NamePros
Welcome, Guest! Ready to make a name for yourself in the domain business? We welcome both the hobbyist and professional domainer to join the discussion as part of the NamePros community.

Click here to create your profile to start earning reputation for posting, and trader ratings for buying & selling in our free e-marketplace. Build your trader rating with each successful sale. Our system has tracked over 100,000 sales and counting!
FAQ & TOS Register Search Today's Posts Mark Forums Read

Go Back   NamePros.com > Domain Name Discussion Forums > Domain Names > Domain Newbies
Reload this Page My sites keep getting hacked

Domain Newbies New to domain names? Have your questions answered here.

Advanced Search


Closed Thread
 
LinkBack Thread Tools
Old 08-21-2006, 07:32 PM   #26 (permalink)
First Time Poster!
Join Date: Aug 2006
Posts: 1
rebeccawakes is an unknown quantity at this point
 



U should have chose a webhost with that provides an external firewall dude. if ur host provides an external hardware firewall with your server then get it.If not, i use:

www.hostmywebsitenow.com

click on 'web hosting' then 'dedicated server'.they only provide an external hardware firewall for dedicated servers.scroll right down to the bottom left hand side of the page to see the firewall.

u said u have all ur domains with ur host so u don't want to transfer them. I'm sure u can keep ur domain names on ur current host and have a web server with another host can't u? maybe someone on here can help u with that.
rebeccawakes is offline  
Old 08-21-2006, 09:02 PM   #27 (permalink)
NamePros Regular
 
Virgil's Avatar
Join Date: May 2004
Posts: 958
Virgil is a name known to allVirgil is a name known to allVirgil is a name known to allVirgil is a name known to allVirgil is a name known to allVirgil is a name known to allVirgil is a name known to allVirgil is a name known to all
 



Uploading scripts that allow 'uncommon' filetypes are easy prey for exploits. If you allow a file extension to be uploaded, but forget to assign a mime type, that can be the way in , even to the whole server. An example: If you allow users to upload "corel draw files" (.cdr) and it's not a registered mime type, anyone could gain access to your files.
Last edited by virgil; 08-21-2006 at 09:31 PM.
Virgil is offline  
Old 08-22-2006, 12:04 PM   #28 (permalink)
Senior Member
 
liquidcherry's Avatar
Join Date: Jul 2006
Location: in my dreams
Posts: 2,624
liquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond reputeliquidcherry has a reputation beyond repute
 


Ethan Allen Fund Animal Rescue Protect Our Planet Save a Life Wildlife Help The Homeless - Holiday 2009

Idea


First of all, have you talked to 1and1?.(Looks like you didn't because this thread is over 1 month old?)

The most common thing what Hackers are doing is installing a so called backdoor on the server where your Site is hosted. I assume you are using shared hosting, so other Users what are on the same server could be affected, too. It is useless to upload a cleaned index file because of the backdoor proggi what is running behind the scenes.
????: NamePros.com http://www.namepros.com/domain-newbies/216074-my-sites-keep-getting-hacked.html

Another idea( just kidding): get in contact with another hackergroup, they could hack the site of the romanians....hacker like to "deface" each other!

So, kick 1and1's a@#, it is a shame that your site is still hacked (Contact me if you want good advice in hosting)

Frank
liquidcherry is offline  
Old 08-22-2006, 04:58 PM   #29 (permalink)
NamePros Regular
Join Date: Feb 2004
Posts: 682
wisconsin is just really nicewisconsin is just really nicewisconsin is just really nicewisconsin is just really nicewisconsin is just really nice
 



Originally Posted by combs84
I left this one up:
http://sportslogs.com
????: NamePros.com http://www.namepros.com/showthread.php?t=216074

Why is this happening and what precautions can be takin so it doesn't happen again? So far i've just uploaded the index file back over it from my local drive. but this one i was unable to save.

Nobody knows my passwords or anything...any ideas?

you are not alone. Check out this:

http://www.poolsucks.com
wisconsin is offline  
Old 08-22-2006, 05:34 PM   #30 (permalink)
Senior Member
 
RickyG's Avatar
Join Date: Jul 2004
Location: Boston
Posts: 1,532
RickyG is a glorious beacon of lightRickyG is a glorious beacon of lightRickyG is a glorious beacon of lightRickyG is a glorious beacon of lightRickyG is a glorious beacon of lightRickyG is a glorious beacon of lightRickyG is a glorious beacon of lightRickyG is a glorious beacon of light
 



Scares me evry day that a hacker wil beat my securty on my server. As a webhost you have to stay 1 step ahead of them and at times it is tough!

Work with 1 and 1. To late to prevent it, but they can hel in the future.
1 more word of advice...BACK UP<>BACK UP !!
RickyG is offline  
Old 08-27-2006, 04:18 AM   #31 (permalink)
NamePros Member
Join Date: May 2006
Posts: 133
spacetrain will become famous soon enoughspacetrain will become famous soon enough
 



Seems me reporting this worked, there domain is now in a redemption period soon to be deleted. (the hackers domain)
spacetrain is offline  
Old 08-27-2006, 09:46 AM   #32 (permalink)
Account Suspended
 
aZooZa's Avatar
Join Date: Oct 2005
Location: UK
Posts: 27
aZooZa is infamous around these partsaZooZa is infamous around these partsaZooZa is infamous around these partsaZooZa is infamous around these partsaZooZa is infamous around these partsaZooZa is infamous around these partsaZooZa is infamous around these partsaZooZa is infamous around these parts
 



Tip: Never forget to follow the instructions provided in any PHP script which tell you to DELETE installation/admin/config files.
aZooZa is offline  
Closed Thread


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools


Liquid Web Smart Servers  
All times are GMT -7. The time now is 01:12 AM.

Managed Web Hosting by Liquid Web
Domain name forum recommended by Domaining.com Powered by: vBulletin® Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.6.0 Ad Management plugin by RedTyger