Welcome, Guest. Please Login or Register.
August 19, 2025, 01:10:47 PM
Home Help Search Log in Register
News: If you are still using YaBB SE, please consider upgrading to SMF as soon as possible.

YaBB SE Community  |  English User Help  |  English Help  |  they hacked my forum ! « previous next »
Pages: 1 [2] Reply Ignore Print
Author Topic: they hacked my forum !  (Read 2974 times)
warrenKid
Noobie
*
Posts: 5


I'm a llama!

Re:they hacked my forum !
« Reply #15 on: March 23, 2003, 04:29:41 PM »
Reply with quote

maybe they didn't hacked your forum using an exploit in your yabbse, maybe they cracked your password in your hosting provider and then from there they gained access to your index.php


just a thought  8)
Logged
PioneeR
Llama Hunter
YaBB God
*****
Posts: 767


Re:they hacked my forum !
« Reply #16 on: March 23, 2003, 04:46:23 PM »
Reply with quote

Just done a search on google for "BUSH IS GAY!!! BUSH IS EVIL" found quite a few sites that had been hacked - look at cached pages on google. They didnt seem to have any forums either.

Logged
Douglas
aka The Bear
Support Team
YaBB God
*****
Posts: 1050


Bears rule! Llamas rule too!

WWW
Re:they hacked my forum !
« Reply #17 on: March 23, 2003, 05:27:16 PM »
Reply with quote

Just an odd question:  Do you have Front Page Extensions on your server?
Logged

Need help? Please SEARCH first.  No need for a bad attitude, we like helping positive minded people.
ComeHit.us Short URL  redirection svcs with YSE powered forums, COMING SOON!
Want to say thanks?  Check out http://comehit.us/?u=3
babylonking
Full Member
***
Posts: 174


Proudly Canadian

WWW
Re:they hacked my forum !
« Reply #18 on: March 23, 2003, 06:40:37 PM »
Reply with quote

QuoteJust an odd question:  Do you have Front Page Extensions on your server?

Yes i have that in my host control panel but i didn't installed yet.
Logged

Proudly Canadian          
Douglas
aka The Bear
Support Team
YaBB God
*****
Posts: 1050


Bears rule! Llamas rule too!

WWW
Re:they hacked my forum !
« Reply #19 on: March 23, 2003, 06:53:43 PM »
Reply with quote

I know it's extremely easy to get your FTP username and password from the FPE files, so you may want to look at that, as well.

The reason why I ask is because I had a customer that was with me for TWO years, NO problems what-so-ever, no hacking attempts, no problems.  The owners of the company directed their employee (and my contact/liason) to change hosting companies, because they wanted more than what I offered.  Less than two weeks of being up with them, their site got hacked this weekend, similar to what your's was.  They have FPE on their site, no forums.

How funny that they get hacked after moving to a different hosting company.

Take a look at your logs and really take a strong look at the FPE settings.  Just because it's not "installed" doesn't mean that it's already there.
Logged

Need help? Please SEARCH first.  No need for a bad attitude, we like helping positive minded people.
ComeHit.us Short URL  redirection svcs with YSE powered forums, COMING SOON!
Want to say thanks?  Check out http://comehit.us/?u=3
Spaceman-Spiff
Mod Team
YaBB God
*****
Posts: 3689


My $txt[228]

Re:they hacked my forum !
« Reply #20 on: March 23, 2003, 10:03:04 PM »
Reply with quote

what does the Front Page Extension do actually? ???

u're right about the google
« Last Edit: March 23, 2003, 10:06:42 PM by Spaceman-Spiff » Logged

   My mods, ysePak, codes, tutorials
    Support question IMs = bad.
mediman
Support Team
YaBB God
*****
Posts: 2858


WWW
Re:they hacked my forum !
« Reply #21 on: March 24, 2003, 02:30:01 AM »
Reply with quote

This Hackings (Defacings) has nothing to do with YaBB SE! The Defacer used wu-ftp exploits in many cases!

So the Defacer have had access to many accounts @once!

@babylonking was there a folder with your original index.php? Defacer never destroy anything! They ever backup the files b4 they deface the index site!

mediman
« Last Edit: March 27, 2003, 04:33:23 AM by mediman » Logged

mainComm Dev Team
Spaceman-Spiff
Mod Team
YaBB God
*****
Posts: 3689


My $txt[228]

Re:they hacked my forum !
« Reply #22 on: March 24, 2003, 03:09:09 AM »
Reply with quote

Quote from: mediman on March 24, 2003, 02:30:01 AM
Defacer never destroy anything! They ever backup the files b4 they deface the index site!

nice, yet still annoying, hacker :P
Logged

   My mods, ysePak, codes, tutorials
    Support question IMs = bad.
mediman
Support Team
YaBB God
*****
Posts: 2858


WWW
Re:they hacked my forum !
« Reply #23 on: March 24, 2003, 03:51:21 AM »
Reply with quote

you´re right spiff a defacer is nothing better as a hacker!

mediman



Logged

mainComm Dev Team
babylonking
Full Member
***
Posts: 174


Proudly Canadian

WWW
Re:they hacked my forum !
« Reply #24 on: March 24, 2003, 03:58:24 AM »
Reply with quote

Quote@babylonking was there a folder with your original index.php?

I can't access my FTP site cuz my host they closed off my account til they see what exactly happend. :-\


Anyways i moved my forum to another server. ;)
Logged

Proudly Canadian          
mediman
Support Team
YaBB God
*****
Posts: 2858


WWW
Re:they hacked my forum !
« Reply #25 on: March 24, 2003, 04:04:41 AM »
Reply with quote

your host should check if it was a wuFTPd exploit, like in the other cases!

as far as i know it was in all cases a ftpserver hack not a hack over a script on a single account!

changing the ftpserver to proFTPD may be a good idea!

mediman (fixing now any things on his server  8))
Logged

mainComm Dev Team
mediman
Support Team
YaBB God
*****
Posts: 2858


WWW
Re:they hacked my forum !
« Reply #26 on: March 24, 2003, 04:31:18 AM »
Reply with quote

@babylonking check your IM´s i was sending you informations about the script which was used to hack the ftpservers in the other cases!

maybe its useful for your hosting company (so they will open your account as soon as possible)

mediman
Logged

mainComm Dev Team
Douglas
aka The Bear
Support Team
YaBB God
*****
Posts: 1050


Bears rule! Llamas rule too!

WWW
Re:they hacked my forum !
« Reply #27 on: March 24, 2003, 05:45:20 AM »
Reply with quote

Let's hear it for ProFTPd!  ::applauds::

QuoteSplorked by: Spaceman-Spiff
what does the Front Page Extension do actually?
You've never heard of Microsoft FrontPage or Microsoft FrontPage Express?  It's a WYSIWYG HTML editor that also doubles as an FTP program.  If you have FPE extensions installed on your server, you can do fly by editing and have FP upload the page as soon as you save it.

Personally, I hate it (I'm a MAJOR Notepad junkie, especially when coding with PHP and MySQL), as I find nothing useful about it, and the fact that it's structured HTML coding is very hindersome to the way I do things.  Granted, I don't necessarily follow W3C HTML standards, but my customers know that.  I follow standards for quick page loading and low bandwidth usage.  ::shrug::  That's just me, though.
Logged

Need help? Please SEARCH first.  No need for a bad attitude, we like helping positive minded people.
ComeHit.us Short URL  redirection svcs with YSE powered forums, COMING SOON!
Want to say thanks?  Check out http://comehit.us/?u=3
babylonking
Full Member
***
Posts: 174


Proudly Canadian

WWW
Re:they hacked my forum !
« Reply #28 on: March 24, 2003, 02:59:41 PM »
Reply with quote

Quote@babylonking check your IM´s i was sending you informations about the script which was used to hack the ftpservers in the other cases!

maybe its useful for your hosting company (so they will open your account as soon as possible)

Thanks mediman i sent them a copy of that script which was used to hack the ftpservers.  ;)
Logged

Proudly Canadian          
mediman
Support Team
YaBB God
*****
Posts: 2858


WWW
Re:they hacked my forum !
« Reply #29 on: March 25, 2003, 01:16:39 AM »
Reply with quote

your board is online again  8) glad to see! :D

mediman
Logged

mainComm Dev Team
Pages: 1 [2] Reply Ignore Print 
YaBB SE Community  |  English User Help  |  English Help  |  they hacked my forum ! « previous - next »
 


Powered by MySQL Powered by PHP YaBB SE Community | Powered by YaBB SE
© 2001-2003, YaBB SE Dev Team. All Rights Reserved.
SMF 2.1.4 © 2023, Simple Machines
Valid XHTML 1.0! Valid CSS

Page created in 0.378 seconds with 20 queries.