Wow one of my sites was hacked...

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • BSleazy
    Confirmed User
    • Aug 2002
    • 6721

    #1

    Wow one of my sites was hacked...

    check this out www.camgirlaffairs.com

    First time ever something like this has happened to me.
    icq 156131086
  • Chris
    Too lazy to set a custom title
    • May 2003
    • 27880

    #2
    damn that has to suck

    happend to my daughters site i set up for family to see pics before
    [email protected]

    Comment

    • sicone
      Retired
      • Jan 2004
      • 18453

      #3
      looks like all they added was a meta redirect

      Comment

      • SkeetSkeet
        Confirmed User
        • Oct 2005
        • 5404

        #4
        messed up people with nothing better to do

        ICQ 283633188

        Comment

        • tranza
          ICQ: 197-556-237
          • Jun 2003
          • 57559

          #5
          Why don't you fix it instead of posting it here?
          I'm just a newbie.

          Comment

          • BSleazy
            Confirmed User
            • Aug 2002
            • 6721

            #6
            Originally posted by tranza
            Why don't you fix it instead of posting it here?
            I don't see anything out of place in the code. I have a support ticket in.

            Smart ass.
            icq 156131086

            Comment

            • sicone
              Retired
              • Jan 2004
              • 18453

              #7
              Originally posted by BCyber
              I don't see anything out of place in the code. I have a support ticket in.

              Smart ass.
              look in your meta tags... your site comes up and then redirects after a few seconds

              something along the lines of...

              Code:
              <META http-equiv="refresh" content="5;URL=site redirecting to">

              Comment

              • BSleazy
                Confirmed User
                • Aug 2002
                • 6721

                #8
                Code:
                <?php
                sessionTransSid();
                ?>
                <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
                <html>
                <head>
                <?php 
                	if (strstr($_SERVER['HTTP_HOST'], "scripts.site-sift.com")) {
                		echo '<meta name="robots" content="noindex,nofollow">' . "\r\n";
                	}
                	if (strstr($_SERVER['HTTP_USER_AGENT'], '2Checkout')) {
                		$fullurl = 'http://' . $_SERVER['HTTP_HOST'];
                	} else $fullurl = '';
                ?>
                <? getMetaTags($_REQUEST['go'],$myconn); ?>
                <link href="<?=$fullurl?><?=$LINK_BASE?>include/mystyle.css" rel="stylesheet" type="text/css">
                </head>
                <body bgcolor="<?php echo $settings['bgColor']; ?>">
                <table border="0" align="center" cellpadding="1" cellspacing="0" style="background-color:<?php echo $settings['tbColor']; ?>">
                  <tr>
                    <td><table border="0" cellpadding="1" cellspacing="0" style="background-color:<? echo $settings['tColor']; ?>">
                        <tr>
                          <td><table width="800" border="0" align="center" cellpadding="1" cellspacing="0" bgcolor="<?php echo $settings['mtbgColor']; ?>">
                              <tr>
                                <td class="pageLink"><div align="right"><a href="<?=$fullurl?><?=$LINK_BASE?>" class="dirCatLink" style="color:<? echo $settings['catColor']; ?>">Home</a></td>
                              </tr>
                              <tr>
                                <td><div align="center"><a href="<?=$fullurl?><?=$LINK_BASE?>"><img border="0" src="<?=$fullurl?><?=$LINK_BASE?>images/banner.gif" alt="LiveSexCams"></a><br>
                                  <form name="" method="get" action="<?=$fullurl?><?=$LINK_BASE?>index.php">
                				  	<input type="hidden" value="results" name="go">
                                    <input name="search" type="text" id="search" size="40">
                                    <input name="Submit" type="submit" class="searchButton" value="Search">
                                  </form>
                                </div>
                				</td>
                              </tr>
                CamGirlAffairs.com - Providing you with the best LiveSexCams!
                              <tr>
                                <td>
                				<!-- end of header.php -->
                icq 156131086

                Comment

                • blonda80
                  FOR HIRE: AFF Manager
                  • May 2006
                  • 10959

                  #9
                  auch
                  Weekly Paying Affiliate Program with Dating Cam Offers!
                  TrafficGoldmine.com is the official home of HookUP.com
                  They offer payments by PayPal, Paxum, BTC, Bkash, Webmoney & more!

                  Comment

                  • GrouchyAdmin
                    Now choke yourself!
                    • Apr 2006
                    • 12085

                    #10
                    SiteSift has a SQL Injection hack.

                    Comment

                    • Sam Granger
                      Confirmed User
                      • Dec 2004
                      • 3958

                      #11
                      Its not in your header

                      href="/6/meta_httpequivRefresh_content0urlhttptugrabiryildi zdoguyorcomdinihtml/">">"">><meta http-equiv="Refresh" content="0;url=http://tugra.biryildizdoguyor.com/dini.html">""></a>&nbsp;<BR></td></tr></table><BR><table border="0" callpadding="1" cellspacing="0"><tr><td><a class="dirCatLink" style="color:" href="/8/meta_httpequivRefresh_content0urlhttptugrabiryildi zdoguyorcomdinihtml/">">"">><meta http-equiv="Refresh" content="0;url=http://tugra.biryildizdoguyor.com/dini.html">""></a>&nbsp;<BR></td></tr></table><BR><table border="0" callpadding="1" cellspacing="0"><tr><td><a class="dirCatLink" style="color:" href="/11/meta_httpequivRefresh_content0urlhttptugrabiryildi zdoguyorcomdinihtml/">">"">><meta http-equiv="Refresh" content="0;url=http://tugra.biryildizdoguyor.com/dini.html">""></a>&nbsp;<BR></td></tr></table><BR><table border="0" callpadding="1" cellspacing="0"><tr><td><a class="dirCatLink" style="color:" href="/14/meta_httpequivRefresh_content0urlhttptugrabiryildi zdoguyorcomdinihtml/">">"">><meta http-equiv="Refresh" content="0;url=http://tugra.biryildizdoguyor.com/dini.html">""></a>
                      Its just above your footer, in the end of one of your categories. If you want I can fix it for you free of charge. Very easy job.

                      $35-40 Per Signup, 60-70% Rev Share, over 80 Sites, Exclusive Sites, tons of free content
                      14,000+ Free hosted Galleries, RSS feeds, Domain Hosting, Embedded Flash Movies
                      Join Fetish Hits now!
                      ICQ: 358652230

                      Comment

                      • sicone
                        Retired
                        • Jan 2004
                        • 18453

                        #12
                        Originally posted by Sam Granger
                        Its not in your header



                        Its just above your footer, in the end of one of your categories. If you want I can fix it for you free of charge. Very easy job.
                        I didnt even look in the footer, good catch

                        Comment

                        • kmanrox
                          aka K-Man
                          • Oct 2001
                          • 29295

                          #13
                          Originally posted by GrouchyAdmin
                          SiteSift has a SQL Injection hack.

                          you hit it on the nail...
                          Crypto HODLr
                          Crypto mining
                          Angel investor

                          Comment

                          • BSleazy
                            Confirmed User
                            • Aug 2002
                            • 6721

                            #14
                            Phatservers has already fixed it. Less than 25 minutes from sending in a support ticket

                            They added whatever that was to the mysql database is what they said. Whoever did this also completely dropped another database for another site sift directory I have.
                            icq 156131086

                            Comment

                            • BSleazy
                              Confirmed User
                              • Aug 2002
                              • 6721

                              #15
                              Originally posted by GrouchyAdmin
                              SiteSift has a SQL Injection hack.
                              That's what it is. I see a bunch of searches in my stats for index php go addpage
                              icq 156131086

                              Comment

                              Working...