navigation
a webmaster learning community
     Home    Register     Search      Help      Login    
FrontPage Alternative
Sponsors

Shopping Cart Software
Ecommerce software integrated into Frontpage, Dreamweaver and Golive templates. No monthly fees and available in ASP and PHP versions.

Website Templates
We also have a wide selection of Dreamweaver, Expression Web and Frontpage templates as well as webmaster tools and CSS layouts.

Frontpage website templates
Creative Website Templates for FrontPage, Dreamweaver, Flash, SwishMax

Search Forums
 

Advanced search
Recent Posts

 Todays Posts
 Most Active posts
 Posts since last visit
 My Recent Posts
 Mark posts read

 

Site at Godaddy hacked... What to do??

 
View related threads: (in this forum | in all forums)

Logged in as: Guest
Users viewing this topic: none
Printable Version 

All Forums >> Web Development >> General Web Development >> Site at Godaddy hacked... What to do??
Page: [1]
 
smcfarland

 

Posts: 687
From: US
Status: offline

 
Site at Godaddy hacked... What to do?? - 12/30/2004 16:13:34   
I have a message similar to these in my database folder, and my database has crashed, which has all of my orders, etc. in it.

http://www.google.com/search?sourceid=navclient&ie=UTF-8&rls=GGLD,GGLD:2004-47,GGLD:en&q=%C3%9DSKORP%C3%9DTX

What should I do??

_____________________________

Summer McFarland
________________________________________
the very best invoicing and time tracking app ever
Giomanach

 

Posts: 6129
Joined: 11/19/2003
From: England
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 16:23:38   
Summer

Does your host do backups at all?

D

_____________________________




(in reply to smcfarland)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 16:51:12   
Your host will have easy access to the data they need to find out who did this. If you are with a decent host, they will also have backups.

Step 1) Find out a fix for the problem, how this happened, ect.
Step 2) Restore backup

No sense restoring a backup if the security hole is still there. If this person could write to the database, which is sounds like is true, change the database user, and check the permissions on all scripting files/folders.

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to Giomanach)
smcfarland

 

Posts: 687
From: US
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 16:53:14   
They just hacked into the folder and uploaded an index file. Nothing is wrong with the databases. It is an ecommerce site, so should I warn customers?? There isn't any defacement. This is the first time this has happened to me in almost ten years online!!

_____________________________

Summer McFarland
________________________________________
the very best invoicing and time tracking app ever

(in reply to BobbyDouglas)
Spooky

 

Posts: 26606
Joined: 11/11/1998
From: Middle Earth
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 16:58:26   
If they have FSO create permissions, they could also do more damage.
Get the host onto it now! :)

_____________________________

If you arent part of the solution, then there is good money to be made prolonging the problem

§þ:)


(in reply to smcfarland)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 17:11:52   
They just hacked into the folder and uploaded an index file. Nothing is wrong with the databases. It is an ecommerce site, so should I warn customers?? There isn't any defacement. This is the first time this has happened to me in almost ten years online!!
- Most likely they wered able to use a script on your site to WRITE to that index file. This is the most common way of defacing.

Are you running php? If so, has your host upgraded the php?

Also, can we see a URL?

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to Spooky)
Giomanach

 

Posts: 6129
Joined: 11/19/2003
From: England
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 18:01:02   
B

Summer uses ASP, therefore Windoze servers....

Summer - safest and quickest way is as Spooky says, use FSO to create permissions for it.

_____________________________




(in reply to BobbyDouglas)
jaybee

 

Posts: 14191
Joined: 10/7/2003
From: Berkshire, UK
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 19:02:54   
Not another one! And ASP this time. I'm getting heartily sick of this.

_____________________________

If it ain't broke..... fix it until it is.
:)

:)
GAWDS
Now where did I put that Doctype?

(in reply to Giomanach)
Spooky

 

Posts: 26606
Joined: 11/11/1998
From: Middle Earth
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 12/30/2004 19:37:07   
Looking at the script they probably used, it would pay to check its not still hidden somewhere.
Try a search/find in all web pages (code) for the terms "kuskapani" "dkayit" or "dosyaPath" and see if it returns any hits.

_____________________________

If you arent part of the solution, then there is good money to be made prolonging the problem

§þ:)


(in reply to jaybee)
Newbie FrontPage

 

Posts: 28
Joined: 4/27/2004
From: Australia
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 5:38:52   
Is it possible that the fault lies not with Godaddy, but at the home PC and that someone did some site-code-scripting?
Rolf

(in reply to Spooky)
jaybee

 

Posts: 14191
Joined: 10/7/2003
From: Berkshire, UK
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 6:17:16   
Rolf, Highly unlikely.

Some of us using PHP boards got clobbered recently by a similar thing because the hosts hadn't implemented the latest version of the software which fixed a security issue.

In our case though it wasn't just one page. The hack rewrote the entire site, in my case 556 pages, so they just said

This site defaced!

_____________________________

If it ain't broke..... fix it until it is.
:)

:)
GAWDS
Now where did I put that Doctype?

(in reply to Newbie FrontPage)
smcfarland

 

Posts: 687
From: US
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 9:06:48   
I have over 20 websites that I own or manage. This is the only one I have ever owned that has been hacked and I have been doing this web page thing since 1996 -- when it was just AOL member pages.

There was a site I managed hacked about 4 years ago, but that was a unix and the password to the site was easily guessed. The host blamed it on FP.

At any rate, GO DADDY IS HORRIED!! I have never had so many problems with a host. I called yesterday because my site was down -- they said it was my database. I didn't believe them, and checked and ALL asp pages were not coming up, regardless of whether or not they were connected to a database. It took them four + hours to fix it. Last month, they switched servers without notifying anyone and three of my sites were down for two days, not to mention, when they came up all of the database paths were incorrect.

I have spent a total of 209 minutes on the phone with their toll call support in the past two months. That is more than I have spent with any other company so far. STAY AWAY FAR AWAY from their hosting. Undoubtedly, their domain registration ROCKS.

_____________________________

Summer McFarland
________________________________________
the very best invoicing and time tracking app ever

(in reply to jaybee)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 22:45:09   
You should switch to a real host. GoDaddy's hosting sucks. It is just like Yahoo...

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to smcfarland)
Newbie FrontPage

 

Posts: 28
Joined: 4/27/2004
From: Australia
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/6/2005 23:35:23   
Sorry you had so much trouble Summer,
I had an excellent run with all my 4 websites at godaddy for the last 3 years and not a single day down as I check them daily and religiously as the apple of my eye. None of my sites were down yesterday.
Rolf


quote:

ORIGINAL: smcfarland

I have over 20 websites that I own or manage. This is the only one I have ever owned that has been hacked and I have been doing this web page thing since 1996 -- when it was just AOL member pages.

There was a site I managed hacked about 4 years ago, but that was a unix and the password to the site was easily guessed. The host blamed it on FP.

At any rate, GO DADDY IS HORRIED!! I have never had so many problems with a host. I called yesterday because my site was down -- they said it was my database. I didn't believe them, and checked and ALL asp pages were not coming up, regardless of whether or not they were connected to a database. It took them four + hours to fix it. Last month, they switched servers without notifying anyone and three of my sites were down for two days, not to mention, when they came up all of the database paths were incorrect.

I have spent a total of 209 minutes on the phone with their toll call support in the past two months. That is more than I have spent with any other company so far. STAY AWAY FAR AWAY from their hosting. Undoubtedly, their domain registration ROCKS.


(in reply to smcfarland)
Shirley

 

Posts: 3127
Joined: 1/8/1999
From: Omaha, Ne USA
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 0:03:26   
I had 2 sites hacked last month. One was a free script I was using that was NOT secure. Someone posted my url and a bunch of others on the forum at the scripts site and told how to get in a delete stuff from the db. I guess I should warn everyone in case you are using it the free Script is DUGallery do NOT use it unless you make changes to it to fix the HUGE problem.

The other one was (technically) defaced. They uploaded index htm and html files and default htm and html files but I only use aspx on the site so didn't know they had gotten in . If you typed in the url the index.aspx page still came up.
I found out about it because he posts all of his defacements on Zone H and I saw them in my logs.
This one was MY fault !!! I was messing around with permissions and NTFS and did not set them back to a more secure setting when I was done experimenting.

_____________________________


Everything But Cake


(in reply to Newbie FrontPage)
Newbie FrontPage

 

Posts: 28
Joined: 4/27/2004
From: Australia
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 2:58:07   
Hope you had a back-up made. External Hard drives have come down a lot in prices so that everyone can afford them. I bought a Maxtor plus a few mem sticks.

(in reply to Shirley)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 3:11:08   
Really? Where can I find these affordable external hard drives?

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to Newbie FrontPage)
jaybee

 

Posts: 14191
Joined: 10/7/2003
From: Berkshire, UK
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 5:13:26   
I burn a copy of all my sites to re-writable cd which means there are normally 5 copies knocking around for safety.

1 on CD
1 on-line
1 on-line backup
1 on my hard drive
1 on my back-up drive

Paranoid? Moi!

_____________________________

If it ain't broke..... fix it until it is.
:)

:)
GAWDS
Now where did I put that Doctype?

(in reply to BobbyDouglas)
dpf

 

Posts: 7126
Joined: 11/12/2003
From: India-napolis
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/7/2005 8:07:49   
quote:

Where can I find these affordable external hard drives?
I bought an 80 gig USB external hard drive at Comp USA for $79 on sale

_____________________________

Dan

(in reply to BobbyDouglas)
Newbie FrontPage

 

Posts: 28
Joined: 4/27/2004
From: Australia
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/8/2005 15:37:26   

quote:

ORIGINAL: Newbie FrontPage

Hope you had a back-up made. External Hard drives have come down a lot in prices so that everyone can afford them. I bought a Maxtor plus a few mem sticks.

Do a google search for your nearest computer store and also ask for Maxtor. You also can burn your back up's on C.D. or DVD drives. Make sure you have control-X disabled on your Personal Computer as the SP2 has has security problems. If you need to know how, email me personally.
Rolf

(in reply to Newbie FrontPage)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/8/2005 19:15:38   
I need a lot more than 80GB.. I need at least a 250gb, if not more. I haven't found any affordable external drives in the 200gb+ range yet.

btw, is usb faster than sata/150?

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to Newbie FrontPage)
Newbie FrontPage

 

Posts: 28
Joined: 4/27/2004
From: Australia
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/9/2005 18:20:22   

quote:

ORIGINAL: BobbyDouglas

I need a lot more than 80GB.. I need at least a 250gb, if not more. I haven't found any affordable external drives in the 200gb+ range yet.

btw, is usb faster than sata/150?

Visit www.maxtorkb.com , I have the one touch 5000 model and they have the size you want. as for sata/150 ? please explain!
Rolf Vaessen

(in reply to BobbyDouglas)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/9/2005 18:32:54   
I have seen around 8 different one touch drives...

SATA/150 is how fast my hard drive send data (I believe). ATA100, ATA133, SATA150, the #s all explain the speed of the connection. SATA does 150mb/s. If I am going to backup around 150-200GB, I will need something fairly fast.

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to Newbie FrontPage)
Newbie FrontPage

 

Posts: 28
Joined: 4/27/2004
From: Australia
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/10/2005 20:31:49   

quote:

ORIGINAL: BobbyDouglas

I have seen around 8 different one touch drives...

SATA/150 is how fast my hard drive send data (I believe). ATA100, ATA133, SATA150, the #s all explain the speed of the connection. SATA does 150mb/s. If I am going to backup around 150-200GB, I will need something fairly fast.

My Computer dictionary says:<quote> ATA (AT Attachment, where AT means PC AT) the interface used by IDE hard disc, essentially a buffered connection to the system bus.</quote> cannot see nothing that stands for SATA. I know that firewire is a lot faster than USB ports, but cannot give you any data on speed for the Maxtor. Rolf

(in reply to BobbyDouglas)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/10/2005 22:09:02   
S = Serial in SATA. And the #s determine the speed. I just wanted to know if it would be faster to get an external or get a cheap 300GB drive for less than half the price.

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to Newbie FrontPage)
Newbie FrontPage

 

Posts: 28
Joined: 4/27/2004
From: Australia
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/13/2005 1:32:04   
Have not heard of a 300 gig internal drive. The japanese have just developed a new disc that can take 510 gigs. it should be available very soon. Worthwhile the wait!
Rolf

(in reply to BobbyDouglas)
BobbyDouglas

 

Posts: 5470
Joined: 5/15/2003
From: Arizona
Status: offline

 
RE: Site at Godaddy hacked... What to do?? - 1/13/2005 1:43:40   
Take a look at WD3000JB (Western Digital) and 6B300R0 (Maxtor)

_____________________________

Arizona Web Design - Mr Bobs Web Design in Arizona
The Arizona Web Hosting Challenge

(in reply to Newbie FrontPage)
Page:   [1]

All Forums >> Web Development >> General Web Development >> Site at Godaddy hacked... What to do??
Page: [1]
Jump to: 1





New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts