View Full Version : Gary Web site info, topic changed
Cryofix
12-04-2006, 10:08 AM
Seems Gary may have been hacked by a Turkish anti terror hacker group. when you goto the page it asks to activate an active control make sure oyu DO NOT accept it
I dont want to announce this outside of this forum but please quitely make people aware of this.
I had this happen to my sites all the time when I was on a insecured shared host, I dont think its maliscios(sp) but oyu can never be too carefull.
Gary if you need assistance with your site contact me in PM I can help.
Also if anyone knows a number Gary can be reached at please call him and let him know.
DebianDog
12-04-2006, 11:19 AM
Taking bets if they are running windows.
<Drum roll>
DebianDog
12-04-2006, 11:20 AM
:twisted: YEP :twisted:
GGoodrum
12-04-2006, 11:29 AM
Yipes! You are right! :shock: I will look into this immediately! Thanks.
Motions
12-04-2006, 12:41 PM
Gary, can I interest you in a good linux server? :smokin:
I was about to order another motor too.
GGoodrum
12-04-2006, 01:11 PM
I guess this is what I get for using a shared web service provider...
So far, it isn't too bad. I'm just having a heck-of-a-time finding where the silly code was inserted. They've done a pretty good job of hiding it.
-- Gary
DebianDog
12-04-2006, 01:50 PM
Best to wipe it and restore from your home computer. I only use Linux shared hosting and have been hack free over 5 years. Lunarpages.com
Cryofix
12-04-2006, 05:40 PM
I managed to get Gary all cleaned up today and fixed his security hole, this should never happen again :D
MLaBoyteaux
12-04-2006, 06:01 PM
I just leased a dedicated Windows server with 8 IP addresses. I was considering going with ThePlanet because they're here in Dallas, but didn't. Care to share how they got in so I can make sure my websites are not vulnerable to the same hack?
GGoodrum
12-04-2006, 06:33 PM
Yes, thanks heaps to Cryofix! :lolol I'd still be scratching my head, trying o figure out what happened without his help! He's da man, for sure! :D
It turns out my problem was insecurity in the database. They were able to exploit a weakness in accessing the DB that I wasn't aware of, but now that is sorted out and that hole has bee "plugged".
I'm still getting things updated, and more secure. Everything works now except the final part of the checkout procedure which I will enable once I complete the update. Shouldn't be too much longer. :)
Man, this is nasty stuff!
-- Gary
Motions
12-04-2006, 06:44 PM
Is it safe to order my motor now Gary? :wow2:
GGoodrum
12-04-2006, 08:00 PM
I'm still trying to sort out installing the latest shopping cart update. Until I get that finished, you can PM or email what you want and I'll do a manual transaction.
Thanks -- Gary
GGoodrum
12-04-2006, 08:09 PM
Okay, the update is complete and everything is enabled again. Thanks again to Crofix for helping me get this sorted out today. It is now a VERY secure site. I should of done this before. I am lucky this only cost me a day!
-- Gary
Cryofix
12-05-2006, 11:36 AM
Np man happy to help out any time, glad your back and running.
DebianDog
12-05-2006, 11:38 AM
SQL injection?
Cryofix
12-05-2006, 11:45 AM
sorta, was actually a very easy hack, not detrimental at all. they were able to obtain the admin password from the MDB file and then add stuff to the site as if they were the admin.
its all fixed though and very safe.
DebianDog
12-05-2006, 12:56 PM
Ah cool. Them boys got some PHP sites I frequent too. bastarges!
GGoodrum
12-05-2006, 12:59 PM
Yeah, I got off pretty lucky. They could've done some real damage. Now it is safe, and backed up! I haven't been to good about doing this, but I will from this point forward. :)
-- Gary