vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   Hacking attempt? (https://vborg.vbsupport.ru/showthread.php?t=149997)

zappsan 06-18-2007 11:13 AM

Hacking attempt?
 
A few minutes ago, I saw a guest on my forums who had the following listed as their action in the "Who is online": (removed)

When I looked at the link (removed) I found a strange script file.
Was this a hacking attempt?

Nothing happened, I also don't have ImPex on my forums.

Any idea what this thing is trying to do?

Distance 06-18-2007 11:17 AM

You're right. That does look really suspicious. It has several references to MD5 hashes in there too

Edit; I got told that thats a spider trying to find vulnerable forums

no mods 06-18-2007 11:27 AM

woo clicked the link and got a new virus on my computer, just dandy.:(

Distance 06-18-2007 11:43 AM

I highly doubt thats true lol

no mods 06-18-2007 12:16 PM

The little red aol box poped up when I clicked it saying we have found a virus, but were not able to stop or delete it. Its wonderful having aol security.:mad:

Distance 06-18-2007 12:25 PM

Its not wonderful having aol at all :)

Bt Business FTW :p (Nod32 for viruses)

no mods 06-18-2007 01:10 PM

Eh everytime I try and install some anti virus program my internet stops working.:(

zappsan 06-18-2007 02:35 PM

Quote:

Originally Posted by no mods (Post 1270922)
woo clicked the link and got a new virus on my computer, just dandy.:(

Sorry :(
When I opened the page, I had no problems and I didn't expect a text file to cause any harm :/
I hope that didn't mess up your system :(

So it's looking for vulnerable forums?
Vulnerable in which way?
The thing looked for an ImPex directory on my board, does that mean it could make use of it in some way?
It also included that Arcade link in the URL.

I was kinda shocked when I saw that thing, it kinda scared me aswell as the text file.
I've never been hacked before...

dyna88 06-18-2007 03:12 PM

Older versions of ImPex had a RFI exploit I believe


All times are GMT. The time now is 05:03 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01551 seconds
  • Memory Usage 1,718KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (9)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete