Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Blocks
Author Message
the-legend
New Member
New Member



Joined: Nov 08, 2007
Posts: 18

PostPosted: Wed Jan 07, 2009 4:21 am Reply with quote

Hello. I have a problem with something and i have searched sites and cannot find anything relating to this sort of problem. Every block on my site has this

Code:
d3d3LnRoZS1kZXZpbHMtZHVuZ2Vvbi5jb20=.d3d3LnRoZS1kZXZpbHMtZHVuZ2Vvbi5jb20=.LzFEdW5nZW9uMS8=.TW96aWxsYS80LjAgKGNvbXBhdGlibGU7IE1TSUUgNy4wOyBXaW5kb3dzIE5UIDUuMTsgLk5FVCBDTFIgMS4xLjQzMjIp.NTguMTA1LjU3LjE4OQ==.


As the title on every block on my site. Not sure if someone has hacked my site or what. It has made a mess of the blocks with the title pushing everything across to the right. If anyone knows of a prob like this could you help and point me to any links that may resolve this sort of problem. Thanks
 
View user's profile Send private message
Nukeum66
Life Cycles Becoming CPU Cycles



Joined: Jul 30, 2003
Posts: 551
Location: Neurotic, State, USA

PostPosted: Wed Jan 07, 2009 11:08 am Reply with quote

Can you change it in the blocks admin, by editing the custom title for the block ?

_________________
Scott Johnson MIS Ubuntu/Linux 11.10 
View user's profile Send private message Visit poster's website
fkelly
Former Moderator in Good Standing



Joined: Aug 30, 2005
Posts: 3312
Location: near Albany NY

PostPosted: Wed Jan 07, 2009 2:20 pm Reply with quote

First, if someone was able to hack your site to put this title in then you need to deal with that problem and eliminate their ability to access the site first. Otherwise they will just be able to do it again. Figure out when this happened and check your logs for just before that time and see what happened. Change your admin passwords, and any passwords for FTP and/or Cpanel or the like.

Once that's done you could establish the "official" titles for each block from the SQL used to load the database in the installation directory. Look for the default data loaded into the "title" field of the blocks table. You could use PHPmyadmin to edit in this data to your existing blocks table, if nothing else is wrong. Or you could do as Nukeum66 said and use the blocks editor.
 
View user's profile Send private message Visit poster's website
evaders99
Former Moderator in Good Standing



Joined: Apr 30, 2004
Posts: 3221

PostPosted: Wed Jan 07, 2009 11:44 pm Reply with quote

Pretty sure its a hack. Looks like its base64 encoded

Decoded reveals
Code:


www.the-devils-dungeon.com?ýÝÝܹѡ”µ‘•Ù¥±Ìµ‘Õ¹•½¸¹½´ÿòóGVævVöãóÿÓ[Þš[KÍ Œ
ÛÛ\]X›NÈTÒQHËŒÈÚ[™ÝÜÈ•KŒNÈ “‘UÓˆ KŒK ÌŒŠ58.105.57.189ÿü��

_________________
- Only registered users can see links on this board! Get registered or login! -

Need help? Only registered users can see links on this board! Get registered or login! 
View user's profile Send private message Visit poster's website
the-legend







PostPosted: Thu Jan 08, 2009 6:54 am Reply with quote

Thanks for all replies. What imma do is delete the folder after I have backed up pics and stuff. I have another question which seems have me puzzled is I have downloaded the latest raven nuke and installed it without any problems but whats disturbing is i have not given anyone a link and i start seeing Guest IP addys in the site info block. I have gone through all files i have that have members ips in them and have started blocking them all in a range cause when i do a search on the ips i seem to get places like POLAND and unknown places so all i can think of is someone is trying to hack it again. Whats the best way to prevent these people accessing the site.
 
fkelly







PostPosted: Thu Jan 08, 2009 8:53 am Reply with quote

You can block individual countries through Sentinel's IP2country facility but that won't stop, completely, hackers from visiting your site. Generally if you have Sentinel installed and configured correctly you won't get hacked. You can look at tracked IP's to see what the hackers are up to also. You might want to activate http_auth (instructions are in the how to install manual in the distribution) as an additional level of protection.

Once you put a site on the Internet people are going to visit you from all over. You don't have to advertise to have that happen nor can you stop it.
 
Display posts from previous:       
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> Blocks

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©