Home
Home

Directory
Directory

Articles
Internet News
Security News
Ecommerce News
Domain News

Site Tools
Site Speed Test
Keyword Research
Resolve Hostname
DNS Tools
Register Domains
Affiliate Programs
Open Source

Shopping Carts
Cart Reviews
SSL Certificates

Enter your email address to subscribe to our updates:

Delivered by FeedBurner


Venue Charts
Channel Traffic Rankings
OAI Stock Quotes and Charts
eBay's Worst Feedback

Forum
Forum Home
TulipTools News
Advertising
Blogging
Computer Hardware
Domain Names
Ecommerce
Financing
Int'l Trading
Graphics and HTML
Internet Access
Legal Issues
Internet Business
Auction Sites
Classified Ad Sites
Fixed Price Venues
Operating Systems
Programming
Search Engines
Internet Security
Software
Web Hosting
Webmaster Issues
Reviews
Announcements
Off Topic Discussion

Web Hosting
TulipHosting

Domain Names
TulipDomains

Web Stats
TulipStats

Forum Rules
Forum Rules
Privacy Policy

Site Map
Forum Sitemap
Sitemap Topics




Directory| Forums| Internet News|Cart Reviews| DNS Tools| Keyword Research| Site Speed Test| Security| | Domain Marketplace| Domain Blog
TulipTools Internet Business Owners and Online Sellers Community
  • Home
  • Search
  • Member List
  • Calendar
Hello There, Guest! Login Register
TulipTools Internet Business Owners and Online Sellers Community › Online Auction Industry, B2B Trading Sites, Classified Ad Sites, Fixed Price Venues, and Malls › Online Auction Industry Discussion › Auction Sites › Other Auction Sites v
« Previous 1 2 3 4 5 … 7 Next »

PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging

  
Pages (2): 1 2 Next »
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Threaded Mode | Linear Mode
PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
12-18-2008, 05:30 PM,
Post: #1
xwpopper Offline
Big Member
*****
Posts: 440
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Aug 2007
Reputation: 0
PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
Laughing4

Another great reason not to use rinky dink auction sites.
http://dynabid.2forum.biz/the-dynabid-gr...46.htm#167

"HOW CAN SOMEONE JUST DISAPPEAR AFTER ALL THE HARD WORK
THAT THEY HAVE PUT IN TO MAKE A GO OF THIS."

My dear, no hard work was put into this. It was purchased with some mods for about $300, and installation probably took all of 2 hours. Then when it was hacked, she probably just figured she could vanish a while and buy the software again, then start a new one in a few months.
That's what happens when you depend on rinky dink eBay alternatives.

Here's what the front page reads from Google when using Firefox:
"Reported Attack Site!
This web site at www.dynabid.org has been reported as an attack site and has been blocked based on your security preferences.
Attack sites try to install programs that steal private information, use your computer to attack others, or damage your system.
Some attack sites intentionally distribute harmful software, but many are compromised without the knowledge or permission of their owners."

Click on the more info:
"What is the current listing status for dynabid.org?
    Site is listed as suspicious - visiting this web site may harm your computer.
    Part of this site was listed for suspicious activity 1 time(s) over the past 90 days.

What happened when Google visited this site?

    Of the 170 pages we tested on the site over the past 90 days, 2 page(s) resulted in malicious software being downloaded and installed without user consent. The last time Google visited this site was on 2008-12-11, and the last time suspicious content was found on this site was on 2008-12-11.
    Malicious software includes 3 trojan(s), 2 scripting exploit(s), 1 exploit(s). Successful infection resulted in an average of 1 new processes on the target machine.
    Malicious software is hosted on 2 domain(s), including hotwol.com/, 91.142.64.0/.
    1 domain(s) appear to be functioning as intermediaries for distributing malware to visitors of this site, including offshore-hsbc-unitedkingdom.com/.
    This site was hosted on 2 network(s) including AS42831 (UKSERVERS), AS8075 (MICROSOFT).
Has this site acted as an intermediary resulting in further distribution of malware?
    Over the past 90 days, dynabid.org did not appear to function as an intermediary for the infection of any sites.
Has this site hosted malware?
    No, this site has not hosted malicious software over the past 90 days.
How did this happen?
    In some cases, third parties can add malicious code to legitimate sites, which would cause us to show the warning message."

That's what happens when you depend on rinky dink eBay alternatives. Just ask AWW Chris about how many times his site gbauctions.co.uk has been hacked.
"Listen up Mother****er. Try that bulls*** here and I will hand you and your head in a basket"
- Ray Romeo's alter ego Andrew Pittino responding when I signed up a new account on Wagglepop to verify the non-existence of a way to opt out of his sharing my information with third parties.
Like Post Reply
[+]
12-18-2008, 05:53 PM, (This post was last modified: 12-30-2008, 03:44 PM by mandy.)
Post: #2
mandy Offline
Administrator
*******
Posts: 9,932
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Feb 2011
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
Quote:Some attack sites intentionally distribute harmful software, but many are compromised without the knowledge or permission of their owners."

The PHPProBid developers haven't patched the Multiple SQL Inection vulnerability that was discovered in September.  All it takes to compromise any PHP Pro site and gain database access is this bit of exploit code:
Code:
http://example.com/phpprobidlocation/categories.php?start=0&limit=20&parent_id=669&keywords_cat_search=&buyout_price=&reserve_price=&quantity=&enable_swap=&order_field=(select%201)x&order_type=%20
Like Post Reply
[+]
12-19-2008, 12:21 AM, (This post was last modified: 12-19-2008, 12:39 AM by regic.)
Post: #3
regic Offline
Administrator
*******
Posts: 2,825
Likes Given: 0
Likes Received: 2 in 2 posts
Joined: Jul 2005
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
Quote:The PHPProBid developers haven't patched the Multiple SQL Inection vulnerability that was discovered in September.

3 months is nothing compared to the 21 months the boinktards at Kaqoo have failed to patch a highly critical vulnerability that allows hackers to gain system access in their free software.

http://community.tuliptools.com/index.ph...l#msg73595

edit: A list of auction scripts besides PHPProBid and RScript which have had recent security problems.  The majority of the script developers have failed to issue security patches.

Active Auction House 3.x
Active Auction Pro 7.x
AJ Auction Pro
Auction Script
Auction Sentry 3.x
Auction Sentry Deluxe 2.x
Auction XL
Domain Name Auction
EveryAuction 1.x
Freelance Auction Script
GC Auction Platinum
GeoAuctions Enterprise 1.x
GeoAuctions Premier 2.x
Kaqoo Auction Software Free Edition
MakeBid Deluxe Auction
MakeBid Reverse Auction
MakeBid Standard Auction
MySQL Auction 3.x
NetAuctionHelp Auction Software 3.x
NetAuctionHelp Auction Software 4.x
NetAuctionHelp Classified Ads 1.x
PHP Labs Top Auction
phpAuction 3.x
PHPauction GPL 2.x
phpbb-Auction 1.x (module for phpBB)

http://secunia.com/advisories/search/?search=auction

Like Post Reply
[+]
12-22-2008, 08:00 PM,
Post: #4
sneakymagenta Offline
Lawnmower Mouth
********
Posts: 2,672
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Jul 2005
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
user or owner sock puppet Wrote:Hello,
For those who are concerned about Dynabid, I have been told that they are haveing problems with there internet connection and can't get on to resolve any problems.
dynabid Wrote:thanks everybody for the words the problem has been fixed regarding the google warning at the moment we have no internet access until the 30th december 2008 we have just travelled 30 miles to use a connection we do apologise to all members and hope you all understand the problem we have at the moment and everything will be back to normal with everything as soon as we have a connection thanks again to everybody

They forgot to pay their AOL bill.  Happy001 Happy001 Happy001
OAI Moron Hall of Fame
<i>sell-thru is an irrelevant and illogical consideration.</i>
-KaRay, owner of WP giving selling advice, 2006

<i>the site was 'NOT' hacked but the little script that had recipes on had the link altered</i>
-Plunderhere Owner Mark Taylor after his site was hacked by a Chinese hacker gang, 2008

Some people have it like that, others don’t. I do.
-Probidscripts owner Spencer Osama Binweb Laden Ray bragging about his ability to scam the OAI without feeling any guilt, 2008.

How does an auction site get buyers?
-question asked at PSU by owner of auction site BidBeaver.ca, 2008

How do I get sales?
-question asked at PSU by online store owner, 2009.

I was told by my Tech. Support that my site dont really need SSL.. his servers
are well protected and that info your providing to join aint really top secret information

-owner of auction site TheTraderOutlet.com discussig his site's lack of basic security, 2009
Like Post Reply
[+]
12-30-2008, 01:02 PM,
Post: #5
Fastandfurious Offline
Tool Seeker
*
Posts: 1
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Dec 2008
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
I understand that the telephone line was severed due to new buildings put up in the area which then has a knock on effect with the broadband connection of the telephone number (its cancelled automatically) the reconnection time is 10 days (as recommended by OFCOM in the AOL Contract) but due to a technical error by AOL it was not re connected until 30.12.08 so i hope that puts you right with your information sneakymagenta just contact me if you require technical information on how the system works.
Dynabid is now back up and running again and i am pleased to put this link from google to assure everybody that the problem has now been sorted out.
http://www.google.com/safebrowsing/diagn...ynabid.org

BTW Sneakymagenta If you do not know the owners of Dynabid how did you know which personal ISP they use? :turkey2:
Like Post Reply
[+]
12-30-2008, 03:39 PM, (This post was last modified: 12-30-2008, 03:42 PM by sneakymagenta.)
Post: #6
sneakymagenta Offline
Lawnmower Mouth
********
Posts: 2,672
Likes Given: 0
Likes Received: 6 in 5 posts
Joined: Jul 2005
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
Quote:BTW Sneakymagenta If you do not know the owners of Dynabid how did you know which personal ISP they use?

Duh. The computer/Internet illiterate always use AOL.

Quote:Dynabid is now back up and running again and i am pleased to put this link from google to assure everybody that the problem has now been sorted out.

I tested Dynabid with LinkScanner today and the problem has NOT been sorted out.

http://linkscanner.explabs.com/linkscanner/checksite.aspx?NS=ChkOnly&SRC=apps.explabs.com&CS=http://www.dynabid.org

Quote:DANGEROUS: LinkScanner Online has found
[Link to known exploit site (type 502)]
Detail: Exploit: Link To Known Exploit Site


This page contains a link to a known exploit site. This link may or may not be active. It may or may not require you to click it to be infected. Some pages with such links automatically download the malicious code without any action on your part. Because of this we automatically block access to such pages.
Risk Category: Exploit
Description: XPL's Intelligence Network has detected an exploit. An exploit is a piece of malware code that takes advantage of a vulnerability in a software application, usually the operating system or a web browser to infect a computer. Exploits usually target a computer by means of a drive-by download – the user has no idea that a download has even taken place. XPL recommends not visiting this web site regardless if your computer has been patched for the vulnerability.
Scanned:
Tuesday, December 30, 2008


Our Advice:

This page contains at least one exploit. You should not click on this link without appropriate anti-exploit protection on your PC.

OAI Moron Hall of Fame
<i>sell-thru is an irrelevant and illogical consideration.</i>
-KaRay, owner of WP giving selling advice, 2006

<i>the site was 'NOT' hacked but the little script that had recipes on had the link altered</i>
-Plunderhere Owner Mark Taylor after his site was hacked by a Chinese hacker gang, 2008

Some people have it like that, others don’t. I do.
-Probidscripts owner Spencer Osama Binweb Laden Ray bragging about his ability to scam the OAI without feeling any guilt, 2008.

How does an auction site get buyers?
-question asked at PSU by owner of auction site BidBeaver.ca, 2008

How do I get sales?
-question asked at PSU by online store owner, 2009.

I was told by my Tech. Support that my site dont really need SSL.. his servers
are well protected and that info your providing to join aint really top secret information

-owner of auction site TheTraderOutlet.com discussig his site's lack of basic security, 2009
Like Post Reply
[+]
05-17-2009, 03:28 AM,
Post: #7
xwpopper Offline
Big Member
*****
Posts: 440
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Aug 2007
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
Quote:I tested Dynabid with LinkScanner today and the problem has NOT been sorted out.

http://linkscanner.explabs.com/linkscanner/checksite.aspx?NS=ChkOnly&SRC=apps.explabs.com&CS=http://www.dynabid.org

Still not fixed or it's happened again:
http://linkscanner.explabs.com/linkscanner/checksite.aspx?NS=ChkOnly&SRC=apps.ExpLabs.com&CS=http://dynabid.org
"Listen up Mother****er. Try that bulls*** here and I will hand you and your head in a basket"
- Ray Romeo's alter ego Andrew Pittino responding when I signed up a new account on Wagglepop to verify the non-existence of a way to opt out of his sharing my information with third parties.
Like Post Reply
[+]
05-17-2009, 02:31 PM,
Post: #8
rho Offline
Full Member
****
Posts: 191
Likes Given: 12
Likes Received: 0 in 0 posts
Joined: May 2006
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hangin
OT...I'd been wondering where a poseur picked up the explabs linkscanner idea/info...now I know. Thanks for the bump.
Like Post Reply
[+]
08-28-2009, 12:17 PM,
Post: #9
xwpopper Offline
Big Member
*****
Posts: 440
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Aug 2007
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
Site update:
http://www.dynabid.org redirects to:
http://server.trustahost.co.uk/suspended.page/
Smileyviolin
Maybe they got tired of getting hacked every month and decided to close up.  Happy001
"Listen up Mother****er. Try that bulls*** here and I will hand you and your head in a basket"
- Ray Romeo's alter ego Andrew Pittino responding when I signed up a new account on Wagglepop to verify the non-existence of a way to opt out of his sharing my information with third parties.
Like Post Reply
[+]
09-04-2009, 09:31 AM,
Post: #10
bargainbloodhound Offline
Lawnmower Mouth
********
Posts: 4,372
Likes Given: 0
Likes Received: 4 in 4 posts
Joined: Jul 2005
Reputation: 0
Re: PHPProBid UK Site Dynabid Hacked - Owner Vanishes leaving a few dozen hanging
It's back.  The 155 members can get back to the business of selling parking their items and putting their personal info at risk because the owner is clueless about security.
"Well, Jay was so giddy that someone named Jay was involved with this site we posted our first non-eBay listing in 3 years here at Lunarbid (we tried two items at Yahoo once upon a time, they bombed)" -Marie posting in a LunarBid thread at OTWA in 2005 wins the award for 'most moronic reason ever given for choosing a venue"

"thanks twat u must have nothing better 2 do. do u talk to all your members like that. will not be recomending your site.
best way to put it is TULIPTOOLS.COM IS REALLY SHIT. DONT JOIN." -pubescent owner of rinky dink off2auction.com in 2011
Like Post Reply
[+]
« Next Oldest | Next Newest »
Pages (2): 1 2 Next »




Possibly Related Threads…
Thread Author Replies Views Last Post
  Rinky Dink BiddersNSellers Pulls the Plug On Short Notice Leaving 2 or 3 Sellers Stranded sneakymagenta 9 8,199 06-07-2010, 02:48 AM
Last Post: sneakymagenta
  Site Owner Thinks His Criminal Record Bolsters New Auction Site's Credibility sneakymagenta 4 4,843 04-02-2010, 12:00 AM
Last Post: amy
  The Moronic Utterings Of A UK Rinky Dink Site Owner sneakymagenta 45 20,717 03-30-2009, 10:54 PM
Last Post: sneakymagenta
  New PHPProBid hack found... Your site may be affected, says site owner xwpopper 2 5,366 11-22-2008, 09:00 AM
Last Post: mandy
  Auction Site Owner TrustedAuction Spams the Blujay Boards and Insults Women O~Romeo~U~Suck 78 35,046 04-13-2008, 06:00 AM
Last Post: amy

  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread
Forum Jump:


Users browsing this thread: 1 Guest(s)
  • Contact Us
  • TulipTools Internet Business Owners and Online Sellers Community
  • Return to Top
  • Lite (Archive) Mode
  • RSS Syndication
  • Help
Current time: 03-09-2026, 06:39 AM Powered By MyBB, © 2002-2026 MyBB Group. Theme created by Justin S.
powered by Apache

powered by Linuxpowered by CentOS

Copyright 2000-2013 TulipTools.com. All rights reserved.