vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   site HAcked---Urgent (https://vborg.vbsupport.ru/showthread.php?t=210905)

Osama11 04-11-2009 05:26 AM

site HAcked---Urgent
 
my site is getting hacked again n again..
i just did the backup data 30 mins ago n upgraded the scripts.,

AGAIN its get hackeddd...

i have vbulletin. 3.8.1
n my site is still hackeeed

help me how can i fixx my site .. n how can i secure my site..

plzzz help me guysssssssssss

www.onlinedesiclub.com

Swampfox 04-11-2009 09:38 AM

looks like they are just replacing your index.php page with their own, you can still access your site by going to other pages directly

obviously they have access to your server file system, its not necessarily a vbulletin issue, change all of your passwords including your server password and look at moving to a more secure host

dxflw 04-11-2009 10:01 AM

Maybe format your pc first beacuse is possible that you have a keylogger ready installed to you pc and thirds persons knows your passwords and can easy access.After the format change all the passwords you use and then replace all your site files. And i think is important to delete all your forum styles and install again from the beggining.That will clean all your templates.

I m not sure 100% if that will finish your problem but its one possible way.

Osama11 04-11-2009 04:01 PM

some 1 plzz help me how can i solve this isssue

Phobos49 04-11-2009 04:04 PM

Quote:

Originally Posted by Osama11 (Post 1789005)
some 1 plzz help me how can i solve this isssue

Change FTP-Password!!!!

Osama11 04-11-2009 04:06 PM

i did every thing ..

but still its happeneing

Mellymonster 04-11-2009 04:20 PM

Do this, go to your FTP, and see if there is a different page as in for the index, I've had this happen on one of my sites, its just a Index injections. You should just beable to remove the index they injected, and then change your index back to index.php...

Osama11 04-11-2009 04:25 PM

Quote:

Originally Posted by Mellymonster (Post 1789022)
Do this, go to your FTP, and see if there is a different page as in for the index, I've had this happen on one of my sites, its just a Index injections. You should just beable to remove the index they injected, and then change your index back to index.php...

i did delete it ... but again. again they r hacking my site..

how can i secure my site

Lynne 04-11-2009 04:55 PM

As suggested in post 3, perhaps you've got a keylogger on your PC. If you keep changing the password, and they are immediately getting in again, it sounds like that is a good possibility.

Osama11 04-11-2009 08:45 PM

Quote:

Originally Posted by Lynne (Post 1789049)
As suggested in post 3, perhaps you've got a keylogger on your PC. If you keep changing the password, and they are immediately getting in again, it sounds like that is a good possibility.

how can i delte key looger from my cp.

do i have to reboot the computer?


All times are GMT. The time now is 03:18 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01044 seconds
  • Memory Usage 1,728KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (3)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (1)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete