Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 02-24-2014, 12:43 PM   #1
lakerslive
Confirmed User
 
Industry Role:
Join Date: Aug 2012
Posts: 929
Is this a hack someone injecting into my wp site?

its a bit creepy.. I?ve changed db tables, passwords, upgraded to latest wordpress + detube verison.. but it still changes to that.. from
http://mydomain.com/?orderby=views

to

mydomain.com/s=\?asshole%3A&orderby=views
lakerslive is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-24-2014, 02:27 PM   #2
FINESEC
Registered User
 
Industry Role:
Join Date: Nov 2012
Location: Warsaw
Posts: 59
You might want to check your scripting for vulnerabilities. If you can't afford that you can mitigate vulnerabilities with help of mod_security.
__________________
http://SiteDefensor.com - secure authentication, password cracking and sharing prevention, site ripping protection
http://SiteCaptcha.com - free, secure and simple CAPTCHA solution
FINESEC is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-24-2014, 02:56 PM   #3
Shoplifter
Richest man in Babylon
 
Shoplifter's Avatar
 
Industry Role:
Join Date: Jan 2002
Location: Posts: 10,002
Posts: 5,699
Check your .htaccess? Chances are it's writeable.
Shoplifter is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-24-2014, 03:17 PM   #4
lakerslive
Confirmed User
 
Industry Role:
Join Date: Aug 2012
Posts: 929
yeah, i did a "FIND in all files" for that "asshole" word for all my files using dreamweaver and didn't find any. I checked htaccess.. nothing.

I checked database, its clean.

really bizarre.

Thanks for your time (whoever is helping) always
lakerslive is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-24-2014, 03:20 PM   #5
loreen
myadultdesign.com
 
loreen's Avatar
 
Industry Role:
Join Date: May 2004
Location: Europe
Posts: 12,557
I found something similar in my .htaccess and header of the theme.
__________________
Banners, logos, headers, peels, FHGs, ads, paysites, photo retouching etc: my adult design portfolio
My logo portfolio: PornLogos.com

loreen is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-24-2014, 06:58 PM   #6
lakerslive
Confirmed User
 
Industry Role:
Join Date: Aug 2012
Posts: 929
Yes, i can only see it when
1. im logged out
2. on the front page of the site ONLY.
lakerslive is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-24-2014, 07:03 PM   #7
Colmike9
(>^_^)b
 
Colmike9's Avatar
 
Industry Role:
Join Date: Dec 2011
Posts: 7,223
You see anything weird in your .htaccess with RewriteRule?
__________________
Join the BEST cam affiliate program on the internet!
I've referred over $1.7mil in spending this past year, you should join in.
I make a lot more money in the medical field in a lab now, fuck you guys. Don't ask me to come back, but do join Chaturbate in my sig, it still makes bank without me touching shit for years..
Colmike9 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-24-2014, 07:08 PM   #8
phasic
Confirmed User
 
phasic's Avatar
 
Industry Role:
Join Date: Jul 2005
Location: US
Posts: 2,104
Quote:
Originally Posted by lakerslive View Post
its a bit creepy.. I?ve changed db tables, passwords, upgraded to latest wordpress + detube verison.. but it still changes to that.. from
http://mydomain.com/?orderby=views

to

mydomain.com/s=\?asshole%3A&orderby=views
Hit me up on ICQ. Or shoot me an email support (at) phasicllc dot com
__________________
Brief revisit. (mic drop)
phasic is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-25-2014, 12:29 AM   #9
lakerslive
Confirmed User
 
Industry Role:
Join Date: Aug 2012
Posts: 929
fixed it.. shieeet..

Just basically put in a fresh copy of wordpress.. fresh re installation plugins

site had to be down for some 30+ mins.. worth it...
lakerslive is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-25-2014, 12:50 AM   #10
lakerslive
Confirmed User
 
Industry Role:
Join Date: Aug 2012
Posts: 929
seriously though, with wordpress, if you modified it alot you won't be able to keep up with the updates.. Good thing I planned ahead and didn't customize this theme i have.
lakerslive is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-25-2014, 01:15 AM   #11
phasic
Confirmed User
 
phasic's Avatar
 
Industry Role:
Join Date: Jul 2005
Location: US
Posts: 2,104
Quote:
Originally Posted by lakerslive View Post
fixed it.. shieeet..

Just basically put in a fresh copy of wordpress.. fresh re installation plugins

site had to be down for some 30+ mins.. worth it...
If it happened once, theres a good possibility you've got a vulnerability some where. It'd be a good idea to have someone take a look for you.
__________________
Brief revisit. (mic drop)
phasic is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 02-25-2014, 03:10 AM   #12
loreen
myadultdesign.com
 
loreen's Avatar
 
Industry Role:
Join Date: May 2004
Location: Europe
Posts: 12,557
Quote:
Originally Posted by lakerslive View Post
Good thing I planned ahead and didn't customize this theme i have.


Glad you fixed it
__________________
Banners, logos, headers, peels, FHGs, ads, paysites, photo retouching etc: my adult design portfolio
My logo portfolio: PornLogos.com

loreen is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.