Jump to content

WavMaker

Members
  • Posts

    4
  • Joined

  • Last visited

Everything posted by WavMaker

  1. Yes. My .htaccess file was hacked and replaced by the hacker's .htaccess file on Nov 7, 2008, at 7:58 pm, according to the IX server timestamp. And, I know of one other IX account whose .htaccess file was hacked on Nov 29, 2008, at 5:06 pm, according to the IX server timestamp.
  2. No, I did not alert IX Webhosting. They should be alerting me (and you) about it.
  3. My site is hosted at IXwebhosting.com. I've seen posts from other IX clients that their sites are being attacked the same way. The rogue .htaccess file is being uploaded via FTP. I've changed my FTP password. I'm on a Linux server with Apache - 1.3.31
  4. I discovered earlier this morning that the same thing was happening with my web site. Viewing any of my URLs directly worked fine, but any referrals to my site from Google were instead getting sent to http://89[DOT]28[DOT]13[DOT]202/in.html?s=ix I checked a number of complex possibilities, searching for an answer, without success. Then I decided to check a simple answer -- I checked my web site's root directory to see if someone had planted a rogue file in there. I immediately discovered that my .htaccess file had been modified -- by someone other than me -- and replaced with code that sent any referrals from the major search engines to the URL above. I'm not sure how someone was able to replace my .htaccess file with their own code, but that's what happened. Naturally I've now removed their "pirate code" and put my own .htaccess file back in place. Now Google referrals are working properly.
×
×
  • Create New...