Jump to content

[Legend Air] Website Attack


Recommended Posts

Thursday night, 11 August 2011, the Legend Air website became the target of an unknown hacker. Unfortunately, the website visually started to deteriorate and as of last night has been inaccessible to anyone without a "Malicious Content" warning appearing on the screen. Please do not attempt to pass this page as you will put yourself at risk of infection. If you have already passed this page, please make sure to run your anti-virus programs immediately.

Currently, scripts are running against Legend Air servers and have made the pages of our site impossible to view. I have not been able to look yet but our coding even looks to have been altered. The databases are unharmed however, so all pilot records will still work once the website is back up and safe again.

We are working with our hosting provider to resolve this problem as quickly as possible, however with our webmaster on Vacation, it may take up to a week to fully restore our site and confirm that there is no malicious content located anywhere within the server or database.

Thank you all for your patience as we work to resolve this issue, if you have any comments, questions, or concerns, feel free to email me.

Link to comment
Share on other sites

That's terrible :(.

Hope you can get it all sorted out and find out who did it.

Thanks! We are working with our hosting company as we speak, and have major leads on whoever did it.

I'm not sure the level of expertise the hacker had, and I do not know a whole lot about it, however my hosting company has informed me that they have done a very very bad job covering their tracks.

Link to comment
Share on other sites

I would recommend you hire someone with professional experience who is able to "hack your website". I mean this literally...doing this is the best way to prevent this from happening again.

Hack the sh** out of your site until you can't do it anymore if you find the right person with experience they can hack you site and fix all gaps they find until they cannot do it anymore.

Also I would expect this person to be an amateur to hack a VA so probably he used his own server etc. so back track that son of a ***** and bring his/her stuff down( I do not stand-by this as it is illegal).

You may also want to check into php nuke which offers security enhancements.

Sorry for any language.

Link to comment
Share on other sites

  • Moderators

Regularly check your error logs, i have posted about this kind of attack many times and shown examples of how my site was bombarded with over 1000 requests in under a minute.

Don't use default install directories for php myadmin or the like, protect sensitive areas of your site with example fail2ban and ht password protection, doing all these little things add up to many layers of protection that should give you an edge.

Also have and maintain and test your backup system that is imperative.

Link to comment
Share on other sites

Regularly check your error logs, i have posted about this kind of attack many times and shown examples of how my site was bombarded with over 1000 requests in under a minute.

Don't use default install directories for php myadmin or the like, protect sensitive areas of your site with example fail2ban and ht password protection, doing all these little things add up to many layers of protection that should give you an edge.

Also have and maintain and test your backup system that is imperative.

Yeah these are not bad ideas. Fail2ban isn't too difficult to crack if you have experience but it will buff up your security a little bit. The best thing to do though is analyze where you are weak(by hacking yourself). As I said before look into php nuke it is more advanced and will give people problems when trying to break through your protection.

Link to comment
Share on other sites

If you know what your doing you can incorporate all that stuff right into your site. Regardless phpvms really isn't all that secure. The reason why you all don't have many issues because people really are not looking to attack virtual airline websites. If I were to attack a site it would not be a virtual airline site, that is a waste. That is why I said above it was most likely an amateur.

  • Like 1
Link to comment
Share on other sites

  • Moderators

Let me say this one thing, phpvms has not been hacked to date period.....

The system is secure, its teenagers who don't know what they are uploading that cause the problems.

Some facts,

Nabeel has created phpVMS in a way that no VA using base files has been hacked, simple as. It is when you start uploading scripts or image rotators that people dont understand, that is where the problem is, not phpVMS.

On closing i have been running the system for over 2 years now without any successful hacking attempt to date, and people have tried exploiting the action.php and running other automated scripts unsuccessfully.

If you know what your doing then its easy.

  • Like 1
Link to comment
Share on other sites

Nabeel has created phpVMS in a way that no VA using base files has been hacked, simple as.

Nabeel is very talented and is a great asset to the fs communtiy but sorry, saying it hasn't been hacked nor can it be is ridiculous I have never seen a malicious attack on the system because I don't look that stuff but I know people who have hacked their own phpvms sites to test them. With the right level of skill and time you can hack into government databases which are guarded by the most advanced walls.

So if I connect the dotes: you saying phpvms can't be hacked but secure government databases can be then shoot Nabeel is on a gold mine holding the best protection out their and I expect him to be contracted by the US government and more soon.

P.S. when pictures get uploaded causes a virus etc. that right there points out a flaw. If phpvms was "un-hackable" then that would happen the security walls would stop it dead in its tracks. The most advanced protection can be hacked.

I garuntee if you read the book "hacking for dummies"(yes it is real and part of the popular series) and learn whats in their you could do damage to a phpvms based website.

Once again phpvms doesn't get hacked often because no one wants to hack a virtual airline the people that try have really almost no experience

I am not saying that phpvms is a poorly protected system nor am I saying to go buy hundreds in protection software, I am just saying by itself with no extra protection you leave yourself vulnerable to attack.

  • Like 2
Link to comment
Share on other sites

Thanks for all of the tips, our hosting security team has pinpointed the issue and resolved it! I am now having google webmaster tools review it and confirm that it is safe again. I agree with you all that hacking a VA site is pretty pointless, and that maybe we were just some kind of practice for a newbie?

Whatever the reason, the security team did a great job and pinpointed everything within hours of me submitting the initial complaint. They wont release any details to me about "who done it" (of course), but have showed me where the files where and assured me that they will take any further steps they deem necessary.

  • Like 1
Link to comment
Share on other sites

  • Moderators

Pathetic!!!!!!!!!

[Mon Aug 15 21:21:09 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/muieblackcat
[Mon Aug 15 21:21:15 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin32
[Mon Aug 15 21:21:15 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.10.3
[Mon Aug 15 21:21:18 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/old
[Mon Aug 15 21:21:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myadmin2
[Mon Aug 15 21:21:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pma3
[Mon Aug 15 21:21:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.10.0.2
[Mon Aug 15 21:21:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-3.0.0-rc2
[Mon Aug 15 21:21:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.2.2
[Mon Aug 15 21:21:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.11.3
[Mon Aug 15 21:21:34 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.5
[Mon Aug 15 21:21:34 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.4
[Mon Aug 15 21:21:37 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.10.1
[Mon Aug 15 21:21:37 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/cbadmin2
[Mon Aug 15 21:21:37 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/cbadmin
[Mon Aug 15 21:21:37 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/cb
[Mon Aug 15 21:21:37 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/dcgadmin
[Mon Aug 15 21:21:40 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/wp-phpmyadmin
[Mon Aug 15 21:21:40 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmya
[Mon Aug 15 21:21:40 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/Files
[Mon Aug 15 21:21:40 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/examples
[Mon Aug 15 21:21:41 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db_backup
[Mon Aug 15 21:21:41 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/backup
[Mon Aug 15 21:21:41 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_v2.8
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpmyadmin_db3
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpmyadmin_db4
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_db_man_aa
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db4
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db3
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db2
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db1
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/PMYADM
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmysql
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pmy
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/.bash
[Mon Aug 15 21:21:44 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin-bkp
[Mon Aug 15 21:21:45 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin/pmadm
[Mon Aug 15 21:21:45 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pmadm
[Mon Aug 15 21:21:45 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/adminn
[Mon Aug 15 21:21:46 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin_2.11.10
[Mon Aug 15 21:21:49 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/___pma
[Mon Aug 15 21:21:49 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/portable-phpmyadmin
[Mon Aug 15 21:21:49 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/Admin
[Mon Aug 15 21:21:49 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/sqladmin_old
[Mon Aug 15 21:21:52 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pmaold
[Mon Aug 15 21:21:52 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/~phpmyadmin21152
[Mon Aug 15 21:21:55 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_bon_dbadmin
[Mon Aug 15 21:21:55 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-3.0.1.1-all-languages
[Mon Aug 15 21:21:55 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin211
[Mon Aug 15 21:22:00 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin2011
[Mon Aug 15 21:22:00 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.1-all-languages
[Mon Aug 15 21:22:00 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.9.0
[Mon Aug 15 21:22:00 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.2.2-all-languages
[Mon Aug 15 21:22:00 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmy
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/my
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.5-english
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.9.5-all-languages
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin-ramy
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/wp-phpmyadmin
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/dbadm
[Mon Aug 15 21:22:01 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpad
[Mon Aug 15 21:22:02 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin/mysqladmin
[Mon Aug 15 21:22:02 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin--
[Mon Aug 15 21:22:02 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:22:02 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:22:02 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:22:02 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.9.3
[Mon Aug 15 21:22:05 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin_old
[Mon Aug 15 21:22:06 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin_old
[Mon Aug 15 21:22:06 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.6-all-languages
[Mon Aug 15 21:22:06 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/scripts
[Mon Aug 15 21:22:06 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/dbadmin
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myadmin
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysql
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysqladmin
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpadmin
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin1
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin2
[Mon Aug 15 21:22:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pma
[Mon Aug 15 21:22:12 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/databaseadmin
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admm
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admn
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_myadmin
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyA
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmya
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin/my
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysql2
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadm
[Mon Aug 15 21:22:13 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/php1
[Mon Aug 15 21:22:16 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/sqladm.old
[Mon Aug 15 21:22:19 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myAdmin
[Mon Aug 15 21:22:19 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pmabd
[Mon Aug 15 21:22:23 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysql_administrator
[Mon Aug 15 21:22:23 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pma_mydb
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myphp
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/Myphp
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpas
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_pma
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/scripts
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_db
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_dbadmin
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpadmin
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_admin
[Mon Aug 15 21:22:26 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpmyadmin
[Mon Aug 15 21:22:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpMyAdmin
[Mon Aug 15 21:22:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_myphp
[Mon Aug 15 21:22:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_php
[Mon Aug 15 21:22:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_sql
[Mon Aug 15 21:53:19 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysql.bck
[Mon Aug 15 21:53:19 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin.old
[Mon Aug 15 21:53:19 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin32
[Mon Aug 15 21:53:19 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.10.3
[Mon Aug 15 21:53:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myad
[Mon Aug 15 21:53:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/old
[Mon Aug 15 21:53:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.9.1
[Mon Aug 15 21:53:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myadmin2
[Mon Aug 15 21:53:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pma2
[Mon Aug 15 21:53:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pma1
[Mon Aug 15 21:53:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pma3
[Mon Aug 15 21:53:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin29
[Mon Aug 15 21:53:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.10.0.2
[Mon Aug 15 21:53:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-3.0.0-rc2
[Mon Aug 15 21:53:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.2.2
[Mon Aug 15 21:53:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.11.3
[Mon Aug 15 21:53:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.9.5
[Mon Aug 15 21:53:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.5
[Mon Aug 15 21:53:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.4
[Mon Aug 15 21:53:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.9.5
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.10.1
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/cbadmin2
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/cbadmin
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/cb
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/dcgadmin
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/dbc
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/wp-phpmyadmin
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmya
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/Files
[Mon Aug 15 21:53:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/examples
[Mon Aug 15 21:53:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db_backup
[Mon Aug 15 21:53:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/backup
[Mon Aug 15 21:53:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpmyadmin
[Mon Aug 15 21:53:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpmyadmin_db3
[Mon Aug 15 21:53:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpmyadmin_db4
[Mon Aug 15 21:53:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_db_man_aa
[Mon Aug 15 21:53:31 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db4
[Mon Aug 15 21:53:34 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db2
[Mon Aug 15 21:53:37 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/PMYADM
[Mon Aug 15 21:53:49 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin/pmadm
[Mon Aug 15 21:53:52 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/adminn
[Mon Aug 15 21:53:52 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin_2.11.10
[Mon Aug 15 21:53:53 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/xx_phpmyadmin
[Mon Aug 15 21:53:53 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/___pma
[Mon Aug 15 21:53:53 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/portable-phpmyadmin
[Mon Aug 15 21:53:53 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/Admin
[Mon Aug 15 21:53:53 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/sqladmin_old
[Mon Aug 15 21:53:53 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_bon_dbadmin
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/~phpmyadmin21152
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin_2.10
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_bon_dbadmin
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-3.0.1.1-all-languages
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin211
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin2011
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.1-all-languages
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.9.0
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.2.2-all-languages
[Mon Aug 15 21:53:56 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmy
[Mon Aug 15 21:53:58 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/my
[Mon Aug 15 21:53:58 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:53:58 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.5-english
[Mon Aug 15 21:53:58 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.9.5-all-languages
[Mon Aug 15 21:53:58 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin-ramy
[Mon Aug 15 21:53:58 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/wp-phpmyadmin
[Mon Aug 15 21:54:03 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/dbadm
[Mon Aug 15 21:54:03 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpad
[Mon Aug 15 21:54:03 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin/mysqladmin
[Mon Aug 15 21:54:03 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin--
[Mon Aug 15 21:54:04 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:54:04 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:54:04 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:54:04 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.9.3
[Mon Aug 15 21:54:04 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin_old
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyAdmin-2.11.6-all-languages
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/scripts
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/db
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/dbadmin
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myadmin
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysql
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysqladmin
[Mon Aug 15 21:54:07 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpadmin
[Mon Aug 15 21:54:10 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin
[Mon Aug 15 21:54:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin1
[Mon Aug 15 21:54:11 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadmin2
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admn
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_myadmin
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpMyA
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmya
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/admin/my
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysql2
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpmyadm
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/php1
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/php2
[Mon Aug 15 21:54:20 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/sqladm.old
[Mon Aug 15 21:54:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/sqladm
[Mon Aug 15 21:54:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myAdmin
[Mon Aug 15 21:54:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pmabd
[Mon Aug 15 21:54:21 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mydb
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/mysql_administrator
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/pma_mydb
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/webmail2
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/myphp
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/Myphp
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/phpas
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_pma
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/scripts
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_db
[Mon Aug 15 21:54:22 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_dbadmin
[Mon Aug 15 21:54:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpadmin
[Mon Aug 15 21:54:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_admin
[Mon Aug 15 21:54:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpmyadmin
[Mon Aug 15 21:54:27 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_phpMyAdmin
[Mon Aug 15 21:54:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_myphp
[Mon Aug 15 21:54:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_php
[Mon Aug 15 21:54:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/sql
[Mon Aug 15 21:54:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/_sql
[Mon Aug 15 21:54:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/my-php
[Mon Aug 15 21:54:28 2011] [error] [client 87.119.196.65] File does not exist: removed/for/security/My-php

  • Like 1
Link to comment
Share on other sites

I wouldn't really class the attacks on government websites as hacking... more cracking. They use social engineering among other techniques to find out a useful password, not hacking the system itself (unless it's a really badly coded system, but they tend to be better now (albeit not easy to use)). That's pretty much the only way a phpVMS system has been compromised from what I've read - people with rubbish passwords on their cpanels.

  • Like 1
Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...