Page 1 of 1

admin panel flaw or hack?

PostPosted: Tue May 15, 2007 9:44 pm
Author: tattee
I was wondering if anyone knew what causes this.. it happens a lot and I've always chalked it up to a hack.. but a couple of members who's IP's do this are known good standing members.. so it makes me go hmmm? Does anyone have any ideas?

snapshot::
[code]http]

thanx tattee

Re: admin panel flaw or hack?

PostPosted: Tue May 15, 2007 9:59 pm
Author: Frost
Are they being banned or are you talking about it listing them all the way down the page with repeat entries?

PostPosted: Tue May 15, 2007 10:11 pm
Author: tattee
it shows multiple entries.. always as guest.. and shouldnt be in private messages.. this particular person i banned for this reason.. safety first until i get to the reason behind this.

Re: admin panel flaw or hack?

PostPosted: Tue May 15, 2007 10:29 pm
Author: Frost
Hmm, maybe the user was just looking at everyone's profile? lol

I can't offer any intelligible answer, other than if you think the user is up to something, ban them

In a similar experience, I just banned the first person to sign up to my premod site because the website they had in their website section attempted to force any unsuspecting viewer to download active x controls.

After researching the link I found several websites that had been hacked listed on google, as well as tons of spam sites.

I managed to catch the user just after registration, but still you never know what someone is up to until they do something. You could be banning an innocent user.

Re: admin panel flaw or hack?

PostPosted: Wed May 16, 2007 10:21 am
Author: tattee
"Frost";p="25390" wrote:You could be banning an innocent user.


better safe than sorry.. my motto

Re: admin panel flaw or hack?

PostPosted: Wed May 16, 2007 4:39 pm
Author: Frost
[Off Topic..sort of]

You know.. in all my years of messing with phpbb as a whole, including nuke, postnuke, phpbb, icy phoeniz, plus. integramod, etc..

I've not one single time ever had a problem with a hacker. Maybe I don't draw any attention to myself, or maybe I'm just lucky, but sometimes I purposely left or added the ability for hackers to find my site's software in the header, footer etc..

It's weird that in all that time, and even purposely trying to attract hackers I've never been messed with.

Kind of sad really...

For the purpose of getting a chance to fight back... face to face with them I mean <img>

Re: admin panel flaw or hack?

PostPosted: Thu Jan 10, 2008 8:04 am
Author: tattee
OK.. I finally figured out this mysterious multiple guest accounts phenomenon...

I just formatted my laptop.. and installed the free pc-cillin internet suite.. [code]http] attached themselves to me and were browsing the complete forum and attaching to other members.

thats what that is.. when there are multiple accounts.. its not the person whos ip comes up, but rather comes from someone using a free suite whereby JPNIC attaches themselves to members..

I know this because a japan ip came up in the crackertracker during an incident.. so i banned the address.. then i followed the blocked logs in the crackertracker log files.. it blocked every move i made.. not me but them. Once the address range was blocked the multiple guest activity stopped.

Also note.. the crackertracker blocked IP logs followed my every move until I uninstalled the pc-cillin.

So, it may be a good idea to make your members aware that reading the small print when installing FREEware might be a good idea cuz they, (the software provider), may actually be breaching your right to protection.