View Single Post
  #11  
Old 12-27-2008, 04:17 PM
singa singa is offline
 
Join Date: Dec 2008
Posts: 60
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I am not sure if I understand you. You're saying that I had a hack to my own forum? As I said earlier, the forum is part of a website that I run. I have never been into anything illegal. However, when I noticed one poster very late at night asking a very obscure question about something totally unrelated to tourism using a word I personally had never heard of, I immeidately googled it. And it was apparently some software of whatever that can only be activated if someone else gives a link and then another person clicks on it. That's all I know. I am no computer expert as you've probably noticed and in fact know very little about all of this.

But I did make one big stupid mistake. In the old forum there was no confirmation email required to register. I hadn't activated it. Hence this cost me dearly. Members were able to register and post immediately.

When I changed it later after I noticed my stupid mistake it was too late. A friend registered and some others and they all said that they got a porno redirect as their email confirmation which they had to click on to activate their membership.

There was even an instance that my website's forum came out like this: example.com/forum857575485458767857kfjsiuer873472iur with a very long number. and when I clicked on it I was redirected to a pornographic website.

How these people did that? no idea. But anyway, everyone in here is saying vBulettin is the best, so it is probably money well spent.

I deleted the entire forum off the server. Imported nothing to the new vBulletin just to be safe. I saved the most interesting threads in a word document and they'll be reposted / pasted soon on the new vBulletin.

Beleive me, I learnt. The first thing I did with vBulletin was ensuring every member will have to register with a proper email account and confirm the account.




Quote:
Originally Posted by Infopro View Post
You know, I'd be interested to find out more about how your SMF got hacked. If I was to guess, was it thru a hack you had added to your SMF forums?

You're posting to a forum for customizing/hacking another forum software that you're now using, so I bet you'll be adding a few things to your new forum too, like your old forum.

Here's a tip, SMF, like vBulletin are both secure software for the most part, it's what you add to them that raises your chances of being hit somehow or other.





The manual should have answered a lot of questions for you, the very helpful stuck threads at vBulletin are also priceless, IMHO, for grasping how the basics work.

You being here seems to me jumping a step or two ahead before even barely being able to make a forum. ( which was covered in the manual I believe)

Lots more to read, you might start with basics, like these two links for example:

Forum Robot Spam Prevention Recommendations
vBulletin 3.7 Questions, Problems and Troubleshooting

Keeping it secure and free of spammers is a lot of work that will never, ever, end. You will have to make time, or you can probably expect more of the same, no matter what software you use.

My 2
Reply With Quote
 
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01088 seconds
  • Memory Usage 1,776KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD_SHOWPOST
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_quote
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_box
  • (1)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (1)post_thanks_postbit_info
  • (1)postbit
  • (1)postbit_onlinestatus
  • (1)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • reputationlevel
  • showthread
Included Files:
  • ./showpost.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showpost_start
  • bbcode_fetch_tags
  • bbcode_create
  • postbit_factory
  • showpost_post
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • showpost_complete