11
Tabasco
Re: Is this serious?!!
  • 2006/8/22 23:29

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


Quote:

Swain wrote:
I would say your problem is just with that particular module. I run PHP5 and have never encountered any problems because of it. If you go with Drupal or Joomla, you are going to wind up losing in the long run in my opinion as both are severly lacking in several areas XOOPS is not. Find another module like magazine, or have someone create one would be my advice.


Ditto



12
Tabasco
Re: Hacked twice today - help.
  • 2006/8/22 23:14

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


Quote:

dwhitten wrote:
Ok, I think I banned my own IP out of accessing the site!

How do I get back in? I put a list of banned IP's into protector. I guess I could edit the db table...

Do you think they logged in through myads or did they actually login as the admin?

Deb


You were suppose to setup an emergency Rescue Password in Protector in case you did that:

If you are banned out from your own site, access XOOPS_URL/modules/protector/admin/rescue.php and input this password.
Don't forget setting the password before you are banned out by some mistakes.
If this option is blank, the script disabling ban IP will never work.


From that script you pasted,it looked like they got in through MyAds to me, but one of the geeks here would be best to answer that.



13
Tabasco
Re: Hacked twice today - help.
  • 2006/8/22 22:59

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


Quote:

Cuidiu wrote:
I wonder if it's possible that they've found a way to get around the myAds fix...
Quote:

Tabasco wrote:
If thats the case, uninstall MyAds.


Why else would would somebody from Turkey want to look at MyAds on a Canadian Horse Show Site?



14
Tabasco
Re: Hacked twice today - help.
  • 2006/8/22 22:50

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


Quote:

dwhitten wrote:
Hmmm, looks like they might have logged in:

85.103.231.97 - - [20/Aug/2006:07:33:48 -0400] "GET /showez/modules/myAds/myAds.jpg HTTP/1.1" 200 2990 "http://www.horseshowsrus.ca/showez/modul es/system/admin.php?fct=preferences" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.0.6) Gecko/20060728 Firefox/1.5.0.6"

Ok, password change coming up...


If thats the case, uninstall MyAds.

That is also a Turkish IP, and Turkey is currently a hotbed for hackershttp://www.zone-h.org/

Information related to '85.103.128.0 - 85.103.255.255'

inetnum: 85.103.128.0 - 85.103.255.255
netname: TurkTelekom
descr: Turk Telekom ADSL-alcatel
country: tr
admin-c: TTBA1-RIPE
tech-c: TTBA1-RIPE
status: ASSIGNED PA
mnt-by: as9121-mnt
source: RIPE # Filtered

role: TT Administrative Contact Role
address: Turk Telekom
address: Bilisim Aglari Dairesi
address: Aydinlikevler
address: 06103 ANKARA
phone: +90 312 313 1950
fax-no: +90 312 313 1949
e-mail: abuse@ttnet.net.tr



15
Tabasco
Re: Hacked twice today - help.
  • 2006/8/22 22:26

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


If your site is being rear ended through your host, he has to fix it. Someone may have admin rights to your host.

On the front end. The less you have exposed (viewable) to non-registered users the better

Turn Register Globals off with a .htaccess file:

php_flag register_globals off

Change your admin password to at least 12 random numbers and letters. Do not use common words, there are dictionary hacks for that. Like this: mKk08JjjUR9a

Make sure all your modules are up to date.

Did you do what Protector suggested under the
Security Advisory tab?

You may have patched MyAds, but that doesn't mean it's not vulnerable.

You can also change registration, so it requires admin approval. You can then google the person that registers, username and email, and see if they are posting in hacking forums.



16
Tabasco
Re: Signature Area
  • 2006/7/28 22:59

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


Anybody have any idea?



17
Tabasco
Signature Area
  • 2006/7/24 0:53

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


There is a limit to the amount of information one can put in the signature area.

I have a couple of members that need to have the signature area increased for more information.

How would I change the amount of information that can be loaded in the signature area?

Thanks,

Tabby



18
Tabasco
Spreadsheet
  • 2006/6/26 12:53

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


What's the best way to display an Excel or OpenOffice spreadsheet in Xoops?


Thanks,

Tabby



19
Tabasco
Re: Hacked and Mangled.
  • 2006/6/20 4:20

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


Quote:

jdseymour wrote:
....don't rely on a host for backups, make sure you keep backups yourself. It makes life much easier.


Those are true words of wisdom!



20
Tabasco
Re: Hacked and Mangled.
  • 2006/6/19 4:48

  • Tabasco

  • Quite a regular

  • Posts: 203

  • Since: 2003/12/26


Do either you or your webhost have a backup?




TopTop
« 1 (2) 3 4 5 ... 13 »



Login

Who's Online

141 user(s) are online (105 user(s) are browsing Support Forums)


Members: 0


Guests: 141


more...

Donat-O-Meter

Stats
Goal: $100.00
Due Date: May 31
Gross Amount: $0.00
Net Balance: $0.00
Left to go: $100.00
Make donations with PayPal!

Latest GitHub Commits