Go Back  British Expats > Living & Moving Abroad > Australia > The Barbie
Reload this Page >

Remember our hacker ? ( website )

Remember our hacker ? ( website )

Thread Tools
 
Old Mar 18th 2008, 7:43 pm
  #1  
Banned
Thread Starter
 
Timber Floor Au's Avatar
 
Joined: Jan 2004
Location: Morayfield - The Posh Part
Posts: 10,138
Timber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond repute
Default Remember our hacker ? ( website )

Hi guys, remember the thread I did, about 6 weeks+ ago, regarding some knob head hacking our site, and well wreaking havoc?

We contracted a guy to go thru every bit of code, he has just finished, and given us the results. He was astonished at how devious these hackers are, and had never seen such a blatant cheeky possibly unknown and vastly un-published method of hacking.

Now to reiterate the story.

Some guy was getting our results for his cloned site, of one of ours. It was happening every time we were spidered, and we couldnt nor could our google rep, understand how, our ranks and sep's getting juggled with almost clinical occurence... it was a real bummer..

Not just on cost , but also heart breaking .

Well heres the result, and I for one will not be posting the encrypted or decrpted code this toe rag used, for fear of copycats, using it to do nasty things !!

But in essence...

robots.txt !!!!!!!!!!!!

We found a encrypted patch within our robots file, which when decrypted, pointed the spiders, for googlebot, inktomi, msn,slurp etc to this other persons site !!!

Sounds so bleeding obvious now huh !!

That and a one line include, php code.. was all that was needed for this dick. to do what he did.

We caught him, cos we set up a spare website, with exzact same code as the site he HAD hacked. and left it sitting there, soon as the site was changed a trigger was set, and then the arduous task of finding what files were changed... began.

We couldnt ( fella who did it for us ) ascertain what file had been changed, cos within the script, it pointed to a file date change hack, which juggled all file ( last update ) to TODAYS date, presumably to beat the xml sitemapping, for most recent update, to allure a new spider of the site, which re affirms, the hack.. and so compounded our issue.

The matter will now be passed to our solicitors, and hopefully, at the least we can shut this guy down !!

So anyone out there, be aware..

Sorry to bore those who aint into this stuff, but its a serious loophole.

Ste
Timber Floor Au is offline  
Old Mar 18th 2008, 7:46 pm
  #2  
 
asher's Avatar
 
Joined: May 2006
Location: in the Sydney asylum
Posts: 20,690
asher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

glad you got the person responsible good luck with sueing the pants off him
asher is offline  
Old Mar 18th 2008, 7:48 pm
  #3  
Banned
Thread Starter
 
Timber Floor Au's Avatar
 
Joined: Jan 2004
Location: Morayfield - The Posh Part
Posts: 10,138
Timber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Originally Posted by asher
glad you got the person responsible good luck with sueing the pants off him
LOL cheers, I seriously doubt we will get recompense, millenium copyright infringement enforcement is a MINEFIELD !So will be happy just to close him down....

We know his regular haunts ( server hosts ) so are contacting them all, as we have used all of them at one point or another over the years.

Ste
Timber Floor Au is offline  
Old Mar 18th 2008, 7:52 pm
  #4  
 
asher's Avatar
 
Joined: May 2006
Location: in the Sydney asylum
Posts: 20,690
asher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Originally Posted by Timber Floor Au
LOL cheers, I seriously doubt we will get recompense, millenium copyright infringement enforcement is a MINEFIELD !So will be happy just to close him down....

We know his regular haunts ( server hosts ) so are contacting them all, as we have used all of them at one point or another over the years.

Ste
do you actually have a name and face? or just an IP? closing him down is good but really you should get some recompense for all the grief he's given you and it must have cost you a bit too
asher is offline  
Old Mar 18th 2008, 7:58 pm
  #5  
Banned
Thread Starter
 
Timber Floor Au's Avatar
 
Joined: Jan 2004
Location: Morayfield - The Posh Part
Posts: 10,138
Timber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Originally Posted by asher
do you actually have a name and face? or just an IP? closing him down is good but really you should get some recompense for all the grief he's given you and it must have cost you a bit too
Cost approx $nearly 3 figures k !

No name no face, just his server details, and website , he has lodged private details, on domains. We will get him
Timber Floor Au is offline  
Old Mar 18th 2008, 8:02 pm
  #6  
 
asher's Avatar
 
Joined: May 2006
Location: in the Sydney asylum
Posts: 20,690
asher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Originally Posted by Timber Floor Au
Cost approx $nearly 3 figures k !

No name no face, just his server details, and website , he has lodged private details, on domains. We will get him
Good luck mate.
asher is offline  
Old Mar 18th 2008, 8:26 pm
  #7  
On the Dark Side :-)
 
Mrs Jackaroo's Avatar
 
Joined: Apr 2004
Location: South Wales to New South Wales!
Posts: 3,065
Mrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond reputeMrs Jackaroo has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Jesus Christ Ste! Like you say, sounds so simple now. Knowing where to look in the first place is the key though isnt it.

Glad you've finally get it sorted - must be a big weight off your shoulders.
Mrs Jackaroo is offline  
Old Mar 18th 2008, 8:29 pm
  #8  
visa holder
 
Joined: Jan 2006
Location: Thornlands, Bayside
Posts: 1,964
mark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond reputemark 'n' joe has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Well youve totally confused me with spiders etc but get the jist that you have found your hacker Hope he gets what he deserves. Good luck

Joex
mark 'n' joe is offline  
Old Mar 19th 2008, 1:54 pm
  #9  
BE Enthusiast
 
Gobbledegeek's Avatar
 
Joined: Feb 2008
Location: Bendigo
Posts: 433
Gobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of lightGobbledegeek is a glorious beacon of light
Default Re: Remember our hacker ? ( website )

Originally Posted by Timber Floor Au
*snip*

So anyone out there, be aware..

Sorry to bore those who aint into this stuff, but its a serious loophole.

Ste
So are there any preventative measures that can be taken?

Glad to hear you've cornered the git though.
Gobbledegeek is offline  
Old Mar 19th 2008, 2:41 pm
  #10  
Forum Regular
 
weez75's Avatar
 
Joined: Jul 2007
Location: Ely to Adelaide in Sept 08
Posts: 298
weez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really niceweez75 is just really nice
Default Re: Remember our hacker ? ( website )

Originally Posted by Timber Floor Au



Some guy was getting our results for his cloned site, of one of ours. It was happening every time we were spidered, and we couldnt nor could our google rep, understand how, our ranks and sep's getting juggled with almost clinical occurence... it was a real bummer..


Well heres the result, and I for one will not be posting the encrypted or decrpted code this toe rag used, for fear of copycats, using it to do nasty things !!



We found a encrypted patch within our robots file, which when decrypted, pointed the spiders, for googlebot, inktomi, msn,slurp etc to this other persons site !!!

cos within the script, it pointed to a file date change hack, which juggled all file ( last update ) to TODAYS date, presumably to beat the xml sitemapping, for most recent update, to allure a new spider of the site, which re affirms, the hack.. and so compounded our issue.


Ste


mmmmh?

eeer well done i guess
weez75 is offline  
Old Mar 19th 2008, 8:59 pm
  #11  
Banned
Thread Starter
 
Timber Floor Au's Avatar
 
Joined: Jan 2004
Location: Morayfield - The Posh Part
Posts: 10,138
Timber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond reputeTimber Floor Au has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

DMCA emailed today...

lol they make me bloody laugh !!!!!

We cited, 1,900 areas of copyright infirngement.
You have to list every single instance of copyright infringement or thefy etc. Inc url, code, markup, file type and name etc etc etc

We even showed them, he was actually, using our google publisher account on over 45 pages.... he had copied entire code, including advertisers, and so hadnt changed google code !! Which we could have been banned for ! Which is of course all sorted... nonetheless.. we also demonstrated, flash and image files, with our copyright watermarks on, that are on HIS site.

We also, had our acct manager in Sydney , from Google, and acct manager from ( 2 other media sources ) include server transcript, proving fraudulent copyright infringement

Their response.

Unfortunately, you have demonstrated insufficient information, to allow us to pursue this matter.

Bless them !!!
Timber Floor Au is offline  
Old Mar 19th 2008, 10:31 pm
  #12  
 
asher's Avatar
 
Joined: May 2006
Location: in the Sydney asylum
Posts: 20,690
asher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond reputeasher has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Originally Posted by Timber Floor Au
DMCA emailed today...

lol they make me bloody laugh !!!!!

We cited, 1,900 areas of copyright infirngement.
You have to list every single instance of copyright infringement or thefy etc. Inc url, code, markup, file type and name etc etc etc

We even showed them, he was actually, using our google publisher account on over 45 pages.... he had copied entire code, including advertisers, and so hadnt changed google code !! Which we could have been banned for ! Which is of course all sorted... nonetheless.. we also demonstrated, flash and image files, with our copyright watermarks on, that are on HIS site.

We also, had our acct manager in Sydney , from Google, and acct manager from ( 2 other media sources ) include server transcript, proving fraudulent copyright infringement

Their response.

Unfortunately, you have demonstrated insufficient information, to allow us to pursue this matter.

Bless them !!!
what!!

think you made a typo there shouldn't that have been bomb them
asher is offline  
Old Mar 19th 2008, 11:09 pm
  #13  
Australia's Doorman
 
Hutch's Avatar
 
Joined: Jan 2005
Location: The Shoalhaven, New South Wales, Australia
Posts: 11,056
Hutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond reputeHutch has a reputation beyond repute
Default Re: Remember our hacker ? ( website )

Originally Posted by Timber Floor Au
But in essence...

robots.txt !!!!!!!!!!!!

We found a encrypted patch within our robots file, which when decrypted, pointed the spiders, for googlebot, inktomi, msn,slurp etc to this other persons site !!!
Woah - nasty. Don't run cPanel on your server by any chance, do you?
Hutch is offline  
Old Mar 20th 2008, 1:45 am
  #14  
BE Enthusiast
 
gillysm's Avatar
 
Joined: Jun 2007
Location: where else but Queensland
Posts: 474
gillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud ofgillysm has much to be proud of
Default Re: Remember our hacker ? ( website )

OMG don't understand any of that but what happens now? Can you still pursue him or do you have to try and find some other evidence that they will believe?
I'll have to speak to Rach so she can explain this to me in simple terms! Mrs Jackeroo where are you???
gillysm is offline  
Old Mar 20th 2008, 3:00 am
  #15  
Account Closed
 
Joined: May 2006
Posts: 555
graz79 is an unknown quantity at this point
Default Re: Remember our hacker ? ( website )

Glad you got it sorted.

While we do not want the code being put on a public forum for any other scumbags to leach any symptoms we can look for or preventative measures to take to avoid the same fate.
graz79 is offline  


Contact Us - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service -

Copyright © 2024 MH Sub I, LLC dba Internet Brands. All rights reserved. Use of this site indicates your consent to the Terms of Use.