UK WEB HOSTING FORUM FOR DISCUSSION ON WEB HOSTING SERVICE AND SUPPORT
LINUX HOSTING WINDOWS HOSTING PACKAGES SHOPPING CART OSCOMMERCE ZEN CART AGORA
ECOMMERCE HOSTING ASP MSSQL FRONTPAGE HOSTING PHP MYSQL HOSTING DISCUSSION FORUM
CPANEL RESELLER HOSTING DEDICATED SERVER VPS HOSTING PLESK VIRTUOZZO
Quick Search
Your forum announcement here!

  UK Web Hosting | Dedicated Server Windows and Linux VPS Forum > Technical Support > cPanel Shared Hosting

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 20-05-2007, 14:01
cheekysneeky's Avatar
Member
 
Join Date: Jan 2007
Posts: 49
Default

Hi,

Sorry about this, but how can one tell if someone 'else' has had access to my website hosting? The problem is, some files have been tampered with that I havn't touched. I am running joomla and the admin filels have been messed with so I can't actually use it. I have asked joomla and they suggested that some one has been playing games.......again.

does anyone know whats going on?

Ok, I have just spoken to another eukhost member and found he is having the same problem with his joomla website hosting at the same time. I don't think this is a coincidence
__________________
Allow me to introduce myself
Reply With Quote
  #2 (permalink)  
Old 20-05-2007, 14:50
Ben Ben is offline
Premium Member
 
Join Date: Jan 2007
Location: setcookie()
Posts: 898
Send a message via AIM to Ben Send a message via MSN to Ben Send a message via Yahoo to Ben
Default

Firstly have you got the stable release of Joomla and are your files CHMODED to 777 or similar where others can edit your files? (sorry just read your other post here).
Well it may be a cPanel exploit or something which you will may have to contact someone on support dept. or Mark for assistance.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
-
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
-
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Reply With Quote
  #3 (permalink)  
Old 20-05-2007, 14:53
cheekysneeky's Avatar
Member
 
Join Date: Jan 2007
Posts: 49
Default

I have a stable version of joomla, I have never had problems with it before, as for the 777 thing, I have no idea lol
__________________
Allow me to introduce myself
Reply With Quote
  #4 (permalink)  
Old 20-05-2007, 14:55
new member
 
Join Date: May 2007
Posts: 6
Default

My Vbulletin forum is unusable as of this morning, was working perfectly up until now. Pages redirect incorrectly, skins aren't working, etc.
Reply With Quote
  #5 (permalink)  
Old 20-05-2007, 14:58
cheekysneeky's Avatar
Member
 
Join Date: Jan 2007
Posts: 49
Default

this is the same problem I'm experiencing, is EUKhost messing about with the permissions, security or is it something else I wonder?
__________________
Allow me to introduce myself
Reply With Quote
  #6 (permalink)  
Old 20-05-2007, 14:59
Ben Ben is offline
Premium Member
 
Join Date: Jan 2007
Location: setcookie()
Posts: 898
Send a message via AIM to Ben Send a message via MSN to Ben Send a message via Yahoo to Ben
Default

You can check the CHMOD settings (permission settings) by going into File Manager and whatever files have been tampered with right click and select 'Change Permissions' and make sure others don't have the option to 'Write' and 'Execute', under 'Group' and 'World' I believe.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
-
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
-
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Reply With Quote
  #7 (permalink)  
Old 20-05-2007, 15:12
cheekysneeky's Avatar
Member
 
Join Date: Jan 2007
Posts: 49
Default

my permissions appear to be set to 644 or something and nothing is writeable except user. The problem is, I don't know whats been altered as joomla is a huge program and trying to replace everything is going to be impossible, unless i can upload entire folders, which I can't because both file manager and ftp only seem to allow the upload of singe files.

I need to first find out if EUKhost have been 'tweeking' stuff first, then I will have a startin point at identifying the problem. If they havn't I'll know its proberly a pest playing hacking games and I'll start the tedious job of replacing joomla with my backup files.
__________________
Allow me to introduce myself
Reply With Quote
  #8 (permalink)  
Old 20-05-2007, 15:15
Ben Ben is offline
Premium Member
 
Join Date: Jan 2007
Location: setcookie()
Posts: 898
Send a message via AIM to Ben Send a message via MSN to Ben Send a message via Yahoo to Ben
Default

You can upload folders if you zip them with a zipping programme. cPanel may be exploited but I cannot say this for sure so you will have to ask Mark about this.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
-
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
-
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Reply With Quote
  #9 (permalink)  
Old 20-05-2007, 15:16
new member
 
Join Date: May 2007
Posts: 3
Default Joomla Issues

I am having similar problems. Jommla control panel icons missing and clicking on any link in the adminarea for Joomla reverting to my website hosting's home page. To make it worse I have just spent most of the weekend building this new website hosting and additionally although I have raised a ticket EUKHost emails do not seem to be able to reach my yahoo accoumt. If any you of you get any updates on what is going on please post a message here. Thanks. James.
Reply With Quote
  #10 (permalink)  
Old 20-05-2007, 15:22
new member
 
Join Date: May 2007
Posts: 6
Default

Quote:
Originally Posted by jfkyle View Post
any link in the adminarea for Joomla reverting to my website hosting's home page.
Same here, can't post, etc. the pages redirect to my home page.
Reply With Quote
  #11 (permalink)  
Old 20-05-2007, 15:25
eUKhost.com's Avatar
Chief Marketing Officer
 
Join Date: Sep 2005
Posts: 4,574
Send a message via AIM to eUKhost.com Send a message via MSN to eUKhost.com
Default

Joomla wants 777 permission on many files and folders which makes it open for injections and attacks. We need to prevent hacking / cracking attempts on Joomla using mod_security but joomla gives problems with certain rules. It makes things really difficult to keep joomla installations secure if you dont have mod_security on the server.

If you want you can disable mod_security from your .htaccess file using following code :-

Code:
<IfModule mod_security.c>

    SecFilterEngine Off

    SecFilterScanPOST Off

</IfModule>
This code will disable mod_security for your account but make sure that we wont be responsible for any sorts of injections that may occur on your website hosting.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
||
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
||
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.

Toll Free : 0808 262 0255 || MSN : mark @ eukhost.com || AIM : eukmark
A bunch of Sheep led by a Lion is better than a bunch of Lions led by a Sheep.
__________________________________________________

Great Opportunity :: Join our
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
for FREE and earn 20% commission on each referral.
Reply With Quote
  #12 (permalink)  
Old 20-05-2007, 15:28
new member
 
Join Date: May 2007
Location: Wolverhampton
Posts: 3
Default

Im also having problems with my Invision Board installation and numerous images.

And as said by others the pages redirect to my home page.

Edit: The code given above seems to have fixed the problems Cheers for the support.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.


To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Reply With Quote
  #13 (permalink)  
Old 20-05-2007, 16:14
new member
 
Join Date: May 2007
Posts: 3
Default

I added in the two lines

SecFilterEngine Off
SecFilterScanPOST Off

to the htaccess.txt file in the joomla folder and signed on as Joomla administrator for my website hosting again - no change the issue is still there as described above
Reply With Quote
  #14 (permalink)  
Old 20-05-2007, 16:18
Hunter's Avatar
Junior Member
 
Join Date: Apr 2007
Posts: 29
Default

So we can't 777 any directory, or just the ones that are obviously open? (for example, I can use a text-based wiki script that is unknown to an attacker, and so they'd never know where the moddable directory is)
Reply With Quote
  #15 (permalink)  
Old 20-05-2007, 16:19
flesso's Avatar
Premium Member
 
Join Date: Mar 2007
Location: 127.0.0.1
Posts: 1,353
Default

Quote:
Originally Posted by jfkyle View Post
I added in the two lines

SecFilterEngine Off
SecFilterScanPOST Off

to the htaccess.txt file in the joomla folder and signed on as Joomla administrator for my website hosting again - no change the issue is still there as described above

The file should be named '.htaccess', not 'htaccess.txt'.
__________________
Regards,
Josh Hold


To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Over 1000 Computer Related Articles to Sink Your Teeth Into!



To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
- Gig Listings for London


Super Moderator
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.


I'm only a forum gremlin (moderator), and do not work for eUKhost in any way. Opinions expressed by me are mine only, and do not reflect those of either eUKhost or any company that may be listed above.

I don't bite, honest.
Reply With Quote
  #16 (permalink)  
Old 20-05-2007, 16:28
new member
 
Join Date: May 2007
Posts: 3
Default

Quote:
Originally Posted by flesso View Post
The file should be named '.htaccess', not 'htaccess.txt'.

Thanks for the help. Seems to be working now.
Reply With Quote
  #17 (permalink)  
Old 20-05-2007, 16:35
borninblood's Avatar
Premium Member
 
Join Date: May 2007
Posts: 106
Default

Could someone give me a basic template for an thaccess file - I added the code above to one and it fixed one website hosting, the other however doesn't have any - and a blank one with just the code doesn't work.

Thanks in advance.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
(Metal) ||
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
(Bondage)
Reply With Quote
  #18 (permalink)  
Old 20-05-2007, 16:38
cheekysneeky's Avatar
Member
 
Join Date: Jan 2007
Posts: 49
Default

I'm still having the problem. i have put that code in but it hasn't made any difference. Have I done it wrong? i opened that txt file, plonked ......

SecFilterEngine Off
SecFilterScanPOST Off

at the bottom of it and renamed the file .htaccess is that right? it that what i'm supposed to do?
__________________
Allow me to introduce myself
Reply With Quote
  #19 (permalink)  
Old 20-05-2007, 16:47
borninblood's Avatar
Premium Member
 
Join Date: May 2007
Posts: 106
Default

Quote:
Originally Posted by cheekysneeky View Post
I'm still having the problem. i have put that code in but it hasn't made any difference. Have I done it wrong? i opened that txt file, plonked ......

SecFilterEngine Off
SecFilterScanPOST Off

at the bottom of it and renamed the file .htaccess is that right? it that what i'm supposed to do?
A text file called .htaccess is not the same as an .htaccess file.
__________________

To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
(Metal) ||
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
(Bondage)
Reply With Quote
  #20 (permalink)  
Old 20-05-2007, 16:49
MannyF's Avatar
Junior Member
 
Join Date: May 2007
Location: Station to station
Posts: 15
Default

I didn't have a .htaccess file so I created one, blank except for

<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
</IfModule>

and I placed it in my forum directory.

Had to upload as .htaccess.txt, once uploaded to server edit name to .htaccess

My forum works fine now, but I really wish that if changes were going to be made to my Dedicated Server then we should be informed ahead of time. Just last week eukhost cut off my FTP access and just left me to discover this myself. RUDE !



Quote:
Originally Posted by cheekysneeky View Post
I'm still having the problem. i have put that code in but it hasn't made any difference. Have I done it wrong? i opened that txt file, plonked ......

SecFilterEngine Off
SecFilterScanPOST Off

at the bottom of it and renamed the file .htaccess is that right? it that what i'm supposed to do?
Reply With Quote
Reply



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT. The time now is 21:12.

 

Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by Web Hosting 3.1.0
Copyright © 2001-2008, eUKhost.com. All rights reserved.

 
Site Map

VPS Hosting
VPS Hosting plans

Dedicated Server Hosting
Dedicated Server plans

Business Web Hosting
100% uptime Hosting

Cpanel Hosting
cPanel Shared Hosting

Reseller Hosting
Reseller Web Hosting

Windows Hosting
Windows Shared Hosting

Windows VPS

Windows VPS Hosting

Semi Dedicated Servers
Semi-Dedicated Hosting

Dedicated Server Mirroring
Dedicated Server Mirroring

Webhosting Knowledgebase
Frequently asked Questions

Web Hosting Blog
eUKhost Blog

Web Hosting Support
Support Helpdesk

UK Data Center
eUKhost Datacenter

Web Hosting Forum
eUKhost Forum

Support Tutorials
Online Flash Tutorials

Offsite Back-up Plans
Remote Backup Service

Customer Testimonials
eUK Customer Testimonials


knowledgebase articles

eUKhost.com Services

Pre-Sales Questions
Pre-sales FAQ's

Domain Names
Domain registration FAQ's

cPanel Hosting
cPanel Hosting FAQ's

Windows Web Hosting
Plesk Control Panel

Reseller Hosting
Reseller Hosting FAQ's

VPS Hosting
Virtual Private Server

Semi-Dedicated Servers
Semi-Dedicated FAQ's

Dedicated Servers
Dedicated Server Hosting


popular blog categories


Web Hosting
Website Hosting articles

UK Web Hosting
UK Hosting articles

Dedicated Server Hosting
Dedicated Server guidelines

VPS Hosting
VPS hosting articles

cPanel Hosting
cPanel Hosting articles

Linux Operating System
Linux Operating techniques

Windows Web Hosting
Windows plesk articles