GoFuckYourself.com - Adult Webmaster Forum

GoFuckYourself.com - Adult Webmaster Forum (https://gfy.com/index.php)
-   Fucking Around & Business Discussion (https://gfy.com/forumdisplay.php?f=26)
-   -   Is this a hack someone injecting into my wp site? (https://gfy.com/showthread.php?t=1134352)

lakerslive 02-24-2014 12:43 PM

Is this a hack someone injecting into my wp site?
 
its a bit creepy.. I?ve changed db tables, passwords, upgraded to latest wordpress + detube verison.. but it still changes to that.. from
http://mydomain.com/?orderby=views

to

mydomain.com/s=\?asshole%3A&orderby=views

FINESEC 02-24-2014 02:27 PM

You might want to check your scripting for vulnerabilities. If you can't afford that you can mitigate vulnerabilities with help of mod_security.

Shoplifter 02-24-2014 02:56 PM

Check your .htaccess? Chances are it's writeable.

lakerslive 02-24-2014 03:17 PM

yeah, i did a "FIND in all files" for that "asshole" word for all my files using dreamweaver and didn't find any. I checked htaccess.. nothing.

I checked database, its clean.

really bizarre.

Thanks for your time (whoever is helping) always

loreen 02-24-2014 03:20 PM

I found something similar in my .htaccess and header of the theme.

lakerslive 02-24-2014 06:58 PM

Yes, i can only see it when
1. im logged out
2. on the front page of the site ONLY.

Colmike9 02-24-2014 07:03 PM

You see anything weird in your .htaccess with RewriteRule?

phasic 02-24-2014 07:08 PM

Quote:

Originally Posted by lakerslive (Post 19994275)
its a bit creepy.. I?ve changed db tables, passwords, upgraded to latest wordpress + detube verison.. but it still changes to that.. from
http://mydomain.com/?orderby=views

to

mydomain.com/s=\?asshole%3A&orderby=views

Hit me up on ICQ. Or shoot me an email support (at) phasicllc dot com

lakerslive 02-25-2014 12:29 AM

fixed it.. shieeet..

Just basically put in a fresh copy of wordpress.. fresh re installation plugins

site had to be down for some 30+ mins.. worth it...

lakerslive 02-25-2014 12:50 AM

seriously though, with wordpress, if you modified it alot you won't be able to keep up with the updates.. Good thing I planned ahead and didn't customize this theme i have.

phasic 02-25-2014 01:15 AM

Quote:

Originally Posted by lakerslive (Post 19994856)
fixed it.. shieeet..

Just basically put in a fresh copy of wordpress.. fresh re installation plugins

site had to be down for some 30+ mins.. worth it...

If it happened once, theres a good possibility you've got a vulnerability some where. It'd be a good idea to have someone take a look for you.

loreen 02-25-2014 03:10 AM

Quote:

Originally Posted by lakerslive (Post 19994864)
Good thing I planned ahead and didn't customize this theme i have.

:1orglaugh:1orglaugh

Glad you fixed it :)


All times are GMT -7. The time now is 09:52 PM.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
©2000-, AI Media Network Inc123