<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
	<channel>
		<title><![CDATA[Latest posts for the topic "My guestbook version 2.4.3 has been hacked"]]></title>
		<link>https://proxy2.de/forum/posts/list/5.php</link>
		<description><![CDATA[Latest messages posted in the topic "My guestbook version 2.4.3 has been hacked"]]></description>
		<generator>JForum - http://www.jforum.net</generator>
			<item>
				<title>My guestbook version 2.4.3 has been hacked</title>
				<description><![CDATA[ Is there any fix or tip to avoif this?  <img src="https://proxy2.de/forum//images/smilies/2e207fad049d4d292f60607f80f05768.gif" /> I've already reuploaded all files, changed username and password, but nothing changed. When try to delete entries or even see the guestbook, a black page shows up. I am trying to avoid deleting the database in the host since it means the loss of all the info. Any advise?? <img src="https://proxy2.de/forum//images/smilies/2786c5c8e1a8be796fb2f726cca5a0fe.gif" /><br /> <br /> I've been checking other posts and applied the solutions I've found, like disabling HTML, but all remains the same.<br /> <br /> <a class="snap_shots" href="http://www.casapatzcuaro.com.mx/gbook/" target="_blank" rel="nofollow">http://www.casapatzcuaro.com.mx/gbook/</a>]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23467.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23467.php</link>
				<pubDate><![CDATA[Thu, 30 Aug 2007 18:46:12]]> GMT</pubDate>
				<author><![CDATA[ mexstud]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Either you had HTML enabled or they managed to login to your admin and posted<br /> <br /> &lt;meta http-equiv="refresh" content="0;URL=http://www.townofleaside.ca/images/"&gt;<br /> <br /> Either login to phpMyAdmin to delete it or use a web browser like Opera or Firefox where you can disable meta refreshes while you delete it.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23468.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23468.php</link>
				<pubDate><![CDATA[Thu, 30 Aug 2007 19:56:22]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Finally I was able to delete de hacked post, changed username and password and all is normal again. I think they did as you say since I left the generic user and pass. Never will do so again!<br /> <br /> Thanks!!]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23469.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23469.php</link>
				<pubDate><![CDATA[Thu, 30 Aug 2007 20:38:01]]> GMT</pubDate>
				<author><![CDATA[ mexstud]]></author>
			</item>
			<item>
				<title>Hoe To Get to myPHPAdmin?</title>
				<description><![CDATA[ Hello, Carbonize<br /> <br /> Apologies for my ignorance, but my GB was hacked the same, and trying (desperatedly) to fix.<br /> <br /> How do I get to 'myPHPAdmin'?<br /> <br /> Thanks!<br /> <br /> Steve Gillespie<br /> Memphis, Tn (USA)]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23578.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23578.php</link>
				<pubDate><![CDATA[Tue, 6 Nov 2007 15:39:21]]> GMT</pubDate>
				<author><![CDATA[ steveg]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ phpMyAdmin is something your host usually provides if they are running cPanel. If you wish I can go into your guestbooks admin and delete the post for you.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23579.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23579.php</link>
				<pubDate><![CDATA[Tue, 6 Nov 2007 15:43:33]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>Yes, that would be great!</title>
				<description><![CDATA[ Yes, that would be great!<br /> <br /> Whtat do you need?<br /> <br /> sg]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23581.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23581.php</link>
				<pubDate><![CDATA[Tue, 6 Nov 2007 15:57:31]]> GMT</pubDate>
				<author><![CDATA[ steveg]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Just email me the url and your login details to <a class="snap_shots" href="mailto:webmaster@carbonize.co.uk">webmaster@carbonize.co.uk</a>]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23582.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23582.php</link>
				<pubDate><![CDATA[Tue, 6 Nov 2007 16:03:23]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>Done</title>
				<description><![CDATA[ OK, you should get an email from me, at work.  Many thanks!<br /> <br /> Steve G]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23583.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23583.php</link>
				<pubDate><![CDATA[Tue, 6 Nov 2007 16:12:52]]> GMT</pubDate>
				<author><![CDATA[ steveg]]></author>
			</item>
			<item>
				<title>Super! - it's fixed!!</title>
				<description><![CDATA[ Many, many thanks, Carbonize!<br /> <br /> If I get hacked again, I will check into your Lazurus GB.<br /> <br /> Steve G.<br /> FedEx]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23584.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23584.php</link>
				<pubDate><![CDATA[Tue, 6 Nov 2007 16:27:15]]> GMT</pubDate>
				<author><![CDATA[ steveg]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ You weren't hacked as such it's just that if you tell AG to allow HTML then it allows ALL HTML including nasty stuff.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23585.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23585.php</link>
				<pubDate><![CDATA[Tue, 6 Nov 2007 17:52:38]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>html off always?</title>
				<description><![CDATA[ so we should not have html enabled in advanced guestbook 2.4.3?<br /> <br /> thanksalot]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23619.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23619.php</link>
				<pubDate><![CDATA[Tue, 13 Nov 2007 03:46:54]]> GMT</pubDate>
				<author><![CDATA[ raymmmondo]]></author>
			</item>
			<item>
				<title>BTW, thanksalot, Carbonize</title>
				<description><![CDATA[ I had this problem, too.<br /> <br /> (And that's how I found this forum.)<br /> <br /> I had been thinking that I'd have to d/l (ftp) the database and open it in another non-web s/w app. and then I would be able to delete the offending record (which re-directed my page to somewhere in Russia!).<br /> <br /> But the keywords "(disabling) meta refresh" rang a bell and then I could just delete that record using the Easy Admin function.<br /> <br /> &lt;Whew&gt;]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23620.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23620.php</link>
				<pubDate><![CDATA[Tue, 13 Nov 2007 03:51:32]]> GMT</pubDate>
				<author><![CDATA[ raymmmondo]]></author>
			</item>
			<item>
				<title>now that I think of it...</title>
				<description><![CDATA[ ... I never got a notice of the addition of a new "comment" in the guestbook.<br /> <br /> The point of a guestbook is to allow comments from the public.<br /> <br /> The s/w has the anti-robot letter-code that a human has to type in, so that's cool.<br /> <br /> I thought now, that, because I allow html, that somebody could easily put a re-direct on the page.<br /> <br /> But now I'm wondering, "How hacked WAS my guestbook/site?"]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23621.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23621.php</link>
				<pubDate><![CDATA[Tue, 13 Nov 2007 04:20:27]]> GMT</pubDate>
				<author><![CDATA[ raymmmondo]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ My Guestbook has been hacked too,they changed the password for the administration.<br /> I have access to phpmyadmin,so in which table is the password stored?<br /> I don't want to delete it,there are a lot of entries.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23733.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23733.php</link>
				<pubDate><![CDATA[Tue, 8 Jan 2008 19:24:49]]> GMT</pubDate>
				<author><![CDATA[ itsnotme]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ It's in book_auth. 2.4.3 has a script to reset the password though. It is found inthe misc folder but I can't remember what it's called.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23734.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23734.php</link>
				<pubDate><![CDATA[Tue, 8 Jan 2008 19:31:12]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Hello again,<br /> <br /> i found the table book_auth.Now all i have to do,is to change the password, right?Wanted to be sure,because the pass seems to be encrypted "2e3bf74742005f64".<br /> <br /> I think it's version 2.3.x ,i made it with your carbonize script.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23737.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23737.php</link>
				<pubDate><![CDATA[Fri, 11 Jan 2008 00:28:12]]> GMT</pubDate>
				<author><![CDATA[ itsnotme]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Try my reset script from www.carbonize.co.uk/AG or click the FAQ at <a class="snap_shots" href="http://lazarus.carbonize.co.uk" target="_blank" rel="nofollow">http://lazarus.carbonize.co.uk</a>]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23738.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23738.php</link>
				<pubDate><![CDATA[Fri, 11 Jan 2008 08:37:46]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ It worked.Thank you.  <img src="https://proxy2.de/forum//images/smilies/3b63d1616c5dfcf29f8a7a031aaa7cad.gif" />]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23739.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23739.php</link>
				<pubDate><![CDATA[Fri, 11 Jan 2008 14:31:45]]> GMT</pubDate>
				<author><![CDATA[ itsnotme]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ guys try to use lazaruz guestbook by carbz]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23746.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23746.php</link>
				<pubDate><![CDATA[Tue, 15 Jan 2008 16:58:12]]> GMT</pubDate>
				<author><![CDATA[ jalmz]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I doubt they got in through 2.4.3.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23747.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23747.php</link>
				<pubDate><![CDATA[Tue, 15 Jan 2008 17:17:07]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title>To change the password of your guestbook</title>
				<description><![CDATA[ Go to www.yoursite.com/guestbook/misc/forget_pass<br /> <br /> There you will  be asked for the name and password of the database used by your guestbook, and after that you will be able to enter a new password.<br /> <br /> Something I don't understand anyway, is how to block ip´s like 087206213221 or some others that use only five numbers like 345-89.pl. One of my guestbooks is being hacked by owners of those kind of ip´s and it seems not to be possible to block them to put silly things at the book. But all of them comes from .pl (poland?)]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23750.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23750.php</link>
				<pubDate><![CDATA[Thu, 17 Jan 2008 04:55:52]]> GMT</pubDate>
				<author><![CDATA[ mexstud]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ AG just stored the hostname which I've always thought was stupid. It was one of the first things I changed for Lazarus. <br /> <br /> Anyway try <a class="snap_shots" href="http://whois.domaintools.com" target="_blank" rel="nofollow">http://whois.domaintools.com</a> to get the ip from the hostname.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23751.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23751.php</link>
				<pubDate><![CDATA[Thu, 17 Jan 2008 05:00:20]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Hello Everybody,<br /> <br /> My guestbook (version 2.4.3.) also receives spam messages. I reinstalled the script, do not use the standard login and password and refuse html in the markup of the messages. Ofcourse this version includes the robot-check by using the image with a code that is needed before you can publish a new message.<br /> <br /> Does anybody know how I can resolve this?<br /> <br /> Thank you in advance.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23752.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23752.php</link>
				<pubDate><![CDATA[Thu, 17 Jan 2008 14:38:08]]> GMT</pubDate>
				<author><![CDATA[ Feestgrot]]></author>
			</item>
			<item>
				<title>Hacking</title>
				<description><![CDATA[ Hi <br /> I have just registered as I have been hacked twice now but only have 2.4.2.  I am using Dataflame as my host and I do not know very mcuh about all of this and they loaded the Guestbook onto my site in the first place.  Each time they have sorted the problem but yesterday I got 6 spam entries - all the same except the name.  Dataflame suggested upgrading the Guestbook, but by the look of all these entries, that will not help!  Any suggestions that an amatuer could deal with?<br />  <img src="https://proxy2.de/forum//images/smilies/9d71f0541cff0a302a0309c5079e8dee.gif" />]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23782.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23782.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 11:19:18]]> GMT</pubDate>
				<author><![CDATA[ karenbee]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ You have captcha enabled?<br /> <br /> You should all be on the latest version.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23783.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23783.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 17:05:53]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I assume captcha is where you have have to copy the letters that appear in the box?  This seems to be there automaticially and I can't see anywhere in my settings where it allows me to turn it on or off.  Actually Dataflame have now installed the 2.4.3 version although it is not entirely working as the emoticons/ pictures are not appearing!]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23785.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23785.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 18:13:41]]> GMT</pubDate>
				<author><![CDATA[ karenbee]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Open config.inc.php and edit the base_url.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23786.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23786.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 18:14:30]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ Oh dear -I wish I knew what you meany by that!  Or where to find it.  Is that what captcha is then?]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23787.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23787.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 18:38:29]]> GMT</pubDate>
				<author><![CDATA[ karenbee]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ I have found where it says captcha.php on the LHS and there is a load of code on the RHS.]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23788.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23788.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 18:40:36]]> GMT</pubDate>
				<author><![CDATA[ karenbee]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ There is a line marked <br /> <br /> $base_url = '';<br /> <br /> Put your guestbooks url between the ']]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23789.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23789.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 19:24:44]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ OK - I have found that.  It says <br /> [base_url]/image.php?id=$VARS[gbtoken]"<br /> So i understand what to insert in between the '', but please could you explain what I am doing before I do this!<br /> On add an entry, the letters come up that a user has to copy already.  I looked up 'captcha' and it seems that it what it is.  So if it already working, do I still need to do what you suggest, or is there another benefit?<br /> thanks]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23790.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23790.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 19:32:54]]> GMT</pubDate>
				<author><![CDATA[ karenbee]]></author>
			</item>
			<item>
				<title></title>
				<description><![CDATA[ That's definitely no right. Your config file appears to have gotten messed up. Can you email it to me? Either use the forums email system or send it to <a class="snap_shots" href="mailto:webmaster@carbonize.co.uk">webmaster@carbonize.co.uk</a>]]></description>
				<guid isPermaLink="true">https://proxy2.de/forum/posts/preList/6904/23792.php</guid>
				<link>https://proxy2.de/forum/posts/preList/6904/23792.php</link>
				<pubDate><![CDATA[Sat, 26 Jan 2008 20:09:50]]> GMT</pubDate>
				<author><![CDATA[ Carbonize]]></author>
			</item>
	</channel>
</rss>