31
young
Re: newbb violation of cpu resources
  • 2008/9/5 9:49

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


Quote:

I've never had anyone try to spam via cbb. One thought - do you allow anonymous postings/comments/reporting in cbb?

Only registered member can post on the site except the vote/rating of article are for anonymous.

Quote:

I think it's better to do it directly from Apache with .htaccess .
This way you don't loose processing power on Protector to analyze the request and checking for the IP's.
Also you prevent that malicious requests could destabilize Protector or XOOPS.

the hosting not allowed to change the .htaccess
------

latest protector log, now they attack

/register.php SPAM POINT: 5



32
young
Re: newbb violation of cpu resources
  • 2008/9/5 3:35

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


thanks for all your advice.

i just feel that the hosting package that offered with 300GB of disk space, 300GB of monthly data transfer is just a fantacy for marketing of their products (for what i paid for this package really a great deals) but not a reality because of limited resources set by their company.http://www.exabytes.com.my/about/legal/aup/#H-resource

i do understand that its in a share hosting environment that need to take care of others domain hosted in the same server.. i only found this problem when my community is growing. but with this limited resources there are no way to fully utlize on what their offered to their client.

any recommended hosting that for xoops? and im targeting for 2000-3000 visitor a day.



33
young
Re: newbb violation of cpu resources
  • 2008/9/4 11:14

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


i found this in the protector log. any idea?

Resized Image



34
young
Re: newbb violation of cpu resources
  • 2008/9/4 9:58

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


JAVesey, thanks for your respond.

i will check the directories later.

i just upgraded to 2.0.18.2, newbb1.16, protector 3.17



35
young
newbb violation of cpu resources
  • 2008/9/4 9:12

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


Today i received an email from my webhosting provider

Quote:

TITLE: [ABUSE #XOX-135044]: AUP Violation : CPU Resource Abuse on yoursite.com

Kindly be informed that your domain 'yoursite.com/community/modules/newbb' has been found overloading the CPU Resources on the server. We hereby attached a screen shot of your domain CPU usage for your references. For your information, the maximum allowed CPU consumption domain is 100Mhz, which is 3.34% of the total CPU resource.

Currently the folder for newbb has been change ownership so that it wont continue on overloading the server.

Your kind co-operation in this matter is highly appreciated. Please do contact us if you need further details.

You may refer to the URL below on SHARED SERVER RESOURCE ABUSE policy set by our company
http://www.exabytes.com.my/about/legal/aup/#H-resource

It is recommended for you to subscribe to our Linux Semi Dedicated Server
http://www.exabytes.com.my/products/semi-dedicated/linux.html

If you have any enquiries, please do not hesitate to contact us. Thank You.

Resized Image


i have to disable the forum or pay more for a higher hosting package or else my hosting account will be suspended.



36
young
Spammer or spam bot?
  • 2008/8/25 7:00

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


Last week has some new users signup to my site and send alot of unproprate Private Message to the users of the site. there are around 2000 registered users in the site, they has only send around 200 PM on that day and not login again after that.

I have protector installed, captcha enable and need to verify by email during signing up an account.

so you think this is a job of a spammer or spambot?



37
young
Re: 7 New XOOPS Banners
  • 2008/8/1 10:02

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


Beautiful! this is generate from fancygens.com
fancygens.com



38
young
Re: Protector - UNION Pattern like SQL injection found
  • 2008/8/1 9:59

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


JAVesey, thank you for your information.. really a useful tips!



39
young
Protector - UNION Pattern like SQL injection found
  • 2008/7/31 3:48

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


Recently i found alot of "UNION Pattern like SQL injection found" on protector module. What is this mean? is it harm?

user
Guests

IP AGENTS
79.116.185.239 Firefox/3.0.1
125.162.53.177 Firefox/2.0.0.12
79.117.37.152 Firefox/3.0.1
90.27.42.175 IE 7.0
84.22.47.118 IE 6.0
77.242.22.74 IE 6.0
And more..

Description
UNION Pattern like SQL injection found. (-58 UNION SELECT 1,2,version(),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,[i]21,22,23,24,25,26,27,28,29,30,31--)[/i]

extra info, i use Protector v2.52

Updated extra info, just now my IP Banned from Protector from my 1st post. i has refresh my IP to get back to XOOPS site, and this is my 2nd post. i think the Description i posted got me banned from protector.

**WARNING: Do not quote this message expecially the Description. it will get your IP Banned.



40
young
Re: Xoops 2.3 Wishlist
  • 2008/7/31 2:04

  • young

  • Just popping in

  • Posts: 99

  • Since: 2006/1/16


Protected email address(anti spam)

email address in user profile or on the site show like "yourname[at]hotmail[dot]com" and when an user click on the address it will open in outlook or any mail program and the email address is like "yourname@hotmail.comNO SPAM". the user need to delete the word "NO SPAM" manually before send a mail.

this will protect users getting email from any spam bot.




TopTop
« 1 2 3 (4) 5 6 »



Login

Who's Online

229 user(s) are online (153 user(s) are browsing Support Forums)


Members: 0


Guests: 229


more...

Donat-O-Meter

Stats
Goal: $100.00
Due Date: Apr 30
Gross Amount: $0.00
Net Balance: $0.00
Left to go: $100.00
Make donations with PayPal!

Latest GitHub Commits