Print Page | Close Window

My Forum was Hacked - Please Help

Printed From: Web Wiz Forums
Category: Web Wiz Web App Support Forums
Forum Name: Web Wiz Forums
Forum Description: Support forum for Web Wiz Forums application.
URL: https://forums.webwiz.net/forum_posts.asp?TID=16748
Printed Date: 15 April 2026 at 11:00pm
Software Version: Web Wiz Forums 12.08 - https://www.webwizforums.com


Topic: My Forum was Hacked - Please Help
Posted By: caribbeanmed
Subject: My Forum was Hacked - Please Help
Date Posted: 29 September 2005 at 2:35pm

Hello

could you please see:

http://www.caribbeanmedicine.com/forum/ - http://www.caribbeanmedicine.com/forum/

It has been hacked again (this is the 5th time)

I did what I was told by my host (1planhost.com) and made it so that people could not upload anything, yet it has still been hacked.

What should I do now?

Please help me here
 
Asad Raza
Admin - http://www.CaribbeanMedicine.com - www.CaribbeanMedicine.com
admin@caribbeanmedicine.com
 



Replies:
Posted By: dj air
Date Posted: 29 September 2005 at 3:44pm
you should upgrade to V7.92, a lot of security holes and coding in general have changed and improved the board since then.


Posted By: JJLatWebWiz
Date Posted: 29 September 2005 at 6:26pm

The next time you're hacked, put a screen capture on your site and link to it here so we can see what the hacker has done.  I don't see anything obviously wrong with your site.

I can tell you this, if the hacker has planted a hacking tool anywhere on the server hosting your site, he can view any file on your site, even if it's in a parent folder above the wwwroot.  And since the Access MDB for the forum must be in a folder that the anonymous IUSR account can read and write to, such a hacker can not be prevented from modifying the MDB.
 
Check your site for hacker-related files.  Check the WWF upload folders for files other than the permitted jpg, jpeg, gif, zip, and rar (and couple others I can't remember).  If you see asp, exe, vbs files in your upload folders, chances are good that WWF was the vector.  If such files exist outside the upload and especially outside the forum, chances are better that WWF was not the vector and some other site on the same machine was the actual source.
 
 


-------------
p.s. I'm not affiliated with Web Wiz Guide in any way. I'm just an average Web Wiz user repaying my debt for the use of their fine forum by trying to help other Web Wiz Guide users.



Print Page | Close Window

Forum Software by Web Wiz Forums® version 12.08 - https://www.webwizforums.com
Copyright ©2001-2026 Web Wiz Ltd. - https://www.webwiz.net