Go Back   vb.org Archive > vBulletin 4 Discussion > vB4 General Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 02-16-2010, 07:30 PM
cyberlux cyberlux is offline
 
Join Date: Jun 2006
Posts: 7
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default forum 4.0.1 hacked

Hello,

I am working with my provider on my forum that had been hacked by : Saudi Arabia Hacker

My provider put some old backup but it comes back again.

Do someone has an idea what to do?

Thank you
Reply With Quote
  #2  
Old 02-17-2010, 10:04 AM
borbole's Avatar
borbole borbole is offline
 
Join Date: Jan 2010
Posts: 2,559
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Have a look at your server space for any file or anything out of ordinary. Change all your login info (forum, ftp, cp) and then update your forum to 4.0.2 and see if that would help.

Did your host check their access logs and see how they got in? So the security issues can be patched up.
Reply With Quote
  #3  
Old 02-17-2010, 01:37 PM
cyberlux cyberlux is offline
 
Join Date: Jun 2006
Posts: 7
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Thank you for your answer my host (waveweb.com) has been very kind and tried all you said, nothing last longuer than an hour.

I have to say that I have some other forums on the same reseller account, and only this one (ado-causerie.ca) is touched.

I will install the 4.0.2 today and see.

Have a good day.
Reply With Quote
  #4  
Old 02-18-2010, 06:19 PM
NiTRoN NiTRoN is offline
 
Join Date: Dec 2005
Location: Big Ditch
Posts: 95
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

quick note.. i think 1st thing you should change directory name of your admincp and modcp to something other than standard.. either prefix or suffix it with some weird sequence and update config.php file accordingly..
Reply With Quote
  #5  
Old 02-18-2010, 06:45 PM
cyberlux cyberlux is offline
 
Join Date: Jun 2006
Posts: 7
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Well, I succeded to put 4.0.2 and stay ok for 10 hours, now my forum looks like a frame forum, the login is no more possible.

So I have to begin all the process again and I will see how I can do that or my host that is so kind with me (Waveweb.com) will help me.

Thank very much.

--------------- Added [DATE]1266536704[/DATE] at [TIME]1266536704[/TIME] ---------------

I had some template conflits, all seems resolved.

Thank you for your help
Reply With Quote
  #6  
Old 02-19-2010, 07:21 AM
snilabs snilabs is offline
 
Join Date: Feb 2010
Posts: 4
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

im see remote exploit and public (18/02/2010) and work in version 4.0.0 and 4.0.1 but work in version 4.0.2 also maybe the bug was not repaired yet

im post here: https://vborg.vbsupport.ru/showthread.php?t=236292

any ideas?
Reply With Quote
  #7  
Old 02-19-2010, 01:24 PM
borbole's Avatar
borbole borbole is offline
 
Join Date: Jan 2010
Posts: 2,559
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by snilabs View Post
im see remote exploit and public (18/02/2010) and work in version 4.0.0 and 4.0.1 but work in version 4.0.2 also maybe the bug was not repaired yet

im post here: https://vborg.vbsupport.ru/showthread.php?t=236292

any ideas?
As Paul M said at that other thread, start a ticket at the Custome Area at vb.com.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 02:17 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.03715 seconds
  • Memory Usage 2,214KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (1)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (7)post_thanks_box
  • (7)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (7)post_thanks_postbit_info
  • (7)postbit
  • (7)postbit_onlinestatus
  • (7)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete