Joomla! Discussion Forums



It is currently Thu Nov 26, 2009 8:37 pm (All times are UTC )

 


Forum rules

Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting, this means YOU.
Security Checklist
Forum Post Assistant - If you are serious about wanting help, you will use this tool to help you post.



Post new topic Reply to topic  [ 4 posts ] 
Author Message
Posted: Tue Nov 04, 2008 10:10 pm 
User avatar
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Fri Feb 23, 2007 5:56 am
Posts: 38
Location: Illinois
A site that I setup for a friend has been hacked, it displays "hacked by ****" on the home page and we cannot get into the administration area as the super administrator. Another user is able to access the backend, but not as super administrator, so we can't take the site offline or anything.

This site was started awhile back and there has been little activity because he was not ready to proceed. The site is on Joomla 1.5.0. Please be merciful to me as a novice of the security end of things and tell me if there is any way to reset the administrator password or to do something to the database.

THANK YOU!!!

(p.s. - my other sites are on 1.5.7)


Top
  E-mail  
 
Posted: Tue Nov 04, 2008 10:19 pm 
User avatar
Joomla! Hero
Joomla! Hero
Offline

Joined: Wed Oct 11, 2006 1:12 pm
Posts: 2597
Location: Kristiansand, Norway
I think the hacker have hacked your mysql and changed the password for the user with lowest id in the database. Normally that user is the super admin. This is a well known security problem in Joomla! 1.5.0 to 1.5.5. The security bug was fixed in 1.5.6.

Login to your database with PHP MyAdmin or something and change the password for your admin user. You have to use a MD5 password. Here is a link to a MD5 generator.
http://www.invision-graphics.com/md5hash_generator.html

_________________
Kristian (K.P) Pettersen
General Support Moderators | Sites & Infrastructure (Norway)
Joomla! i Norge | http://www.joomlainorge.no/


Top
  E-mail  
 
Posted: Tue Nov 04, 2008 11:37 pm 
User avatar
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Fri Feb 23, 2007 5:56 am
Posts: 38
Location: Illinois
Thanks for the response.


Last edited by jchris on Wed Nov 05, 2008 5:51 pm, edited 1 time in total.

Top
  E-mail  
 
Posted: Wed Nov 05, 2008 12:34 am 
User avatar
Joomla! Master
Joomla! Master
Offline

Joined: Fri Aug 12, 2005 12:38 am
Posts: 11207
Location: Sydney - Australia
http://developer.joomla.org/bug-squad-b ... sword.html

Be sure to use that box up the top right.. it actually helps.. it "searches".

_________________
Brad Baker - Follow me on Twitter @xyzulu @rochenhost
http://www.rochen.com - Joomla! Hosting, the correct way.
http://www.joomlatutorials.com <-- Joomla Help
..somewhere in this hospital the anguished oink of a pig man cries out for help..


Top
  E-mail  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 4 posts ] 

Quick reply

 



Who is online

Users browsing this forum: Exabot [Bot] and 20 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group