NamePros
Welcome, Guest! Ready to make a name for yourself in the domain business? We welcome both the hobbyist and professional domainer to join the discussion as part of the NamePros community.

Click here to create your profile to start earning reputation for posting, and trader ratings for buying & selling in our free e-marketplace. Build your trader rating with each successful sale. Our system has tracked over 100,000 sales and counting!
FAQ & TOS Register Search Today's Posts Mark Forums Read

Go Back   NamePros.com > Domain Name Discussion Forums > Domain Names > Domain Name Discussion
Reload this Page My website was HACKED BY iskorpitx (Turkish Hacker)

Domain Name Discussion The place for general domain name related discussions.

Advanced Search


Closed Thread
 
LinkBack Thread Tools
Old 08-28-2008, 09:16 AM THREAD STARTER               #1 (permalink)
www.JamesDavid.com
 
JamesDavid's Avatar
Join Date: Dec 2006
Location: South Suburbs of Chicago
Posts: 776
JamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to behold
 


Diabetes

My website was HACKED BY iskorpitx (Turkish Hacker)


a bunch of my minisites were hacked by this guy and now it puts me back about 4 months on my mini site development. All my CMS installs are trashed... I mean what the hell, why woudl someone do this? My web hosting service downed my entire server till I clean everything up and now my web hosting clients are calling me asking why their sites and emails are down..

It is sick some guy gets his kicks from this.
JamesDavid is offline  
Old 08-28-2008, 09:28 AM   #2 (permalink)
lzy
Senior Member
Join Date: Oct 2006
Posts: 3,118
lzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant futurelzy has a brilliant future
 


Protect Our Planet Save a Life Child Abuse
Sorry to hear.

No backups?
__________________
...
Last edited by lzy; 08-28-2008 at 09:35 AM.
lzy is offline  
Old 08-28-2008, 09:44 AM THREAD STARTER               #3 (permalink)
www.JamesDavid.com
 
JamesDavid's Avatar
Join Date: Dec 2006
Location: South Suburbs of Chicago
Posts: 776
JamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to behold
 


Diabetes
Originally Posted by lzy
Sorry to hear.
????: NamePros.com http://www.namepros.com/domain-name-discussion/508395-my-website-hacked-iskorpitx-turkish-hacker.html

No backups?

No backups. I guess my web host has backups, at least they advertise that, but first I have to get my sites back up for my clients. It just upsets me.....
JamesDavid is offline  
Old 08-28-2008, 09:47 AM   #4 (permalink)
NameBio.com Founder
 
Spade's Avatar
Join Date: Sep 2006
Location: Carlsbad, CA
Posts: 7,855
Spade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond reputeSpade has a reputation beyond repute
 

Member of the Month
MOTM May 2007Member of the Month
MOTM October 2007
Animal Rescue AIDS/HIV
Originally Posted by SMBGeek
No backups. I guess my web host has backups, at least they advertise that, but first I have to get my sites back up for my clients. It just upsets me.....
Wow, thats incredibly frustrating. Sorry to hear your going through this. Any idea how they hacked into the host? Security breach? Password?
__________________
Read my Blog!
NameBio.com - Search The Domain Sales Index
Buying LLLL.com's ending in "CA"
Spade is offline  
Old 08-28-2008, 09:50 AM   #5 (permalink)
NamePros Regular
 
alex_d's Avatar
Join Date: May 2005
Posts: 903
alex_d is a name known to allalex_d is a name known to allalex_d is a name known to allalex_d is a name known to allalex_d is a name known to allalex_d is a name known to all
 



Definately speak to your hosts and see if there is anything they can do to help you. Hopefully, they will have backups of all the files you had on the server.

Good luck.

Alex
__________________
Page Rank is dead - It's the SERPs that count. What's your Serp Rank ?
Παιχνιδια


OnlineTravel.tv | OnlineHotels.tv | OnlineCasinos.tv
alex_d is offline  
Old 08-28-2008, 10:02 AM   #6 (permalink)
Senior Member
Join Date: Jun 2004
Location: Malaysia
Posts: 1,147
Albert has much to be proud ofAlbert has much to be proud ofAlbert has much to be proud ofAlbert has much to be proud ofAlbert has much to be proud ofAlbert has much to be proud ofAlbert has much to be proud ofAlbert has much to be proud of
 



Are you a web developer? Always keep your software up to date and backup.

People(hacker) does that for fun or popularity.
Albert is offline  
Old 08-28-2008, 11:40 AM   #7 (permalink)
Senior Member
 
copper's Avatar
Join Date: Dec 2006
Posts: 1,212
copper is a splendid one to beholdcopper is a splendid one to beholdcopper is a splendid one to beholdcopper is a splendid one to beholdcopper is a splendid one to beholdcopper is a splendid one to beholdcopper is a splendid one to behold
 



Did any of your sites or your clients site use Joomla?
Security Vulnerability was found recently and need to upgrade to 1.5.6
copper is offline  
Old 08-28-2008, 01:06 PM   #8 (permalink)
GF
Domain Buyer
 
GF's Avatar
Join Date: Jan 2008
Location: Orange County, CA
Posts: 5,186
GF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatnessGF Has achieved greatness
 

Member of the Month
November 2008
SIDS Adoption Baby Health Autism Child Abuse Autism Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009
My suggestion is to not publicize the hacker's name... That's what turns them on.
__________________
GF is offline  
Old 08-28-2008, 01:08 PM THREAD STARTER               #9 (permalink)
www.JamesDavid.com
 
JamesDavid's Avatar
Join Date: Dec 2006
Location: South Suburbs of Chicago
Posts: 776
JamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to behold
 


Diabetes
Originally Posted by copper
Did any of your sites or your clients site use Joomla?
????: NamePros.com http://www.namepros.com/showthread.php?t=508395
Security Vulnerability was found recently and need to upgrade to 1.5.6
Yes all my Joomla sites that were not recent ones got nailed....... I think it should be the same as stealing and these guys should be pursued.
JamesDavid is offline  
Old 08-28-2008, 01:15 PM   #10 (permalink)
Senior Member
 
maxeaus's Avatar
Join Date: Aug 2008
Location: Australia
Posts: 1,815
maxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant futuremaxeaus has a brilliant future
 


Autism
Ah, JOOMLA, the hackers favourite im afraid. JOOMLA is notorious for hacks, and quite frankly i NEVER published my gambling site on the JOOMLA forum for this very reason. The problem is many external applications have gaping security holes. There are far too many JOOMLA experts around who do this for fun im afraid. You may need a JOOMLA ninja to help fix all this up, but again, you need one you can trust. Im very sorry to hear this, i feel for you.
maxeaus is offline  
Old 08-28-2008, 01:20 PM   #11 (permalink)
Senior Member
 
Ross's Avatar
Join Date: Nov 2007
Posts: 2,132
Ross has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant futureRoss has a brilliant future
 


Cancer Survivorship Breast Cancer
I know of some hackers that actually hack your systems and then send you an e-mail displaying what they did to hack your site and remind you of security. I guess its what you deserve in some respect. Also a reminder KEEP BACK UPS! Talk with you host and see whats up. Good luck and hope everything comes out ok.
Ross is offline  
Old 08-28-2008, 02:28 PM   #12 (permalink)
Domains my Dominion
 
sdsinc's Avatar
Join Date: Aug 2005
Location: Web 1.0
Posts: 9,602
sdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatnesssdsinc Has achieved greatness
 


Third World Education Find Marrow Donors! Find Marrow Donors! Find Marrow Donors! Find Marrow Donors! Animal Rescue Animal Cruelty AIDS/HIV Animal Rescue Wildlife Breast Cancer Animal Rescue Wildlife
If I could give you some advice, maintain critical sites (clients) and yours on different servers.

Make sure your host has backup but don't just rely on their word. Verify and test the backups. I also perform my own backups and they are automatically uploaded to a remote location just in case...

Last but not least be careful with third party software. Joomla has a history of security vulnerabilities. It's important to have up-to-date versions of pretty much everything.
Good luck
__________________
NameNewsletter.com - free lists of available domain names
ZoneFiles.net (beta) - ccTLD and gTLD droplists
sdsinc is offline  
Old 08-28-2008, 02:56 PM   #13 (permalink)
Account Closed
Join Date: Sep 2007
Posts: 556
st0rmer is a splendid one to beholdst0rmer is a splendid one to beholdst0rmer is a splendid one to beholdst0rmer is a splendid one to beholdst0rmer is a splendid one to beholdst0rmer is a splendid one to behold
 



I had all my web sites hacked a few weeks a go as well. I too didn't have any backups at the time. I still haven't managed to set everything right yet, and i've lost quite a bit of content.
st0rmer is offline  
Old 08-28-2008, 04:40 PM   #14 (permalink)
NamePros Member
 
TechQueen's Avatar
Join Date: Sep 2007
Posts: 148
TechQueen is on a distinguished road
 



The old version of Joomla (1.5.5) has some serious security issue. Upgrade to Joomla 1.5.6.

Also what ever CMS you are using, make sure that you are downloading the script from the orginal website. This is very important, b'cos hackers play a lot with open source scripts.
__________________
Effects.TV - Considering Offers PM me
TechQueen is offline  
Old 08-28-2008, 04:43 PM THREAD STARTER               #15 (permalink)
www.JamesDavid.com
 
JamesDavid's Avatar
Join Date: Dec 2006
Location: South Suburbs of Chicago
Posts: 776
JamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to beholdJamesDavid is a splendid one to behold
 


Diabetes
I really appreciate everyones advice. Is there a subforum on NP dedicated to security risks and such. Maybe there should be. just a thought...
JamesDavid is offline  
Old 08-28-2008, 04:47 PM   #16 (permalink)
Part-Time Zombie
 
whitebark's Avatar
Join Date: Jul 2006
Location: Canada
Posts: 3,495
whitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond reputewhitebark has a reputation beyond repute
 


Protect Our Planet
Always always always keep multiple backups of any critical work. I keep three - on my work computer hard drive, on an external hard drive that I don't keep connected to my network, and on cd disc. I keep the collection of cd discs outside my home office as well - that way if my home office is robbed/burned down etc I always have copies safe elsewhere.

It's a pain in the arse to do all that but it's much easier than recreating a website!
whitebark is offline  
Old 08-28-2008, 04:54 PM   #17 (permalink)
Senior Member
 
Shenron's Avatar
Join Date: Jan 2008
Location: Portugal
Posts: 1,430
Shenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant futureShenron has a brilliant future
 



If you sell services you need to have a decent disaster recovery plan and a flawless backup plan.

Regarding backups, here's what I do: (hope it helps)

1 - Automatic backup my server DAILY! (It's 30 GB of data) to a different backup server. I mean FULL backup.
2 - I retain weekly copies and monthly copies of all the sites I own.
????: NamePros.com http://www.namepros.com/showthread.php?t=508395
3 - I make a full automatic download of all weekly data to my own Home server.
4 - I backup my own home server daily to a different disk outside the server.
5 - I copy all the main files to a 4GB pen drive I keep on my neck all the time.

Am I nuts? Well, if your sites earned you thousands of dollars per month I'm sure you'd be nuts too.
__________________
Shenron is offline  
Old 08-29-2008, 04:54 PM   #18 (permalink)
NamePros Member
Join Date: Aug 2003
Posts: 162
fattee77 is an unknown quantity at this point
 



Most of the times, he only replaces the index page. Perhaps your original is still available?
fattee77 is offline  
Old 08-29-2008, 05:10 PM   #19 (permalink)
DNMedia.com
 
Michael's Avatar
Join Date: Jul 2007
Location: Maryland
Posts: 1,866
Michael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond reputeMichael has a reputation beyond repute
 


Breast Cancer Cancer Survivorship Myanmar Relief Parkinson's Disease Child Abuse Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009 Help The Homeless - Holiday 2009
Sorry to hear that man, hopefully you can get it cleared up without too many headaches. This is a good reminder for everyone to back up their sites.
Michael is offline  
Old 08-29-2008, 06:11 PM   #20 (permalink)
www.demonised.com

 
RicoShay's Avatar
Join Date: May 2007
Location: London (UK)
Posts: 2,956
RicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond reputeRicoShay has a reputation beyond repute
 


Tsunami Relief Protect Our Planet Save a Life Child Abuse
Yeah very good reminder, I'm going to do some back-ups right now.

I feel for you. And I know how it feels, I had two sites running on Joomla about a year ago. One was a newly built client site, the other a music site. Both were hacked. Turned into phishing sites for banks.

The worst part is that my music site had a lot of interest from well known clubs and record companies and it was also making me over $1k per month. Unfortunately the back-ups I had were too old and I did a lot of custom coding which were all lost. It also happened at the worst possible time - when I was moving homes and starting a new business... I never recovered the site and even now the site/domain gets 2-3k visitors per month

Hope you get your stuff sorted. Don't let it get you down, just take it on the chin and think of it as a lesson. You know what they say, whatever doesn't kill you only makes you stronger. Good luck.



btw. if PommyG gives permission - it would be a good idea for a mod/admin to remove the hackers name from the thread title. Last thing you wanna do is give him/her a trophy for what was done!
????: NamePros.com http://www.namepros.com/showthread.php?t=508395

__________________
FOR SALE @ NamePros:
TDJ.in + RLI.in + EDE.in + ATJ.in + more | NEW YEARS SALE - Upto 40% OFF!
RicoShay is offline  
Old 08-29-2008, 10:53 PM   #21 (permalink)
I'll do it
 
-Nick-'s Avatar
Join Date: Dec 2005
Location: India
Posts: 6,927
-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness-Nick- Has achieved greatness
 


Member of the Month
September 2007
Adoption
Just take regular backups and keep uploading them everytime they mess up with it.

They have nothing to earn from this but you have to earn from it. So 1 of you will get frustrated in end and it should be them
-Nick- is offline  
Old 08-29-2008, 11:37 PM   #22 (permalink)
NamePros Legend
 
weblord's Avatar
Join Date: Dec 2005
Location: Philippines - www.Nabaza.com
Posts: 19,785
weblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatnessweblord Has achieved greatness
 


Autism Protect Our Planet
sorry to hear this. your hosting provider might have backups or you can work your way on un uploaded files from your computer.
__________________
Nabaza.com - Amaia
weblord is offline  
Old 08-30-2008, 05:53 AM   #23 (permalink)
NamePros Regular
Join Date: Oct 2007
Location: Global roaming
Posts: 813
nmridul has much to be proud ofnmridul has much to be proud ofnmridul has much to be proud ofnmridul has much to be proud ofnmridul has much to be proud ofnmridul has much to be proud ofnmridul has much to be proud ofnmridul has much to be proud of
 



Save a Life Save a Life Save a Life Save a Life Save a Life Animal Rescue Save a Life Cystic Fibrosis Wildlife Save a Life
Sorry to hear about this. I wish your host has backups to recover what you lost.

Even if we have backups, it is the effort to bring the site back to normal and ensuring that it will not be hacked again that is the major worry. I take regular backups. But if the site is down for a week, I lose visitors and it bombs my search engine position. It vanishes from Google results if it is down for a week. And if search engine is your major visitor feed, then it is going to cost you more.
nmridul is offline  
Old 08-30-2008, 07:28 PM   #24 (permalink)
NamePros Regular
Join Date: Jun 2005
Posts: 415
dochlaggie will become famous soon enoughdochlaggie will become famous soon enough
 



I had over 30 sites that this happened to early this year. To make it worse I was buying hosting from someone who was buying it from someone else.These people had a falling out and I was in the middle. I do think it was strange that it happened in the middle of this falling out.
It was just a diaster. I lost one major site completely and I am still working to get things back.This diaster has put me so far behind. I lost a major community site I was running, I doubt if I will be able to get the majority of ex users back. Not to mention the major drop in traffic from the search engines while the site was down.
????: NamePros.com http://www.namepros.com/showthread.php?t=508395

I am now very concerned about the security of word press, joomla and drupal type sites. I have a couple of hundred word press sites which I am now converting with xsitepro [ no I am nothing to do with this company} to ordinary html sites.

The problem with the joomla, drupal. wordpress type sites, is there is some sort of update every week or so. If you have a few hundred sites, you spend all your time updating sites to the latest version. Then a complete new version comes out, and guess what half the plug in's you use to make your site are not updated to work with the newer version.

Keeping your site up to date does not always work [ it does help}.

I use coppermine on about 6 sites. The scripts where up to date and a week later all the coppermine galleries where hacked.

Maybe with drupal's multisite feature you get around this by having one installion for a hundred sites, but I am concerned about traffic from search engines when you do this.

The hackers- all I think is -what a waste of time and energy.
I struggle so much on the internet and would love to be more talented.
I just wish the hackers would put there talents into better things.
dochlaggie is offline  
Closed Thread


LinkBacks (?)
LinkBack to this Thread: http://www.namepros.com/domain-name-discussion/508395-my-website-hacked-iskorpitx-turkish-hacker.html
Posted By For Type Date
iSKORPiTX Footprints … Recovering a iSKORPiTX Hacked Site « Azghanvi's Technical Research Playground This thread Refback 11-20-2011 09:56 PM
iSKORPiTX Footprints … Recovering a iSKORPiTX Hacked Site « Azghanvi's Technical Research Playground This thread Refback 05-09-2011 03:55 AM

Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools


Liquid Web Smart Servers  
All times are GMT -7. The time now is 09:10 PM.

Managed Web Hosting by Liquid Web
Domain name forum recommended by Domaining.com Powered by: vBulletin® Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.6.0 Ad Management plugin by RedTyger