If you are not registered or logged in, you may still use these forums but with limited features. Show recent topics
  [Search] Search   [Hottest Topics] Hottest Topics   [Members]  Member Listing   [FAQ]  FAQ 
[Register] Register / 
[Login] Login 
Hacked.  XML
Forum Index » Support Forum
Author Message
nalcro
Newbie

Joined: 24/08/2010 20:30:58
Messages: 3
Offline

Helllo there, I recently got hacked and need advice to fix the problem

address = http://worldschoolphotographs.com/guestbook/

it will auto connect to a different site. When i go to the admin section it will do the same not giving me time to delete the entry

Thanks for any help

Tom
Carbonize
Master
[Avatar]

Joined: 12/06/2003 19:26:08
Messages: 4291
Location: Bristol, UK
Offline

This is the second site I have seen that has been abused this way by a poster using the name Mrdumbelf. The problem is that when you enable HTML in posts AG allows ANY HTML to be used. In this case they have used JavaScript. If you have Firefox, Opera or Chrome simply disable JavaScript support and you will be able to login and delete them as notmal. If you wish I can login and delete them for you.

My advice is if you are going to have HTML enabled then add <script to the bad word list.

Carbonize
I am not the maker of the Advanced Guestbook

get Lazarus
[Email] [WWW] [Yahoo!] aim icon [MSN] [ICQ]
nalcro
Newbie

Joined: 24/08/2010 20:30:58
Messages: 3
Offline

Excellent... The little rat, all fixed now and have disabled html..

Cheers for that, much appreciated

Tom
nalcro
Newbie

Joined: 24/08/2010 20:30:58
Messages: 3
Offline

Just to let you know also, he made 4 entires under the name mrdumbelf, The <script entry been the top entry, I deleted that and i still had the problem, the other 3 entries were blank, when i deleted them the problem was solved.

Thanks Again
Carbonize
Master
[Avatar]

Joined: 12/06/2003 19:26:08
Messages: 4291
Location: Bristol, UK
Offline

No the <script you could see had been badly done. It was the <script tags you couldn't see that were the problem. But as I said there seems to have been a spate of this in the last few days.

Carbonize
I am not the maker of the Advanced Guestbook

get Lazarus
[Email] [WWW] [Yahoo!] aim icon [MSN] [ICQ]
Carbonize
Master
[Avatar]

Joined: 12/06/2003 19:26:08
Messages: 4291
Location: Bristol, UK
Offline

Now your only problem is all the spam entries you have

Carbonize
I am not the maker of the Advanced Guestbook

get Lazarus
[Email] [WWW] [Yahoo!] aim icon [MSN] [ICQ]
 
Forum Index » Support Forum
Go to:   
Based on the open source JForum