Go Back   vb.org Archive > Community Discussions > Forum and Server Management
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 02-10-2012, 02:28 AM
AGN03 AGN03 is offline
 
Join Date: Nov 2011
Posts: 8
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Hacked, Again..

Anyone know where this comes from?
Reply With Quote
  #2  
Old 02-10-2012, 04:11 AM
Sage Knight Sage Knight is offline
 
Join Date: Apr 2011
Posts: 172
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

If you were hacked on the same host again, just simply change your host, restore a back-up and change every single password, from the FTP account to the cPanel a/c EVERYTHING. Also might want to check your access logs and ensure you're running a patched version of vBulletin and also a poorly coded plugin might be causing this aswell. How many plugins do you have?

Edit; And no I don't know about that image and it doesn't really matter anyways.

Edit; Keep an eye on this blog posts of Wayne Luke;

https://www.vbulletin.com/forum/entr...Forums-(Part-1)
Reply With Quote
  #3  
Old 02-10-2012, 04:24 AM
AGN03 AGN03 is offline
 
Join Date: Nov 2011
Posts: 8
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

The only addons I'm running is everywhere sidebar and the chatbox.
Every password there is was completely changed after the first attack two weeks ago.
I'd bet a years salary that my host is secure, I have no doubt.
Reply With Quote
  #4  
Old 02-10-2012, 05:22 AM
ForceHSS ForceHSS is offline
 
Join Date: Apr 2008
Posts: 6,357
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

then the next thing to do is update the forums to a more secure version
Reply With Quote
  #5  
Old 02-10-2012, 03:12 PM
L2Insomnia L2Insomnia is offline
 
Join Date: Mar 2011
Posts: 54
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Who is your host? Do you have WHM or root access?
Reply With Quote
  #6  
Old 02-10-2012, 03:52 PM
Max Taxable's Avatar
Max Taxable Max Taxable is offline
 
Join Date: Feb 2011
Posts: 3,134
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Two Words.

Cloud Flare
Reply With Quote
  #7  
Old 02-10-2012, 03:56 PM
Willo Willo is offline
 
Join Date: May 2010
Posts: 16
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Sage Knight View Post
If you were hacked on the same host again, just simply change your host, restore a back-up and change every single password, from the FTP account to the cPanel a/c EVERYTHING. Also might want to check your access logs and ensure you're running a patched version of vBulletin and also a poorly coded plugin might be causing this aswell. How many plugins do you have?

Edit; And no I don't know about that image and it doesn't really matter anyways.

Edit; Keep an eye on this blog posts of Wayne Luke;

https://www.vbulletin.com/forum/entr...Forums-(Part-1)

Hmmm...He got hacked and you say he should change hosts, restore his site and change passwords....Why not just change passwords at the first host and save your self the effort of moving....There's most likely a door left in the site from the first hack and it seems to me that all the move/RESTORE accomplishes is to give the opportunity to get hacked at a new host.

I could be wrong but I'm sure you see my logic.
Reply With Quote
2 благодарности(ей) от:
Max Taxable, TheLastSuperman
  #8  
Old 02-10-2012, 04:19 PM
L2Insomnia L2Insomnia is offline
 
Join Date: Mar 2011
Posts: 54
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Cloud Flare honestly does not do alot. it actually causes more issues than anything. Really it depends on how your host setup your cpanel through whm. Many of them do really do a minimum which leaves alot of vulnerabilities (ports open that don't need to be, extra processes, insecure application configs for mysql, php etc...). The list is long of possibilities on a standard cpanel install. If you don't have root or WHM access than you will need to work with your host.

Start by doing a search of your http logs for these 2 words htaccess and filemanager
and see if you find any.
Reply With Quote
  #9  
Old 02-10-2012, 04:21 PM
Max Taxable's Avatar
Max Taxable Max Taxable is offline
 
Join Date: Feb 2011
Posts: 3,134
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by L2Insomnia View Post
Cloud Flare honestly does not do alot. it actually causes more issues than anything..
I have heard that some from v4 owners, but it does wonders for my v3.
Reply With Quote
  #10  
Old 02-10-2012, 04:47 PM
L2Insomnia L2Insomnia is offline
 
Join Date: Mar 2011
Posts: 54
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

It may increase performance in some cases I agree but it doesn't do squat for security if the hacker knows anything at all. That's what i am trying to get at People should not think "I'll just use CloudFlare and I'll be safe" as that is most likely going to lead to trouble at some point.

I'm not bashing CloudFlare just want to make it clear that using them does not by any means make you safe from getting hacked.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 05:35 PM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.04376 seconds
  • Memory Usage 2,258KB
  • Queries Executed 13 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (2)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (2)pagenav_pagelink
  • (10)post_thanks_box
  • (2)post_thanks_box_bit
  • (10)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (1)post_thanks_postbit
  • (10)post_thanks_postbit_info
  • (10)postbit
  • (10)postbit_onlinestatus
  • (10)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • fetch_musername
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • post_thanks_function_fetch_thanks_bit_start
  • post_thanks_function_show_thanks_date_start
  • post_thanks_function_show_thanks_date_end
  • post_thanks_function_fetch_thanks_bit_end
  • post_thanks_function_fetch_post_thanks_template_start
  • post_thanks_function_fetch_post_thanks_template_end
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete