vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   Hacked! (https://vborg.vbsupport.ru/showthread.php?t=153636)

EnIgMa1234 07-28-2007 10:36 PM

Also dont forget to change your cpanel password

mnm85 07-29-2007 12:56 AM

The first attachment says: May god ++++ your forums, enough of this you dog your tiring me, watch me admin.

Second attachment says: ill play Bank admin, Your disappointing forum has been hacked, i will now change the index file, wait a while.

just wanted to help, don't take this the wrong way, if you do. Sorry...

TvForce 07-29-2007 11:20 AM

this happened to me and you cant stop it no matter how hard you try. Once they have injected the database that is it. I had to restart fresh :(

TunerNetwork 07-29-2007 08:09 PM

ok, here's the latest, I installed a backup from two weeks ago, 7/11/07. I then updated to the newest versions, I changed all the pws, I then changed the names of my admin and modcp folders etc in the config. I set my admins id #'s in the config file so they can not be edited etc. I dont allow html etc. Now, for the .htpassword or whatever, how do I do that, Im not too familar with it. Should i password protect anything else etc.

Delphiprogrammi 07-29-2007 08:15 PM

Cpanel contains a utility that helps you with that click "password protect directorys" also you have two installers in a web accessible location that's asking to mess your board up delete those installers !!

Quote:

vbacmps_install.php File not recognized as part of vBulletin
vbalinks_install.php File not recognized as part of vBulletin

EnIgMa1234 07-29-2007 08:16 PM

Look in cpanel for password protect directorys

TunerNetwork 07-29-2007 08:23 PM

Quote:

Originally Posted by Delphiprogrammi (Post 1304823)
Cpanel contains a utility that helps you with that click "password protect directorys" also you have two installers in a web accessible location that's asking to mess your board up delete those installers !!

actually i just saw that and am trying and testing that now.

Ok, i just pw protected my cgi-bin folder, my admin and modcp folders. anything else?

I think I might have it pretty tight now, unless you guys can recommend anything else

MRGTB 07-29-2007 10:22 PM

Quote:

Originally Posted by Delphiprogrammi (Post 1304823)
Cpanel contains a utility that helps you with that click "password protect directorys" also you have two installers in a web accessible location that's asking to mess your board up delete those installers !!

WOW, talk about a security risk. Why have these installation files not been deleted? Thats asking to be hacked - handed on a plate!

TunerNetwork 07-30-2007 01:18 PM

K, those have been deleted. MRGTB, im not a coding pro etc, I posted on here for your help and I appreciate everyone's responses, as I feel my site is 100x more secured now because of your help.

TunerNetwork 08-01-2007 02:33 PM

well, lastnight, after i did the security fixes etc, I got the big...you've been hacked page on the index page. figured that was coming. I uploaded a backup etc, did all the security fixes etc. Anyone here experienced to look at my database and see if any files are there which arent supposed to be, there must be something there for them to keep getting access to the backend. I have it locked up tight, it's a pain even for me to get there lol

my aim is TN Zazza

I just removed the install and installer folders from my server, just downloaded them to my pc and removed them from online. Figured this would be a potential place to try and mess up

What i did is delete alot of mods that I was not really using anymore etc and am trying to clean up the board some. Here is my diagnostics list now, see anything bad, let me know:

Root:
arcade.php
fixoptions.php
mm_menu.js
modelapp.php
template.htm
vbfavorites.php
vbgarage.php

Clientscript:
activecell.htc
ncode_imageresizer.js

Admin:
arcade.php
vba_cmps_admin.php

Includes:
adminfunctions_links.php
adminfunctions_vba_cmps.php
class_dm_itrader.php
class_ucs_core.php
datastore_cache.php
functions_links.php
functions_ucs_shared.php
vba_cmps_include_bottom.php
vba_cmps_include_error.php
vba_cmps_include_template.php
vba_cmps_include_top.php
vba_cmps_plugin_newpost.php

Includes/Cron:
articlebot_vbcron.php
links_search.php
links_subscriptions.php
rsvp_notify.php
vba_global_error.php

Includes/XML:
bitfield_comments.xml
bitfield_profileviews.xml
cpnav_arcade.xml
cpnav_rpm.xml
cpnav_ucs.xml
cpnav_vbacmps.xml
hooks_ibproarcade.xml
hooks_v3arcade.xml
product-ibproarcade.xml

These are the ones that get the "File not recognized as part of vBulletin" message when I run the diagnostics. As you can see, a bunch of them are from my vbadvanced being installed.

Appreciate the input.


All times are GMT. The time now is 02:17 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01058 seconds
  • Memory Usage 1,740KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (3)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (2)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete