PDA

View Full Version : C4DPortal hacked


telnoi-c4d
01-11-2006, 08:26 PM
Seems it's our turn this time.

C4DPortal was hacked by a warez group a little while ago.
All video tutorials and some resources are gone.

A reinstall of the server OS might be necessary.
We will be down until further notice. Sorry for the inconvenience.

Regards,
Telnoi.

Fre
01-11-2006, 08:31 PM
ouch :/
& that happens just at the wrong time, I was glad to see the site back online after long periods of absence.

If you have any problems with installing & securing a linux server, then I recommend this book by sitepoint : Run your own Web Server using Linux & Apache (http://www.sitepoint.com/books/linux1/?SID=564f5658670306e81e4bfa5fd34c9e64)

good luck !

telnoi-c4d
01-11-2006, 08:32 PM
Perhaps that's the issue...we are using windows ;)

ndat
01-11-2006, 09:22 PM
Ouch, well that is just plain rude... Some peoples kids eh? I wonder why they would kill the site if they got what they wanted anyway?

Yeah windows isn't the best thing for a web server.

I hope you get it and running soon.

Good Luck :).

ThePriest
01-11-2006, 10:03 PM
I'm not a frequent visitor to your site, were these items things you could purchase?
Sorry to hear the bad news.

telnoi-c4d
01-11-2006, 10:06 PM
no, they were free items.

The goal was not to obtain information, but to use the server to spread warez and use our bandwidth.

these guys are specialized in warez

-they used ioftpd to spread their releases
-they used a directory under the recycler directory to "hide" their uploads
-they used the script called eggdrop to make contact with an irc channel. It allows people to see what has been uploaded, by whom, so they can start races etc etc.
-they deleted files in order to make room for their own, but left most of our site running.

Thankfully the configuration files of those scripts and the ftp server provides me with some information about the group.

ThePriest
01-11-2006, 10:34 PM
B#$tard$, for the few short minutes it takes to sign up and look around for useful downloads, they've caused all this damage for their own greedy needs.
That's pretty weak man.

telnoi-c4d
01-11-2006, 10:58 PM
Some more information for server administrators who might also be concerned.
They used a rootkit, enabling them to hide any of their activities such as running services etc. You won't know it's running until you use for example an undelete program that is able to recover removed files, or if you use an alternative windows services viewer (for example one that comes with "trojan guarder gold".

Rootkit files themselves are hidden as well.

3DKiwi
01-11-2006, 11:48 PM
Sorry to hear that Telnoi. I know how much of a pain it can be. We had problems last year that forced us to move to new forum software. Wouldn't surprise me if it's the same person practicing their hacking skills.

3DKiwi

Fre
01-11-2006, 11:54 PM
I heard the same story before,
I guess that's why some servers don't allow vbulletin forums for security reasons.

luckske
01-12-2006, 11:43 AM
I heard the same story before,
I guess that's why some servers don't allow vbulletin forums for security reasons.

It's also good to keep your vbulletin updated to the latest releases, i vissited yesterday c4dportal and i saw that they still had vb 3.0.7 while v 3.0.12 was released a few day's ago.
I know its a pain in the *ss to keep your forum updated with the last releases when you have a lot of vb hacks installed.

fretshredder
01-12-2006, 02:20 PM
you *did* have all that material backed up? Right?

FantaBurky
01-12-2006, 06:10 PM
Ive got all the files for these stuff downloaded:

Video Tutorials-----
Box-modeling a Head
Bridging and Cloning
CD Morph 1
Codec
Poly-modeling Faces
Texture Baking
User Data Basics

Written Tutorials------
Modeling a Hand

Incase it helps?

imashination
01-12-2006, 07:04 PM
*starts backing up the server* If you see porn, we've either been hacked or I'm drunk

flingster
01-12-2006, 07:09 PM
these guys are just parasites..the best thing for them is prison..there is not much amusing about this sort of thing really. they basically crap on peoples hard work and not much else..even for hard working admins who do this as a job its a pain in the ass keeping "up to date" and with intent most things can be broken into...its all about intent and their's in parasitic nothing more..nothing less.

-Wireframe-
01-12-2006, 10:24 PM
Just tried to visit C4DPortal's website and read Tenoi's message.
What is wrong with people, there are hackers and then there are idiots, and it appears that the Portal has been struck by the latter.
Hopefully Telnoi can get the site backup and running again without too much being lost.
Good Luck Telnoi and let us know if there is anything we can do.

telnoi-c4d
01-13-2006, 07:53 AM
Thanks for your sympathy guys.

Indeed, those who have downloaded video tutorials can help out.
Once the portal is running again I'll post a message and let you know what video tutorials we are still missing.

Our next version will be based on the latest vbulletin without the hassle of maintaining a bunch of custom hacks which makes it almost impossible to upgrade (at least with pre 3.5 versions).
Back to the drawing board for us.

telnoi-c4d
01-13-2006, 08:00 AM
you *did* have all that material backed up? Right?

;) It's no fun sending 3 gb of video tutorials over the net to my home. I've got a rather slow connection.

As all good admins do, I did send the mysql database through an automated ftp service.

noble steed
01-13-2006, 08:23 AM
They tried to do that to my site, too, but didnt get very far.
Here it were some Vietnamese who did it.

CGTalk Moderation
01-13-2006, 08:23 AM
This thread has been automatically closed as it remained inactive for 12 months. If you wish to continue the discussion, please create a new thread in the appropriate forum.