|
| |
|
|
Giomanach
Posts: 6129 Joined: 11/19/2003 From: England Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 16:23:38
Summer Does your host do backups at all? D
_____________________________
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 16:51:12
Your host will have easy access to the data they need to find out who did this. If you are with a decent host, they will also have backups. Step 1) Find out a fix for the problem, how this happened, ect. Step 2) Restore backup No sense restoring a backup if the security hole is still there. If this person could write to the database, which is sounds like is true, change the database user, and check the permissions on all scripting files/folders.
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
|
|
smcfarland
Posts: 687 From: US Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 16:53:14
They just hacked into the folder and uploaded an index file. Nothing is wrong with the databases. It is an ecommerce site, so should I warn customers?? There isn't any defacement. This is the first time this has happened to me in almost ten years online!!
_____________________________
Summer McFarland ________________________________________ the very best invoicing and time tracking app ever
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 17:11:52
They just hacked into the folder and uploaded an index file. Nothing is wrong with the databases. It is an ecommerce site, so should I warn customers?? There isn't any defacement. This is the first time this has happened to me in almost ten years online!! - Most likely they wered able to use a script on your site to WRITE to that index file. This is the most common way of defacing. Are you running php? If so, has your host upgraded the php? Also, can we see a URL?
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
|
|
Giomanach
Posts: 6129 Joined: 11/19/2003 From: England Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 18:01:02
B Summer uses ASP, therefore Windoze servers.... Summer - safest and quickest way is as Spooky says, use FSO to create permissions for it.
_____________________________
|
|
|
|
Newbie FrontPage
Posts: 28 Joined: 4/27/2004 From: Australia Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 5:38:52
Is it possible that the fault lies not with Godaddy, but at the home PC and that someone did some site-code-scripting? Rolf
|
|
|
|
smcfarland
Posts: 687 From: US Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 9:06:48
I have over 20 websites that I own or manage. This is the only one I have ever owned that has been hacked and I have been doing this web page thing since 1996 -- when it was just AOL member pages. There was a site I managed hacked about 4 years ago, but that was a unix and the password to the site was easily guessed. The host blamed it on FP. At any rate, GO DADDY IS HORRIED!! I have never had so many problems with a host. I called yesterday because my site was down -- they said it was my database. I didn't believe them, and checked and ALL asp pages were not coming up, regardless of whether or not they were connected to a database. It took them four + hours to fix it. Last month, they switched servers without notifying anyone and three of my sites were down for two days, not to mention, when they came up all of the database paths were incorrect. I have spent a total of 209 minutes on the phone with their toll call support in the past two months. That is more than I have spent with any other company so far. STAY AWAY FAR AWAY from their hosting. Undoubtedly, their domain registration ROCKS.
_____________________________
Summer McFarland ________________________________________ the very best invoicing and time tracking app ever
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 22:45:09
You should switch to a real host. GoDaddy's hosting sucks. It is just like Yahoo...
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
|
|
Newbie FrontPage
Posts: 28 Joined: 4/27/2004 From: Australia Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 23:35:23
Sorry you had so much trouble Summer, I had an excellent run with all my 4 websites at godaddy for the last 3 years and not a single day down as I check them daily and religiously as the apple of my eye. None of my sites were down yesterday. Rolf quote:
ORIGINAL: smcfarland I have over 20 websites that I own or manage. This is the only one I have ever owned that has been hacked and I have been doing this web page thing since 1996 -- when it was just AOL member pages. There was a site I managed hacked about 4 years ago, but that was a unix and the password to the site was easily guessed. The host blamed it on FP. At any rate, GO DADDY IS HORRIED!! I have never had so many problems with a host. I called yesterday because my site was down -- they said it was my database. I didn't believe them, and checked and ALL asp pages were not coming up, regardless of whether or not they were connected to a database. It took them four + hours to fix it. Last month, they switched servers without notifying anyone and three of my sites were down for two days, not to mention, when they came up all of the database paths were incorrect. I have spent a total of 209 minutes on the phone with their toll call support in the past two months. That is more than I have spent with any other company so far. STAY AWAY FAR AWAY from their hosting. Undoubtedly, their domain registration ROCKS.
|
|
|
|
Shirley
Posts: 3127 Joined: 1/8/1999 From: Omaha, Ne USA Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 0:03:26
I had 2 sites hacked last month. One was a free script I was using that was NOT secure. Someone posted my url and a bunch of others on the forum at the scripts site and told how to get in a delete stuff from the db. I guess I should warn everyone in case you are using it the free Script is DUGallery do NOT use it unless you make changes to it to fix the HUGE problem. The other one was (technically) defaced. They uploaded index htm and html files and default htm and html files but I only use aspx on the site so didn't know they had gotten in . If you typed in the url the index.aspx page still came up. I found out about it because he posts all of his defacements on Zone H and I saw them in my logs. This one was MY fault !!! I was messing around with permissions and NTFS and did not set them back to a more secure setting when I was done experimenting.
_____________________________
Everything But Cake
|
|
|
|
Newbie FrontPage
Posts: 28 Joined: 4/27/2004 From: Australia Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 2:58:07
Hope you had a back-up made. External Hard drives have come down a lot in prices so that everyone can afford them. I bought a Maxtor plus a few mem sticks.
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 3:11:08
Really? Where can I find these affordable external hard drives?
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
|
|
dpf
Posts: 7126 Joined: 11/12/2003 From: India-napolis Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 8:07:49
quote:
Where can I find these affordable external hard drives? I bought an 80 gig USB external hard drive at Comp USA for $79 on sale
_____________________________
Dan
|
|
|
|
Newbie FrontPage
Posts: 28 Joined: 4/27/2004 From: Australia Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/8/2005 15:37:26
quote:
ORIGINAL: Newbie FrontPage Hope you had a back-up made. External Hard drives have come down a lot in prices so that everyone can afford them. I bought a Maxtor plus a few mem sticks. Do a google search for your nearest computer store and also ask for Maxtor. You also can burn your back up's on C.D. or DVD drives. Make sure you have control-X disabled on your Personal Computer as the SP2 has has security problems. If you need to know how, email me personally. Rolf
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/8/2005 19:15:38
I need a lot more than 80GB.. I need at least a 250gb, if not more. I haven't found any affordable external drives in the 200gb+ range yet. btw, is usb faster than sata/150?
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
|
|
Newbie FrontPage
Posts: 28 Joined: 4/27/2004 From: Australia Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/9/2005 18:20:22
quote:
ORIGINAL: BobbyDouglas I need a lot more than 80GB.. I need at least a 250gb, if not more. I haven't found any affordable external drives in the 200gb+ range yet. btw, is usb faster than sata/150? Visit www.maxtorkb.com , I have the one touch 5000 model and they have the size you want. as for sata/150 ? please explain! Rolf Vaessen
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/9/2005 18:32:54
I have seen around 8 different one touch drives... SATA/150 is how fast my hard drive send data (I believe). ATA100, ATA133, SATA150, the #s all explain the speed of the connection. SATA does 150mb/s. If I am going to backup around 150-200GB, I will need something fairly fast.
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
|
|
Newbie FrontPage
Posts: 28 Joined: 4/27/2004 From: Australia Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/10/2005 20:31:49
quote:
ORIGINAL: BobbyDouglas I have seen around 8 different one touch drives... SATA/150 is how fast my hard drive send data (I believe). ATA100, ATA133, SATA150, the #s all explain the speed of the connection. SATA does 150mb/s. If I am going to backup around 150-200GB, I will need something fairly fast. My Computer dictionary says:<quote> ATA (AT Attachment, where AT means PC AT) the interface used by IDE hard disc, essentially a buffered connection to the system bus.</quote> cannot see nothing that stands for SATA. I know that firewire is a lot faster than USB ports, but cannot give you any data on speed for the Maxtor. Rolf
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/10/2005 22:09:02
S = Serial in SATA. And the #s determine the speed. I just wanted to know if it would be faster to get an external or get a cheap 300GB drive for less than half the price.
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
|
|
Newbie FrontPage
Posts: 28 Joined: 4/27/2004 From: Australia Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/13/2005 1:32:04
Have not heard of a 300 gig internal drive. The japanese have just developed a new disc that can take 510 gigs. it should be available very soon. Worthwhile the wait! Rolf
|
|
|
|
BobbyDouglas
Posts: 5470 Joined: 5/15/2003 From: Arizona Status: offline
|
RE: Site at Godaddy hacked... What to do?? - 1/13/2005 1:43:40
Take a look at WD3000JB (Western Digital) and 6B300R0 (Maxtor)
_____________________________
Arizona Web Design - Mr Bobs Web Design in Arizona The Arizona Web Hosting Challenge
|
|
New Messages |
No New Messages |
Hot Topic w/ New Messages |
Hot Topic w/o New Messages |
Locked w/ New Messages |
Locked w/o New Messages |
|
Post New Thread
Reply to Message
Post New Poll
Submit Vote
Delete My Own Post
Delete My Own Thread
Rate Posts
|
|
|