<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Site Hacked Daily</title>
	<atom:link href="http://www.befuddled.me.uk/2008/11/site-hacked-daily/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/</link>
	<description>affiliate marketing for the dazed and confused</description>
	<lastBuildDate>Sun, 29 Aug 2010 03:18:49 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: leo</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-8725</link>
		<dc:creator>leo</dc:creator>
		<pubDate>Thu, 20 May 2010 06:42:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-8725</guid>
		<description>I have tried what Ray suggested about the ftp accounts but it is still happening on one of my sites.As an I.T student and &lt;a href=&quot;http://www.mcdstcourse.com&quot; rel=&quot;nofollow&quot;&gt;mcdst&lt;/a&gt; holder
 Servage support team are not very helpful I’m afraid with generic replies to my questions and little in the way of a solution.</description>
		<content:encoded><![CDATA[<p>I have tried what Ray suggested about the ftp accounts but it is still happening on one of my sites.As an I.T student and <a href="http://www.mcdstcourse.com" rel="nofollow">mcdst</a> holder<br />
 Servage support team are not very helpful I’m afraid with generic replies to my questions and little in the way of a solution.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: scarum</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-7534</link>
		<dc:creator>scarum</dc:creator>
		<pubDate>Thu, 12 Mar 2009 04:04:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-7534</guid>
		<description>They -Servage- have the balls to imply after all these testimonials that is still OUR FAULT for fucking up our attributes on folders?
Cheesuz chrysler, wtf are these people thinking? They get hacked nearly 24/7 and they think the users are the ones to blame?</description>
		<content:encoded><![CDATA[<p>They -Servage- have the balls to imply after all these testimonials that is still OUR FAULT for fucking up our attributes on folders?<br />
Cheesuz chrysler, wtf are these people thinking? They get hacked nearly 24/7 and they think the users are the ones to blame?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Servage</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-7365</link>
		<dc:creator>Servage</dc:creator>
		<pubDate>Mon, 09 Feb 2009 15:02:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-7365</guid>
		<description>Hello ... Servage here. I would like to take the opportunity to inform you on the GeoIP feature we have added to our control panel. This enables you to lock your controlpanel to geographical areas. Read more on: &lt;em&gt;https://www.servage.net/blog/2009/01/27/geoip-security-for-your-peace-of-mind/&lt;/em&gt;

Please also make sure you remove your ftp-account and create a new one in order to increase security.

But I agree with other postings here that proper file/folder permission is vital if you placing content on the Internet.

Do not hesitate to contact our customer support if you have any more issues. We are glad to help you.</description>
		<content:encoded><![CDATA[<p>Hello &#8230; Servage here. I would like to take the opportunity to inform you on the GeoIP feature we have added to our control panel. This enables you to lock your controlpanel to geographical areas. Read more on: <em><a href="https://www.servage.net/blog/2009/01/27/geoip-security-for-your-peace-of-mind/" rel="nofollow">https://www.servage.net/blog/2009/01/27/geoip-security-for-your-peace-of-mind/</a></em></p>
<p>Please also make sure you remove your ftp-account and create a new one in order to increase security.</p>
<p>But I agree with other postings here that proper file/folder permission is vital if you placing content on the Internet.</p>
<p>Do not hesitate to contact our customer support if you have any more issues. We are glad to help you.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: richi</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-7333</link>
		<dc:creator>richi</dc:creator>
		<pubDate>Sat, 07 Feb 2009 16:24:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-7333</guid>
		<description>count me in.
this is for the second time that all my servage-hosted websites were infested. new index.php apearing...</description>
		<content:encoded><![CDATA[<p>count me in.<br />
this is for the second time that all my servage-hosted websites were infested. new index.php apearing&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-7323</link>
		<dc:creator>Dave</dc:creator>
		<pubDate>Sat, 07 Feb 2009 02:47:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-7323</guid>
		<description>Hi 
All the same problems as you, I am no longer a customer. Bored of being hacked then ignore by servage, and then all the downtime. Here is my story, its a long blog post, but then its a long story.
http://blog.lottomad.info/ab-personal-updates/servagenet-hosting-stay-away</description>
		<content:encoded><![CDATA[<p>Hi<br />
All the same problems as you, I am no longer a customer. Bored of being hacked then ignore by servage, and then all the downtime. Here is my story, its a long blog post, but then its a long story.<br />
<a href="http://blog.lottomad.info/ab-personal-updates/servagenet-hosting-stay-away" rel="nofollow">http://blog.lottomad.info/ab-personal-updates/servagenet-hosting-stay-away</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hacked? the solution</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-4711</link>
		<dc:creator>hacked? the solution</dc:creator>
		<pubDate>Sat, 10 Jan 2009 18:32:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-4711</guid>
		<description>There are many sites hacked this way on Servage:
fishka or .htaccess hack

It does not depend on ftp credentials being stolen, but ONLY on ROOT dirs being writable by everyone (777).

First of all you need to CHMOD (755) your directories...especially the root !!!
Then...
You just need to clean the added lines in your index page and your .htaccess file. Carefully check for added subdirs the &quot;hackers&quot; created to upload their scripts and delete them, otherwise those bad scripts would still be active ;-)</description>
		<content:encoded><![CDATA[<p>There are many sites hacked this way on Servage:<br />
fishka or .htaccess hack</p>
<p>It does not depend on ftp credentials being stolen, but ONLY on ROOT dirs being writable by everyone (777).</p>
<p>First of all you need to CHMOD (755) your directories&#8230;especially the root !!!<br />
Then&#8230;<br />
You just need to clean the added lines in your index page and your .htaccess file. Carefully check for added subdirs the &#8220;hackers&#8221; created to upload their scripts and delete them, otherwise those bad scripts would still be active <img src='http://www.befuddled.me.uk/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Stefan</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-4404</link>
		<dc:creator>Stefan</dc:creator>
		<pubDate>Tue, 06 Jan 2009 11:34:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-4404</guid>
		<description>Hi,

I guess I am having the same problem. I am with Servage and one of my websites was hacked - as it appears on December 17 - I only noticed it today.
I do NOT have Wordpress on the site.
But I do have a PHP forum and some other third party PHP scripts for link exchange.

I have deleted ALL php code from the site.
I guess the problem is with PHP. It only affects Wordpress because WP relies on PHP.

After carefully anaylzing the modification dates of the files I saw that the PHP files were modified first - then the htmlfiles with the code snippet &quot;text block fishka&quot; and many links pointing to the same website.
(I did a DNS lookup with domaintool and could see who owns it - but maybe this is just another hacked site - so they hack one site and point links to another hacked site... just a guess)

I will notify Servage of the problem.
I don&#039;t know if moving to another host might hurt my rankings which have built over the last 3 years..It is a PR 4 site so I am not sure if I should just move to another host.</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>I guess I am having the same problem. I am with Servage and one of my websites was hacked &#8211; as it appears on December 17 &#8211; I only noticed it today.<br />
I do NOT have Wordpress on the site.<br />
But I do have a PHP forum and some other third party PHP scripts for link exchange.</p>
<p>I have deleted ALL php code from the site.<br />
I guess the problem is with PHP. It only affects Wordpress because WP relies on PHP.</p>
<p>After carefully anaylzing the modification dates of the files I saw that the PHP files were modified first &#8211; then the htmlfiles with the code snippet &#8220;text block fishka&#8221; and many links pointing to the same website.<br />
(I did a DNS lookup with domaintool and could see who owns it &#8211; but maybe this is just another hacked site &#8211; so they hack one site and point links to another hacked site&#8230; just a guess)</p>
<p>I will notify Servage of the problem.<br />
I don&#8217;t know if moving to another host might hurt my rankings which have built over the last 3 years..It is a PR 4 site so I am not sure if I should just move to another host.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dlld</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-3008</link>
		<dc:creator>dlld</dc:creator>
		<pubDate>Fri, 26 Dec 2008 13:47:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-3008</guid>
		<description>I&#039;m also one of the victims. I&#039;ve found it also creates a new folder in one of the wordpress&#039; directories and uploads an index.php file. Remember to find and remove it.</description>
		<content:encoded><![CDATA[<p>I&#8217;m also one of the victims. I&#8217;ve found it also creates a new folder in one of the wordpress&#8217; directories and uploads an index.php file. Remember to find and remove it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Marko</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-2995</link>
		<dc:creator>Marko</dc:creator>
		<pubDate>Fri, 26 Dec 2008 11:50:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-2995</guid>
		<description>Make sure you also check all .htaccess files and suspicious folders. I&#039;ve had to delete a &#039;web&#039; folder and clean up .htaccess files. Also deleted a ftp account which I have not created.</description>
		<content:encoded><![CDATA[<p>Make sure you also check all .htaccess files and suspicious folders. I&#8217;ve had to delete a &#8216;web&#8217; folder and clean up .htaccess files. Also deleted a ftp account which I have not created.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sean</title>
		<link>http://www.befuddled.me.uk/2008/11/site-hacked-daily/comment-page-1/#comment-2865</link>
		<dc:creator>Sean</dc:creator>
		<pubDate>Wed, 24 Dec 2008 11:52:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.befuddled.me.uk/2008/11/site-hacked-daily/#comment-2865</guid>
		<description>I thought I was going crazy when I noticed these links on my Joomla sites hosted on servage.

The strange thing is that it has also affected other sites that are pure html too.

Have found and deleted rouge ftp account and changed ftp and cp passwords. hopefully this will work.

I havnt noticed the issue with a Joomla 1.5 site that I have been working on but then again, this site was not uploaded until 18 November.

Just glad that I perform file backups weekly.</description>
		<content:encoded><![CDATA[<p>I thought I was going crazy when I noticed these links on my Joomla sites hosted on servage.</p>
<p>The strange thing is that it has also affected other sites that are pure html too.</p>
<p>Have found and deleted rouge ftp account and changed ftp and cp passwords. hopefully this will work.</p>
<p>I havnt noticed the issue with a Joomla 1.5 site that I have been working on but then again, this site was not uploaded until 18 November.</p>
<p>Just glad that I perform file backups weekly.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
