PHP Web Host - Quality Web Hosting For All PHP Applications $35/month $250/year (Unlimited) - $25/month - 200,000 impressions - Your Ad Could be Here - Click For Details
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
morpheus_75
Involved
Involved


Joined: Oct 07, 2003
Posts: 302

PostPosted: Mon Apr 26, 2004 10:54 am Reply with quote Back to top

Pls guys I need your help. Someone hacked my site and made himself God Admin!!! Obviously I am God Admin too, but I don't know how to delte him and how to prevent him from doing it again!!! What can I do?? Sad
View user's profile Send private message
morpheus_75
Involved
Involved


Joined: Oct 07, 2003
Posts: 302

PostPosted: Mon Apr 26, 2004 11:04 am Reply with quote Back to top

OK, I deleted him using mysql... but how to stop him from hacking my site again? Shocked ??
View user's profile Send private message
bones
Hangin' Around


Joined: Sep 18, 2003
Posts: 36

PostPosted: Mon Apr 26, 2004 11:11 am Reply with quote Back to top

go to
Only registered users can see links on this board!
Get registered or login to the forums!
and download ravens SQL Injection Hack Alert script. that should stop him.
View user's profile Send private message Visit poster's website
morpheus_75
Involved
Involved


Joined: Oct 07, 2003
Posts: 302

PostPosted: Mon Apr 26, 2004 11:20 am Reply with quote Back to top

bones wrote:
go to
Only registered users can see links on this board!
Get registered or login to the forums!
and download ravens SQL Injection Hack Alert script. that should stop him.


I already have that script on. But I didn't receive any alert email and in any case I can't understand HOW he succeeded in becoming GOD ADMIN!!!
View user's profile Send private message
chatserv
The Mouse Is Extension Of Arm


Joined: May 02, 2003
Posts: 1393

PostPosted: Mon Apr 26, 2004 11:35 am Reply with quote Back to top

Only registered users can see links on this board!
Get registered or login to the forums!
View user's profile Send private message Visit poster's website
morpheus_75
Involved
Involved


Joined: Oct 07, 2003
Posts: 302

PostPosted: Mon Apr 26, 2004 12:03 pm Reply with quote Back to top

Thanks Chat! Smile
I've just applied your fix. I have a question for you. In your opinion, how did the hacker suceed in becoming God Admin? Did he enter mysql DB? Od did he hack some file via web?
View user's profile Send private message
chatserv
The Mouse Is Extension Of Arm


Joined: May 02, 2003
Posts: 1393

PostPosted: Mon Apr 26, 2004 12:13 pm Reply with quote Back to top

Have you opened any pm that had a broken image in it? other than that they could have inserted the code through any vulnerable section of code.
View user's profile Send private message Visit poster's website
morpheus_75
Involved
Involved


Joined: Oct 07, 2003
Posts: 302

PostPosted: Mon Apr 26, 2004 12:29 pm Reply with quote Back to top

chatserv wrote:
Have you opened any pm that had a broken image in it? other than that they could have inserted the code through any vulnerable section of code.


No, but I noticed that many PMs (not only sent by me) do not reach the users Confused and the site is quite slow...
Btw... do u think ur fix will prevent him from succeeding again?
View user's profile Send private message
morpheus_75
Involved
Involved


Joined: Oct 07, 2003
Posts: 302

PostPosted: Tue Apr 27, 2004 8:26 am Reply with quote Back to top

AGAIN! My site was hacked again! I found another GOD ADMIN (waraxe2) in the admin menu and there was a change in a news in the home page. How is this possible? Anyone can help?? Sad
View user's profile Send private message
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 14928
Location: Kansas

PostPosted: Tue Apr 27, 2004 8:28 am Reply with quote Back to top

Check your log and find out what he used to hack in. Then PM me the URL he used. In the mean time, rename your admin.php file to something else. This will lock you out too but better safe than sorry right now!
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
chatserv
The Mouse Is Extension Of Arm


Joined: May 02, 2003
Posts: 1393

PostPosted: Tue Apr 27, 2004 8:49 am Reply with quote Back to top

Also email me your admin.php file.
View user's profile Send private message Visit poster's website
morpheus_75
Involved
Involved


Joined: Oct 07, 2003
Posts: 302

PostPosted: Tue Apr 27, 2004 9:07 am Reply with quote Back to top

Thanj you both, guys! I'll do what you've told me to

P.S.: Raven, how can I find out what he used to hack in? In other words... would you tell me how to check my log? Embarassed
View user's profile Send private message
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2008 by Raven
Proud to be listed at Lobo Links Web Directory

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::

:: fisubice Theme Recoded To 100% W3C CSS & HTML 4.01 Transitional Compliance by Raven and 64bitguy ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum