Page 3 of 4

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 24 Oct 2012, 15:39
by fneurieser
Hi all,

world4you has reactivated my guestbook. but when trying to access the post panel in the control panel in backend I get the following message:

Image

But in the frontend all postings are visible.

and when trying to access the panel guestbook in the control panel in backend the following message is shown:

Image

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 26 Oct 2012, 22:56
by Jan
Hi, maybe your items in frontend are displayed by cache, or this errors are displayed by chache - The joomla system says there are no phoca guestbook tables in your database, so the only one chance how to find out this, go to your phpMyadmin and check if the table are there. :idea:

Jan

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 27 Oct 2012, 11:41
by Andi
my hoster is world4you too and they have reactivate my guestbook too. My site has been hacked over the phoca guestbook. Now everything is working fine except the spam on the guestbook. More than 200 spam entries in 24 hours. i have tried several captchas but nothing works really :!:
I think i have to hide the guestbook :(

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 31 Oct 2012, 00:52
by Jan
Hi, see:
https://www.phoca.cz/documents/3-phoca-g ... -from-spam

If you have been hacked through the phoca guestbook, please describe it, here, or in PM or into my email, I will be first who will fix the problem if there will be some (but until now - 5 years of phoca guestbook development, nobody described the way how it was done and I really don't understand. Everbody knows that the problem is in phoca guestbook but nobody knows which is the problem - this is really confusing for me :-( )

Anyway:

Trying to prevent from spam:
https://www.phoca.cz/documents/3-phoca-g ... -from-spam

Phoca Guestbook and spam:
https://www.phoca.cz/documents/3-phoca-g ... erver-spam
Jan

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 31 Oct 2012, 16:12
by grandm
Hi
i don´t know exactly how it was hacked but i noticed that my index.php has changed during the hack

it contanis only the following text:

Code: Select all

<? eval(base64_decode('-code-removed-'));?>
my homepage was forwarded to an ad.fly homepage after a few seconds, no matter on which position i was on the page in the frontend

i hope it helps you with your work
regards

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 31 Oct 2012, 22:39
by Jan
Hi, your page was not hacked through Phoca Guestbook. Phoca Guestbook does not have any part which can write something on the server. If somebody changed your index.php - he/she did it probably per FTP or per some script which was allowed to change files on your server. This is not possible per Phoca Guestbook as there is no such feature.

Jan

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 05 Nov 2012, 23:16
by Andi
Hi Jan

I have checked my stats and i have found some interesting things they might help you against spam

http://myurl.at/cms/index.php/gaestebuc ... åøèôðîâàíà

http://www.google.com/recaptcha/api/image

http://www.google.com/recaptcha/api/reload

now i use the TTF captcha and i have no Spam! :)

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 09 Nov 2012, 19:18
by Jan
Hi, I get 404 on the first site and some messages on both below - which I don't understand :-(

Jan

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 01 Dec 2012, 13:52
by world4you
Hi, there is a DoS condition possible with a lot of spam entries in the guestbook which affects both the webserver cpu wise and the used mysql-server. The result is an overloaded webserver, 1Gbit/s bandwitdh usage from the mysql-server to the webserver etc. We tried to get in contact with phoca-developers via mail but got no response so far.

@Jan or any other developer can contact us via PM now - we can give you more technical details
We'd be happy to see that getting fixed.

-World4you

Re: Kein Zugriff mehr auf Kontrollzentrum

Posted: 09 Dec 2012, 01:10
by Jan
Hi, contacts sent in PM.