Welcome to Adult Webmaster Forums News Resources & Tips - Adult Forums 247 Mark forums read | View Forum Leaders
Adult Webmaster Forums News Resources & Tips - Adult Forums 247



Reply
 
 
Administrator
Tigger's Avatar

Reply With Quote
Blog Entries: 11
Send a message via ICQ to Tigger
 
Join Date: Mar 2009
Location: Spain
Posts: 11,840
12-30-2009, 12:58 PM
 
some little shit has hacked into one of my blogs, least I think its one I've got to look at the others yet

I only noticed it as I was editing a posting and saw a link to some free videos and couldn't remember adding it, but what they had done was place the text as hidden so not displaying when viewing the blog but when in code mode it was there obviously just going for the link rather than traffic

So far it seems the only pages effected are the ones where comments were open as I changed the blog stopping comments and so far the only pages effected are those but I really fail to see how thats how they got in

got a fun day tomorrow going through all my blogs
 
 
 
 
Wake Up Tigs Update Time
Gaystoryman's Avatar

Reply With Quote
Blog Entries: 12
Send a message via ICQ to Gaystoryman
 
Join Date: Mar 2009
Location: Western Canada,
Posts: 1,520
12-30-2009, 01:05 PM
 
Does that mean is going to update more often now?

There is a good plugin to use, that helps scan your blogs. I'll dig it out and post it for you. It'll check the database and files so should help you.

Exploit Scanner HERE

Make sure you get the right version, for the software version you are using. I think it still goes back to Wordpress version 1.5
__________________
Making Gay Story Telling Exciting & Affordable
Webmasters: Add Custom Stories To Your Sites

Surfers Read Stories FREE At:
Gaystoryman Fiction, Gay Fiction
Follow my antics on Twitter @gaystoryman
Social Commentary, with a Gay Slant, At:
Gay Talk, Average Joe Blog, Only Sex Blog
 
 
 
 
Administrator
Tigger's Avatar

Reply With Quote
Blog Entries: 11
Send a message via ICQ to Tigger
 
Join Date: Mar 2009
Location: Spain
Posts: 11,840
12-30-2009, 01:09 PM
 
cheers, I've been away most of the day so not really had a chance to look at the blog but its defiantly the older postings where comments are open that been hacked into

AND its 2.9 its running so NAH

thanks for the link and I'll look at it better tomorrow as I'm wacked
 
 
 
 
I Don't Bite...Much
VoyGeorge's Avatar

Reply With Quote
 
Join Date: Mar 2009
Location: Somewhere, Out There
Posts: 1,243
12-30-2009, 01:40 PM
 
It just isn't worth accepting comments unless you have a bunch of plugins for anti-spam and URL stripping. In my experience for pr0n they don't add to the SE weight.
 
 
 
 
Administrator
Tigger's Avatar

Reply With Quote
Blog Entries: 11
Send a message via ICQ to Tigger
 
Join Date: Mar 2009
Location: Spain
Posts: 11,840
12-30-2009, 01:57 PM
 
it was my first blog VG so comments were left open, I know better now

The thing is whilst the comments open is the only thing I can find I still don't see how the twats hacked into the main posting, these hidden links were in the main posting NOT the comment, so I'm still at a loss here - but its late and the red is flowing so not looking at it now as the worst thing I'm doing is giving out free links, which you can trust me by tomorrow will be all gone
 
 
 
 
I Don't Bite...Much
VoyGeorge's Avatar

Reply With Quote
 
Join Date: Mar 2009
Location: Somewhere, Out There
Posts: 1,243
12-30-2009, 04:28 PM
 
That doesn't sound like comment spam and it's possible it's been there a while, before you upgraded your blog to a later version.

Lots of luck a hidden link will give them. Virtually no chance G will pick it up - but lots of chance that if there are others you could be penalized.

What these spammers don't realize is that G runs a "virtual browser" that determines if text can be viewed in frames, divs, or other content. It checks text and anchors to ensure they are visible, and of reasonable size. Some accidental coding errors are allowed, but they stopped this kind of blackhat SEO long time ago.

Your real worry is if they inject some i-frame code in there, which will work even if it's in a hidden DIV. Then G will flag your shit as "This site may harm your computer" and that can cause major SERP drubbing.
 
 
 
 
Techy Geeky Dude

Reply With Quote
Blog Entries: 11
 
Join Date: Mar 2009
Posts: 8,084
12-30-2009, 11:38 PM
 
Tiggs, I think the biggest question I have is... is this the site you installed a fresh 2.9 on?
 
 
 
 
Administrator
Tigger's Avatar

Reply With Quote
Blog Entries: 11
Send a message via ICQ to Tigger
 
Join Date: Mar 2009
Location: Spain
Posts: 11,840
12-31-2009, 01:45 AM
 
Quote:
Lots of luck a hidden link will give them. Virtually no chance G will pick it up - but lots of chance that if there are others you could be penalized.
the sites fine traffic levels are pretty constant so its not picked anything up

Quote:
Tiggs, I think the biggest question I have is... is this the site you installed a fresh 2.9 on?
I upgraded to 2.9 when it was released, but I'm sorry Brent I don't follow you here??
 
 
 
 
Techy Geeky Dude

Reply With Quote
Blog Entries: 11
 
Join Date: Mar 2009
Posts: 8,084
12-31-2009, 02:21 AM
 
I thought you recently said you had installed some blogs with a fresh 2.9 install. Was wondering if this was one of them. Since you just said you upgraded to 2.9, clearly not one of these...

Of course, I'm still a bit shocked that you upgraded to 2.9 when it came out!
 
 
 
 
Administrator
Tigger's Avatar

Reply With Quote
Blog Entries: 11
Send a message via ICQ to Tigger
 
Join Date: Mar 2009
Location: Spain
Posts: 11,840
12-31-2009, 02:27 AM
 
Quote:
Of course, I'm still a bit shocked that you upgraded to 2.9 when it came out!
what can I say xmas only comes but once a year so I thought I'd give my blog its yearly xmas treat
 
 
 
 
Techy Geeky Dude

Reply With Quote
Blog Entries: 11
 
Join Date: Mar 2009
Posts: 8,084
12-31-2009, 02:37 AM
 
you're so thoughtful!
 
 
 
 
Tigger is my bitch!
Webmistress's Avatar

Reply With Quote
Send a message via ICQ to Webmistress
 
Join Date: Mar 2009
Location: Spain
Posts: 412
12-31-2009, 05:04 AM
 
Thanks for the link Ian, it has picked up these hidden links - they have actually put them into a form field marked to be hidden!!! Still do not understand how they have done it as the only commonality is that it has been done to posts that still had comments open but it is not a comment but inserted into the main post code!!

Why can't these idiots find some better way to spend their time!

Cheers for your help again
 
 
 
 
Wake Up Tigs Update Time
Gaystoryman's Avatar

Reply With Quote
Blog Entries: 12
Send a message via ICQ to Gaystoryman
 
Join Date: Mar 2009
Location: Western Canada,
Posts: 1,520
12-31-2009, 10:15 AM
 
More than likely they got in from exploits or holes that were found open in earlier versions of wordpress. Hence their maintenance and security upgrades. (hint )
__________________
Making Gay Story Telling Exciting & Affordable
Webmasters: Add Custom Stories To Your Sites

Surfers Read Stories FREE At:
Gaystoryman Fiction, Gay Fiction
Follow my antics on Twitter @gaystoryman
Social Commentary, with a Gay Slant, At:
Gay Talk, Average Joe Blog, Only Sex Blog
 
 
 
 
Administrator
Tigger's Avatar

Reply With Quote
Blog Entries: 11
Send a message via ICQ to Tigger
 
Join Date: Mar 2009
Location: Spain
Posts: 11,840
12-31-2009, 10:18 AM
 
nope

wanna borrow this guys

 
 
 
 
Super Pimp
webcamjammer's Avatar

Reply With Quote
 
Join Date: Jan 2010
Location: Texas
Posts: 11
01-02-2010, 03:10 PM
 
If you find any exploit code i would be interested in looking at it, so that we can all try to stop the attack, and/or report to the wordpress people so that we can get a fix. Im guessing your blog was probably targeted because of its PR. Really sucks man, i hope you get the issue resolved.


One love.
__________________
Loaded Cash - Home of the true Adult Pay Per Click. You also get paid for each free signup you referrer. No credit card required to get credit!
 
 
 
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -5. The time now is 04:22 PM.
Powered by vBulletin® Version 3.8.3
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.3.0 RC2 Ad Management plugin by RedTyger