home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > Webmastering and Programming
Ask a Tech Support Question (free)!

I've been hacked, so what do i do now?

Reply
Get bargains at  »  Dealighted.com
 
Thread Tools Search this Thread
Currently Active Users: 2518
Discussions: 200,996, Posts: 2,379,942, Members: 246,364
Old May 28th, 2004, 05:24 PM   Digg it!   #1 (permalink)
Ultimate Member
 
shawshank62's Avatar
 
Join Date: Oct 2002
Location: southampton, pa
Posts: 4,791
Send a message via ICQ to shawshank62 Send a message via AIM to shawshank62
I've been hacked, so what do i do now?

http://www.gamershdq.com/phpnuke/index.php

Looks like i was hacked, and whoever did deleted all admin accounts....is there anything i can do? Acording to the site, it was hacked by "Dan from immortals-inc" http://www.immortals-inc.com/index.php

I dont know what to think about this...is there any legal action i can take, any way to trace this?
shawshank62 is offline   Reply With Quote
Old May 28th, 2004, 05:27 PM     #2 (permalink)
A hero in training
 
GroundZero3's Avatar
 
Join Date: Oct 2001
Location: Norfolk, VA
Posts: 26,861
Blog Entries: 15
wow that sucks shawshank62

this box that was hacked was it a personal box that is at home? or you using a webhost?

what os? and how is the network set up?
GroundZero3 is online now   Reply With Quote
Old May 28th, 2004, 05:30 PM     #3 (permalink)
Ultimate Member
 
shawshank62's Avatar
 
Join Date: Oct 2002
Location: southampton, pa
Posts: 4,791
Send a message via ICQ to shawshank62 Send a message via AIM to shawshank62
I have webhosting, and the os is a unix based, i cant remember, it might have been debian. http://www.p4host.com/

That is the only site that was hacked from my hosting, i 4 others that wernt touched.
shawshank62 is offline   Reply With Quote
Old May 28th, 2004, 05:32 PM     #4 (permalink)
Member
 
Join Date: May 2004
Location: Ginnerup, Denmark
Posts: 72
Send a message via ICQ to K-Raz
Arrow

Do you have acces to any logs?

BTW - YGPM (Shortly)
K-Raz is offline   Reply With Quote
Old May 28th, 2004, 05:42 PM     #5 (permalink)
Ultimate Member
 
shawshank62's Avatar
 
Join Date: Oct 2002
Location: southampton, pa
Posts: 4,791
Send a message via ICQ to shawshank62 Send a message via AIM to shawshank62
im talking to my hosting to see if there are any logs that i could get access to, and thanks for the info on the pm
shawshank62 is offline   Reply With Quote
Old May 28th, 2004, 05:44 PM     #6 (permalink)
Member
 
Join Date: May 2004
Location: Ginnerup, Denmark
Posts: 72
Send a message via ICQ to K-Raz
Anytime!

I just didn't want to post that sort of info in a public forum
K-Raz is offline   Reply With Quote
Old May 28th, 2004, 05:50 PM     #7 (permalink)
Ultimate Member
 
shawshank62's Avatar
 
Join Date: Oct 2002
Location: southampton, pa
Posts: 4,791
Send a message via ICQ to shawshank62 Send a message via AIM to shawshank62
Well i looked through the rules, and didnt see where this would violate them, so i dont see why it shouldnt be posted

Info about http://www.immortals-inc.com/index.php

Domain name : 66.193.174.252
Time Warner Telecom TWTC-NETBLK-4 (NET-66-192-0-0-1)
66.192.0.0 - 66.195.255.255
HostDime.com DimeNoc - Infinitum Technologies TWTC-INFINITUM-01 (NET-66-193-174-0-1)

Registrant Contact:
www.Immortals-Inc.com
Marc Heward (vtsnowdude15@hotmail.com)
(802) 484-5070
Fax: None
3278 Route 44.
Brownsville, VT 05037
US

Administrative Contact:
www.Immortals-Inc.com
Marc Heward (vtsnowdude15@hotmail.com)
(802) 484-5070
Fax: None
3278 Route 44.
Brownsville, VT 05037
US

Technical Contact:
Ez Web Hosting
Ez Web Hosting Support (support@ez-web-hosting.com)
1-877-ezwebhosting.c
Fax: xNA
4633 Welborn Dr.
Sherrills Ford, NC 28673
US

Billing Contact:
www.Immortals-Inc.com
Marc Heward (vtsnowdude15@hotmail.com)
(802) 484-5070
Fax: None
3278 Route 44.
Brownsville, VT 05037
US

Status: Active

Name Servers:
dns1.njcharmer.com
dns2.njcharmer.com

Creation date: 19 Aug 2003 22:49:58
Expiration date: 19 Aug 2004 22:49:58
shawshank62 is offline   Reply With Quote
Old May 28th, 2004, 06:21 PM     #8 (permalink)
Ultimate Member
 
Join Date: Jul 2003
Posts: 1,253
Did you bother getting any of the patches for PHPNuke? There is in SQL injection attack that people can run to still your admin login info. A guy on this forum a while backed warned me that he could easily get my account info.

Search nukecops.com ro phpnuke.org for security fixes.

I just upgraded to 7.2 and now that you got hacked, I'm going to find any security updates.
Rand Dusing is offline   Reply With Quote
Old May 28th, 2004, 06:37 PM     #9 (permalink)
Ultimate Member
 
shawshank62's Avatar
 
Join Date: Oct 2002
Location: southampton, pa
Posts: 4,791
Send a message via ICQ to shawshank62 Send a message via AIM to shawshank62
As far as i can see, there isnt much i can do with that site anymore, since he deleted all admin names. And AFAIK, that site wasn't updated. As for the rest of my sites, i will be upgrading them to 7.2 over the weekend. The fact that he has a site like that pisses me off, i wish there was some way to get it closed.

Are there any laws against hacking? It is a crime, isnt it?

Last edited by shawshank62 : May 28th, 2004 at 06:47 PM.
shawshank62 is offline   Reply With Quote
Old May 28th, 2004, 06:42 PM     #10 (permalink)
Member
 
Join Date: May 2004
Location: Ginnerup, Denmark
Posts: 72
Send a message via ICQ to K-Raz
Angry

I do believe its a crime

You should contact your ISP, his ISP - and probably also the police, but you gotta have some evidence.

It shouldn't be a problem though - he seems like a total n00b, i mean - c'mon! - leaving links to his own site... using the word 0wn3d? *lol*

A true script kiddie... He should be brought in front of a judge, that might teach him

*still rather p1ssed by the picture he inserted!*
K-Raz is offline   Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
Browser Security Test Droppyale Security and Privacy Issues 31 March 29th, 2004 05:20 AM
ClanIMO.com Hacked!!!??? PyroSama General Gaming Discussion 56 June 26th, 2003 11:10 PM
kazaa taffy Applications and Operating Systems 12 February 25th, 2003 03:17 AM
Hacked Agian! The RIAA I mean. Redwolf IMO Community 16 January 30th, 2003 11:32 PM
XP Modular RayH General Tech Discussion 2 May 28th, 2002 12:59 PM


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Most Active Discussions
Is It Just Me? (3092)
Foxconn Blackops x48 MoBo (5)
Charges against non-tippers dropped.. (22)
Health Care Rationing (16)
Nvidia GTX 260 problem (13)
Delete an OS (17)
Laptop with wireless problem. (13)
Wireless Televisions. (12)
windows vista security holes (19)
CPU fan stops spinning randomly (11)
Regular Build (11)
Point and Shoot Camera Suggestions. (9)
[F@H SPAM 11/16/09] ! 1/2 months to.. (41)
windows 7 problem (7)
Recent Discussions
add ram to existing (0)
Nvidia GTX 260 problem (13)
Laptop with wireless problem. (13)
Point and Shoot Camera Suggestions. (9)
Is the PSU I received dead? (16)
FreeAgent drive software not x64 comp.. (1)
Intel 5100 AGN issues fixed yet? (28)
Foxconn Blackops x48 MoBo (5)
[F@H SPAM 11/16/09] ! 1/2 months to r.. (41)
Print spooler problem (17)
Q9650 vs. Q9550 (2)
Desktop Calendar Application (2)
Looking for new motherboard (1)
soundmon.exe (8)
Jedi Academy Problem (3)
Can a page file be "too big".. (1)
Size after cutting 700Mb file is 2.5 .. (0)
Delete an OS (17)
windows vista security holes (19)
updating BIOS via winflash, claims fi.. (1)
New Server Configuration Suggestions (0)
cheap gaming laptop? (12)
Unallocated Space (2)
help me pls laptop just stopped worki.. (1)
C# + LINQ Help (7)


All times are GMT -4. The time now is 11:20 AM.
TechIMO Copyright 2009 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28