| My Homepage was hacked.... |
| Author | Text |
d33j4y Junior Member
Posts: 70

Gender:  Online: No
Country: Inter-Mountain West, United States Languages: English Version: 4.0.1 |
Date: 05/11/2009 21:01 Re: My Homepage was hacked.... | #post22482 | Exactly correct Adminik lol!
Also reason I had mentioned about the db user password ordeal is due to the fact that through this exploit they were able to change the index.php files on other websites on my server that share the same db username and password which is why I suggested that for those who may have been hit and had other websites which may not necessarily be ones with memht on them but hitting my website that has memht without having removed the exploit prior was enough for the kiddies to attack the other websites!!!
All is fine now and I have applied the mentioned fixes so I have no worries on that!
The use of mimetypes for checking extensions on images should probably be corrected in the future for these Gallery and Imageup addons to work more effectively and better security!!!  |
|
 |
| |
sonac Junior Member
Posts: 14

Gender:  Online: No |
Date: 28/11/2009 05:19 Re: My Homepage was hacked.... | #post22680 | To update this post:
Our website was hacked twice in the past two weeks...the first time, the folks renamed the index file and uploaded a new one...I then changed all of the passwords to the site and admin accounts, and they did it again today. All fixes have been installed and we are operating at the current version 4.0.1 with no updates showing available.
website is http://www.americanosalumni.org/
I also noticed that memht.com was hacked today...is there a new security fix to correct this, or will there be one soon?
Regards,
Sonac |
|
 |
| |
rudykaka Exalted Member
Posts: 574

Gender:  Online: No
Country: Espaņa Languages: English, Espaņol Version: waiting for 5 |
Date: 28/11/2009 11:02 Re: My Homepage was hacked.... | #post22681 | "I also noticed that memht.com was hacked today...is there a new security fix to correct this, or will there be one soon?"
are you sure? this iz very serious, i dnt think this had happened bcoz i'm always checking memht.com almost every 30-40 mins
P.S. if u have installed all the fixes...u r in the safe side  |
|
 |
| |
mem MemHT's Dad Admin & Developer

Posts: 7300

Gender:  Online: No
Languages: English, Italiano, Македонски, Српски |
Date: 28/11/2009 11:03 Re: My Homepage was hacked.... | #post22682 | | quote | sonac:
I also noticed that memht.com was hacked today... |
What are you talking about?
Anyway i can't help you if you don't say me if you have applied patches and when... and if you have deleted unknown files in the uploads and avatars folders if you got hacked before. |
|
 |
| |
sonac Junior Member
Posts: 14

Gender:  Online: No |
Date: 29/11/2009 06:35 Re: My Homepage was hacked.... | #post22686 | Correction it was Memhtportal.com. (still is)
Sorry for the mix up. I will try a couple of things. My board of directors, right now isnt happy. People think the site is now full of viruses. Hopefully I can get things back to normal. |
|
 |
| |
rudykaka Exalted Member
Posts: 574

Gender:  Online: No
Country: Espaņa Languages: English, Espaņol Version: waiting for 5 |
Date: 29/11/2009 09:57 Re: My Homepage was hacked.... | #post22687 | this is not memht portal official website. these are memht websites
www.memht.com www.codeditor.org www.wavefriends.it
www.memht.org www.miltenovik.com
www.memht.it www.miltenovic.com |
|
 |
| |
guybrush
Posts: 10

Gender:  Online: No |
Date: 29/11/2009 11:59 Re: My Homepage was hacked.... | #post22688 | Site url: http://www.alpedrete.info - http://camposvarea.es
MemHT version: 4.0.1 (fix is NOW applied)
Hosting OS: Linux
PHP and MySQL versions: 5.2.4/5.0.37
Installed addons/scripts: youtube
Error/Problem: I was hacked / both sites even when the camposvarea.es does not use the memht portal.
it was at some time between 24-11-2009/27-11-2009
I'm affraid I don't pay to much attention to my web page. but I have to restore the index file from backup 24.
I don't really undertand how they managed to modify both microsites using memht portal but I guess they did as is the same people as the rest of webs hacked.
if you want to check my site. it will be available back soon. after I do abit more of research. (now the firewall is lock up)
it was a nasty surprise.
anyway thanks for the fix.
by the way I've got the apache logs. if you whant to investigate deeper how they might done it. they are not so big. :-) after remove the normal trafic.
|
|
 |
| |
rudykaka Exalted Member
Posts: 574

Gender:  Online: No
Country: Espaņa Languages: English, Espaņol Version: waiting for 5 |
Date: 29/11/2009 12:12 Re: My Homepage was hacked.... | #post22689 | oh no  , i think he iz the same sick minded guy who hacked many memht member's websites, he iz claiming he will attack all the websites against Islam. |
|
 |
| |
slashado Donator
Posts: 323

Gender:  Online: No
Version: 4.0.1 Country: Brasil Languages: Portuguęs, Inglęs (via Google), e todas as outras (via google) |
Date: 29/11/2009 12:27 Re: My Homepage was hacked.... | #post22691 | Yet none of my hacked, but the attacks have come to Brazil ... Brazilian Community in 2 have claimed the attacks.
But if my hacking, I'm going after the bastards to hell!  |
|
 |
| |
rudykaka Exalted Member
Posts: 574

Gender:  Online: No
Country: Espaņa Languages: English, Espaņol Version: waiting for 5 |
Date: 29/11/2009 12:31 Re: My Homepage was hacked.... | #post22692 | ya right slashado, we must put an end for those stupid asses! |
|
 |
| |