NukeXchange Network

          

Nuke Sites Link Directory
Nuke Fixes · NukeForums · NukeZone Hosting · NukeUnited · Nuke Sites · Nuke Skins · NukeLance
Nuke Resources
 :: Home  :: Downloads  :: Your Account  :: Forums  :: Advertise :: 
Login or Register
Main Menu
General
 Main
 AvantGo
 Banner_Clients
 cfaq
 Donations
 Downloads
 Forums
 Members_List
 Private_Messages
 Search
 Stories_Archive
 Submit_News
 Surveys
 Topics
 Web_Links
 Your_Account

Your Account
 Login
 Register
 Lost Pass

Modules
Quick Links
· CMS Focus
· Domain Names
. Game Quest
· Learning Linux
. MateMaker
· NukeFixes
· NukeForums
· NukeLance
· Nuke Sites
· Nuke Skins
· NukeZone Hosting
. SearchDevil
Other Options

Download Resources
· Nuke Downloads
· Add a Link
· New Files
· Top Rated
· Most Popular

Web Site Resources
· Nuke Sites
· Add A Site
· New Sites
· Top Rated
· Most Popular

Support
· NukeZone Hosting
· NukeSkins.com
· NukeForums.com
· phpnuke.org
· NukeFixes.com
Information
NukeForums
·decompressing EN-Book-Nuke.tar.tar
·How to allow spaces/gaps/"-" in allowed usernames
·How to Setup PHPNUKE on win2k
·cannot save changes
·voting?
·Nuke forum picture problem
·How to change smtp port on wampserver and windows
·yet another 301 redirect problem
·Image display? - newbie
·php nuke help

read more...
Top10 Links
· 1: Nuke Forums
· 2: PHPNukeFiles
· 3: NukeSkins
· 4: Nuke Templates
· 5: EcomJunk
· 6: MDesign
· 7: Windows Installation: PHP
· 8: FLASH-FOR-NUKE
· 9: Dezina
· 10: Global Dream News Sharing Portal!
Site Visitors
User Login:

Nickname:
Password:
Security Code: Security Code
Type Security Code Here:

Members List Membership:
Latest: GiLli
Today: 2
Yesterday: 1
Overall: 15104

Visitation:
Guests: 506
Members: 1
Total: 507


You are Anonymous user. You can register for free by clicking here
Sponsor Links
php-Nuke Themes and Templates
php-Nuke Themes and Templates

NukeResources :: View topic - My site was hacked yet again..Not sure where to post this..
NukeResources Forum Index

NukeResources Forum Index -> Bug Reports -> My site was hacked yet again..Not sure where to post this..
Post new topic  Reply to topic    View previous topic :: View next topic 
My site was hacked yet again..Not sure where to post this..
PostPosted: Wed Aug 11, 2004 9:29 pm Reply with quote
Desert_Fox
Resource Newbie
Resource Newbie
 
Joined: Jul 09, 2004
Posts: 28
Location: Las Vegas, Nevada




Hi all, this is the second time my site has been hacked. I need to get the site upgraded to 7.4 and install protector and another program.

My question is this, how are they managing the entry to the site? Is this a well known exploit or did someone place a file on my server? (I just want a general idea of what to look for) Is there a common method to attack a Nuke website?

They seem to only do their dirty deed to all the themes the site uses. I have a backup from this morning, but unfortunately my partner and I spent all day working on the site. I was just sitting down to back it up when my partner says we just were attacked. Mad

Grin and bare as they say eh? Rolling Eyes I have a good idea who it may be, a former website I co-owned. Several staff members and regular members had it in for me. No matter if I did know who what could I do right.. Laughing

If someone could kick me a little background on this I would very much appreciate it. Thanks.

_________________
Thanks ~ Desert Fox ~ Admin
NeoTech Gaming Network
View user's profile Send private message Send e-mail Visit poster's website MSN Messenger
PostPosted: Wed Aug 11, 2004 10:15 pm Reply with quote
chatserv
Site Admin
Site Admin
 
Joined: Apr 21, 2002
Posts: 1732
Location: Puerto Rico




Depends on what security patches or programs you have installed, could also be a vulnerable module like webmail, my_egallery, coppermine and others, the best way to find out is to request from your hosting provider a copy of your site's access log, check any odd entries in it.

_________________
NukeResources | ScriptHeaven
View user's profile Send private message Visit poster's website
PostPosted: Wed Aug 11, 2004 10:49 pm Reply with quote
Desert_Fox
Resource Newbie
Resource Newbie
 
Joined: Jul 09, 2004
Posts: 28
Location: Las Vegas, Nevada




Thanks chatserv I have time to get that log. I am removing the coopermine gallery. We can show pictures through links no point. I allow email accounts for members. Could it be that those who have one may have done this?

I have no protection or modules, I am waiting until after my upgrade. Where do I send you the check? Laughing Cool Donations?

_________________
Thanks ~ Desert Fox ~ Admin
NeoTech Gaming Network
View user's profile Send private message Send e-mail Visit poster's website MSN Messenger
PostPosted: Wed Aug 11, 2004 11:37 pm Reply with quote
chatserv
Site Admin
Site Admin
 
Joined: Apr 21, 2002
Posts: 1732
Location: Puerto Rico




There's a donations block in the front page, it never sees any action but i keep it there if only to fill up some space Razz

I suggest you install Nuke Patched and Sentinel to help secure your site.

_________________
NukeResources | ScriptHeaven
View user's profile Send private message Visit poster's website
PostPosted: Thu Aug 12, 2004 8:37 am Reply with quote
Desert_Fox
Resource Newbie
Resource Newbie
 
Joined: Jul 09, 2004
Posts: 28
Location: Las Vegas, Nevada




Great I will dust off the cobwebs and send out a nice donation to you when I my next check comes in. You deserve it if anyone does.

Can I get away with installing the security patches before my upgrade? I sure hope my upgrade goes well today. Either way I will most likely install the protection. Someone is attacking me personally not random at all. I have the access log but not sure yet how to figure out who did this. I have found one IP number that looks like the one.

Thanks again Chatserv.. You made me a loyal fan of this website and PHP Nuke. Cool

_________________
Thanks ~ Desert Fox ~ Admin
NeoTech Gaming Network
View user's profile Send private message Send e-mail Visit poster's website MSN Messenger
PostPosted: Thu Aug 12, 2004 10:30 am Reply with quote
chatserv
Site Admin
Site Admin
 
Joined: Apr 21, 2002
Posts: 1732
Location: Puerto Rico




The correct way would be to apply the patches after you upgrade, when you download the new version of Nuke you want to upgrade to simply uncompress it on your pc, do the same thing with the patch and then simply load the patch files over Nuke's files then you can upload this patched Nuke to the server.

_________________
NukeResources | ScriptHeaven
View user's profile Send private message Visit poster's website
PostPosted: Thu Aug 12, 2004 11:34 am Reply with quote
Desert_Fox
Resource Newbie
Resource Newbie
 
Joined: Jul 09, 2004
Posts: 28
Location: Las Vegas, Nevada




chatserv wrote:
The correct way would be to apply the patches after you upgrade, when you download the new version of Nuke you want to upgrade to simply uncompress it on your pc, do the same thing with the patch and then simply load the patch files over Nuke's files then you can upload this patched Nuke to the server.


If I have this right then, the patched version of nuke that I have does not need this process done? If that is correct, then I simply run the upgrade script file to setup the DB by pointing the browser at it?

I was told that version 7.4 was out, can I go from 7.2 to 7.4 okay? The last thing I do after running the upgrade Script is edit the config.php correct? I will read all the text files again, just verifying or maybe overly paranoid attempting something I have never done before. Laughing Thanks again.

_________________
Thanks ~ Desert Fox ~ Admin
NeoTech Gaming Network
View user's profile Send private message Send e-mail Visit poster's website MSN Messenger
My site was hacked yet again..Not sure where to post this..
 NukeResources Forum Index -> Bug Reports
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
All times are GMT - 4 Hours  
Page 1 of 1  

  
  
 Post new topic  Reply to topic     



Powered by phpBB © 2001-2005 phpBB Group.     Theme created by Vjacheslav Trushkin.
There have been 132 unique hit(s) in the past 24 hours.
Forums ©
Need to find your IP fast?


Best viewed with a Browser
All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2001 - 2007 by NukeResources.com
You can syndicate our news using the file .backend.php or ultramode.txt
PHP-Nuke Copyright © 2004 by Francisco Burzi. This is free software, and you may redistribute it under the GPL. PHP-Nuke comes with absolutely no warranty, for details, see the license.
Page Generation: 0.33 Seconds

:: Eos phpbb2 style by Cyberalien :: PHP-Nuke theme by www.nukemods.com ::