PhotoPost Photo Gallery Sales PhotoPost Sales Toll Free Phone Number
Mon-Fri 9am-4pm EST
  PhotoPost Photo Sharing Photo Gallery    Visualize community tm
| | | | | | | | |

Go Back   PhotoPost Community > General Forums > General Discussion

General Discussion General use discussion forum for PhotoPost products.

Reply
 
LinkBack Thread Tools Rate Thread Display Modes
Old February 8th, 2008, 10:31 PM   #61 (permalink)
Junior Member
Verified Customer
 
Join Date: Nov 2005
Posts: 18
hello, i use currently php4 on my server.

can i use still these instructions: ?

http://www.photopost.com/forum/showp...7&postcount=15
balikci is offline   Reply With Quote
Old February 10th, 2008, 12:02 PM   #62 (permalink)
Member
Verified Customer
 
Join Date: Jun 2005
Posts: 57
Quote:
Originally Posted by Delw View Post
I installed/upgraded it from v2.1 to the newest release everything worked fine

one suggestion, in the docs you have for upgrade just 3 files.
don't forget if your upgrading from one earlier version to another you need to put all the files in

somewhere the upgrade from other versions got lost, it might throw a few people off

Thanks Again.
Delw
it threw me off. I still have questions. Do I install all files in all folders or just the ones listed in the included readme.html? If just the ones in the readme.html, there are a few that are listed that are not in included in the folders???
YSR50 is offline   Reply With Quote
Old February 10th, 2008, 05:40 PM   #63 (permalink)
Member
Verified Customer
 
Join Date: Jun 2005
Posts: 57
well, I just went ahead and uploaded all files included and now I have this problem


Admin permissions, can't see gallery
YSR50 is offline   Reply With Quote
Old February 17th, 2008, 06:43 PM   #64 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
My host suspended my account because of this vulnerability and told me that they would unsuspend it only if they could delete the directory: ..../public_html/gallery/files/.

I am not sure what would be impacted by removing that directory. Does that directory contain all of the images that have been uploaded?

Thanks.
edprush is offline   Reply With Quote
Old February 17th, 2008, 09:23 PM   #65 (permalink)
Registered User
Verified Customer
 
Zachariah's Avatar
 
Join Date: Nov 2005
Location: Canoga Park, CA
Posts: 3,243
Send a message via ICQ to Zachariah Send a message via AIM to Zachariah Send a message via MSN to Zachariah Send a message via Skype™ to Zachariah
Quote:
Originally Posted by edprush View Post
My host suspended my account because of this vulnerability and told me that they would unsuspend it only if they could delete the directory: ..../public_html/gallery/files/.

I am not sure what would be impacted by removing that directory. Does that directory contain all of the images that have been uploaded?

Thanks.
Correct it has all of your images.
- I would say rename the folder to something else and then scan for problems, if they open your site up to fix the problem. The scan and clean script looks in your gallery/files for problems and removes them.

- if they will not open the account for you to proceed on a fix have them Gzip your folder , You can download it and scan on your PC, fix the problems then re-upload.
Zachariah is offline   Reply With Quote
Old February 17th, 2008, 10:07 PM   #66 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
Quote:
Originally Posted by Zachariah View Post
Correct it has all of your images.
- I would say rename the folder to something else and then scan for problems, if they open your site up to fix the problem. The scan and clean script looks in your gallery/files for problems and removes them.

- if they will not open the account for you to proceed on a fix have them Gzip your folder , You can download it and scan on your PC, fix the problems then re-upload.
My host has informed me that some of the infected files include:
/public_html/gallery/files/1/4/2/4/c999.php
/public_html/gallery/files/1/4/2/4/.r57.php
/public_html/gallery/files/1/4/2/4/rer.php
/public_html/gallery/files/safe.php
/public_html/gallery/files/1/4/2/4/safe.php

If I run the clean.php script, I assume, it will remove those files. Is there a clean version of those files that will need to be reuploaded?
edprush is offline   Reply With Quote
Old February 19th, 2008, 09:36 AM   #67 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
(just a bump for the above post)

Thanks.
edprush is offline   Reply With Quote
Old February 20th, 2008, 09:39 AM   #68 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
Does anyone happen to know the answers to my concerns? If you are not allowed to post your reply in this thread, you may PM me.

Also, after I run clean.php and patch the insecurity in the script how can I determine what 'damage' was done? Such as if they uploaded more files to another folder for a 2nd way of access?

Thanks.
edprush is offline   Reply With Quote
Old February 20th, 2008, 07:57 PM   #69 (permalink)
Registered User
Verified Customer
 
Zachariah's Avatar
 
Join Date: Nov 2005
Location: Canoga Park, CA
Posts: 3,243
Send a message via ICQ to Zachariah Send a message via AIM to Zachariah Send a message via MSN to Zachariah Send a message via Skype™ to Zachariah
The script will scan and clean your galley upload folder and all sub folders.
- it will not scan other folders.

I have fixed 5 systems. They hide files in the root of your forums attachments folder if you save to fileserver vs. database and /your/gallery/upload folders.
Zachariah is offline   Reply With Quote
Old February 21st, 2008, 10:39 AM   #70 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
Quote:
Originally Posted by Zachariah View Post
They hide files in the root of your forums attachments folder if you save to fileserver vs. database and /your/gallery/upload folders.
Are you saying that they don't hide files in the database storage system or are you saying that they hide them in both the fileserver and database storage systems?

Sorry about my lack of knowledge. This is the first time I've been hacked.
edprush is offline   Reply With Quote
Old February 26th, 2008, 01:52 PM   #71 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
Quote:
Originally Posted by Zachariah View Post
- if they will not open the account for you to proceed on a fix have them Gzip your folder , You can download it and scan on your PC, fix the problems then re-upload.
How do I run the clean.php file from my PC (without uploading it to my server)?

Thanks.
edprush is offline   Reply With Quote
Old February 26th, 2008, 08:49 PM   #72 (permalink)
Registered User
Verified Customer
 
Zachariah's Avatar
 
Join Date: Nov 2005
Location: Canoga Park, CA
Posts: 3,243
Send a message via ICQ to Zachariah Send a message via AIM to Zachariah Send a message via MSN to Zachariah Send a message via Skype™ to Zachariah
Well if you have you site localy on your PC up you can scan with windows search.

Start => Search => for files and folders
- search in your /gallery/files
Find: *php*.*

-- Remove anything found with "php" in the title.

If you have your attachments for threads in the forum set to save to disk vs. database, look in that folder for any php files.
Zachariah is offline   Reply With Quote
Old February 28th, 2008, 07:24 PM   #73 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
Quote:
Originally Posted by Snobbytec View Post
It seems that the directory variable can not be read.

Quick fix: Open clean.php find
listdir($ppg_options['gallery_filedirectory']);

change it to your path, for example
listdir("/your/path/to/gallery/files");

save, upload and re-run it.

Then change the path again for the userfolder:
listdir("/your/path/to/gallery/users");

re-run it.
Zachariah, is the above change correct? If so, have you added it to clean.php?

I am getting this message when I try to run clean.php:
Quote:
Working in

Scanning for PHP files in your gallery files directory:

Warning: readdir(): supplied argument is not a valid Directory resource in /admincp/clean.php on line 26

Warning: closedir(): supplied argument is not a valid Directory resource in /admincp/clean.php on line 55
processed 0 files


Click Here to remove all files listed

Please remember to delete this clean.php file from your server when done.
edprush is offline   Reply With Quote
Old March 1st, 2008, 05:11 PM   #74 (permalink)
Member
Verified Customer
 
Join Date: Jan 2005
Posts: 109
I made the changes shown in: http://www.photopost.com/forum/photopost-announcements/134910-photopost-vbgallery-important-security-bulletin.html#post1214127

After that I noticed that when members try to upload a photo to the gallery it doesn't display--they don't get an error message.

I have my vbgallery set to moderate all uploads but the images never show up in the vbgallery moderation queue.

Any idea what I did wrong?

Thanks.
edprush is offline   Reply With Quote
Old April 18th, 2008, 08:42 PM   #75 (permalink)
Member
Verified Customer
 
Join Date: Nov 2002
Posts: 372
I just realized I have this issue... 4 sites hacked bad in the past 24 hrs. While I get ready to get everything updated, I went ahead and turned OFF the gallery... Will that protect me while I upgrade in the next days?

Thanks in advance -
InterFX is offline   Reply With Quote
Old April 19th, 2008, 10:01 AM   #76 (permalink)
Registered User
Verified Customer
 
Zachariah's Avatar
 
Join Date: Nov 2005
Location: Canoga Park, CA
Posts: 3,243
Send a message via ICQ to Zachariah Send a message via AIM to Zachariah Send a message via MSN to Zachariah Send a message via Skype™ to Zachariah
Quote:
Originally Posted by InterFX View Post
I just realized I have this issue... 4 sites hacked bad in the past 24 hrs. While I get ready to get everything updated, I went ahead and turned OFF the gallery... Will that protect me while I upgrade in the next days?

Thanks in advance -
No, The files will still be on your system.
- The attacker will hide in your gallery/files folder. Rename the folder that holds you gallery images to something else. This way they do not know where the files are to directly access them.
Zachariah is offline   Reply With Quote
Reply

« Optimization | Iptc »

Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
vbAdvanced vBGallery to Photopost Import Script Chuck S Photopost Pro Import Scripts 18 July 16th, 2009 02:49 PM
vBGallery to Photopost Pro Import Script StuartDH Photopost Pro How Do I...? 4 September 29th, 2007 05:04 PM
Photopost to VBgallery import script Silver_2000 How Do I? - vBulletin 3.6x 10 February 18th, 2007 10:08 AM
Import script for Photopost VBGallery attroll Photopost Pro How Do I...? 6 February 4th, 2006 03:32 PM
Cant download PhotoPost to vBGallery import script? Zilvia.net General Discussion 1 December 18th, 2005 07:42 PM


All times are GMT -5. The time now is 07:34 AM.

Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0