PDA

View Full Version : Help needed!


harvey
10-13-2001, 06:28 PM
Somehow the index page at tgp2.net has been hacked and now it has a pop-up. The code it shows is the following

<script language="javascript">

<!--
function topteenz() {
window.open("http://topteenz.net","test","menubar=1,location=1,status=1,toolbar=1,scrollbars =1,resizable=0,width=800,height=600");
}
-->

</script>
<base target="_new">
<script language="JavaScript">


<!--
function MM_openBrWindow(theURL,winName,features) { //v2.0
window.open(theURL,winName,features);
}
//-->


</script>

No matter how much I change the page, the code is still there. What can I do to kill it, it seems it's being placed automatically in my own dedicated server!

Another thing: the pop-up page is pure child porn, I need to know who is the real owner of topteenz.net

Any help will be appreciated

Peace
Harvey

tanin
10-13-2001, 07:38 PM
which system do you run on your server ? linux ?

phoneman
10-13-2001, 07:46 PM
Contact the bottom two domains.

#1 user-1120n81.dsl.mindspring.com (66.32.93.1): TTL Exceeded, ttl=64, 35 ms
#2 foundry-22-ve1.atl2.mindspring.net (207.69.143.1): TTL Exceeded, ttl=63, 19 ms
#3 cisco-1-g2-0-0.atl2.mindspring.net (207.69.223.166): TTL Exceeded, ttl=253, 20 ms
#4 juniper-1-ge0-0-0-0.atl2.mindspring.net (207.69.223.164): TTL Exceeded, ttl=252, 20 ms
#5 pos3-0.hsipaccess1.Atlanta1.Level3.net (209.246.169.53): TTL Exceeded, ttl=252, 20 ms
#6 lo0.mp1.Atlanta1.Level3.net (209.247.8.247): TTL Exceeded, ttl=251, 35 ms
#7 so-3-0-0.mp2.SanFrancisco1.Level3.net (209.247.8.90): TTL Exceeded, ttl=249, 90 ms
#8 pos9-0.core2.SanFrancisco1.Level3.net (209.247.10.238): TTL Exceeded, ttl=249, 94 ms
#9 gigabitethernet6-0.ipcolo2.SanFrancisco1.Level3.net (209.244.14.46): TTL Exceeded, ttl=248, 92 ms
#10 Unavailable (66.28.28.82): TTL Exceeded, ttl=244, 93 ms
#11 gigabitethernet.bgp4-QwestLink.Level3.net (65.56.42.253): TTL Exceeded, ttl=244, 95 ms
#12 katerina.host-sites.com (64.157.94.70): Echo Reply, ttl=51, 95 ms

harvey
10-14-2001, 12:34 AM
tanin: server runs on UNIX, anyway they're looking at it

bandwidth: how do I contact them? I mean hwere can I get the info to contact them? (btw, both of you guys, thanx for bothering, much appreciated)

Peace
Harvey