Activity Stream
48,167 MEMBERS
62074 ONLINE
besthostingforums On YouTube Subscribe to our Newsletter besthostingforums On Twitter besthostingforums On Facebook besthostingforums On facebook groups

Page 1 of 3 123 LastLast
Results 1 to 10 of 26
  1.     
    #1
    Member

    Default Urgent Help Needed

    Hi Friends I am Ashu, and i am in big trouble some hacker changed my ajax.php file and now he can execute any sql query through this file for security i have desabled all ajax features of my forum and also password protected this file so that he can't change anything coz through this file he can see my all root files & folders even he can edit them or he also view the codes thats why he know my database details from includes/config.php

    I have upgrade my forum to 3.8.3 and replaced all file including ajax.php but problem still in there.

    here is the screenshot what actually ajax.php showing (currently it is password protected)
    http://i36.tinypic.com/2wd84tf.jpg
    I have also found a site with same problem check here
    http://www.technologyworksonline.com/democubecart/

    So my friends i hope you will help me to get rid of form this problem.

    Please please help me.

    Regards,
    ashutariyal Reviewed by ashutariyal on . Urgent Help Needed Hi Friends I am Ashu, and i am in big trouble some hacker changed my ajax.php file and now he can execute any sql query through this file for security i have desabled all ajax features of my forum and also password protected this file so that he can't change anything coz through this file he can see my all root files & folders even he can edit them or he also view the codes thats why he know my database details from includes/config.php I have upgrade my forum to 3.8.3 and replaced all file Rating: 5

  2.   Sponsored Links

  3.     
    #2
    Banned
    Website's:
    FusionWarez.info SmokeHost.net Leechers.co
    Bro thats a shell. Replace it with your proper ajax.php file.

  4.     
    #3
    Member
    Thanks bro for reply but I have already replaced it but the problem not gone.. and one more thing that what is "shell"

  5.     
    #4
    Banned
    Website's:
    FusionWarez.info SmokeHost.net Leechers.co
    A shell is a file that is uploaded to a web server. And just by browsing to that file you can delete, rename, chmodd edit file contents. Download any file. Browse all files/folders on the webserver. And upload files. Also run malicious tools like fill hdd space etc. And run MySQL Queries.

  6.     
    #5
    Probation
    Website's:
    onlywarez.org
    thing is he manged somehow to upload it to your webserver , if you allow uploading .php files then dont or this will happen over and over lol , maybe it is a bug in your current system check for exploits for it , you didnt give us information about what you were using ... , try to pin point the weak spot

  7.     
    #6
    Banned
    Website's:
    Dev-Security.net
    What you need to do is contact your hyosting provider and secure there system from shells more he possibly uploaded it cause of a exploit on one of your scripts go and check them for any security issue.

  8.     
    #7
    Member
    Quote Originally Posted by William Palmer View Post
    What you need to do is contact your hyosting provider and secure there system from shells more he possibly uploaded it cause of a exploit on one of your scripts go and check them for any security issue.
    Maybe that guy had his password of cPanel and uploaded shells on many places ? , And named them with smart names not some random name like "r57" or "shell" ... Today on internet every kid has stealer , and It's so spreaded that almost everyone got infected. So I would suggest you to download your SQL database. And replace all vBulletin core files with new ones. And check file content of every folder of your skins directory.

    Many sys admins aren't really smart enough to secure their server. So It would be just a fail , they would say Our server is secured , etc...

  9.     
    #8
    Banned
    Website's:
    Dev-Security.net
    Yes your right if that is the case then i reccomend the site owner to analayze each file and see if its a shell

  10.     
    #9
    Banned
    Website's:
    FusionWarez.info SmokeHost.net Leechers.co
    Hosting provider should definently use a webserver anti-virus and do a scan of his site's folder's.

  11.     
    #10
    Banned
    Website's:
    Dev-Security.net
    If the shell that has been uploaded encrypted clamAV wont even detect it and personally i dont even like clamAV its a big waist of memory

Page 1 of 3 123 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Urgent Help needed for PSD
    By kelbri90 in forum Web Application/Script Support
    Replies: 2
    Last Post: 27th Aug 2012, 07:49 PM
  2. Urgent help needed
    By Th3Kill33r in forum Technical Help Desk Support
    Replies: 5
    Last Post: 12th Nov 2010, 11:42 PM
  3. Urgent help needed please
    By Th3Kill33r in forum vBulletin
    Replies: 0
    Last Post: 12th Nov 2010, 11:05 PM
  4. Some Urgent Help Needed
    By Crazy4 in forum vBulletin
    Replies: 1
    Last Post: 23rd Dec 2009, 06:28 AM

Tags for this Thread

BE SOCIAL