Go Back   vb.org Archive > vBulletin 3 Discussion > vB3 General Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 08-15-2006, 09:31 AM
FeNeRisT's Avatar
FeNeRisT FeNeRisT is offline
 
Join Date: Apr 2006
Location: Austria
Posts: 8
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Help Please

Hello,

We have a vBulletin 3.6.0 forum with over 1000 members. We have lately a "hacking" problem about our "index.php"

When we try to access
the page loads with its "normal" content but after it finished it redirects itself to another page with another server, with an "hacked" message.

We tried to delete index.php and "upload" it again but nothing's changed. What can we do? Does anybody know or meet a problem like this one?

When we upload an "index.HTML" it doesn't redirect, but when we upload index.PHP ", it redirects after loading.

Help Please.

Thank You.
Reply With Quote
  #2  
Old 08-15-2006, 11:53 AM
Phaedrus Phaedrus is offline
 
Join Date: Jul 2006
Location: Colorado
Posts: 617
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I wonder if they hacked another called template rather than the index.php itself....

did you load the index from the original or from a backup?

Have you searched in all your templates for the redirected URL? It is likely you will find it in something like the footer or navbar or something that gets called by the index.php rather than in the index.php itself.
Reply With Quote
  #3  
Old 08-15-2006, 12:14 PM
Ntfu2 Ntfu2 is offline
 
Join Date: Feb 2006
Posts: 1,247
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

check your .htaccess assuming you have one
Reply With Quote
  #4  
Old 08-15-2006, 12:32 PM
FeNeRisT's Avatar
FeNeRisT FeNeRisT is offline
 
Join Date: Apr 2006
Location: Austria
Posts: 8
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Thank you for your time and help, I've double checked all the templates but I couldn't find the "url" or anything like that. Also, I checked the .htaccess file, there's nothing in it..
I don't know what can I do about it but it's really very annoying..
Reply With Quote
  #5  
Old 08-15-2006, 04:49 PM
peterska2 peterska2 is offline
 
Join Date: Oct 2003
Location: Manchester, UK
Posts: 6,504
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Reupload index.php and revert your forumhome template

The rest of your site is fine, so it is just the forumhome template that has been affected.

Also, notify your host of this if you are on shared hosting, including a copy of the forumhome template before you revert it.
Reply With Quote
  #6  
Old 08-15-2006, 05:55 PM
FeNeRisT's Avatar
FeNeRisT FeNeRisT is offline
 
Join Date: Apr 2006
Location: Austria
Posts: 8
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Thank you very much. I mailed my hosting company but they don't know anything about this subject, also I reverted all the templates, uploaded the index.php and reverted many times but nothing has been change. As far as I examine (look up from google and read some documents) this could be "SQL INJECTION REDIRECTION" or something like that, they do it with SQL INJECTION. So maybe it's something about database. Do anyone know anything about this or any idea how can I fix it?
Thank You.
Reply With Quote
  #7  
Old 08-16-2006, 03:00 AM
Freesteyelz's Avatar
Freesteyelz Freesteyelz is offline
 
Join Date: Jan 2006
Posts: 1,552
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Over at vB.com they were discussing that. You may want to ask there too and possibly open up a support ticket.
Reply With Quote
  #8  
Old 08-16-2006, 03:07 AM
Phaedrus Phaedrus is offline
 
Join Date: Jul 2006
Location: Colorado
Posts: 617
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Hmmm... When does it redirect? It seems to work for me...
Reply With Quote
  #9  
Old 08-16-2006, 05:02 AM
columbonet columbonet is offline
 
Join Date: Jan 2006
Posts: 77
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Phaedrus
Hmmm... When does it redirect? It seems to work for me...
same here. Looks fine.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 05:42 PM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2024, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.09927 seconds
  • Memory Usage 2,237KB
  • Queries Executed 13 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (1)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (9)post_thanks_box
  • (9)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (9)post_thanks_postbit_info
  • (9)postbit
  • (9)postbit_onlinestatus
  • (9)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete