View Single Post
  #3  
Old 11-07-2010, 04:26 AM
sebaldus sebaldus is offline
 
Join Date: May 2008
Location: Halden - Norway
Posts: 80
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Hi all.
I also have had same problems.

Lucky me, so had I not upgrade the database after hacking.

All my forums, over 110 WP-blogs was hacked total and all index.php and index.html files was change.

I had a backup of all sides on my computer and also backup of all databases.

This was the second time on 14 days, I have try to secure my host account using Geo City IP Secure, but id do's not help at all.

I asked my host how I should do not to be hacked and they ansver: Change all 777 files,,(close them) change password to FTP and ACP loggin.

But I had done that also and are using an generated password, so special that I have to copy username to loggin.. LIKE THIS: *Sebaldus*™ ) that TM - trademark are very difficult to wite for hackers and they have to know it and copy it also.

So I guess its an script, tracking cookie or anything on my huge host account and my host told me to scann the account total?

How can I scann an host account?

Then I have to download all to my computer and scann it for then upload it again..

Thats a big work .

Only overwrite all files on all sdes and forums have take me 3 days now and still are overwrite the last sides.

My host, http://servage.net can NOT reset the database, thats why I always take backup af them.

This time I was hacked by Shichemt Alen from : http://Shichemt-Alen.com
And they accuce me for supporting ISRAEL.. WHY?
I don't support Israel or Palestina..

All sides look like this:


View at EasyCaptures.com

I'm an pagan ( wicca) and don't care if they are bumbing each other back to the stoneage.


But: About the HACKING..

They use to upload script in all index.php and index.html files.. Just fine the script, change it back to orginal ( remowe the script - upload new index files) and upgrade the database..

I did that and it work fine.

So I did'nt have to reset the database at all..

Just an Advice.. Try it first..

AGAIN:

1. Overwrite all index.php and index.html files using FTP and upload only those files.
2. Backup your database again.

Hackers are now writing a script in yours forums, who attacking all yours index files. when they are posting in the forum.

This are very difficult to find.

To secure this, go to ACP, BAN word as: index.php - index.html.

VIOLA.. It worked for me on my vB forums.


Have a Great time my friends.
All the Best from sebaldus.
Reply With Quote
 
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01387 seconds
  • Memory Usage 1,770KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD_SHOWPOST
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_box
  • (1)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (1)post_thanks_postbit_info
  • (1)postbit
  • (1)postbit_onlinestatus
  • (1)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • reputationlevel
  • showthread
Included Files:
  • ./showpost.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showpost_start
  • bbcode_fetch_tags
  • bbcode_create
  • postbit_factory
  • showpost_post
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • showpost_complete