Unstoppable Domains โ€” AI Assistant

Hacked !

SpaceshipSpaceship
Watch

pac

Established Member
Impact
0
Urghh, Mosavi1986 hacked and took out my entire site and all my 'for sale domains' last night.

Googling Mosavi1986 appears that he has been a busy boy, has anyone else been attacked ??

Crankshaft
 
0
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
GoDaddyGoDaddy
At the risk of sounding completely ignorant... I've never heard of Mosavi1986 before. Anyone care to inform me who he is ?
 
0
•••
0
•••
http://www.nflnow.net/forumshacked/

Got me too. Fortunately enough for me it was just the vB files which I easily downloaded again.

He got into mine on a CHMOD 0777 mistake on my part.
 
0
•••
He hacks websites that have to do with domains? How do you know its him? What did he do with your "for Sale" section?

Anyways, look out NAMEPROS!
 
0
•••
Hi, yep I was chmod 777 too, just changed to 711. As I host all my domain names 'dynamically' using one site & effectively 1 page, he took them all down. it's still down as I have asked my hosting company to investigate before I restore the site.

Fortunately I have automatic nightly backups, so all I will loose is the pagehits file for a few hours.

Crankshaft
 
Last edited:
0
•••
iggy said:
He hacks websites that have to do with domains? How do you know its him? What did he do with your "for Sale" section?

Anyways, look out NAMEPROS!
From what I've seen he just looks for sites that have folders CHMOD'd to 0777, gains access to that folder, deletes all pages and leaves his calling card (See my link for the page). I don't think there's a pattern of subjects he's going after, just 0777's.

And I doubt NamePros has to worry. I would think they'd be smarter than to leave a important folder open like that. I could be wrong though.
 
0
•••
Don't you still need physical access to the server inorder to touch any 777 chmod folder?
 
0
•••
Why does everyone think 777 is a security risk? Its not.
 
0
•••
You need to keep your machines uptodate keep an eye on all upcoming new exploits and their patches.Most of the time it is our negligence or hosting providers negligence to not to keep servers upto date.
 
0
•••
I understand that with chmod 777, some of the php scripts have security holes which hackers exploit to upload / edit files.

Crankshaft
 
Last edited:
0
•••
Just had another sub-site hacked by same hacker, CHMOD 777 again, so beware !
 
0
•••
0
•••
Hi Peter, hmm that thread is interesting, but the only folder which was CHMOD 777 on the site was hacked, the others were not touched.
 
0
•••
pac said:
Hi Peter, hmm that thread is interesting, but the only folder which was CHMOD 777 on the site was hacked, the others were not touched.

Sounds like a dodgy/out of date script to me. What was in the hacked dir?
 
0
•••
Dynadot โ€” .com TransferDynadot โ€” .com Transfer
Spaceship
Domain Recover
NameMaxi - Your Domain Has Buyers
  • The sidebar remains visible by scrolling at a speed relative to the pageโ€™s height.
Back