My Icy Was Hacked :(


Subject: My Icy Was Hacked :(
Hi all, my Icy was hacked, I dont know how could happen.

I use htacces and i have the ctracker (i guess).

Is tehere any patch or some security fixes for Icy 1.1.7.22?

RIght now i've uploaded my original files, but im shaking...

Profile PM  
Subject: Re: My Icy Was Hacked :(
have you install this patch?

have you a screen shot? a log file? what's append?

Subject: Re: My Icy Was Hacked :(
hpl wrote: [View Post]
have you install this patch?

have you a screen shot? a log file? what's append?


I dont know where to get the log file.

Hacked By_FatiH - RedLine thats all what says right now

ANd other website is been hacked by DR MÝLÝTAN

I guess is a semi-hacked, because they have modified the index.php an other files. The database is intact... by now.

How can I secure my Icy, after I've installed the last security patch?

Profile PM  
Subject: Re: My Icy Was Hacked :(
It's important to have the register_globals setting to OFF. Can you see on ACP->Info how is set?

Subject: Re: My Icy Was Hacked :(
Please contact MG, he will know better than anyone how to proceed

Subject: Re: My Icy Was Hacked :(
obus3000, most of the times they use frontpage extensions to enter to the server and change the files, check that you FP extensions are unistalled.

Subject: Re: My Icy Was Hacked :(
Try this please.

http://www.icyphoenix.com/viewtopic.php?f=22&t=3278

Subject: Re: My Icy Was Hacked :(
Mighty Gorgon wrote: [View Post]
Try this please.

http://www.icyphoenix.com/viewtopic.php?f=22&t=3278


Thankyou Mighty. I guess now Im a little safer ;)

Profile PM  
Subject: Re: My Icy Was Hacked :(
Please let me know if it happens again.

An extract of the logs of your server would help to find the hole they used.

Subject: Re: My Icy Was Hacked :(
Mighty Gorgon wrote: [View Post]
Please let me know if it happens again.

An extract of the logs of your server would help to find the hole they used.


Sure, I'll do it, but I think they might enter by other script (poor chat).

Thanks again...

Profile PM  
Subject: Re: My Icy Was Hacked :(
obus3000 wrote: [View Post]
Mighty Gorgon wrote: [View Post]
Please let me know if it happens again.

An extract of the logs of your server would help to find the hole they used.


Sure, I'll do it, but I think they might enter by other script (poor chat).

Thanks again...


What happend to the chat?

Profile PM  
Subject: Re: My Icy Was Hacked :(
obus3000, in Ajax Chat?

Please test this lines...

OPEN includes/functions_ajax_chat.php

FIND:
Code: [Download] [Hide] [Select]
/***************************************************************************
*
* This program is free software; you can redistribute it and/or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation; either version 2 of the License, or
* (at your option) any later version.
*
***************************************************************************/

AFTER ADD:
Code: [Download] [Hide] [Select]
if ( !defined('IN_PHPBB') )
{
die('Hacking attempt');
}

Greets


Page 1 of 1


  
You cannot post new topics
You cannot reply to topics
You cannot edit your posts
You cannot delete your posts
You cannot vote in polls
You cannot attach files
You can download files
You cannot post calendar events

   

This is a "Lo-Fi" version of our main content. To view the full version with more information, formatting and images, please click here.

Powered by Icy Phoenix based on phpBB
Generation Time: 0.6929s (PHP: 4% SQL: 96%)
SQL queries: 10 - Debug Off - GZIP Enabled