.
 
kevinkap







PostPosted: Sun Nov 04, 2007 12:40 pm Reply with quote

Thanks Raven,


I see that message, but I have the admin blocker turned off. So why would accessing the forums trigger a blocker that is not even active?

Sometimes this stuff makes my head hurt. Bang Head
 
Raven







PostPosted: Sun Nov 04, 2007 1:17 pm Reply with quote

Normally it shouldn't. What are your blocker settings? If you want just email be as we don't want to give any info to the enemy Wink
 
kevinkap







PostPosted: Mon Nov 05, 2007 2:46 pm Reply with quote

Oh, the pain. Had everything working good again yesterday, created the local ini file as instructed. That fixed not being able to get to the tool box. Now for some reason I am getting the "illegal operation" error page again when trying to edit admins.

wtf?

If it was my choice I would move hosts as they have not been real helpful as of yet.

Any ideas please. This all started Friday night after the site ran without issue for a month.
 
Raven







PostPosted: Mon Nov 05, 2007 3:00 pm Reply with quote

It really sounds like your host has made some changes recently. possibly they were running PHP as a module then switched to CGI? Who knows. Raven Web Services would be more than happy to host you RavensScripts

In admin.php you will find this code
Code:
$ops = array('mod_authors', 'modifyadmin', 'UpdateAuthor', 'AddAuthor', 'deladmin2', 'deladmin', 'assignstories', 'deladminconf'); // Raven: 10-23-2006


if(!isset($op)) {
   $op = 'adminMain';
} elseif(in_array($op, $ops) AND $rname != 'God') {
   die('Illegal Operation');
}


In order to edit admins you must be a God admin.
 
kevinkap







PostPosted: Mon Nov 05, 2007 3:16 pm Reply with quote

Oh crap. I was logged in as my admin name instead of god. This other stuff has my head hurting again. Bang Head

If it were my site, I would move it but it isn't. I think he is locked in until mid 08. I was leery of them because of their overselling for CHEAP!! I never have used a host like that.
 
Display posts from previous:       
This forum is locked: you cannot post, reply to, or edit topics.   This topic is locked: you cannot edit posts or make replies.    Ravens PHP Scripts And Web Hosting Forum Index -> RN v2.10.01 - All Issues

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©