Jump to content

Mark Noble

Members
  • Posts

    5
  • Joined

  • Last visited

Mark Noble's Achievements

Newbie

Newbie (1/14)

3

Reputation

  1. Hi All Can someone explain why I get these lines of txt when you view website. See attached image Regards Mark
  2. Hi All how do I know if I'm using real fuel prices in phpvms so I get the correct charges when my pirep is updated to VaCentral ?
  3. Hi All, My service provider is one.com and they suspended my domain as it was hacked. I got them to open up just ftp so I can have a look and yes I have had the same files and folders as above. I removed all my folders and files from my domain (OK its over the top but wanted to be safe). I then downloaded the latest full version from your site and re installed. I changed my ftp and MySQL passwords and also my main log in password for my one.com account. After 2 hours I got an email from one.com that its been suspended agin due to attack. I got them to open up ftp only again and yes the same files and my be even more was found. I then spoke to one.com again ref to the patch that is required for apache servers and heres the contents of the chat..... Welcome to the One.com chat support. We are doing our best to answer your queries soon. We kindly ask for your understanding that our answers may be delayed during busy periods. You are number 2 in the queue for our customer support. Currently the estimated waiting time is 1 minutes and 19 seconds. You are now chatting with 'Arjun' Arjun: Thank you for using One.com 24/7 Interactive Online Support. My name is Arjun. How may I assist you? you: hi my site has been attacked twice now and cleared with your help. I had to remove all files from site and wait for the 3rd party to bring out a patch. there is no patch as its a problem with the hosting servers that use apache for php scripts. heres the link to rectify it. Can you check and make sure your apache is up to day so I can reload the pages back on you: http://whmscripts.net/misc/2013/apache-symlink-security-issue-fixpatch/ Arjun: Hello Arjun: May I know the domain name? you: until this is done ill always get attacked you: noble-airlines.org.uk Arjun: Please hold on while I check. you: k Arjun: This does not apply to our server setup as we have PHP installed as a CGI module, so PHP is the one that handles symlinks instead of apache directly as stated in the link you have provided. At present none of your scripts have a built in upload function. However, please be informed that you were only hacked once, the second suspension was done because some files were missed from the first suspension, it was so that you could remove that too. you: after the first hacked I also removed the whole site folders and files and re installed the software and I got attacked again at 7pm Arjun: Your domain was suspended first on September 30, and it was re-enabled later that day. However, more infected files were detected, which were previously not listed. Arjun: To add this to the list, it was suspended again. Arjun: So that you could remove it. you: not the case so just to confirm this as im going to copy this whole chat. Are ALL the files now removed then you: the only folder left is holidays Arjun: Yes, they are all removed and your domain has been re-enabled again. The holidays folder only contains a simple index.html file right now you: ok so im going to now install the software again then and if I get attacked again then im going to show the next one.com adviser this chat. ITS NOT TO GET YOU IN TROUBLE but to show them theres still a why into your php setup you: or do you want to stay online while ill install the software Arjun: Installing the same software that has the vulnerability in it will only mean that there is a chance of getting hacked again. Arjun: It is not an Apache vulnerability here, but rather a file upload extension in your script that is being utilized by the hacker to upload the malware. you: they are saying there isn't its that link I gave you thats causing it Arjun: As I explained before, this does not apply in our case as symlinks are not handled by apache on our servers, but via PHP. Arjun: The second fix also wont help as it would mean preventing access to some particular files, but that can be done if required you: so you don't mind if I copy and past this into their forums then for them to investergate Arjun: Sure Arjun: If they have further comments about it, you can let us know you: ok thx for help Arjun: You are welcome. Arjun: Is there anything else I can help you with ? you: nope that's it thanks Arjun: Thank you for contacting Chat Support, feel free to contact us anytime if you have more inquiries. Any ideas where to go from here regards Mark
  4. Hi All what is the location where i ftp my files for my pilots to download when they select view downloads from Pilot centre?
  5. Hi All This may be a long topic as im very new to php. I need to know how phpvms works in order to change my pages to suite my VA. I guess as normal web sites use the index.php page to load first, what then controls the rest of the pages as i see many folders eg lib/skins In this folder i have copied crystal and renamed it. Inside there are styles.css and layout.tpl (Do i change these) Inside the core folder is loads of other folders with php and tpl files. im confused thats there a template folder, modules and pages folders with many more php can you see where im coming from what controls what pages to be displayed and what ones do i alter. I create web sites where each page is its own just a link on the main page to move to another page. Please help!! Regards Mark NOBLE
×
×
  • Create New...