Home Register FAQ Members List Calendar Game Links Gallery
Go Back   Joystick Required Forums > Joystick Required Community Center > Community Chat
About This Page About This Page: This is a discussion on Got JSR? within the Community Chat forums, part of the Joystick Required Community Center category, at Joystick Required Forums. Hopefully you do now. Welcome to the world of "people that hate." I guess some folks have nothing better to do on Christmas than initiate Denial of service
Welcome to Joystick Required! Membership is easy and its free! And membership removes this giant ad space.

Reply
 
LinkBack Thread Tools

Old 12-25-2004, 03:25 PM   #1 (permalink)
Big Daddy
 
Jump's Avatar
 
Pilot Name: JumpDemon
Faction: Solrain
Joystick: MS FF2
Join Date: May 2004
Location: Tracy, Ca.
Posts: 7,036
Jump has a spectacular aura aboutJump has a spectacular aura about
<!-- google_ad_section_start(weight=ignore) -->Jump<!-- google_ad_section_end --> is a Solrain pilot
Got JSR?

Hopefully you do now. Welcome to the world of "people that hate." I guess some folks have nothing better to do on Christmas than initiate Denial of service attacks on folks websites. The techs are working overtime at Internap and Fluidhosting to fend off this attack, instead of enjoying their families. I sure do appreciate them. But I wish these idiots would find a world where they are thrown in jail for these useless crimes. Smart kids with stupid parents mostly.

sigh


Merry Christmas

Jump
__________________
Currently working hard to break the server...

>> Help support JSR through our Amazon store
Jump is offline  Send a message via ICQ to Jump Send a message via Yahoo to Jump Reply With Quote
Sponsored Links


Old 12-25-2004, 06:08 PM   #2 (permalink)
Big Daddy
 
Jump's Avatar
 
Pilot Name: JumpDemon
Faction: Solrain
Joystick: MS FF2
Join Date: May 2004
Location: Tracy, Ca.
Posts: 7,036
Jump has a spectacular aura aboutJump has a spectacular aura about
<!-- google_ad_section_start(weight=ignore) -->Jump<!-- google_ad_section_end --> is a Solrain pilot
Looks like they are taking care of the problem for now. I also have blocked certain perl scripts from accessing my sites. For those that know what it is, the santy.A virus has evolved into a new form that goes after any php script now, not just phpbb. It attacks any GET values in url strings to attempt to gain admin access and compromise the site. Make sure you are upgraded to php 4.3.10.
Jump is offline  Send a message via ICQ to Jump Send a message via Yahoo to Jump Reply With Quote

Old 12-25-2004, 09:11 PM   #3 (permalink)
Big Daddy
 
Jump's Avatar
 
Pilot Name: JumpDemon
Faction: Solrain
Joystick: MS FF2
Join Date: May 2004
Location: Tracy, Ca.
Posts: 7,036
Jump has a spectacular aura aboutJump has a spectacular aura about
<!-- google_ad_section_start(weight=ignore) -->Jump<!-- google_ad_section_end --> is a Solrain pilot
For those of you that were busy enjoying Christmas this morning. You may not know what I am talking about. All my sites where unavailable do to a DDoS attack for the whole morning. Looks like a variant of the santy.A virus compromised another server at our host and had commenced an outbound DDoS attack. While at the same time we were getting constantly hit by outside servers searching our sites for poorly coded PHP scripts to compromise and gain control of this server.

They were not successful in their attempts. Not neccesarily because I write great code. But because they cannot access my code without forum membership. Now you know the main reason I require membership to use my scripts. It makes it much harder for script kiddies to find weaknesses as they can't even get to the scripts.

Anyway, thanks to the wonderful folks at Fluid Hosting, who had a miserable Christmas morning, all is well again.
Jump is offline  Send a message via ICQ to Jump Send a message via Yahoo to Jump Reply With Quote

Old 12-26-2004, 01:17 AM   #4 (permalink)
Highest Order Hypocrite
 
GrimGriz's Avatar
 
Faction: non-aligned
Join Date: Jul 2004
Location: Portland
Posts: 2,707
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
GrimGriz is on a distinguished road
Hmmm, and I thought it was just a coincidence everytime I mention JSR I can't get to it anymore.
GrimGriz is offline   Reply With Quote

Old 12-26-2004, 08:13 AM   #5 (permalink)
Big Daddy
 
Jump's Avatar
 
Pilot Name: JumpDemon
Faction: Solrain
Joystick: MS FF2
Join Date: May 2004
Location: Tracy, Ca.
Posts: 7,036
Jump has a spectacular aura aboutJump has a spectacular aura about
<!-- google_ad_section_start(weight=ignore) -->Jump<!-- google_ad_section_end --> is a Solrain pilot
Well, you just mentioned it, and your here.
Jump is offline  Send a message via ICQ to Jump Send a message via Yahoo to Jump Reply With Quote

Old 12-26-2004, 08:24 AM   #6 (permalink)
Highest Order Hypocrite
 
GrimGriz's Avatar
 
Faction: non-aligned
Join Date: Jul 2004
Location: Portland
Posts: 2,707
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
GrimGriz is on a distinguished road
I meant in game. Once I asked Toph to come register, then logged off and checked...couldn't get to the site. Then yesterday just prior to all this nonsense, I was talking up pilot stats and the other funkeh tools.
GrimGriz is offline   Reply With Quote

Old 12-26-2004, 08:45 AM   #7 (permalink)
Big Daddy
 
Jump's Avatar
 
Pilot Name: JumpDemon
Faction: Solrain
Joystick: MS FF2
Join Date: May 2004
Location: Tracy, Ca.
Posts: 7,036
Jump has a spectacular aura aboutJump has a spectacular aura about
<!-- google_ad_section_start(weight=ignore) -->Jump<!-- google_ad_section_end --> is a Solrain pilot
Well, generally, if you can't get here, it's most likely something along your net path to get here. Best thing to do is a tracert and see where the problem is. But yesterday, it was because of an attack. I knew it was bad when I was here in the morning and I could see a bunch of spurious activity by unkown perl scripts searching the site. Then before I could even block them I couldn't load the site anymore. A tracert revealed the problem to be within the host, past the NOC switches.

Basically, once they were able to compromise that other server, they used up all the bandwitdth. Along with all the constant hit's to ours and other sites. That server has been shut down (I feel for them). Many of the IP's they where coming from are dead sites and some seem to have been shut down by their respective hosts. But still, it's a worm and it's out there replicating.

And if your on shared hosting your in even greater danger. As someone elses crappy code, on their own sites on the shared server, could screw your sites.

Another Jumpgate site recently got hit. Most likely because of someone else on a shared server. They got lucky though, there was minimal damage. If any of you are out there using the PJG market lister on your sites. You really need to update it so that it does not use register globals. It's very easy for this worm to compromise it using the unprotected variables in the query string. You should always check user supplied data in your scripts also.

Anyway, all seems well now.
Jump is offline  Send a message via ICQ to Jump Send a message via Yahoo to Jump Reply With Quote

Old 12-26-2004, 05:34 PM   #8 (permalink)
Member
 
QrazyKermi's Avatar
 
Join Date: Jul 2004
Location: CT
Posts: 579
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
QrazyKermi is on a distinguished road
You know, if you'd voted for Bush, this wouldn't be happening.
QrazyKermi is offline   Reply With Quote
Reply

Bookmarks


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 05:58 AM.
Powered by vBulletin® Version 3.8.0 Beta 1
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0 RC5
NetDevil, Jumpgate, Jumpgate Evolution and all related images and logos are trademarks of NetDevil, Ltd. ? 2007 NetDevil, Ltd. All Rights Reserved.




Footer