Server Help Forum Index Server Help
Community forums for Subgame, ASSS, and bots
 
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   StatisticsStatistics   RegisterRegister 
 ProfileProfile   Login to check your private messagesLogin to check your private messages   LoginLogin (SSL) 

Server Help | ASSS Wiki (0) | Shanky.com
Assassin2684's website was hacked
Goto page 1, 2  Next
 
Post new topic   Reply to topic Printable version
 View previous topic  Help getting my server up and running Post :: Post Attn: Assembly Nerds  View next topic  
Author Message
The Apache
BECAUSE I'M A STUPID IDIOT


Age:33
Gender:Gender:Male
Joined: Jul 10 2006
Posts: 294
Location: High Wycombe
Offline

PostPosted: Sat Nov 25, 2006 10:06 am   Post maybe stupid    Post subject: Assassin2684's website was hacked Reply to topic Reply with quote

http://www.assassins-junkyard.com/
lol, i was looking for his little program he made, and i got through to his website to find it out it got hacked... icon_sad.gif
Back to top
View users profile Send private message Add User to Ignore List Send email MSN Messenger
BDwinsAlt
Agurus's Posse


Age:34
Gender:Gender:Male
Joined: Jun 16 2003
Posts: 1145
Location: Alabama
Offline

PostPosted: Sat Nov 25, 2006 1:48 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

This dude is in love with javascripts. Look at the page source.
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
Quan Chi2
Member of "Sexy Teenagers that Code" Group
Member of


Age:34
Gender:Gender:Male
Joined: Mar 25 2005
Posts: 860
Location: NYC
Offline

PostPosted: Sat Nov 25, 2006 6:14 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

L O L

Sorry Assassin. If you need help, then you know who to call.

You got fucking owned though. You're lucky it wasn't the g00ns.
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
Purge
Episode I > Eposide III
Jar-Jar is kool


Age:35
Gender:Gender:Male
Joined: Sep 08 2004
Posts: 2019
Offline

PostPosted: Sat Nov 25, 2006 6:20 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Apparently this "hacker" uses FrontPage...
Back to top
View users profile Send private message Add User to Ignore List
Quan Chi2
Member of "Sexy Teenagers that Code" Group
Member of


Age:34
Gender:Gender:Male
Joined: Mar 25 2005
Posts: 860
Location: NYC
Offline

PostPosted: Sat Nov 25, 2006 6:22 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

I bet the shell is still on the server unless the hacker is a newbie. Assassin should find it. And look for a telnet script. (usually a cgi)
Back to top
View users profile Send private message Add User to Ignore List Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
Cerium
Server Help Squatter


Age:42
Gender:Gender:Male
Joined: Mar 05 2005
Posts: 807
Location: I will stab you.
Offline

PostPosted: Sun Nov 26, 2006 2:26 am   Post maybe stupid    Post subject: Reply to topic Reply with quote

...anyone else want this one? Far too easy for me.
_________________
There are 7 user(s) ignoring me right now.
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Smong
Server Help Squatter


Joined: 1043048991
Posts: 0x91E
Offline

PostPosted: Sun Nov 26, 2006 5:20 am   Post maybe stupid    Post subject: Reply to topic Reply with quote

Looks like someone might be using symantec software too. Infact it looks as if someone did file -> save as on another website, then uploaded that page as the index.
_________________
ss news
Back to top
View users profile Send private message Add User to Ignore List Visit posters website MSN Messenger
Solo Ace
Yeah, I'm in touch with reality...we correspond from time to time.


Age:37
Gender:Gender:Male
Joined: Feb 06 2004
Posts: 2583
Location: The Netherlands
Offline

PostPosted: Sun Nov 26, 2006 7:37 am   Post maybe stupid    Post subject: Reply to topic Reply with quote

I still wonder how this guy hacked the box. Cerium, please explain?
Back to top
View users profile Send private message Add User to Ignore List
The Apache
BECAUSE I'M A STUPID IDIOT


Age:33
Gender:Gender:Male
Joined: Jul 10 2006
Posts: 294
Location: High Wycombe
Offline

PostPosted: Sun Nov 26, 2006 7:53 am   Post maybe stupid    Post subject: Reply to topic Reply with quote

i feel kinda sorry for assassin. icon_sad.gif
Back to top
View users profile Send private message Add User to Ignore List Send email MSN Messenger
hellzlaker
Registered Cap Buster
Popping men in the ass since Oct 2005


Gender: NEVER ENOUGH!
Joined: Oct 27 2005
Posts: 34
Offline

PostPosted: Sun Nov 26, 2006 11:47 am   Post maybe stupid    Post subject: Reply to topic Reply with quote

lol funny you should hack that guys email using som email spamers they send like 100 email a sec...
Back to top
View users profile Send private message Add User to Ignore List Send email AIM Address MSN Messenger
Maverick
broken record


Age:40
Gender:Gender:Male
Joined: Feb 26 2005
Posts: 1521
Location: The Netherlands
Offline

PostPosted: Sun Nov 26, 2006 12:20 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

If you want to be targeted I suppose you can do that.
_________________
Nickname: Maverick (I changed my name!)
TWCore developer | Subspace statistics
Back to top
View users profile Send private message Add User to Ignore List Visit posters website
Assassin2684
Server Help Squatter


Age:34
Gender:Not sure
Joined: Jul 27 2004
Posts: 990
Location: Florida
Offline

PostPosted: Sun Nov 26, 2006 1:57 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Wow, very strange.. I never even noticed this! I was out of town for a bit. No matter, was working on a different site anyway and was keeping it up for the time being. I dont know how the person did it but whatever.. Ill have it fixed soon.

EDIT: Well, no damage done other then they took the site down.. I dont know who could have done it, its not like I advertised my site except for here and some of my friends. But oh well, pass changed.. Not going to do anything back, they did what they wanted and moved on.
Back to top
View users profile Send private message Add User to Ignore List AIM Address
The Apache
BECAUSE I'M A STUPID IDIOT


Age:33
Gender:Gender:Male
Joined: Jul 10 2006
Posts: 294
Location: High Wycombe
Offline

PostPosted: Sun Nov 26, 2006 3:23 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

ah well, lame things like this happen i guess.
Back to top
View users profile Send private message Add User to Ignore List Send email MSN Messenger
Maverick
broken record


Age:40
Gender:Gender:Male
Joined: Feb 26 2005
Posts: 1521
Location: The Netherlands
Offline

PostPosted: Sun Nov 26, 2006 3:53 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Shit happens (too)
Back to top
View users profile Send private message Add User to Ignore List Visit posters website
Assassin2684
Server Help Squatter


Age:34
Gender:Not sure
Joined: Jul 27 2004
Posts: 990
Location: Florida
Offline

PostPosted: Sun Nov 26, 2006 4:41 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Well my friend foung the problem. I was searching through my files and came up with a wierd named file that didn't look fimilar, "Backdoor.php". My friend went to my imageupload thing and went in and found what the bug was and uploaded a php file right in there. So I took out my upload script and I guess ill have to see how I can fix that.. The backdoor.php file was acctually pretty neat, gave the person access to all my files. But everything is back to normal now. Fixed the main site to. Thanks for letting me know about this, I probably wouldn't have noticed..
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Bak
?ls -s
0 in


Age:26
Gender:Gender:Male
Joined: Jun 11 2004
Posts: 1826
Location: USA
Offline

PostPosted: Sun Nov 26, 2006 5:37 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

clever, guess that's why sites restrict extentions when uploading files.
_________________
SubSpace Discretion: A Third Generation SubSpace Client
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Assassin2684
Server Help Squatter


Age:34
Gender:Not sure
Joined: Jul 27 2004
Posts: 990
Location: Florida
Offline

PostPosted: Sun Nov 26, 2006 7:35 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Oh, mine was restricted but it had a bug. I made it so it ould only allow images, jpg, bmp, gif, ect.. Well the script would only look at the extension, so what the guy did was go: backdoor.php.jpg. And then he had his script right on there for use. So I eaither have to fix it to check the whole name or find a new imageupload script.
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Cyan~Fire
I'll count you!
I'll count you!


Age:37
Gender:Gender:Male
Joined: Jul 14 2003
Posts: 4608
Location: A Dream
Offline

PostPosted: Sun Nov 26, 2006 9:18 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Uhh, backdoor.php.jpg wouldn't work, it would just be sent to the user as a JPEG file.
_________________
This help is informational only. No representation is made or warranty given as to its content. User assumes all risk of use. Cyan~Fire assumes no responsibility for any loss or delay resulting from such use.
Wise men STILL seek Him.
Back to top
View users profile Send private message Add User to Ignore List Visit posters website
Assassin2684
Server Help Squatter


Age:34
Gender:Not sure
Joined: Jul 27 2004
Posts: 990
Location: Florida
Offline

PostPosted: Sun Nov 26, 2006 9:32 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Well, my friend tried it and it worked when I went to the uploaded file.. So I dont know. Im pretty sure thats how he got in but its fixed now.. so im happy. Ill have to find a new code for it though.
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Smong
Server Help Squatter


Joined: 1043048991
Posts: 0x91E
Offline

PostPosted: Mon Nov 27, 2006 4:19 am   Post maybe stupid    Post subject: Reply to topic Reply with quote

Wouldn't the file permissions have to be execute as well? But I suppose if uploaded files are "php generated files" they might create with rwx (and with the ownership of the webserver).
Back to top
View users profile Send private message Add User to Ignore List Visit posters website MSN Messenger
The Apache
BECAUSE I'M A STUPID IDIOT


Age:33
Gender:Gender:Male
Joined: Jul 10 2006
Posts: 294
Location: High Wycombe
Offline

PostPosted: Mon Nov 27, 2006 12:39 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Assassin2684 wrote:
But everything is back to normal now. Fixed the main site to. Thanks for letting me know about this, I probably wouldn't have noticed..

no problem. icon_smile.gif this is what boredom does i guess.
Back to top
View users profile Send private message Add User to Ignore List Send email MSN Messenger
Bak
?ls -s
0 in


Age:26
Gender:Gender:Male
Joined: Jun 11 2004
Posts: 1826
Location: USA
Offline

PostPosted: Mon Nov 27, 2006 1:52 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Smong wrote:
Wouldn't the file permissions have to be execute as well?
Php is interpreted so all you need is read permission which has to be there so others can get the file.

Although I agree that using .php.jpeg wouldn't work? Unless the webserver program only looks at the first extension, which I doubt.
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Assassin2684
Server Help Squatter


Age:34
Gender:Not sure
Joined: Jul 27 2004
Posts: 990
Location: Florida
Offline

PostPosted: Mon Nov 27, 2006 3:44 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Haha, I think thats what it does, BaK.. Pretty stupid, my friend made it a while back and I never bothered to even look though the code. But I am pretty sure thats what it does.
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Solo Ace
Yeah, I'm in touch with reality...we correspond from time to time.


Age:37
Gender:Gender:Male
Joined: Feb 06 2004
Posts: 2583
Location: The Netherlands
Offline

PostPosted: Mon Nov 27, 2006 3:55 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Post the backdoor file and the file upload handler, please.
Back to top
View users profile Send private message Add User to Ignore List
Assassin2684
Server Help Squatter


Age:34
Gender:Not sure
Joined: Jul 27 2004
Posts: 990
Location: Florida
Offline

PostPosted: Mon Nov 27, 2006 5:00 pm   Post maybe stupid    Post subject: Reply to topic Reply with quote

Here ya go, I RAR'd them both in one package. Its on my host, link is here:
http://www.assassins-junkyard.com/Upload_stuffs.rar

Dont do anything stupid with it.. lol.
Back to top
View users profile Send private message Add User to Ignore List AIM Address
Display posts from previous:   
Post new topic   Reply to topic    Server Help Forum Index -> Trash Talk All times are GMT - 5 Hours
Goto page 1, 2  Next
Page 1 of 2

 
Jump to:  
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum
View online users | View Statistics | View Ignored List


Software by php BB © php BB Group
Server Load: 199 page(s) served in previous 5 minutes.

phpBB Created this page in 0.650669 seconds : 49 queries executed (75.1%): GZIP compression disabled