website hacked again

Discussion in 'General troubleshooting' started by wasp3dcom02, Feb 4, 2010.

  1. Yet again, we are facing a similar problem that we faced six months ago.
    Our website (www.wasp3d.com) got hacked again.

    The 'index.asp' and 'home.html' has been attacked and the code is infected, attached is the screenshot of the infected code and the virus notification.

    We have replaced the files to make the site functional.

    What could be the possible reason?

    Looking forward to a prompt response and a resolution.
     

    Attached Files:

    • 1.jpg
      1.jpg
      File size:
      30.4 KB
      Views:
      354
    • 2.jpg
      2.jpg
      File size:
      85.3 KB
      Views:
      396
  2. Open a helpdesk ticket, and support can help you determine to an extent how the site was hacked. For example, we can take a look at the FTP logs and see if multiple IPs connected to your site within a small amount of time.

    Support: http://support.discountasp.net/Main/Default.aspx
     
  3. mjp

    mjp

    Also bear in mind that this is almost never a server issue.

    They gain access in one of two ways; either through insecure data input on your site (typically a form that does not check the data that it submits, a.k.a. SQL injection), or they are getting your FTP username/password through a keylogger or password sniffer that was dropped onto a local computer by a virus or malware of some kind.

    There are other, more obscure methods, but those two comprise 99.9% of all site exploits that we see. Luckily those holes are relatively easily closed by ramping up security on your local computers and doing some kind of checks on data that you let users submit to your site.
     

Share This Page