ElkArte Community

Project Support => General ElkArte discussions => Topic started by: badmonkey on January 25, 2017, 07:18:43 pm

Title: what in the...?
Post by: badmonkey on January 25, 2017, 07:18:43 pm
Looking at one of my site's Who's Online page, this popped up.  It's very strange.  What does this mean?  Given the url, how are they able to access the site?

Here's what they were viewing:

Quote
Viewing the ftp://cdfeorellana:cdfeorellana@cdfeorellana.com/logs/indez.php?



Title: Re: what in the...?
Post by: emanuele on January 26, 2017, 02:37:19 am
Something like that would do:
Code: [Select]
http://www.elkarte.net/community/index.php?action=ftp://cdfeorellana:cdfeorellana@cdfeorellana.com/logs/indez.php

Informative note.
The "who is online" page is not a crystal ball that tells you what exactly a user is doing.
Elk just takes the URL the user is visiting, splits it up a bit, tries to catch the "common" elements (action, sa, area, etc.) and guesses what the user is supposed to be doing. Whether he is really seeing that particular action, or staring at an "you are not allowed" page, is not within the scope of the "who is online" page. ;)
Title: Re: what in the...?
Post by: ahrasis on January 26, 2017, 05:30:31 am
A mistake in cut and paste to go to that ftp is a maybe (just a guess).
Title: Re: what in the...?
Post by: badmonkey on January 26, 2017, 08:27:47 am
Quote from: emanuele – Something like that would do:
Code: [Select]
http://www.elkarte.net/community/index.php?action=ftp://cdfeorellana:cdfeorellana@cdfeorellana.com/logs/indez.php

Informative note.
The "who is online" page is not a crystal ball that tells you what exactly a user is doing.
Elk just takes the URL the user is visiting, splits it up a bit, tries to catch the "common" elements (action, sa, area, etc.) and guesses what the user is supposed to be doing. Whether he is really seeing that particular action, or staring at an "you are not allowed" page, is not within the scope of the "who is online" page. ;)

Sure.  You guys don't find it strange someone has tried to visit a url in that format?  Some kind of monkey business afoot here?
Title: Re: what in the...?
Post by: emanuele on January 26, 2017, 01:10:37 pm
Not particularly strange, it's the internet. lol
https://www.google.com/search?q=ftp://cdfeorellana:cdfeorellana@cdfeorellana.com