Previous Thread
Next Thread
Print Thread
Rate Thread
#183705 07/18/2004 8:20 PM
Joined: Sep 2001
Posts: 672
Member
Member
Offline
Joined: Sep 2001
Posts: 672
Man, I keep getting this hacklog.cgi created in my UBB directory. Anyone ever see this or have problems?

It keeps taking up all my space. It was just at 65 gigs for peats sake. I delete it, and 20 min later it comes back and now its 685 megs again.

Is this standard with classic, or is this my host?

Sponsored Links
#183706 07/18/2004 8:35 PM
Joined: Jan 2000
Posts: 5,073
Admin Emeritus
Admin Emeritus
Joined: Jan 2000
Posts: 5,073
I find it highly unlikely that it was 65 gigs, nor that it could ever reach 685 megs. Are you sure you aren't shifting the decimal over three places? Or maybe even six? The hacklog on Flare is only 220k, after being cleared in June 2003...

The file is a log of all potential security breaches, including alerts of bad HTML posted.


UBB.classic: Love it or hate it, it was mine.
#183707 07/18/2004 8:56 PM
Joined: Sep 2001
Posts: 672
Member
Member
Offline
Joined: Sep 2001
Posts: 672
you sure about that buddy?

[Linked Image]


and it keeps getting bigger by the minute :rolleyes:

#183708 07/18/2004 9:27 PM
Joined: Jan 2000
Posts: 5,833
Likes: 20
UBBDev / UBBWiki Owner
Time Lord
UBBDev / UBBWiki Owner
Time Lord
Joined: Jan 2000
Posts: 5,833
Likes: 20
Very odd; mine is only like 300k and it's from the past 3 years... What type of data is being relayed in the log?


UBB.Dev - Putting Dev into UBB.threads
Company: VNC Web Services - UBB.threads Scripts and Scripting, Install and Upgrade Services, Site and Server Maintenance.
Forums: A Gardeners Forum, Scouters World, and UGN Security
UBB.Threads: My UBB Themes, My UBB Scripts
#183709 07/18/2004 9:36 PM
Joined: Sep 2001
Posts: 672
Member
Member
Offline
Joined: Sep 2001
Posts: 672
Quote
Originally posted by Gizzy:

Very odd; mine is only like 300k and it's from the past 3 years... What type of data is being relayed in the log?
The same dam data every time. Its HTML code that I was playing with in a new thread. Actually it was a form I was designing for applying for something on my board. It's obivously all HTML and I was gonna post it in a new thread, but I was testing it out many of times by creating new threads with it, seeing how it looked. But that was yesterday !!

I disabled a few tags like
Code
<script> & <body>
so maybe thats why?

Who knows. I just deleted it, and it's created itself again, and its up to a few hundred megs again

Sponsored Links
#183710 07/18/2004 10:07 PM
Joined: Jan 2003
Posts: 3,456
Likes: 2
Master Hacker
Master Hacker
Offline
Joined: Jan 2003
Posts: 3,456
Likes: 2
mine is only 100K dating back over a year

havoq, it's stupid to allow those tags, as script is one of the known security holes, and body could easily ruin the layout of your page

#183711 07/18/2004 10:59 PM
Joined: Jan 2000
Posts: 5,073
Admin Emeritus
Admin Emeritus
Joined: Jan 2000
Posts: 5,073
Quote
quote:

I disabled a few tags like
Code
<script> & <body>
so maybe thats why?
Did you completely, totally fail to read the big boilerplate above that code saying NOT TO TOUCH THE FILTERS? There's a good reason for that.

However, there is no good reason for hacklog to be doing that.

I suggest restoring to stock code immediately to see if it rectifies the issue.


UBB.classic: Love it or hate it, it was mine.
#183712 07/18/2004 11:07 PM
Joined: Sep 2001
Posts: 672
Member
Member
Offline
Joined: Sep 2001
Posts: 672
Quote
Originally posted by Ian Spence:

mine is only 100K dating back over a year

havoq, it's stupid to allow those tags, as script is one of the known security holes, and body could easily ruin the layout of your page
How can it again ruin my page if HTML is disabled on my forums?

Restoring the stock code, did not help frown

#183713 07/19/2004 4:25 AM
Joined: Jan 2000
Posts: 5,073
Admin Emeritus
Admin Emeritus
Joined: Jan 2000
Posts: 5,073
Keep the stock code in place, go to infopop.com, and open a support ticket. Reference the URL to this topic, and include a request that the ticket be assigned to me. I need to examine the hacklog.

In the mean time, turn your board off to prevent the hacklog from growing any larger.


UBB.classic: Love it or hate it, it was mine.
#183714 07/19/2004 6:01 AM
Joined: Sep 2001
Posts: 672
Member
Member
Offline
Joined: Sep 2001
Posts: 672
I already fixed and resolved the problem. wink

Just changed permissions on the file to 666, which prevented writing to the file. Then I rebuilt the forum stat files for the forum that I knew I had the problem with. Then cleared the cache, deleted the file, and wham, everything seems fine. File hasnt been created in 12 hours. laugh

Sponsored Links
#183715 07/19/2004 6:07 AM
Joined: Mar 2001
Posts: 7,394
LK Offline
Admin / Code Breaker
Admin / Code Breaker
Offline
Joined: Mar 2001
Posts: 7,394
Well, that doesn't fix the problem, perhaps there is a reason why the hacklog was created, a problem with the code.
I think you should CHMOD the hacklog.cgi 777 and when it turns 5mb or so CHMOD it back to 666, then open up a support ticket like CC said.

#183716 07/19/2004 1:29 PM
Joined: Jan 2000
Posts: 5,073
Admin Emeritus
Admin Emeritus
Joined: Jan 2000
Posts: 5,073
The code will automagically correct the permissions for you. Not that 0666 would make a difference in write permissions, as you only removed the execute bit.


UBB.classic: Love it or hate it, it was mine.
#183717 07/19/2004 7:41 PM
Joined: Jan 2000
Posts: 5,833
Likes: 20
UBBDev / UBBWiki Owner
Time Lord
UBBDev / UBBWiki Owner
Time Lord
Joined: Jan 2000
Posts: 5,833
Likes: 20
Agreed, World Read, World Write, No Execute would have little effect on writing of the file; if it hasn't been re-created you must have done something else that repaired the issue.


UBB.Dev - Putting Dev into UBB.threads
Company: VNC Web Services - UBB.threads Scripts and Scripting, Install and Upgrade Services, Site and Server Maintenance.
Forums: A Gardeners Forum, Scouters World, and UGN Security
UBB.Threads: My UBB Themes, My UBB Scripts

Link Copied to Clipboard
Donate Today!
Donate via PayPal

Donate to UBBDev today to help aid in Operational, Server and Script Maintenance, and Development costs.

Please also see our parent organization VNC Web Services if you're in the need of a new UBB.threads Install or Upgrade, Site/Server Migrations, or Security and Coding Services.
Recommended Hosts
We have personally worked with and recommend the following Web Hosts:
Stable Host
bluehost
InterServer
Visit us on Facebook
Member Spotlight
isaac
isaac
California
Posts: 1,157
Joined: July 2001
Forum Statistics
Forums63
Topics37,573
Posts293,925
Members13,849
Most Online5,166
Sep 15th, 2019
Today's Statistics
Currently Online
Topics Created
Posts Made
Users Online
Birthdays
Top Posters
AllenAyres 21,079
JoshPet 10,369
LK 7,394
Lord Dexter 6,708
Gizmo 5,833
Greg Hard 4,625
Top Posters(30 Days)
Top Likes Received
isaac 82
Gizmo 20
Brett 7
WebGuy 2
Morgan 2
Top Likes Received (30 Days)
None yet
The UBB.Developers Network (UBB.Dev/Threads.Dev) is ©2000-2024 VNC Web Services

 
Powered by UBB.threads™ PHP Forum Software 8.0.0
(Preview build 20240430)