PDA

View Full Version : Is this a possible hack??


DreadsUK
07-23-2014, 12:38 PM
I've just had a message prompt on my forum saying that my password is over 180days old and i need to create a new one.

I didn't want to go ahead with that incase its a possible hacker attempting to gain access to my current passwords.

Is there a way i can disable the password update for my account.

It seems strange to me that an admin needs to be prompted to update a password

ForceHSS
07-23-2014, 12:55 PM
That's default, you can disable it if needed, but its best to leave it for security reasons

DreadsUK
07-23-2014, 02:25 PM
That's default, you can disable it if needed, but its best to leave it for security reasons

The default was set to '0' for all over usergroups accept for admin. someone has definitely changed it.

I changed it back to '0' so it doesn't take effect and got back in ok.

Now it seems someone has tried to log into the admin panel as i've just tried and its telling me this message

https://vborg.vbsupport.ru/

Dave
07-23-2014, 02:27 PM
If someone tried to login into the admin panel, you should definitely consider securing your admincp and/or changing the directory.

DreadsUK
07-23-2014, 02:51 PM
If someone tried to login into the admin panel, you should definitely consider securing your admincp and/or changing the directory.

How do i do that?

ForceHSS
07-23-2014, 02:59 PM
The default was set to '0' for all over usergroups accept for admin. someone has definitely changed it.

I changed it back to '0' so it doesn't take effect and got back in ok.

Now it seems someone has tried to log into the admin panel as i've just tried and its telling me this message

http://s27.postimg.org/sr9paif2b/Screen_shot_2014_07_23_at_16_21_37.png
I was talking about the admin account what group are you talking about

Dave
07-23-2014, 03:12 PM
How do i do that?

There are many ways:
- a .htaccess (http://docs.joomla.org/How_do_you_restrict_directory_access_by_IP_address _using_htaccess%3F) file in the admincp directory which has a list of allowed IP's.
- A mod like https://vborg.vbsupport.ru/showthread.php?t=312555
- Hardcoding an IP restriction in the index.php file of the admincp.

ozzy47
07-23-2014, 03:32 PM
I would suggest this mod, https://vborg.vbsupport.ru/showthread.php?t=312555

No need to do it I'm the files.

RichieBoy67
07-23-2014, 03:34 PM
I was talking about the admin account what group are you talking about

Hey, your supposed to be recuperating man!:D

--------------- Added 23 Jul 2014 at 12:36 ---------------

I would suggest this mod, https://vborg.vbsupport.ru/showthread.php?t=312555

No need to do it I'm the files.

I know you do this stuff alot but wow! You finally turned into files? lol

Great mod btw!

I also use the admin firewall which lets certain ips in. That combo is rock solid.

DreadsUK
07-23-2014, 03:42 PM
There are many ways:
- a .htaccess (http://docs.joomla.org/How_do_you_restrict_directory_access_by_IP_address _using_htaccess%3F) file in the admincp directory which has a list of allowed IP's.
- A mod like https://vborg.vbsupport.ru/showthread.php?t=312555
- Hardcoding an IP restriction in the index.php file of the admincp.

How do i locate the ip addresses for people who have accessed/tried to access and Admin CP?

ozzy47
07-23-2014, 03:52 PM
Only problem restricting it to ip's is everyone needs a static ip not a dynamic one.

Dave
07-23-2014, 03:55 PM
How do i locate the ip addresses for people who have accessed/tried to access and Admin CP?

There might be a mod to log the ACP login attempts, you should search the mod section. You might be able to find the IP addresses in the access.log of your website though. Just look search for the string admincp in the access.log.

ForceHSS
07-23-2014, 04:26 PM
Hey, you're supposed to be recuperating man!:D

I know, but answering a few questions won't hurt besides, I miss helping. If I can help one or two people a day or a week with a quick answer it makes me feel I am not useless.

RichieBoy67
07-23-2014, 04:40 PM
I know, but answering a few questions won't hurt besides, I miss helping. If I can help one or two people a day or a week with a quick answer it makes me feel I am not useless.

I hear you mate. You will be back to 100% soon. All the best!

ForceHSS
07-23-2014, 05:02 PM
The doctor said it normally takes 7 months to a year, but as mine was bad he said it might be closer to the year or a little over it, but it depends on many factors but I am not sure how much over a year it will be. My attack was bad some damage to the bottom of my heart this is why I went into the op a few hours after my attack. In 3 months I will be going to cardiac rehabilitation so not sure what will happen there this hope it helps will know more then

ozzy47
07-23-2014, 06:37 PM
Hey, your supposed to be recuperating man!:D

--------------- Added 23 Jul 2014 at 12:36 ---------------



I know you do this stuff alot but wow! You finally turned into files? lol

Great mod btw!

I also use the admin firewall which lets certain ips in. That combo is rock solid.

Lol that's what I get for typing on my phone.

cellarius
07-24-2014, 07:46 AM
The default was set to '0' for all over usergroups accept for admin. someone has definitely changed it.
No. 180 is default for Admin usergroup, it's the only ug this feature is activated by default. If you did not change it to 0 manually at some point (which I doubt, since you did not even know that setting), it is perfectly normal, and not a sign anyone hacking your forum.

obglobal.net
07-24-2014, 11:43 AM
The doctor said it normally takes 7 months to a year, but as mine was bad he said it might be closer to the year or a little over it, but it depends on many factors but I am not sure how much over a year it will be. My attack was bad some damage to the bottom of my heart this is why I went into the op a few hours after my attack. In 3 months I will be going to cardiac rehabilitation so not sure what will happen there this hope it helps will know more then

Just browsed through this thread and saw this.

Hope you're all good there, mate.

ForceHSS
07-24-2014, 11:52 AM
Just browsed through this thread and saw this.

Hope you're all good there, mate.
Thanks for asking trying to take one day at a time and trying to be stress free. Here (https://vborg.vbsupport.ru/showthread.php?t=313159) is the one I made two days ago if you have not seen it yet.