
Looks like an SQL injection attack. |
|
Posted Thu Feb 16, 2006 8:38 am GMT by Muck
Shouldn’t be hard to do a delete where user = ‘spammer1’.
Have we been keeping up to date with our phpBB patches?
Did you know that participating in a poker forum can help you improve your own game? Be it by sharing experiences or simply asking for help, participation in a forum helps you focus and keep 'on topic' which will help you improve your game. You can learn from other players feedback and from their experiences. Why the THP poker forums? We offer one of the best managed texas holdem poker forums available, and the community within is far more friendly than those typicaly found on other sites. We've made a 'lurkers edition' of the poker forum available here on Holdem Poker Online, but we encourage all visitors to register and join in on the conversations on TexasHoldem-Poker.com
Posted Thu Feb 16, 2006 8:39 am GMT by Adam Marshall
Ya, I know. Sid's in Phoenix though and he must've changed the password to get in the admin panel.
Doing it manually........
Posted Thu Feb 16, 2006 8:52 am GMT by Adam Marshall
I keep seeing the same names coming in and out of the "current users browsing this forum" You guys timing me to see how long it takes to delete all this shit manually?
Posted Thu Feb 16, 2006 8:58 am GMT by Muck
| Adam Marshall wrote: | | Sid's in Phoenix |
Wouldn’t it be easier to call him and find out the password rather than delete this shizo manually?
Or you could leave it till he gets back, just leave a post here staying “Threads start on page xx”. Then they’ll bump to here as people post.
Posted Thu Feb 16, 2006 9:07 am GMT by Adam Marshall
I have no number for him and I'm going to physically smash his phone and force him to get a cell phone when he returns. It's usually something that he couldn't remember anyway either, like a random string of letters and numbers.
I couldn't stand that garbage sitting around for a couple days either.
Almost done anyway.
I think I'll have to turn up the allowed time between posts in the meantime.
It'll all be gone soon, so to fill everyone in who missed it, user "spammer1" posted the following...
Post subject: HAcKeD by OMFG$@#$33322
OMFG XVSAAF AFDFA 32 222
...254 times in General Holdem Chat.
Fun times for me.
Posted Thu Feb 16, 2006 9:17 am GMT by Adam Marshall
Ug, done.
Hour and fifteen minutes...
Posted Thu Feb 16, 2006 9:20 am GMT by JohnnyCache
Man sorry I missed it you could have modded me in there and I could have started from the top while you worked from the bottom OR vice versa. . .
That sucks. It would have been more elite to post it once and not be a giant asscramp.
I know so little about PHP - it's very much not my area, really, but I'm thinking about learning.
Posted Thu Feb 16, 2006 10:38 am GMT by ScanX
next time if u want u can give me a temporary access to the admin as I know PHP and SQL, maybe I could have sorted that in 1 or 2 instructions
Posted Thu Feb 16, 2006 11:25 am GMT by Soup_dog
You guys remember that spammer from the other forum that we were abusing? There was a point in time whenever one of us logged onto his site it would try to download a php file. I wouldn't be surprised to find out this hacker was him. Just a thought.
Posted Thu Feb 16, 2006 11:36 am GMT by ORGrinder
adam... PM or IM me. i've been using phpBB for years. i know how you can get your password for the DB.
Posted Thu Feb 16, 2006 12:02 pm GMT by Muck
| Soup_dog wrote: | | You guys remember that spammer from the other forum that we were abusing? There was a point in time whenever one of us logged onto his site it would try to download a php file. I wouldn't be surprised to find out this hacker was him. Just a thought. |
NB: PHP is a scripting language and requires a web server to execute, so makes an impractical delivery system for a virus/trojan.
This looks like a standard exploit abuse, more a script kiddy than a cracker. It could have been that guy, it doesn’t take a great deal of technical knowledge.
Posted Thu Feb 16, 2006 5:51 pm GMT by Fat Tony
Considering that guy is running a hydroponics business on the front page of his site, he'd have to be pretty goddamn retarded to be pulling a stunt like this since someone could easily retaliate with an actual damaging attack instead of a merely annoying one such as this.
|
|