Results 1 to 16 of 16
  1. #1
    ABW Ambassador AWaR's Avatar
    Join Date
    January 18th, 2005
    Location
    Scotland
    Posts
    625
    if you found your site was listed on a site where the page heading was "PERSONAL: Obituaries"

    I know I have a site about ghosts, but come on!

    http:://www2.mallpark.com/Search01Tent.cfm?MallName=PERSONAL&SCName=Obituaries&N extStart=0


    <It's not nice having extra spaces breaking URL's>

    [ 11-02-2001: Message edited by: fish ]

    [ fixed link ]

    [ 11-02-2001: Message edited by: Haiko ]

  2. #2
    ABW Founder Haiko de Poel, Jr.'s Avatar
    Join Date
    January 18th, 2005
    Location
    New York
    Posts
    21,609
    This ain't working Fish [img]/infopop/emoticons/icon_frown.gif[/img]

    http:://www2.mallpark.com/Search01Tent.cfm?MallName=PERSONAL&SCName=Obituaries&N extStart=0

    hmmmm ... I'm on it!

    Haiko

  3. #3
    ABW Ambassador AWaR's Avatar
    Join Date
    January 18th, 2005
    Location
    Scotland
    Posts
    625
    It keeps adding a space...

    It was edited about 4 times and I finally gave up on it [img]/infopop/emoticons/icon_frown.gif[/img]

  4. #4
    pph Expert! Gordon's Avatar
    Join Date
    January 18th, 2005
    Location
    Edmonton Canada
    Posts
    5,781
    The bogey man has come back [img]/infopop/emoticons/icon_biggrin.gif[/img]

  5. #5
    ABW Founder Haiko de Poel, Jr.'s Avatar
    Join Date
    January 18th, 2005
    Location
    New York
    Posts
    21,609
    Just as an aside ...

    840 confirmed hack attempts since friday ....

    Haiko

  6. #6
    ABW Veteran Student Heyder's Avatar
    Join Date
    January 18th, 2005
    Posts
    5,482
    I know this will make me sound stupid but how do you confirm or know of a hack attempt.

    In fact, since I'm letting everyone know my nonknowledge, how do you hack a website? [img]/infopop/emoticons/icon_redface.gif[/img]

  7. #7
    ABW Founder Haiko de Poel, Jr.'s Avatar
    Join Date
    January 18th, 2005
    Location
    New York
    Posts
    21,609
    Heyder,

    The infopoop generates a report for me and I have a script that watches all non public file access ... which I compare to Log Files crate a file and send to FBI (I have a very good contact there [img]/infopop/emoticons/icon_wink.gif[/img] AHEM! )

    But to answer your question ......
    1. get access to your cgi-bin and steal / change info
    2. get access to your server and change / edit / delete your files
    3. get access to your customers info if stored on server

    BTW - some Einstein hacked the mail server today

    Haiko

    [ 11-02-2001: Message edited by: Haiko ]

  8. #8
    ABW Veteran Student Heyder's Avatar
    Join Date
    January 18th, 2005
    Posts
    5,482
    Well,<IMG src=http://www.abestweb.com/ubb/icons/icon38.gif>

    I guess I gotta work on my contact list. LOL

  9. #9
    ABW Founder Haiko de Poel, Jr.'s Avatar
    Join Date
    January 18th, 2005
    Location
    New York
    Posts
    21,609
    Heyder,
    http://www.abestweb.com/cgi-bin/ubb/...pic&f=1&t=0002

    The poop version to show the hack attempt

    Haiko

  10. #10
    Newbie
    Join Date
    January 18th, 2005
    Posts
    7
    I hope I dont have the gestapo kicking in my door now :eek:

  11. #11
    ABW Veteran Student Heyder's Avatar
    Join Date
    January 18th, 2005
    Posts
    5,482
    Oh so that's all the 404s I get on my stats!

  12. #12
    ABW Veteran Student Heyder's Avatar
    Join Date
    January 18th, 2005
    Posts
    5,482
    I keep seeing these on my server. The first is the windows virus. I don't care as I am unix but it still sucks bandwidth.

    The second must be another or a hacker right?

    Code 404 Not Found Requests
    | /d/winnt/system32/cmd.exe


    | /scripts/root.exe

  13. #13
    Content $ Queen Ebudae's Avatar
    Join Date
    January 18th, 2005
    Location
    Texas
    Posts
    2,823
    Eeeekkk, I went and looked at the link. Hope it doesnt log me as a hacker!

    You know, I have been looking at my logs and seeing all kinds of requests for files I don't even have on my site.

    /images/misc/blank.gif
    /images/pixel.gif
    /robots.txt
    /scripts/..%5c../winnt/system32/cmd.exe
    /scripts/root.exe
    /MSADC/root.exe
    /c/winnt/system32/cmd.exe
    /d/winnt/system32/cmd.exe
    /_mem_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe
    /_vti_bin/..%5c../..%5c../..%5c../winnt/system32/cmd.exe

    What is all this stuff they are looking for?

    Vicki :confused:

  14. #14
    Super Sh!t Stirrer SSanf's Avatar
    Join Date
    January 18th, 2005
    Posts
    9,944
    I clicked on it too out of curiosity. Please, don't report me. I didn't mean it, really! [img]/infopop/emoticons/icon_biggrin.gif[/img]

  15. #15
    ABW Founder Haiko de Poel, Jr.'s Avatar
    Join Date
    January 18th, 2005
    Location
    New York
    Posts
    21,609
    Heyder,

    <BLOCKQUOTE class="ip-ubbcode-quote"><font size="-1">quote:</font><HR> | /scripts/root.exe<HR></BLOCKQUOTE>

    Looks like it!

    ---------------

    Vicki,

    Looks like code red virus attacks!

    ---------------

    All "regulars" are "excluded", via script, from the hack attempts ... so no worries [img]/infopop/emoticons/icon_smile.gif[/img]

    But My Mail server was out for 2 hours yesterday, I do have the tar file but it is pure text :rolleyes: so it will take me some time to get back to anyone who did mail me.

    Haiko

  16. #16
    ABW Ambassador parentsworld's Avatar
    Join Date
    January 18th, 2005
    Location
    Calgary, Alberta, Canada
    Posts
    642
    <BLOCKQUOTE class="ip-ubbcode-quote"><font size="-1">quote:</font><HR>Originally posted by Vicki:

    /robots.txt
    What is all this stuff they are looking for?
    Vicki :confused:
    <HR></BLOCKQUOTE>

    Vicki,
    You might want to create a robots.txt file -- that's what the bots from many search engines look for first when indexing your site. In it, you can tell them what NOT to index (image files, cgi files...and so on)

    RoboGen has a free download that will help you creat this file and explain it better.

    Jill

  17. Newsletter Signup

+ Reply to Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •