![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
Confirmed User
Join Date: Aug 2002
Location: UK
Posts: 3,198
|
Comus Thumbs.com down after big hack?
__________________
Take it Easy !!! ![]() ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
Confirmed User
Join Date: May 2002
Location: European Union
Posts: 3,815
|
Yes, looks like their Server is down
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 |
Confirmed User
Industry Role:
Join Date: Dec 2006
Location: USA
Posts: 1,045
|
Yup, the site is down here in central USA as well!
__________________
![]() ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
Confirmed User
Join Date: Aug 2002
Location: UK
Posts: 3,198
|
Guessing this is the end of comus then. After this last hack i'm never using comus again anyway. I dont think the owner has giving a shit about comus for years now.
__________________
Take it Easy !!! ![]() ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#5 |
Horsing Around
Industry Role:
Join Date: Sep 2002
Location: AU
Posts: 5,862
|
Have to agree, I used it when it first came out oh so many years ago. Now fuck that shit smart thumbs is way to go....
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 |
Confirmed User
Industry Role:
Join Date: Dec 2006
Location: Amsterdam
Posts: 1,119
|
even after deleting CT folder in your root and switichig to ST, the exploit code returns.
I'm done with CT |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 | |
Confirmed User
Join Date: May 2002
Location: European Union
Posts: 3,815
|
Quote:
![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 |
Confirmed User
Industry Role:
Join Date: Dec 2006
Location: Amsterdam
Posts: 1,119
|
yup I'm affraid that's the case. working on it ;)
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 |
Confirmed User
Industry Role:
Join Date: Apr 2006
Location: Germany
Posts: 4,323
|
Weird. I only checked the site of comusthumbs a couple of days ago...
Anybody want to buy two spare comus licenses? ![]() ![]()
__________________
--- ICQ 14-76-98 <-- I don't use this at all |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 |
Confirmed User
Industry Role:
Join Date: Dec 2006
Location: Amsterdam
Posts: 1,119
|
yesterday the site was up, but nobody in the forum mentioned about the hack
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#11 | |
Confirmed User
Join Date: Aug 2002
Location: UK
Posts: 3,198
|
Quote:
I installed ST to replace CT and it was hacked within about 2 mins until i did the above. Its a bitch of a hack ![]()
__________________
Take it Easy !!! ![]() ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#12 |
Confirmed User
Industry Role:
Join Date: Dec 2006
Location: Amsterdam
Posts: 1,119
|
did you set it to 755?
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#13 |
So Fucking Banned
Join Date: Nov 2005
Posts: 1,515
|
the power of hackers ... there is always someone better, and if hackers want to put something down, they will find a way, and looks like its working ...
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#14 |
Confirmed User
Join Date: Sep 2003
Posts: 2,255
|
Comus users, if you looking to buy ST license for migraton I found a great deal here.
http://www.gfy.com/sell-and-buy-forum/917058-wts-smart-thumbs-licenses.html
__________________
254-282-542 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#15 |
So Fucking Banned
Join Date: Aug 2009
Posts: 3,164
|
oh well, shit hasn't been updated forever, what do you expect to happen
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#16 |
Confirmed User
Industry Role:
Join Date: Apr 2006
Location: Germany
Posts: 4,323
|
Assuming there is a hack and that it is based on permissions, the comus staff is to blame.
They always advised people to "just chmod the whole comus folder to 777". That's never a good idea. People should not have followed that advise in the first place.
__________________
--- ICQ 14-76-98 <-- I don't use this at all |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#17 | |
Confirmed User
Join Date: Sep 2003
Posts: 2,255
|
Quote:
I'm sure hacker running remote script that stored your login info. so it frequently injects JS/iframs code into your site files. Clean your PC with anti-spyware then change all server passwords. after that, remove the code in all files with text editor. Don't open infected webpages with browser until all removal is done. it did work for me.
__________________
254-282-542 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#18 |
Too lazy to set a custom title
Industry Role:
Join Date: Mar 2003
Location: Homeless
Posts: 62,911
|
man it sucks to see such a great program go.
__________________
PornGuy skype me pornguy_epic AmateurDough The Hottes Shemales online! TChicks.com | Angeles Cid | Mariana Cordoba | MAILERS WELCOME! |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#19 | |
Confirmed User
Join Date: Aug 2002
Location: UK
Posts: 3,198
|
Quote:
Now i have to repair the sites and install ST over 40 times to replace CT ![]()
__________________
Take it Easy !!! ![]() ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#20 | |
Confirmed User
Industry Role:
Join Date: Jan 2003
Location: In a Tater Patch
Posts: 2,321
|
Quote:
Also please check your /tmp folder so its set to noexec so pearl scripts cannot be ran out of this location after being uploaded. I can go on and on but thats the jist of it.
__________________
Managed Hosting - Colocation - Network Services Yellow Fiber Networks icq: 19876563 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#21 |
Too lazy to set a custom title
Industry Role:
Join Date: Mar 2004
Posts: 16,116
|
Just checked one of my comus sites and sure enough - i've got the code being injected as well. Boo
__________________
Your Paysite Partner Strength In Numbers! StickyDollars | RadicalCash | KennysPennies | HomegrownCash |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#22 | |
Confirmed User
Join Date: Aug 2002
Location: UK
Posts: 3,198
|
Quote:
sorry to here you got the hack, good luck getting rid of it.
__________________
Take it Easy !!! ![]() ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#23 |
Pay It Forward
Industry Role:
Join Date: Sep 2005
Location: Yo Mama House
Posts: 77,084
|
i said months ago ct was gone
__________________
TRUMP 2025 KEKAW!!! - The Laken Riley Act Is Law! DACA ENDED - SUPPORT AZ HCR 2060 52R - email: brassballz-at-techie.com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#24 |
Confirmed User
Join Date: Aug 2004
Posts: 151
|
grrrr dont even know where to start right now! need to get ST installed but also get all the links to trades,sponsors ect copied and pasted to hard drive! and reading about the exploit returning after a ST install! fuck its gonna be a long weekend for me! as well as for you guys!
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#25 |
Confirmed User
Join Date: Aug 2004
Posts: 151
|
fuck sake, cant even get pass install.php for smart thumbs here!
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#26 |
Confirmed User
Join Date: May 2004
Posts: 506
|
Anyone know how to tighten Comus if we haven't been hacked yet? All I could think to do is change the permissions of the CT folder to 755.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#27 |
Confirmed User
Join Date: Aug 2004
Posts: 151
|
My hosts require 755 and still didnt stop my sites getting hacked....although I must add my sites seems to try and redirect rather then actual malicious code embedded in my html....
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#28 |
Confirmed User
Join Date: Aug 2004
Posts: 151
|
finally got thru to ST and having a go with with it to see what does what...kinda similar to comus but different interface....will be a few days till I can get my head round it and be up and running...hopefully!
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#29 |
Confirmed User
Industry Role:
Join Date: Dec 2002
Location: in your head
Posts: 3,625
|
so you failed to read my topic called important info ;)
__________________
icq:148573096 skype:dabone2 email:boneless(a)mgpteam(.)com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#30 |
Confirmed User
Industry Role:
Join Date: Dec 2002
Location: in your head
Posts: 3,625
|
wanna trade places and do my 100+ :D
__________________
icq:148573096 skype:dabone2 email:boneless(a)mgpteam(.)com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#31 |
Confirmed User
Join Date: Aug 2002
Location: UK
Posts: 3,198
|
I feel your pain bro
![]() ![]()
__________________
Take it Easy !!! ![]() ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#32 |
Confirmed User
Industry Role:
Join Date: Dec 2006
Location: Amsterdam
Posts: 1,119
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#33 |
Rock 'n Roll Baby!
Join Date: Sep 2004
Location: USA, temporarly
Posts: 22,562
|
too bad for comus... It was pretty good script.
I guess I'll have to make a switch over st too...
__________________
Sig for sale. Affordable prices. Contact me and get a great deal ;) My contact: ICQ: 944-320-46 e-mail: manca {AT} HotFreeSex4All.com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#34 |
Confirmed User
Join Date: Sep 2003
Posts: 2,255
|
Check your tmpl files in ct/templates directory. those are infected as well and also there are more .tmpl and .php(no Zend) files in some other dirs.
Just delete unnecessary files under the ct directory.(backups, welcome.html, example.html, old data, etc.) But again, YOU MUST SCAN YOUR PC in advance of code removal. The hacker has your ftp password. so he will inject the code again automatically. Moreover this hacker(his remote software) will scan other directories in /home. then it will attack other php sites too. My other TGPX and TEVS sites on the same box also got hit. Once the hacker has your ftp login, changing file/dir permission won't be a solution. I had found these malwares in my pc. Exploit,PDF.JS-Gen Trojan.Script.7685 These came from the injected code. Remove them and reboot. Scan again with another antispyware, reboot, then change server passwords. Now edit all infected files. Use server-side text editor or file manager. If there is a blank line under the <body> tag. Scroll to right and you will find the hidden code. DON'T load infected or suspicious php/html files with browser. Your PC will get malwares again and it will sniff new password when you using ftp. So it's the most important that your pc is not infected by malwares during code removal. Good luck.
__________________
254-282-542 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#35 |
Confirmed User
Join Date: Aug 2004
Posts: 151
|
Spudman....see you are from the UK too
![]() ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#36 |
Webmaster Extraordinaire
Industry Role:
Join Date: Jul 2002
Location: A beautiful beach...
Posts: 10,748
|
can't get it here
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#37 | |
Confirmed User
Join Date: Aug 2002
Location: UK
Posts: 3,198
|
Quote:
![]()
__________________
Take it Easy !!! ![]() ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#38 |
in a van by the river
Industry Role:
Join Date: May 2003
Posts: 76,806
|
I wonder why the owner stopped giving a shit? It seemed like he bought out epower trader but shortly after that stopping doing much.
Did he have health problems or something or just give up?
__________________
In November, you can vote for America's next president or its first dictator. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#39 |
Biker Gnome
Industry Role:
Join Date: Mar 2004
Location: cell#324
Posts: 23,200
|
I remember Tony having health problems and it when down hill from there, havn't heard from him in a long time
__________________
Carbon is not the problem, it makes up 0.041% of our atmosphere , 95% of that is from Volcanos and decomposing plants and stuff. So people in the US are responsible for 13% of the carbon in the atmosphere which 95% is not from Humans, like cars and trucks and stuff and they want to spend trillions to fix it while Solar Panel plants are powered by coal plants think about that |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#40 |
Confirmed User
Join Date: Jul 2006
Location: NoHo
Posts: 5,970
|
yeap I remember seeing u there.... Comus was a great tool while it lasted.... luckily I moved away from TGPs a while back.... glad I did it too!
__________________
![]() ICQ: 266990876
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#41 |
Damn Right I Kiss Ass!
Industry Role:
Join Date: Dec 2003
Location: Cowtown, USA
Posts: 32,406
|
I uninstalled it long ago when it kept getting hacked.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#42 |
Confirmed User
Industry Role:
Join Date: Sep 2006
Location: Hamilton, ON
Posts: 628
|
I sale 100 licenses of glorious script APTGP3
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#43 |
in a van by the river
Industry Role:
Join Date: May 2003
Posts: 76,806
|
Yea that's what I was thinking. I wonder if he's ok or if it's because of the health problems. He used to always be pretty active with his scripts. He didn't seem like one that would just disappear.
__________________
In November, you can vote for America's next president or its first dictator. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#44 |
Confirmed User
Join Date: Aug 2008
Location: longwood, fl
Posts: 421
|
this is my first time having to do this. i only have one site though. trying just to get that to work right. at least i have a dedicated managed server so they can take care of that crap for me. i have no clue about it. i think my site is okay though, but not to sure.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#45 |
Confirmed User
Join Date: Feb 2006
Posts: 2,848
|
http://comusthumbs.com/ is online again.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#46 | |
Confirmed User
Join Date: Aug 2004
Posts: 151
|
Quote:
yeah but all the links at top of the page for support forum ect isnt there ... |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#47 | |
Confirmed User
Industry Role:
Join Date: Apr 2006
Location: Germany
Posts: 4,323
|
Quote:
![]()
__________________
--- ICQ 14-76-98 <-- I don't use this at all |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#48 |
Confirmed User
Industry Role:
Join Date: Dec 2006
Location: Along the shore.
Posts: 1,557
|
Besides Spybot S&D what is another good spyware removal progy?
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#49 |
Confirmed User
Join Date: Aug 2004
Posts: 151
|
jeez...this is gonna take forever! I'm tempted to just have static pages up...
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#50 | |
I love to racism, bro!
Industry Role:
Join Date: Oct 2002
Location: USA! USA! USA!
Posts: 22,954
|
Quote:
![]() I've been thinking the same thing.
__________________
Unvaxxed, still alive. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |