Go Back   vb.org Archive > vBulletin 3 Discussion > vB3 General Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #11  
Old 12-27-2008, 04:17 PM
singa singa is offline
 
Join Date: Dec 2008
Posts: 60
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I am not sure if I understand you. You're saying that I had a hack to my own forum? As I said earlier, the forum is part of a website that I run. I have never been into anything illegal. However, when I noticed one poster very late at night asking a very obscure question about something totally unrelated to tourism using a word I personally had never heard of, I immeidately googled it. And it was apparently some software of whatever that can only be activated if someone else gives a link and then another person clicks on it. That's all I know. I am no computer expert as you've probably noticed and in fact know very little about all of this.

But I did make one big stupid mistake. In the old forum there was no confirmation email required to register. I hadn't activated it. Hence this cost me dearly. Members were able to register and post immediately.

When I changed it later after I noticed my stupid mistake it was too late. A friend registered and some others and they all said that they got a porno redirect as their email confirmation which they had to click on to activate their membership.

There was even an instance that my website's forum came out like this: example.com/forum857575485458767857kfjsiuer873472iur with a very long number. and when I clicked on it I was redirected to a pornographic website.

How these people did that? no idea. But anyway, everyone in here is saying vBulettin is the best, so it is probably money well spent.

I deleted the entire forum off the server. Imported nothing to the new vBulletin just to be safe. I saved the most interesting threads in a word document and they'll be reposted / pasted soon on the new vBulletin.

Beleive me, I learnt. The first thing I did with vBulletin was ensuring every member will have to register with a proper email account and confirm the account.




Quote:
Originally Posted by Infopro View Post
You know, I'd be interested to find out more about how your SMF got hacked. If I was to guess, was it thru a hack you had added to your SMF forums?

You're posting to a forum for customizing/hacking another forum software that you're now using, so I bet you'll be adding a few things to your new forum too, like your old forum.

Here's a tip, SMF, like vBulletin are both secure software for the most part, it's what you add to them that raises your chances of being hit somehow or other.





The manual should have answered a lot of questions for you, the very helpful stuck threads at vBulletin are also priceless, IMHO, for grasping how the basics work.

You being here seems to me jumping a step or two ahead before even barely being able to make a forum. ( which was covered in the manual I believe)

Lots more to read, you might start with basics, like these two links for example:

Forum Robot Spam Prevention Recommendations
vBulletin 3.7 Questions, Problems and Troubleshooting

Keeping it secure and free of spammers is a lot of work that will never, ever, end. You will have to make time, or you can probably expect more of the same, no matter what software you use.

My 2
Reply With Quote
  #12  
Old 12-27-2008, 06:04 PM
Swampfox Swampfox is offline
 
Join Date: Aug 2006
Posts: 119
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by singa View Post

Beleive me, I learnt. The first thing I did with vBulletin was ensuring every member will have to register with a proper email account and confirm the account.
That will do nothing to stop the bots

The bot that spammed your forum was probably totally unrelated to your site being hacked also, they post spam

The tactic about asking a question totally unrelated to your site is, they hope someone will look up what they are asking about and post a link, then they will have links all over the internet pointing to their product, which will improve their search engine rankings
Reply With Quote
  #13  
Old 12-28-2008, 06:16 AM
singa singa is offline
 
Join Date: Dec 2008
Posts: 60
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

This time I am using the Question and Answer Verification system by vBulletin and I have already prepared 10 questions.

So I should be better off than I previously was or not?
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 09:11 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.03522 seconds
  • Memory Usage 2,190KB
  • Queries Executed 13 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (2)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (1)pagenav_pagelink
  • (3)post_thanks_box
  • (3)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (3)post_thanks_postbit_info
  • (3)postbit
  • (3)postbit_onlinestatus
  • (3)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete