PHP Proxy Question Regarding Hacking

Discussion in 'General Chat' started by business opportunities, Jan 4, 2008.

  1. #1
    I don't know if this is the right place to put this, so moderators feel free to move it if you need to.

    Anyway, I woke up this morning and the VPS that I have my proxy sites on was shut down. I contacted my host through their support system and they told me that they received a abuse report that someone had done a HTTP Hacking attack using port 80 on XXXXXX domain.

    Now, from the log entries supplied, there are just two entries that relate to this incident just one second apart. All that is on my server is two proxy websites and a paid to click site.

    Does anyone know then if someone can use your phpProxy site to hack, or is this report just bogus? I have been running proxies now for eight months, and I have never run into this problem at all. Also, any of the passwords for the sites are something you would never guess (a big mess of letters and numbers - very long too).

    If anyone has any ideas, suggestions, or comments, it would be much appreciated. I would like to know what I am talking about before talking to my host to see if I can get my VPS re-instated.
     
    business opportunities, Jan 4, 2008 IP
  2. kaung

    kaung Twitter @KaungKo

    Messages:
    4,040
    Likes Received:
    187
    Best Answers:
    0
    Trophy Points:
    155
    #2
    I've gotten by vps (for my personal sites) hacked in last month, where the user created new folders and subdomains for bank/financial fraud links. I even received contact from RSA.

    It appears the lastest 2 sites I created has flawed plugins and scripts which are vulnerable to hackers.
    It could be that your phpproxy is either out of date or the modified part is "flawed"

    I simply contacted my VPS support and they even helped me clean up and secure it.

    However I can not say for certain it'll be the same with proxies being hosted on vps.
    If your hosts do allow proxy, tell them to give you second chance (but make sure the reenstating fee will not be a burden)
     
    kaung, Jan 5, 2008 IP