electron
Oct 5 2006, 03:28 PM
I dont know how but my board was hacked by some site by the name Spyhackerz.com . I use SMF as my board and the main settings file Settings.php was hacked. This file had the password of my DB and i dont know whether they have it or not. They changed its content to the following: CODE
<html>
<head>
<meta http-equiv="Content-Language" content="tr">
<meta http-equiv="Content-Type" content="text/html; charset=windows-1254">
<title>Hacked by Spyhackerz.com</title>
</head>
<body bgcolor="#000000">
<p align="center"><a href="http://www.spyhackerz.com">
<img border="0" src="http://rootingsabotage.sitemynet.com/sht.jpg" width="503" height="387"></a></p>
<p align="center"><font face="Verdana"><b><font color="#FFFFFF">
<a href="http://www.spyhackerz.com"><font color="#FFFF00">www.spyhackerz.com</font></a></font><font color="#FFFF00">
</font></b></font></p>
<p align="center"> <EMBED
src=http://spyhackerz.com/music/index.mp3
width=20 height=15 autostart="true" loop="true"></p>
<p align="center"> </p>
</body>
</html>
Well do you guys know of this.Do those guys have my password now. I changed back my file and my Board is working now. Please help as this is a very very serious matter
Reply
Zero Ziat
Oct 5 2006, 03:35 PM
Holy crap! Trap Seventeen security was breached. I think they would have used an FTP server exploit or anything else, which means ALL users security is compromised. Backup your files in your computer EVERYONE. *Calling BH or OQ*
Reply
jlhaslip
Oct 5 2006, 03:44 PM
*wait* You might want to check at the SMF Support Site for clarification about whether this is a problem throughout the SMF Community or solely for your site. Don't start making any assumptions about the Security here at the Trap17 Forums or on other Xisto Sites. There is no reason to believe this is a Trap17 account holder problem until further information is obtained. To begin with, alter your cpanel password immediately.
Reply
electron
Oct 5 2006, 03:58 PM
Well i have asked the SMF guys lets see.
Reply
Zero Ziat
Oct 5 2006, 04:01 PM
Well, yeah, the mod is right (sorry, I can't even pronounce your name, too confusing.  ). I usually enter nervous stats and it ends on this, saying that I don't trust certain security or etc. Anyways, nobody knows if something is 100% secure. I think that Trap servers are 98% secure. So yeah, change your cpanel pass. I will be trying to report this to the feds unless it was framing, etc. But getting with police is actually no good, so unless this gets on high critical status, I should keep my mouse shut.
Reply
Kubi
Oct 5 2006, 04:03 PM
Simply, an easy password could be the issue. Sometimes "hackers" are nothing more then "lucky guessers". Make sure your password contains is hard to guess. Something like "j42dks;;;" would work very nicely infact. (DON'T USE IT). Somelike "coolio" is to easy. Backup all your files, you should do this everytime you change a setting anyways.
Reply
fffanatics
Oct 5 2006, 04:07 PM
Most likely what happened is that they put code into one of your db search fields and or logins and depending on the code they used, it can allow them to pull data from your setting files and or from your database giving them access to it. I used to have a phpnuke site and after being hacked, i read a ton of articles on how to secure it. However, it just cant be done since with every new version of software there are new flaws that are created. I would make sure you update your forum to the newest version since the security vulnerabilites will be the least likley known and always update to the new version no matter what anyone tells you. Also, make sure it is hard to identify exactly what type of forum you are using since it will make it harder hack. Finally, change all your passwords just in the case they found them because they will be back if they do.
Reply
BuffaloHELP
Oct 6 2006, 05:23 AM
If your account was compromised, there wouldn't be any left of your files and database... right? Think before you assume. Which version of SMF were you using? And did you follow all SMF standard setting instruction, such as CHMOD? QUOTE A bug in PHP causes a vulnerability in SMF 1.1 RC2-1. You can install this patch (click here to install) to patch your version of 1.1 RC2 to 1.1 RC2-2.
We received a report detailing a bug in PHP (improper deletion of hash values in the zend_hash_del_key_or_index() function), causing a vulnerability in SMF. We have addressed this issue in this release. We urge everyone who is using an earlier release of SMF 1.1 to update immediately.
So have you upgraded to 1.1 RC3?
Reply
Panzer
Oct 6 2006, 06:30 AM
You also may have left the install file in, CHMODDed a file where it wasnt neccesary. All of those things can compromise security.
Reply
darran
Oct 6 2006, 09:49 AM
I am pretty certain that Trap17's security should not be put into question here. I have been with Trap17 for almost 2 months and there is nothing but praise for them from me. The problem is there are so many hackers out there who are really good in their hacking skills but then again, I don't think they would hack your site without any reason unless they are a group of hackers picking on a random site to hack just for the thrill of it. Another issue would be your usage of SMF forums, IMO price determines everything. You pay for what you get. In regards to forums/message boards it is best to get a paid 1 like IPB and VBulletin because these are the ones who will usually have a very strong security and there are constant updates in regards to the security level in a particular version. The way I see it, I think this could be more of a settings problem made by you or even a SMF issue. But it is very unlikely to be a trap17 account because from what I know, none of us experienced a problem of getting hacked like that.
Reply
BuffaloHELP
Oct 8 2006, 07:48 AM
That is quite interesting news... only 1.1 RC2 and RC2-2 were effected due to security exploit. RC3 should have fixed this error. Be sure to change your Settings.php to CHMOD 744 so that it's only read only mode. Whenever you need to upgrade or modifying change back to 777 and then change it back. This will increase your security.
Reply
electron
Oct 8 2006, 06:51 AM
QUOTE(BuffaloHELP @ Oct 6 2006, 05:23 AM)  If your account was compromised, there wouldn't be any left of your files and database... right? Think before you assume.
Which version of SMF were you using? And did you follow all SMF standard setting instruction, such as CHMOD? So have you upgraded to 1.1 RC3?
I am using RC3 and it was only hacked. Also i am not raising the question the Trap17 has a security hole. I thought u guys might be knowing something
Reply
Recent Queries:--
smf hack forum - 1.41 hr back. (1)
-
how can i hack smf forum - 6.76 hr back. (1)
-
smf forum - 7.33 hr back. (1)
-
.smf file cannot open - 10.67 hr back. (1)
-
hack simple machines forum 1.1 rc2 - 23.42 hr back. (1)
-
phpbb3.0 exploit - 23.57 hr back. (2)
-
smf hack password - 29.39 hr back. (1)
-
smf hack - 1.41 hr back. (4)
-
connection problems sorry, smf was unable to connect to the database. this may be caused by the server being busy. please try again later. - 47.47 hr back. (1)
-
how to hack smf forums - 30.18 hr back. (2)
-
exploit for smf hack - 54.75 hr back. (1)
-
hacking smf forum video - 56.87 hr back. (1)
-
password hack smf - 60.52 hr back. (1)
-
bot smf forums stay online - 83.77 hr back. (1)
Similar Topics
Keywords : smf, forum, hacked
- Moving A Forum
Moving forums (2)
Work Out My Name - Win 10 Forum Credits
(11) WORK OUT MY NAME WIN 10 Credits How to do it Simply go to this site
http://www.n4w.co.uk and use the info there as well as what you already know about me to work it
out Rules You must give a suitable reason for your answer and it must not be a guess.
You must not ask what my name on the forums or shoutbox of the supplied website Whoever does this
wins 10 credits... easy. WELL DONE RVALKASS FOR WINNING Also Well Done KansukeKojima Just
missed your chance!!! edit:You Get the Credits Thx to a Generous Rvalka....
Phpbb Mods That You Should Get For Your Phpbb3 Forum
only for phpBB3.0.x though... (9) For those of you who are hosted on Trap17 and using phpBB3.0.x you might want to consider adding
some mods... Some mods which I extremely highly recommend to get is: #1 "Anti-Bot Question" mod,
which adds a question like "can you see through glass?" (not actual example, result may vary),
according to many people who have tried the mod, it is REALLY useful at keeping low-medium level
advanced bots at bay, although some extremely complex advanced bots may still get through... I
personally don't have this mod, but I would install it if I have the time to... #2 "Evi....
Setup Forum
????? (2) How do we set up a forum with SMF? When I press extract, it downloads the file. This is messed up.....
Cutenews Alert!~ Your Site Might Be Hacked!
(14) Ok so i was going through my email inbox, and i received a very scary email from my old host,
starszz.com saying of this really dangerous thing going around with cutenews users.. ok let me
summarize it hackers somehow found a way to hack your site by accesing your search.php file on your
cutenews directory i googled into it, and there is a couple of Big sites that were hacked, and its
adviced for you to delete the search.php file of your cutenews directory immediately, i dont know
how this can be done, but imjust warning you i deleted my search.php file just in case....
My Ftp Issue. Forum Nonviewable.
(7) My situation: I started the cpanel process and clicked on fantastico to begin downloading phpBB2
automatically on it. It had told me it couldn't continue the process because there were items
that needed to be deleted, so I deleted everything, the mail regenerated itself fortunately, when I
reinstalled the phpBB2 discussion board via fantastico I looked at the ftp folder and then tried to
access the site via IE web browser. I got a 404 page. "Not Found The requested URL / was not found
on this server. Additionally, a 404 Not Found error was encountered while trying....
Installing Theme On Smf Forum
Need help doing it! (4) I was wondering, and I am horrible with Cpanels mind you, how to install a new theme. I have an smf
discussion board and I decided to download a theme from the theme place for smf. So it downloads,
and appears in winrar. When I extract it, it comes with a big pile of files, with 2 folders:
Language, and Images. First question is: Do I install these somewhere in the 'File manager'
in cpanel? Ok if yes: Where? Third: Do the main files, language , and image go in different
places? Fourth: There is about 4584305834098 image files, is there a quicker way to get ....
Help! Forum Error Please Reply
(4) I'm very sorry for making so many topics, but just now I can't get to my forum because of
this! QUOTE Fatal error: Cannot redeclare addlinenumbers() (previously declared in
/home/omega/public_html/Sources/Subs.php:3671) in /home/omega/public_html/Sources/Subs.php on line
3721 Help me please! (PS: sorry for being so dumb)....
Help: Mod Install On Forum
(3) Ok I feel really really stupid (Which I am when it comes to this) but anyway on the SMF forum, there
is a package manager, you click install, and it installs the mods on the forum. However, sometimes
it gives you a link, to download the mod. So yeah I download it, and it appears on my desktop as a
bunch of icons that only make a million tabs appear when opened. I was wondering where in the world
am I supposed to put these mods so that they will work? I have tried some things but they did
nothing... Please help! Why Don't I ever get any replies! ....
Glitch On This Forum? [resolved]
Picture not showing up (4) Hello, I hope this is the right place to post this, I couldn't find any other place where this
would fit. Weeks ago, I uploaded a picture to go with my username. Yet I notice it does not show
up, only when I click my username on the left of the forum, it shows up. I did notice that with
other users, their picture shows up next to (or underneath) their name. I was wondering why this is
happening. Thanks. ....
Hosting Forum Using Trap17? Help
(5) hello there, how can i host a forum using trap17, im a hosted member i can go thorw my cpanel, but i
wana host a forum to get members and stuff. so can someone plz tell me on how to code a forum or
creat a forum using trap17 cpanel or any other way.....
My Site Is Showing Trap17 Activation Page Only [resolved]
my forum is not showing with www path (2) Hello I have requested for the free hosting with my own domain name and everything is in orderbut i
am having this proble and here goes each time i type www.mysite.com instead of me seeing the home
page of my site what i will be seeing is the default trap17 page where it will tell the visitor
welcome to trap17 web hosting this domain is hosted with trap17 i have deleted the page creat my own
index page but still i am seeing this page now agian each time i type www.mysite.com/yabb.pl that is
the direct link to my forum script it wont open instead it will tell me can not f....
My Site Was Hacked
(4) http://ipodforums.trap17.com/ Someone hacked into my site, but I'm not sure how long ago.
Definitely within the last week, but I don't remember how many days it's been since I was
last logged onto my site. My password is changed as well so I can't access FTP or cPanel. Does
anybody have any suggestions on what I should do or should I just contact BuffaloHELP? Thanks for
any replies.....
My Site Was Hacked!
(13) Through all my troubles of getting to the cpanel of my account and accessing my site come to find
out its been hacked, this is what it said on the index.php page of my forum.. QUOTE Hack
By: lulu_akita and nghia_dia_tinh_yeu92 Sorry admin host ......
Hi Hi! i've deleted everything i had in the
public_html...these bastards i hate hackers.. now i have to change all my passwords /mad.gif"
style="vertical-align:middle" emoid=":angry:" border="0" alt="mad.gif" />....
Request For Coders (lots To Do)
Assisting on the Development of a Forum Script (1) I recently got involved in a Forum software script which is being developed and thought I should let
everyone know that they need some assistance in the PHP, MySql, Html, and CSS areas. Also, some
Visual Designers would be quite useful. AEF Forum Software is the name of the project. It is
presently in version 1.0.3, and have some pretty cool features already, but in order to advance in
its standings against such Boards as IPB, phpbb, Yabb, etc, more features and Themes are required.
Good bunch of people working hard, but just not enough of us to do everything. Come h....
Installing Phpbb Forum On My Site?
(5) Hello! I was just wondering how I go about installing the phpbb forum on my site. I assume I
go somewhere from the CPanel? I think someone told me that the CPanel has something that installs
it for me automatically. Thank you!....
Getting My Forum Online
(11) oke wel, i got my zip file uploadet on the file manager ( ty jlhaslip),now i have to instal it,so i
basicly got onto th einstall page where u put in ur database name and stuff, so i did and it
didn' t work, so i thought oH YEAH dumb i have to make a mysql database first, so i did that so
i filled in the form, with the name of the database and the username i made, so i press instal, and
i get errors. so basicly since my knowledge of either php or mysql databases is 0,0,i can't
figure it out, so my question is could an admin or mod, install it for me, i looke don....
I Know Someone Who Hacked My Site
(10) http://www.ghostrider.trap17.com/ /dry.gif" style="vertical-align:middle" emoid=" What do you
recommend to do about this? The hacker goes to my school, and I have enough evidence against him to
press charges. This is my first time hacked however, and would like some incite as to what I should
do. EDIT: The title should be "I Got Hacked", not "I Got Hacker". Changed title. Please report to
have the title changed, next time. ....
Free Forum Service
Is it allowed? (3) Everybody knows of sites that can give you free forums like ipbfree, mnvisionfree, forumer, and many
others. My question is this, I read some where a while back that you were not allowed to have those
types of services on your board, meaning it was forbidden to have other people get boards and host
them on your site. I wanted to uploadf a scirpt that allowes you to have a service similar toi
those listed abov. Now I know that is against the ruoes, but I wanted to have a service like that,
but not enable everyone to be able to make oone. See I watned to make some cont....
Smf Forum Board
Connection Problems (2) Hey, i just uploaded and installed Smf on my website. Everything is working fine with the forums
themselves, but every now and then i get 1 or 2 messages. Here they are. " Database Error: Lost
connection to MySQL server during query File: /home/justin/public_html/forums/Sources/Load.php Line:
1165 " " Connection Problems Sorry, SMF was unable to connect to the database. This may be caused by
the server being busy. Please try again later. " But i have all of my database information correct.
What does this mean and can anybody help me? Thanks ~Justin~....
Suggestion For Free Forum To My Web Page
I have only tried Invisionfree.com (1) Well, my title and description says about it. I would like to find a nice forum for my web page.
Just test period. I have only tried invisionfree's forum and I did not see any problems with it.
It was really nice actually, but I don't know if there are any other free forums that are better
so suggestions, please!....
Phpbb Forum Problem
(3) ok, well when i went to my forums here it says phpBB : Critical Error Could not connect to the
database whats happened? it was working great last night. thanks....
Community/forum Management Systems
Need help (8) Hey, I'm currently running Joomla and PhPBB (through a bridge I found online) I'm really not
satisfied with it though...The login/registration process is very buggy (not technically bugged
since its supposed to work that way) but is very unreliable. I was wondering if anybody could
reccomend a good Forum/Portal or CMS combo I can use to post news/picture files/etc on a main
page/section of the website, and have integrated forums that run smoothly login/registration wise
with a minimum upkeep time. Any input is very valuable, anything is better than what I'm....
Earning Credit By Referring To Forum For Signup!?
is there any referal link here? (14) i only wnated to know if there is an option to refer someone here for signup and earn credit or
not!? thanks....
Integrating Post-nuke With An Existing Smf Forum
(7) hi, im looking to use a content management system for my site, and well postnuke seems simple
enough. the problem im having is that i cant seem to figure out how to integrate my forum (an
existing Simplemachines forum) with the postnuke stuff, so if anyone can help me, id really
appreciate it! thanks!....
Help My Forum Isn't Loading
(1) Hello can anybody tell me why \I can't get on my hosted site(forum) I have my forum saved
in my favourites but when it tries to load up it comes up at the very top "Can't Find Server"
Also on the actual page it says that "The Page Cannot Be Displayed" Here is my URL which should get
you to my forum but at the minute it won't. http://www.lazytowncommunity.trap17.com/forum/ I
was on it last night and this morning but I left it running while I went out but when I came back it
was as if it had crashed. Please post back a.s.a.p as I really need to get th....
Help My Forum Connection Isn't Working
(4) can anybidy help me. I have had a forum amde and I can;t access it??????? Contribute with quality.
You could have gave more information like which forum software, URL to your forum, what error
message and the exact nature of the issue, i.e. it shows this but not that...or not showing at all. ....
I Can't Access My Forum. Please Help
SMF Forum error (8) When I tried access my site , the following words appeared : Can't open file:
'smf_sessions.MYI'. (errno: 145) How can I fix it ? Please help me , thank you. You can
try to access my site to check that problem by clicking here . The site can't open file is
caused by server down , right ? Thank you. NOTE : Sorry but the topic title I made is WRONG ,
I meant CAN'T access ( NOT can) editted topic title and added topic description. Members
can edit their own topic titles, too. ....
I Can't Open My Forum , Why ?
(4) I am in big trouble , I tried to access my forum (Simple Machines one) and it said SMF was unable to
access the database , it may because the server is busy but I tried the WHOLE day so what is
going on ? Please help me. Thanks. If you want to know more , here is its Link :
http://www.megamanol.trap17.com/forum ....
Forum Improvement Ideas
to help bring up posting and members as well (5) Well Since I spent most of my weekend hear monitoring the forums I seen a huge decrease in members
logging in and the lack of posting as well in general. Although people are logging in and posting,
spam posting is showing up more i caught a few myself and looked over ones that been already taken
care of as well. Also old topics are surfacing again as well. So i think it's time we brain
storm idea's on how to improve overall posting and people joining and staying as well. Let stay
away from free hosting credits and free hosting plans. some suggestions i have ....
Looking for smf, forum, hacked
|
|
Searching Video's for smf, forum, hacked
|
advertisement
|
|