vBulletin ModsThe Official vBulletin Modifications Site
https://www.vbulletin.org/forum/showthread.php?t=299546 |
10 Attachment(s)
https://www.vbulletin.org/forum/external/2013/08/7.jpg
FORMALLY KNOWN AS TOR ALERT! PROXY ALERT TAKES CONTROL OF YOUR FORUMS WITH THE NEXT LEVEL OF PROTECTION! 3.8 VERSION HERE. I've searched high and low for a modification that can detect Tor or proxy users. Personally I've had one too many banned members just create another identity and troll about. Now let proxies and TOR... Give you problems NO MOR! Now when those pesky proxy and Tor users visit your site, you can block them and redirect them to a custom error message! You can also alert your members that proxies and Tor is not a nice thing to use! You can customize the message and it also allows to be closed. Demo: http://www.consolediscussions.com/forum/ *You will need to register as I have it set to detect for members only. Features: Thread Posting on Detection [PRO] IP Address Whitelist [PRO] Redirect Proxy Registrations to Blank Page [PRO] Detect Web Proxies [PRO] Email on Detect [PRO] Index Only Option [PRO] Usergroup Permissions [PRO] *Search Engine Safe Block Proxy Registrations (Registration Blocking Only Option Available) Detect Lan Proxies PM on Detect Enable/Disable Automatic or Manual Template Edits Persistent Message Enable/Disable (Uses Cookies) Redirect if Detected Custom Messages Customer Color of Messages UserID Permissions Block Registration Even When Proxy Disabled No Branding Version: For a premium no-branding version which has additional features, please visit my Products & Services page. If you look forward to seeing this modification progress, you can help by donating! Donators will be given access to early releases before anyone else, and access to the 3.8 version pro when it's released as well. Upcoming features include: Option to remove X on alert Not allowing Tor users to post Redirect to another page Usergroup Permissions Set a certain amount of views before blocking Once closed, don't persist with displaying box Possibly a notice type message instead of a popup BAN Tor users automatically Enable/Disable feature Installing: 1.) Upload everything in the upload folder to your forum root. 2.) Navigate to AdminCP Add/Import Product 3.) Select product-toralert.xml 4.) Install the modification 5.) Set your options in the AdminCP 6.) Mark Installed :) Upgrading: 1.) Upload everything in the upload folder to your forum root. 2.) Navigate to AdminCP Add/Import Product 3.) Select product-toralert.xml 4.) Check yes to Allow Overwrite 5.) Install the modification 6.) Set your options in the AdminCP *Not working? 1.) Disable automatic template edits in the AdminCP 2.) Navigate to the navbar template in your style 3.) Add {vb:raw toralert} to the bottom of the template Changelog 1.9.2 Fixed issue with broken bracket. 1.9 Fix for 4.2.2 AdminCP Manager Pro Feature Ported to Free (Block Registration Even When Proxy Disabled) 1.8 Registration Detection Only Added Link to Change Registration Detection Message Fixed Issue w/ Registration Detection Reduced Queries Further 1.7.5 Fixed "Could not find phrase 'proxy_alert_registration'." Error Improved Detection Reduced Queries Enhanced Code 1.7 Thread Posting on Detection [PRO] Added Member Only Detection Added Global Enable/Disable Restructured Code Optimized Code 1.6 User ID Whitelist Bot detection fix IP Whitelist [PRO] Registration blocker works with ip address whitelist [PRO] 1.5 Block Proxy Registrations (Screenshots Added) Redirect Proxy Registrations to Blank Page [PRO] Block Registration Even When Proxy Disabled [PRO] 1.4 -Updates Changed IP text to Real IP Changed pm alerts to be more detailed if it was detected using tor, a lan proxy, or a web proxy. 1.3 Fixed conditional issue 1.2 -Updates PM on detect now posts the ip address, proxy ip address, and the hostname of the user -Bugs Fixed multiple PMs being sent 1.1 -Updates Renamed to Proxy Alert Detect Tor and Lan Proxies PM on Detect Detect Web Proxies [PRO] Email on Detect [PRO] Redirect to Blank Page [PRO] -Bugs Fixed cache issue Fixed font issue 1.0 -Updates Enable/Disable Automatic template edits Enable/Disable Font color of messages Index only option [PRO] -Bugs Fixed cache issue in tor.php Fixed online location still showing unknown for redirects 0.6.5 Added a persistent option in the AdminCP Minor bug fixes 0.6.0 Alert message when closed will not pop back up (Stores tor cooking and if exists alert will not pop up any longer, this does not apply to redirection) Changed the position of the alert to not cause issues with the Adblock Alert product 0.5.0 Block Tor users and redirect them to a custom page with a custom message controlled in the AdminCP Enable/Disable redirection in AdminCP. Who's online trigger 0.1.0 Release. |
alot of people use Tor for hacking forums this addon is very good one if u want more protection
|
Quote:
|
Can't wait to see this plugin come out of it's beta stages!
|
Quote:
Quote:
|
Yes. I was clarifying it for the other poster. I would like to see a total block for Tor users, personally.
|
NOW OUT OF BETA!
You've posted, and I've read! Tor Alert 0.5.0 has been released and out of beta since I now have the kinks worked out. You can now block Tor users completely and redirect them to a custom message set in the AdminCP! You can enable/disable this option if you choose to just stick with an alert. Also shows up in the who's online as "Blocked by Tor Detector." I hope you guys enjoy this modification, and look forward to more features and a premium version soon! Feel free to leave your suggestions and feedback in the topic. |
Good job, a 3.8 version would be nice.
|
any plans on blocking i2p to ? i dont know if this is possible i m just asking :-)
|
Quote:
Quote:
|
What a great idea! Thank you for making this.
|
Quote:
0.6.0 has been released to now store a cookie that if detected will no longer alert as to of Tor use. This will not be used in redirection method therefor even if cookie is detected, they will still be redirected. |
I like this idea and cant wait for it to be expanded.
Questions: How does this detect TOR? I know they rotate IP's constantly as well as reassign the hostnames. Can this really detect the tunnels or users? Would love to see a method to prevent tor posting and maybe even temporary moving into usergroups of any tor detected account. Tagged for future. Tnx |
Quote:
|
Excellent. Liked.
So ip-port.exitlist.torproject.org is the "external content" listed above? I havent yet (that I am aware of) had a problem member using tor, but I see this as a good defensive measure worthy of consideration. |
|
I thought I would install this and test this out.
How do I turn off the X in the popup? |
Quote:
confirmed for a quick fix until new product xml is edited and uploaded by author, edit the Tor_alert template, right at the bottom - remove ');} its just before the closing script tag @InsaneMan, you dont need {} there :) |
This is REALLY needed for 3.8.X... Still ALOT of those board owners around.
|
1 Attachment(s)
Quote:
Quote:
Quote:
Quote:
Quote:
Maybe you could give this a go as well, I am wondering if the vboptions are giving it trouble. |
1 Attachment(s)
above xml no go
|
1 Attachment(s)
edit
to this
|
I have successfully installed the detector mod, and tested with the latest TOR browser.
A couple of points,... I like and prefer the red pop-up in v0.6. it isnt all in the way, but I would like it to always be on every page view. IE-giving the admin the ability to eliminate the X. (already discussed earlier so no biggie) I noticed that the detector doesnt work on cms pages. Not a problem for me as I dont allow members to create articles, but I think the pop-up should show up there anyway. I dont know why anyone would use the TOR system, it like slows down my browsing significantly. Maybe I am just not covert and devious enough to need it I guess. I like it so far. Thanks! |
Quote:
Quote:
What do you mean it doesn't work on CMS pages? It's hooked into the headers, which if I recall should be used in CMS as well. Is your style different on the CMS than the forum? Tor runs fine with me, however I am on 50mbps optic internet so that may be why. Even some users are on a 54k internet connection, they just prefer anonymity over being public. Then you get those that are on a set vendetta to make your life a living hell, rather it be spamming your forum with useless junk, or harassing/flaming your board, getting banned, and using a new ip to do it again, regardless it is why I created it. I will actually be investing a little more time into this modification as I noticed since I started blocking Tor users that this one thorn in my side decided to use a web based proxy, which I plan to detect and stop those as well. Eventually if you make things really difficult for them, they give up haha. |
InsaneMan, ignore my last code as I didnt check with both page and popup, works with one not both.
this code works for both
|
Quote:
Hmm actually upon further investigation into the issue </vb:if> was the issue the whole time haha. I included it in the alert message which closed out the conditional before </script> could be finished. Anyway will patch this with the new version. After updating to the new version you will need to revert your tor_alert template and if using vbOptimise you will need to flush cache. Edit: 0.6.5 released to include the persistent option and some other minor fixes. |
0.6.5 download link says it is an invalid attachment.
|
Quote:
|
I just notice that the cms pages, most noticably, my home page, the pop-up didnt show up. I did browse around during tests and it works on all pages, but upon returning to my home page, the popup didnt enable.
I have had several instances where the cms didnt conform to vb css especially in non-oem template changes, and other attributes, but I dont know why the difference, except sometimes when using certain mods or header template changes like my custom login box in header, that cms css had to be changed also as it wouldnt follow vb forum vb css attributes. So maybe the mod is working, but the forum or additional css attributes arent applied directly to cms header changes. Oh yes, and I use one style for all my pages. edit to add, I am on a 50mb fibre connection too, although my remote measured thoroughput is more around 36mb. No biggie, I understand the latency involved by going thru tor. |
Works great (0.6.5)
cheers |
1.0 released along with a Product and Services page being created for the Pro version and those wanting to donate.
-Updates Enable/Disable Automatic template edits Enable/Disable Font color of messages Index only option [PRO] -Bugs Fixed cache issue in tor.php Fixed online location still showing unknown for redirects Quote:
That's strange that it loads fast for me, maybe I am closer to the provider which may give me a better ping? Quote:
|
With version 1.0, I am experiencing some odd behavior. I have temporary disabled it, until you can evaluate the cause. The issue is directly tied in with this mod, and I can duplicate it enabling/disabling the mod.
Quote:
I hope this is helpful, to help diagnose the cause. Thanks again M PS: I also have vb bad behavior going, if that could somehow be in conflict. (I guess theyre somewhat similar) I am using ADVANCED FRIENDLY URL's, with paths changed somewhat in the htaccess, if that could be another factor. |
Quote:
|
Great. Thanks for such a speedy reply! I'll do this right now.
|
I'm not sure that the email feature works, but everything else seems in order!
Thanks again |
Bought the pro edition. :D
My question is: what happens when my number of file downloads is exceeded and there is an update? |
Quote:
Quote:
|
Great :D
|
Pro version it is then.
Emails work now. Suggestion: Do you think maybe more could be included in the emails for a future version, such as the IP/hostmask they used, or maybe even the detectable fields that identify the browser, operating system, etc? Thanks |
does this mod work with PaulM's mod? http://www.vbulletin.org/forum/showthread.php?t=231873
|
With everything turned on and pro version, i'm getting some false positives.
For example: 68.42.191.69 (c-68-42-191-69.hsd1.mi.comcast.net) Does this mean that comcast is on a blacklist somewhere? Thanks |
Actually its catching several ISPs and I turned off LAN and PROXY detection for now, and only left TOR on.
Resolved 184.13.204.160 to 184-13-204-160.dr02.csvl.tn.frontiernet.net Resolved 118.209.17.156 to ppp118-209-17-156.lns20.mel4.internode.on.net Also caught. |
Quote:
Quote:
Quote:
For example a lan proxy 190.151.144.42 port 8080 is registered to cabletel: http://www.whatismyip.com/ip-tools/i...t-name-lookup/ |
Thanks for explaining
It is still catching people, even with just TOR detection and Detect Auto Template Edits on, so im trying to turn the template one off for now. Theyre def not on tor servers. Will let ya know if it makes a difference. Good luck with that job interview!!! |
hello
thank you, but here not work for me (4.2.1) although I have: 1.) Disable automatic template edits in the AdminCP 2.) Navigate to the navbar template in your style 3.) Add {vb:raw toralert} to the bottom of the template I forgot some thing to do ? thanks ps : when I type www.mysite.com/forum/proxy.php I have this message "You were detected using a proxy! For security reasons, we do not allow this on our community. Please disable the proxy or switch browsers if it is built in. Thank you. " |
Quote:
Quote:
Is the product enabled? Is the {vb:raw toralert} code inserted into the correct style used on the board? Does the product work with auto templates enabled? |
I am getting this error Parse error: syntax error, unexpected T_ELSEIF in /home/***/public_html/***/global.php(29) : eval()'d code on line 234.
I am using the latest 1.2 pro version. |
Quote:
|
ya i had that too. It crippled things so much I couldn't even use admin console. I had to go into config.php and disable all plugins, to regain control and disable the add-on.
I had hundreds of these in the log: Quote:
Rhody PS: Windows 8 is a real culture shock. good luck with that one :) |
Quote:
|
blocking vpn to in future ?
|
I'm not familiar with that form of proxy. Have you tested the script to see if it alerts to use of VPN? Are you referring to Virtual Private Networks? Like you don't want servers connecting?
|
yes i m talking about virtual private networks actually the script dosent block VPN'S
|
Never really had any problems with VPN's to my knowledge, but sure I will look into adding it.
|
is same as tor or proxy allready blocked by your addon alot of people use them to hack or damage websites
|
Do you have an example one I could use to see what ports or masks they use to hide their IP?
|
some of them:
Internet Protocol Security (IPSec) uses IP protocol 50 for Encapsulated Security Protocol (ESP), IP protocol 51 for Authentication Header (AH), and UDP port 500 for IKE Phase 1 negotiation and Phase 2 negotiations. UDP ports 500 and 4500 are used, if NAT-T is used for IKE Phase 1 negotiation and Phase 2 negotiations Secure Sockets Layer (SSL) uses TCP port 443 and works by using a private key to encrypt data that is transferred over the SSL connection. SSL also uses 465 Secure SMTP, 993 Secure IMAP, and 995 Secure POP. Layer Two Tunneling Protocol (L2TP) uses TCP port 1701 and is an extension of the Point-to-Point Tunneling Protocol. L2TP is often used with IPSec to establish a Virtual Private Network (VPN). Point-to-Point Tunneling Protocol (PPTP) uses TCP port 1723 and IP port 47 Generic Routing Encapsulation (GRE). PPTP provides a low-cost, private connection to a corporate network through the Internet. PPTP works well for people who work from home or travel and need to access their corporate networks. It is often used to access a Microsoft Remote Access Server (RAS). but also 843,80 are used for vpn's |
will these mod support with using together with cdn like cloudflare and such , is it possible to whitelist by usergroup and userid and ip ?
|
Quote:
Quote:
|
The problem is not tor or vpn but how people use them and in this case alot of them use vpn's for atacking or hacking.Your addon is a life saver in general :-)
|
The new version seems to tell me every time that *I AM* using a proxy (well, and im not), but it doesnt email or pm as the version before it did. Maybe it's giving the red box in error?
Disabled for the time being |
Dont see how this will stop someone with these tor or proxy coming to your forums and looking around there is only a small box
|
Quote:
|
For those who use VB 3.x and need some to block TOR, see: http://www.reaper-x.com/2012/05/15/h...che-and-nginx/
It's also an alternative to this plugin if blocking TOR is your only goal, it's lightweight and doesn't add the overhead of reverse lookups. Instead each hour it downloads the TOR IP list which can connect to your server's IP. I've been using this method successfully for a couple of years. |
Quote:
http://www.vbulletin.org/forum/showthread.php?t=301377 Quote:
Quote:
Quote:
Quote:
|
Ahh cool, see even I did not fully read the description. :p
|
1.5 has been released to give you the following features:
Block Proxy Registrations Redirect Proxy Registrations to Blank Page [PRO] Block Registration Even When Proxy Disabled [PRO] - This uses a cookie and when the guest is detected and blocked at registration, will continue to be blocked when this is enabled, even if the guest disables their proxy. The registration error uses vB phrasing. Quote:
|
Great features.
Honestly am happy to be using the pro version. Such a small fee for such features included in the pro version. Looking forward to see a method to block vpn. :D |
Quote:
I am researching more into the vpn, no eta on that as I would like to focus a little on some other features that have been more requested and that I have been promising for a while like permissions. |
hello
I upgrade ver 1.5 pro version but I tried to log in proxy and to register, I logged in and registered without any problems or restrictions. I do not know why it does not work? hello I upgrade ver 1.5 pro version but I tried to log in proxy and to register, I logged in and registered without any problems or restrictions. I do not know why it does not work? ------------------------------------ ps: Mr TheInsaneManiac, my site and access are the same as the other day if you want to take a look, with my thanks |
exeption for admins maybe ? so they can use proxies for testing purposes :-)
|
Quote:
No, I do not use the admin account |
Quote:
Quote:
|
Quote:
|
Could we have new thread on detection personally prefer this option :)
|
Quote:
|
Quote:
Quote:
Quote:
|
1 Attachment(s)
Got the pro version but one of the settings seems to be blank can you fix this and pm me a link to the new one
|
Quote:
|
thx that fixed it and also one other problem as well if looking from ipad puffin browser
|
I am liking what I am seeing so far. Great job.
Do you think there will be any problems using it with this mod, http://www.vbulletin.org/forum/showt...t=registration |
Quote:
Quote:
|
Quote:
|
Oh sweet!
|
But it does say the puffin browser is using a proxy so cant use it to log into my forums now pity as i used it all the time
|
Quote:
Puffin browser uses port 80 and 443, the script scans common ports for proxies and generally browsers use ports in the high numbers. So it could be throwing a false positive. I'm not familiar with the puffin browser, if it runs on port 80 it has to be running some type of server feed from another server, is this one of those browsers that cache information on their servers and then feed it back to you as the client? If so this can cause false positives from my modification. |
Quote:
|
Ok, I'm working on a whitelisting feature. Should be finished with it soon.
|
Quote:
|
Quote:
I'm may just work on changing the web proxy script since it does seem to be a little delayed as it has to port scan. Given it does dig deeper, but it can give false positives. I will prolly do a check for headers instead for web proxies. Since that's what most common proxies use. |
Excellent plugin, marked as installed, rated excellent, nominated plugin of the month and bought the pro version. Keep up the good work!
|
Seems to be blocking Google AdSense Spider we need a option to add a host or ip or both to the allowed list
|
Seems like a very useful mod but from what i have read here i will wait until it's 100% working and then buy the pro version.
Thanks anyway. |
I was interested in buying the Pro version, but when I went to the site it didn't mention if it was compatible with 4.2.1. Does anyone know if it is?
This is a break hack, would like to support the coder for his/her efforts. |
Quote:
|
Quote:
Does anyone know if this hack would help any for those using "Airplane Mode" from a smartphone? That's what they use to create new profiles despite being IP banned. |
Just a quick update you all, one of the raid drives died on my server, so it's been down the last couple days, so I haven't had time to work on/test any of the new features. I am working on some new ones now, that I believe you all will enjoy. :)
Quote:
Quote:
|
@TheInsaneManiac
Thanks for the heads up buddy,i will consider to buy the pro version today. |
Quote:
BTW, I went pro today :up: Great work! |
Quote:
Quote:
Thanks for the feedback, all is appreciated. :) |
All times are GMT. The time now is 13:55. |
Powered by vBulletin® Version 3.8.14
Copyright © 2023, MH Sub I, LLC dba vBulletin. All Rights Reserved. vBulletin® is a registered trademark of MH Sub I, LLC
Copyright ©2001 - , vbulletin.org. All rights reserved.