Results 31 to 37 of 37
Hybrid View
-
31st May 2010, 09:10 AM #1OPMemberWebsite's:
btjunk.netok i will thanks!
kiladila Reviewed by kiladila on . Will pay for help solving issue ASAP Have very big problem with rapidleech server: www.leechking.com Somebody with IP 95.211.100.XXX stealing my RapidShare accounts and drainin all traffic from it. I can't do anything even password change not helping. What i have done: first of all reintalled OS to Linux Ubuntu, than changed my root, mysql, admin zone pass. Added extra security to admin zone (additional server side login), changed all RapidShare premium passwords. And nothing, in the next day same fucked IP is showing in Rating: 5
-
31st May 2010, 08:54 PM #2MemberWebsite's:
kevaldomadia.com eleetgeeks.netSimple 2 possibilities:
1. Your system is compromised, system from where you access your server!
2. Your server is compromised, backdoored or just shelled.
Solution for 1: Take back up (of individual file and folder), format re-install your OS and then access your server. Don't break your head in solving it.
Solution for 2: nmap -PN on your server and check for any binded shells! Disable functions like fsockopen, system (leeching should work with them disabled) in php.ini. Look out for files like "shbd" or anything that sounds weird in your 777 folders, including /tmp/ .
Simple?
-
31st May 2010, 10:06 PM #3OPMemberWebsite's:
btjunk.netThanks kd1987 for advices i will look in to it, but i think this is sql injection some where in script...
-
1st Jun 2010, 08:37 AM #4MemberWebsite's:
kevaldomadia.com eleetgeeks.netIf it is sqli that u suspect then, add this line in your .htaccess
php_flag magic_quotes_gpc on
-
2nd Jun 2010, 06:57 AM #5OPMemberWebsite's:
btjunk.netWe didn't managed how stealing was done, but after changing rapidleech script from rapidleech plus from zecel.com to original upgraded, problem are gone. So it's seams that rapidleech+ from zecel.com have serious backdoors ir something like this.
-
3rd Jun 2010, 05:59 AM #6MemberWebsite's:
kevaldomadia.com eleetgeeks.netCheers!
-
6th Jun 2010, 10:22 PM #7OPMemberWebsite's:
btjunk.netalbertoberto you right. Problem is solved yesterday and reason:
insert_location() function (download
system) which reveals premium cookies and base_64 encoded auth-strings to end
user(s). with simple http debuger.
Sponsored Links
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Similar Threads
-
captcha solving
By cyloan in forum Webmaster DiscussionReplies: 1Last Post: 30th Aug 2011, 09:25 PM -
any software for auto captccha solving
By zainbintariq in forum General DiscussionReplies: 3Last Post: 21st May 2011, 05:49 PM -
DNS Issue [HELP REQUIRED ASAP]
By tdsii in forum Server ManagementReplies: 6Last Post: 17th May 2011, 02:18 AM -
Dot Needs Help ASAP
By Dotcom in forum Technical Help Desk SupportReplies: 6Last Post: 19th Jul 2009, 01:40 AM
themaLeecher - leech and manage...
Version 5.04 released. Open older version (or...