Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 05-30-2003, 07:22 PM   #1
cj-design
Confirmed User
 
Join Date: Apr 2003
Location: England
Posts: 378
Hotlinking Script 100% Fullproof(!?!)

Hey,

I think I may have found the solution to hotlinking files. Hopefully saving you guys loads of money from bandwidth.

What I need to do, however, is test it first. I want to make sure that nobody can download my file.

The test file is:
http://www.cj-design.com/downloads/h...hitcounter.zip

(you could try any file on my site, but this one is the smallest in KB's)

OK, try as many methods as you can to download this file - WITHOUT GOING THROUGH MY WEBSITE!

The leech file is here:
http://www.cj-design.com/leechers.php

It will keep a record of how many times the file has tried to be leeched.

I must stress that this method of hotlinking requires no php/cgi programming although a php script will allow for the set up of the file.

If you can manage to leech the file, please post:

1) how you did it
2) where you leeched it from
3) how crap you think my attempt was

Now get leeching!

P.S for the people who struggle with HTML, to insert it into your webpage use this code:
PHP Code:
<a href="http://www.cj-design.com/downloads/hitcounter/dl/hitcounter.zip">Link</a
cj-design is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-30-2003, 07:38 PM   #2
cj-design
Confirmed User
 
Join Date: Apr 2003
Location: England
Posts: 378
just to let everyone know;

the 'script' will protect any type of file: jpg, gif, zip, mpg, avi, mov, asf, wmv, wmf, rm, ram you name it.

Also, what would be the price you would pay to stop people taking your expensive bandwidth? - should this script be free?
cj-design is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-30-2003, 07:40 PM   #3
Libertine
sex dwarf
 
Libertine's Avatar
 
Join Date: May 2002
Posts: 17,860
Quote:
Originally posted by cj-design
Also, what would be the price you would pay to stop people taking your expensive bandwidth? - should this script be free?
Depends on the amount of work you put into it, and more importantly, what you think it's worth.
__________________
/(bb|[^b]{2})/
Libertine is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-30-2003, 07:45 PM   #4
cj-design
Confirmed User
 
Join Date: Apr 2003
Location: England
Posts: 378
Thanks for the question son.

I put alot of work into it, researching apache mainly - thats the only downside of this script incidently, it will not work on windows.

I think it is worth a few dollars put it that way. If you look at the prices of anti-leech scripts out there - they cost quite a bit (the decent ones anyway)

So are you gonna carry on paying bandwidth overflow charges or pay a one off price for this beauty?

name your price - webmaster?cj-design.com (change ? to @)

Last edited by cj-design; 05-30-2003 at 07:50 PM..
cj-design is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-30-2003, 07:58 PM   #5
tical
Confirmed User
 
Join Date: Feb 2002
Location: Las Vegas
Posts: 6,504
looks good
tical is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-30-2003, 08:02 PM   #6
GotGauge
Confirmed User
 
Join Date: Nov 2001
Location: USA
Posts: 3,072
Anyone have a Script for a windows box?
__________________


ICQ 22264474
[email protected]
GotGauge is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-30-2003, 08:06 PM   #7
chodadog
Confirmed User
 
Join Date: Apr 2002
Posts: 9,736
I was successfully able to download and unzip the file using flashget.

http://www.amazesoft.com/
__________________
26 + 6 = 1
chodadog is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-31-2003, 04:57 AM   #8
cj-design
Confirmed User
 
Join Date: Apr 2003
Location: England
Posts: 378
Doh!

Ok, so its not 100% fullproof then! I cant see a way of getting around flashnet.
cj-design is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-31-2003, 05:02 AM   #9
ServerGenius
Confirmed User
 
Join Date: Feb 2002
Location: Amsterdam
Posts: 9,377
The easiest trick to fool hotlink solutions is to have a small script
that leeches the files and writes a fake referrer in the request header.

DynaMite
__________________
| http://www.sinnerscash.com/ | ICQ: 370820 | Skype: SinnersCash | AdultWhosWho |
ServerGenius is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-31-2003, 05:06 AM   #10
cj-design
Confirmed User
 
Join Date: Apr 2003
Location: England
Posts: 378
Did you try that method on my script? I don't think it would work
cj-design is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-31-2003, 06:45 AM   #11
cj-design
Confirmed User
 
Join Date: Apr 2003
Location: England
Posts: 378
bump - does anyone actually post on GFY anymore for the purpose it was created?
cj-design is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-31-2003, 06:59 AM   #12
spacecat
Registered User
 
Join Date: Feb 2003
Location: Australia
Posts: 21
It's not really possible to stop 100% of leeching - the aim is to stop 99.9% of it

It's a piece of piss to set up a curl request with the referer and user agent faked - the web server cannot tell the difference from a real surfer.

However, you just want to stop a massive bandwidth hit from having tons of joe surfers looking at it ..

This solution looks pretty good:

http://www.serverwatch.com/tutorials...le.php/1132731

Doesnt use rewrite but looks effectively the same. Just put a .htaccess with 'Allow from All' in it, for the dirs you want to leave hotlinkable, and modify the extensions to include the file types you want to protect.

If you want to stop people from sucking 2 gigs of content from your paysite, that's another story - the way I would go at it would be to pipe logs to a process that can analyse activity on the fly .. then set it to watch for suspicious activity that indicates leeching; then kill the account or 'Deny from' the IP of the leecher.

OR, set the document root to be a PHP script that can handle content negotiation.
spacecat is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-31-2003, 07:00 AM   #13
Zayne E.
Confirmed User
 
Industry Role:
Join Date: Apr 2002
Posts: 1,383
Hey James!

I post on GFY for good purpose...lots of fun-loving clowns like to turn posts into a circus though...keeps things lively



James has done some custom work for our sites and the stuff he wrote for us has worked like a charm...very pleased. He wrote a script for us that we were quoted a week or more to create by other programmers and as much as $15,000 (only the good lord knows why we were given a quote that high)...we caught James at a good time and he knocked it out of the ballpark in 5 hours for a price so reasonable I will not repeat it here.

He has since done quite a bit of work for us and we're thoroughly pleased with his skills and creativity. And he's extremely easy to work with - very personable. I know there's a lot of great programmers who frequent GFY...we have never worked with anyone but James and he is top-notch in our book.
Zayne E. is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-31-2003, 12:54 PM   #14
cj-design
Confirmed User
 
Join Date: Apr 2003
Location: England
Posts: 378
Thanks for the support!
cj-design is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 06-05-2004, 06:24 PM   #15
Keev
Confirmed User
 
Join Date: May 2001
Posts: 5,335
wortha bump
Keev is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 06-05-2004, 06:30 PM   #16
Jedimaster
Registered User
 
Join Date: Dec 2003
Posts: 2,120
how does directnic.com do it with their free hosting?
Jedimaster is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 06-05-2004, 06:52 PM   #17
calmlikeabomb
Confirmed User
 
calmlikeabomb's Avatar
 
Join Date: May 2004
Location: SW Palm Bay, Florida
Posts: 1,323
I downloaded the file with no problems using mozilla.
__________________
subarus.
calmlikeabomb is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 06-05-2004, 06:54 PM   #18
Project-Shadow
Confirmed User
 
Industry Role:
Join Date: Feb 2003
Posts: 7,340
Quote:
Originally posted by calmlikeabomb
I downloaded the file with no problems using mozilla.
Post is over a year old
Project-Shadow is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 06-05-2004, 07:21 PM   #19
AMADude
Confirmed User
 
Join Date: Apr 2004
Posts: 3,875
Quote:
Originally posted by Project-Shadow
Post is over a year old

I didnt noticed until you said it.
__________________
No sig, just here to fuck around.
AMADude is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.