Go Back   Netpond ™ > Webmaster Forums and Resources > Adult Webmasters Main Forum
Register FAQ Calendar Radio and TV NP Shop Search Today's Posts Mark Forums Read

Adult Webmasters Main Forum Friendly adult web master chat, help and information

Orgy, Pissing, Shemale
Voyeur, Fetish Teen Dating
Reply
 
LinkBack Thread Tools Display Modes
Old 05-23-2008, 08:57 AM   #1 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
Blog got hacked

fuck, stupid turkish hacker just hacked one of my sites. I now changed pass and deleted the index file, so now it works again. But what also should i change, so he won't do that again?
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 09:04 AM   #2 (permalink)
PornBlogger
I see you baby.. shakin that Ass!
 
Join Date: Mar 2005
Location: Costa Rica
Posts: 1,619
Points: 755
Send a message via ICQ to PornBlogger
hey there micho

check out this forum post regarding a WP exploit.. depending on your WP version, it may apply to you:

http://www.netpond.com/blogging-foru...s-exploit.html
__________________
- Reading can help your $$$ status
Vanity Email Service - "Be different.. Express Your Vanity!"
Daily Political News - "Coffee and Politics... Yum!" -
PornBlogger is online now   Reply With Quote Send a private message to PornBlogger
Old 05-23-2008, 09:09 AM   #3 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
Thanks for link, I will just update the wordpress as I have the 2.5 still
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 09:12 AM   #4 (permalink)
PornBlogger
I see you baby.. shakin that Ass!
 
Join Date: Mar 2005
Location: Costa Rica
Posts: 1,619
Points: 755
Send a message via ICQ to PornBlogger
ok.. and check the permissions on your wp-content directory, apparently that's how many other people were hacked. as reference in that forum thread.

there may be other factors as well, but that's a start.

peace
__________________
- Reading can help your $$$ status
Vanity Email Service - "Be different.. Express Your Vanity!"
Daily Political News - "Coffee and Politics... Yum!" -
PornBlogger is online now   Reply With Quote Send a private message to PornBlogger
Old 05-23-2008, 09:13 AM   #5 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
Ok i will do that thanks!
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 09:31 AM   #6 (permalink)
pam
Those with the biggest egos are insecure
 
pam's Avatar
 
Join Date: Jan 2003
Location: near Cape Cod, Massachusetts
Posts: 9,150
Points: 1,196
Is your upload directory set to chmod 777? Changing pass may not be enough. You need to find out how it was exploited.

If it's the same one that hit everyone recently, changing pass isn't enough. You need to delete all the files that were uploaded and that includes all the image files that had code written into them.
__________________
Quote:
Originally Posted by Baldbastard
If your making money from USA based sponsors, then play by USA rules.


pam is offline   Reply With Quote Send a private message to pam
Old 05-23-2008, 09:36 AM   #7 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
Yes it is at 777, at what should I put it? So I should delete all the filed and upload them again?
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 09:38 AM   #8 (permalink)
pam
Those with the biggest egos are insecure
 
pam's Avatar
 
Join Date: Jan 2003
Location: near Cape Cod, Massachusetts
Posts: 9,150
Points: 1,196
Read the post I made about it -- it tells you what to look for, what files to delete, etc. 666 is a better chmod.

I've said it time and time again, 777 is easy to exploit.
__________________
Quote:
Originally Posted by Baldbastard
If your making money from USA based sponsors, then play by USA rules.


pam is offline   Reply With Quote Send a private message to pam
Old 05-23-2008, 09:40 AM   #9 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
I had wp-content to 777 and the images are there, I set it to 755 now
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 09:45 AM   #10 (permalink)
Gsx-R
I am a Netpond... user!
 
Gsx-R's Avatar
 
Join Date: Mar 2008
Posts: 490
Points: 130
I am using this plugin for Security... dunno how good or bad it is, maybe people can tell, but i had no problem till now...

WP Security Scan | Semper Fi Web Design

It tells to chmod to 755 ... i'm no expert, so again if anyone have better info, please correct me.
__________________
My Best Cam Sponsor -> VS Cash
Top Quality Adult Design -> Adult Design Evolution

Quote:
"Whenever you find yourself on the side of the majority, it is time to pause and reflect." -> Mark Twain
Gsx-R is online now   Reply With Quote Send a private message to Gsx-R
Old 05-23-2008, 11:17 AM   #11 (permalink)
pam
Those with the biggest egos are insecure
 
pam's Avatar
 
Join Date: Jan 2003
Location: near Cape Cod, Massachusetts
Posts: 9,150
Points: 1,196
Is the date on the images the date since the exploit? If so, each has code written into it
__________________
Quote:
Originally Posted by Baldbastard
If your making money from USA based sponsors, then play by USA rules.


pam is offline   Reply With Quote Send a private message to pam
Old 05-23-2008, 12:31 PM   #12 (permalink)
fresh
so fresh and so clean
 
fresh's Avatar
 
Join Date: Apr 2006
Location: I like You. See Sig
Posts: 15,199
Points: 465
Ok so can anybody clearly state what directories should be chmod an how? 755 666?
fresh is online now   Reply With Quote Send a private message to fresh
Old 05-23-2008, 12:41 PM   #13 (permalink)
freechess
jesus fucks tgp
 
freechess's Avatar
 
Join Date: Mar 2004
Location: denver
Posts: 11,318
Points: 95
Quote:
Originally Posted by fresh View Post
Ok so can anybody clearly state what directories should be chmod an how? 755 666?
personally i prefer 666
freechess is online now   Reply With Quote Send a private message to freechess
Old 05-23-2008, 12:56 PM   #14 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
If I put wp-content to 755 or any other I cant upload images. Only on 777
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 01:02 PM   #15 (permalink)
fresh
so fresh and so clean
 
fresh's Avatar
 
Join Date: Apr 2006
Location: I like You. See Sig
Posts: 15,199
Points: 465
Quote:
Originally Posted by micho View Post
If I put wp-content to 755 or any other I cant upload images. Only on 777
create images folder on the root domain, not in wp-content then...
fresh is online now   Reply With Quote Send a private message to fresh
Old 05-23-2008, 01:04 PM   #16 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
Ye I know. But I don't know how to redirect wordpress to upload files to that folder, as it just upload to wp-content one
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 01:23 PM   #17 (permalink)
gedeon
[ Hed Kandi lover ]
 
gedeon's Avatar
 
Join Date: Jan 2008
Location: Hungary
Posts: 856
Points: 3,545
Send a message via ICQ to gedeon Send a message via Skype™ to gedeon
I think there's an option inside the settings panel for the images.
Thanks for you post, it's time to check the secure of my sites.
__________________
ICQ: 379764547

gedeon is online now   Reply With Quote Send a private message to gedeon
Old 05-23-2008, 01:34 PM   #18 (permalink)
Gsx-R
I am a Netpond... user!
 
Gsx-R's Avatar
 
Join Date: Mar 2008
Posts: 490
Points: 130
I have wp-content on 755 and i can upload images from WP Admin
Take a look at the plugin i told you about, it helps a lot...
__________________
My Best Cam Sponsor -> VS Cash
Top Quality Adult Design -> Adult Design Evolution

Quote:
"Whenever you find yourself on the side of the majority, it is time to pause and reflect." -> Mark Twain
Gsx-R is online now   Reply With Quote Send a private message to Gsx-R
Old 05-23-2008, 01:42 PM   #19 (permalink)
micho
Road to Full Time Blogging...
 
micho's Avatar
 
Join Date: Feb 2008
Location: Slovenia - EU
Posts: 1,700
Points: 1,350
Send a message via ICQ to micho
Ok i found it thanks geodenbacsi. I will try the plugin, thanks Gsx-R
__________________
Want link exchange? Trade Blog Links

Best Niche Sponsors:

70% Recurring Anal | Insane Conversions ||1:300 Webcam |Facials,Cumshot,Squirt
micho is online now   Reply With Quote Send a private message to micho
Old 05-23-2008, 01:44 PM   #20 (permalink)
gedeon
[ Hed Kandi lover ]
 
gedeon's Avatar
 
Join Date: Jan 2008
Location: Hungary
Posts: 856
Points: 3,545
Send a message via ICQ to gedeon Send a message via Skype™ to gedeon
So, chmod the wordpress directory to 755 and it's wpcontent folder to 755 too, and upgrade to 2.5.1 and we are fine?

I'm not a tech guy too, so please somebody explain as basicly as possible what to set up

Hey man, this security plugin is not bad!
__________________
ICQ: 379764547


Last edited by gedeon : 05-23-2008 at 01:55 PM.
gedeon is online now   Reply With Quote Send a private message to gedeon
Reply


Thread Tools
Display Modes



Netpond Resources
Resource Directory Tutorials & Articles Webmaster Tools Netpond News
 
Netpond Resources
LustDollars