Re: been seriously hacked



canadafred wrote:


Maybe I better start watching what I say around here. I have 14 web
sites
down right now. If I ticked someone off here and they have enough power
to
do this then let me say to them that I was just trying to have some fun
and
didn't really mean any harm. I know I am over-zealous sometimes because
I'd
rather see discussions on search engine related issues here but still
shouldn't infringe on other's agendas regardless of their purpose.

We all can benefit from sound search engine optimization practices and
this
is a good place to learn good practices.

What exactly had happened? Care to post any details (sans sensitive
site-specific data)? Make sure you find out exactly how the exploit had
been carried out because some of the security holes may lay there dormant
for years.
Happened to me before. The only way to stop the madness was to carefully
analyze all the logs, matching date/time of the malicious files created on
the server with date/time of a particular IP requesting a particular URI
from the site, which led to an minor, innocent looking insecure CGI script
that was not even worth fixing ? I have just gotten rid of the script and
the bad guy went away.

Good luck!

--
Cheers,
Dmitri
See Site Sig Below
-------------------------------------


--
##-----------------------------------------------##
Article posted with Web Developer's USENET Archive
http://www.1-script.com/forums
Web and RSS gateway to your favorite newsgroup -
alt.internet.search-engines - 29289 messages and counting!
##-----------------------------------------------##
.