My Friend's Site got Hacked Defaced (MFSGHD)

In this story, I will use the initials "FR" as my friend's pseudonym. Okay, let's start the story.

FR

Hey, I plan to migrate from WordPress to -> Blogger and I'll move the posts one by one. So, how many posts should I make per day at most so that it's not considered spamming?

Answer

Based on my experience, the maximum is 5 posts per day, if it is more than that then you will be presented with a captcha, well after using the captcha I don't know how many posts the maximum is.

What is clear is that I once received a warning from Google for posting too much in one day, as a result my main account was temporarily suspended, and if I don't immediately take action (appeal) it will be permanently deleted.

Fortunately, my post was of high quality and not a copy-paste, so even though it was considered spam, after I appealed less than 24 hours, I was finally granted forgiveness, my main account was restored to its proper access.

FR

Wow, okay bro. I'm definitely going to move to blogger, because the blogs and sites that I created with self-hosting (WordPress) often become a place for hacking, this is the umpteenth time after I've fixed it several times.

Answer

On average, I can post 3-4 times a day when I'm free, on busy days I can post 1, that's all I struggle with, sometimes there are gaps too. Hey, what other sites do you have besides klikartikel.com? Sorry bro, lali 😃

FR

jogjaku .web .id even though I've fixed it several times, it still got hacked again, DAMN!

Answer

ranjisoft .com is also a victim, right bro? I was just browsing some of your sites and found a display like this,


February 2017


February 2017


July 2017

FR

Yes, bro, if I'm annoyed, this is what pajogja.com is also targeted for and has been hit several times, that's my job, at the same time the KPU website was hacked, every time I fix it, it always gets damaged again.

Answer

What I wonder is why the blogger platform can be affected, yo? because so far I assume that the blogger's internal security system is reliable, because it is inseparable from the expert hands of Google, if I may assume, it seems like you have a sworn enemy, bro,  😃 because every trace of you makes the site easy to sniff.

FR

No, I made all of that using WordPress, that's why I need hosting, and I also plan to make an online financial system. I've started working on this for several branches.

Answer

I mean Ranjisoft bro

FR

Yes, Ranjisoft also doesn't use WordPress

Answer

Oooo, that means your hosting provider is not working properly, bro... it's been possessed by hackers, bro. So it's clear that your Ranjisoft domain had its nameserver mounted on the Blogger platform by the hacker, because I checked using the Builtwith tool and it shows that it's on the Blogger platform. My suggestion is to just switch to another hosting provider.

FR

Can po wan from hosting provider get hacked?

Answer

If it's the same as the hosting provider and using a shared hosting service... well, that's it, it's the same as the whole rental house being broken into, including the rooms inside.

FR

But I'm actually suspicious of the template script, bro.

Answer

Poor your client, bro. Besides that, it's also a hassle for you, bro. You've gone to all the trouble of making and fixing it, and in short, it's being ruined again and again.

FR

It wasn't my WB that was hacked.

Answer

Wow, you really don't believe it, bro, this is the result of my investigation,

Above is proof that your DNS configuration has been touched by him, if it was only defaced, there is no need to enter cPanel at all, but in fact he has changed your domain nameserver (mounted) so that it points to his blogger.

It's true bro, it's not from your WP, because what they hacked was 1 server that was used as shared hosting, so they know all the client lists that use the shared hosting, as a result all the users of the shared hosting can be messed with as they please, it's like you and your neighbors in the same rented house are easily accessible by them, because they already have the master key.

FR

Any recommendations for good hosting providers bro? I'll try to complain tomorrow. Then how do you solve it bro, I just bought it, it's a shame if I don't use it for long and have to move.

Answer

What is clear is that this is indeed a consequence of renting shared hosting, but this can actually still be avoided by choosing a hosting provider with high credibility, even if we use shared hosting, if the internal security is okay, at least it will be difficult enough for hackers to play around in it.

  1. Try asking technical support, who knows they might be able to provide a solution.
  2. Upgrade to vps / dedicated host & Add SSL
  3. Change Hosting Provider (if you feel the upgrade costs are quite expensive).

If I use Namecheap, the internal security is quite good, there is double authentication login e, using a verification code that is sent via SMS to our cellphone number, so anyone who wants to enter cPanel must use the code.

FR

That's on your shared hosting, Wan, so it goes to that computer, then how do you prove that that computer was hacked? I once complained that it was my project, Wan, so I'm not responsible.

Answer

Mmmm, something like that is actually possible, for example if your username and password for the database are the same as your cPanel account, it's the same as committing suicide (giving the master key to someone else) so that they can access all your accounts with the same password, if it's a username, it's easy to predict.

If only your project is affected, how come he can mess around with your DNS settings, bro? It doesn't make sense, bro, the one who can change DNS settings is the owner of the host/cpanel account. If the hacker did SQL injection, then I believe that only your project was affected. But the fact is not that, the real fact is that he changed the nameserver for your domain, bro.

But if you move to another hosting place and it's just as lousy, it's useless, it's the same as NGOYOWORO (Javanese term).

FR

I'm confused bro, actually just need hosting with a small capacity is enough but it must be strong. If bloggers don't need to rent hosting and I also trust bloggers more bro.

But man, he (the hacker) should be able to change my cPanel password, but why didn't he change it?

Answer

Maybe he's a kind hacker bro who still has some compassion 😃

FR

But I'm still surprised by pajogja.com, bro, because it got hacked 5 times after I fixed it several times, and it didn't even last a week, bro, just imagine how I wouldn't be emotional, bro.

Answer

Pajogja is still on WordPress bro, maybe it's just SQL injection.

Take it slow bro while migrating to another better hosting.

FR

I was offered CC to save money, it's quite good for renting hosting abroad, Wan said.

Answer

Just take it bro, but don't save too much money in CC, for security reasons, transfer more to your local bank debit bro.

Hosting outside is okay bro, the important thing is that security is more guaranteed, as people say when riding a motorbike, at least wear a helmet and the brakes are installed.

FR

In the future, I will be working on a client's behalf and the money won't be small, because Wan, and after the hacking incident, I became paranoid about local shared hosting, and I also don't know which providers have the best shared hosting services, especially in terms of security.

Answer

Until now, I still believe in the technology used by overseas hosting providers, bro, that's my conclusion, bro. 😃

Oh yeah, don't forget to migrate not just the website, but the domain as well.

FR

Whattt, the domain has to be moved too, Wan?? even though I bought 5 domains on that hosting.

Answer

The logic is like this bro, if you use secure hosting abroad for your application / website, meanwhile your domain is still on a vulnerable local host. Now, aren't you worried if suddenly your application / website is online without a name, aka just an IP, lol, because your domain has been stolen 😃

FR

Is it true that Wan went that far that the domain was stolen?

Answer

I see the worst possibility based on the fact that your Rajisoft was hacked, it's still lucky that the hacker didn't change your cPanel password, even if it was changed you can still ask for help from your host provider's technical support to reset the password, but if the hacker has migrated your domain to his hosting, well won't you cry blood bro wkkwkwkwk 😃

FR

Yes, that's true bro, even though what I do is no longer a hobby but has entered the business level, PAEEEET PAEEET bro if that really happens.

Answer

Well that's it bro, especially when you've entered the business level, you should pay more attention to the safety factor, because that's the most important thing, #safetyfirst

Okay that's all for now bro, good luck 😃


Post a Comment

Previous Next

نموذج الاتصال