Welcome Guest ( Log In | Register)



2 Pages V   1 2 >  
Reply to this topicStart new topic
> My Site Was Hacked!
YungOdo
post Sep 19 2007, 06:49 AM
Post #1


Advanced Member
*******

Group: Members
Posts: 105
Joined: 31-July 07
From: New Jersey
Member No.: 47,304



Through all my troubles of getting to the cpanel of my account and accessing my site come to find out its been hacked, this is what it said on the index.php page of my forum..

QUOTE

Hack By: lulu_akita and nghia_dia_tinh_yeu92


Sorry admin host ......


Hi Hi!


i've deleted everything i had in the public_html...these bastards i hate hackers.. now i have to change all my passwords mad.gif
Go to the top of the page
 
+Quote Post
jlhaslip
post Sep 19 2007, 08:36 AM
Post #2


A computer once beat me at chess, but it was no match for me at kick boxing.
Group Icon

Group: [MODERATOR]
Posts: 3,882
Joined: 24-July 05
From: In Trouble Again... still?
Member No.: 9,787
Spam Patrol



The trap takes security quite seriously and you need to be just as concerned about it.

Do you have any details about this event that the Server Admins need to know about? Was there a breach through the server defenses? Or was it a couple of buddies that guessed your password?

What makes you think it was a "hacker" and not a friend who knew the password?
Go to the top of the page
 
+Quote Post
odomike
post Sep 19 2007, 09:26 AM
Post #3


Core2Q-QX6800
***********

Group: [HOSTED]
Posts: 1,093
Joined: 3-August 04
From: Nigeria
Member No.: 569



I would wonder why someone would go hacking into another person's site? Just for the fun of it? You just wake up one morning and instead of thinking to do one good thiing for that day, all you could think of was to go destroy something someone else has taken his time, ideas, knowledge and zeal to build.

That aint good at all and people should stop it.
Go to the top of the page
 
+Quote Post
YungOdo
post Sep 19 2007, 03:40 PM
Post #4


Advanced Member
*******

Group: Members
Posts: 105
Joined: 31-July 07
From: New Jersey
Member No.: 47,304



QUOTE(jlhaslip @ Sep 19 2007, 04:36 AM) *
The trap takes security quite seriously and you need to be just as concerned about it.

Do you have any details about this event that the Server Admins need to know about? Was there a breach through the server defenses? Or was it a couple of buddies that guessed your password?

What makes you think it was a "hacker" and not a friend who knew the password?


Im sure it was a hacker because nobody i know personally would do this and its near impossibly to even try to guess my password.. Once i got to my home page i was "shocked" because i never thought i would get hacked plus i've worked hard on it, but Oh well dry.gif
Go to the top of the page
 
+Quote Post
fffanatics
post Sep 19 2007, 04:50 PM
Post #5


Privileged Member
*********

Group: [HOSTED]
Posts: 937
Joined: 14-April 05
From: West Chester, PA
Member No.: 5,636



Was your site made with PHPNuke or another system like that? If so, you dont have to change your passwords but you do need to follow when new releases of those system are released and you need to be sure to upgrade. Also you need to add plugins that help protect against sql injections and so forth since they are a very common way to hack a site. Just google the system you are using (whether it is a forum or whole site system) and hacking to get ways to protect your site.
Go to the top of the page
 
+Quote Post
galexcd
post Sep 19 2007, 07:45 PM
Post #6


Define:EVIL PROGRAMMER (ē'vəl prō'grăm'ər)- n. An organism that converts caffeine into evil software.
*********

Group: [HOSTED]
Posts: 975
Joined: 25-September 05
From: The dungeon deep below the foundation of trap17
Member No.: 12,251



This is why I always keep a copy of all of my websites locally on my harddrive sad.gif
This sounds like these two just decided to have some fun and see what kind of havoc they could cause. I agree sometimes website hacking and sql injection can be fun but I never do it on a real person's website. It's more fun to use simulations like hackthissite.org. Whoever did this is pathetic that they have nothing better to do than wreck what others have worked on. Good luck rebuilding your site sad.gif
Go to the top of the page
 
+Quote Post
BuffaloHELP
post Sep 20 2007, 01:54 AM
Post #7


Desperately seeking "any key" to continue...
Group Icon

Group: Admin
Posts: 3,438
Joined: 23-April 05
From: Trap17 storage box
Member No.: 6,042



If you installed custom scripts or used any free scripts to run your site, i.e. Joomla or PHPNuke, you must update with the latest patch otherwise security holes can leave potential juveniles to mess with your hard work.

That's hardly any hacking really--just them knowing you installed outdated scripts on your site.

Please know the current security issues with any scripts you install, and double check your customized script. We're here to test it out for you in the friendly environment smile.gif
Go to the top of the page
 
+Quote Post
Tetraca
post Sep 20 2007, 02:25 AM
Post #8


Privileged Member
*********

Group: Members
Posts: 628
Joined: 20-May 06
Member No.: 23,968



If it's files that were messed with just permission them to 444. You yourself won't be able to overwrite them unless you manually change them but your site is safe from script kiddies. I've had a site hacked once - a person added adds and redirects on the site to various advertisements in key PHP scripts. I just overwrote them with the originals and permissioned them to 444 and everything worked out great. Apparently they couldn't figure out how to use Unix. The hacking stopped after that after two days of that in a row of that issue happening. A changed password also helps a lot. The more it looks like you rolled your head on the keyboard, the more secure it is. I wouldn't be too concerned about changing the password in Joomla as the password to your FTP. That's where it looks like they did the damage. I stupidly had my index.php of my forum script set to 777 and they just replaced the thing with text. Usually it's nothing extremely harmful like lost data from my experience - just guys that like to replace things in scripts so they are noticed. The MySQL database isn't even touched. You can easily fix those problems by overwriting the scripts.

Go to the top of the page
 
+Quote Post
nol
post Sep 20 2007, 08:15 PM
Post #9


Super Member
*********

Group: [HOSTED]
Posts: 257
Joined: 27-May 07
Member No.: 43,758



Well, other then what i can see, it looks like its your fault not trap17. As trap17 is most likely (from what i've heard/seen) hosted on Opaque's and maybe buffalo's computer. Only way you could be hacked is if BF or Opaque would do it, or somebody does something to their computer. However, I doubt neither of th ose happened, as buffalo and opaque are both trustworthy, and would have no need for it. Therefore it lies into your password or failing to have good scripts/sql injection protection.

As said before, make all the files you NEED 777, and all th eones you don't really need permissions set to 444. That way its harder to have sql injections, and then you'll just need a better password. If you are using a forum system like a newer one, get a better one until the other one gets more updated. By newer i mean those that have just started.