• 0

Was my website hacked?


Question

A friend of a friend got an alert from avg when they tried to access a page on my site (I've not yet found out if it's there on every page but here's what AVG told them):

http://twitpic.com/19h0kd/full

The link to the page in question is: http://www.koshyjohn.com/life/index.html

It's an empty page with just a header and footer, and a link to the external addthis javascript file (worth investigating? I've seen a lot of big sites use this and that's the only basis for my trust).

I looked at the source code of the page in question on my machine and neither did NIS2010 alert me, nor did I find any url as shown in that image in the source of that page.

My webhosting passwords are secure (alpha-numeric, punctuation, longish, the works), but I'll probably change them anyway.

First of all, is this a false positive? If so, what is causing it? If not, how should I go about fixing the problem (a sketchy outline would be enough, I can work out the rest or ask if I have a question)?

(I did a quick check of the file against my secure local copy and they are identical)

Link to comment
https://www.neowin.net/forum/topic/884822-was-my-website-hacked/
Share on other sites

11 answers to this question

Recommended Posts

  • 0

The alert details the URL in question, although not your site per se, it *could* be an external call to this location from your site.

Are you sure it's not the other tab which appears to be still loading?

Yeah, I've considered that.. The only things external to my site are addthis (which powers the toolbar) and amazingcounters which powers the page counters. To the best of my knowledge, they are fairly big, used by a lot of reputable sites (particularly addthis) and if they were compromised in some way, more people would know about it.

I only have that image to work with, so I'm going to guess that it is my page being referred to unless AVG is just sloppy about how it reports things. I get at least 2000 hits to the site daily so if there was a problem, I would have heard from more people about it I guess.

And seeing that the peron is on Windows XP and using AVG, I wouldn't be surprised if their system was the compromised one - maybe a malicious add-on to firefox perhaps?

  • 0

My AV didn't pull up, so your site seems to be clean. AVG has been known to generate false-positives in the past, so I would tell your friend to switch to Avira, Avast!, Security Essentials, or something else. It's also possible it's the site loading in the first tab...

  • 0

Nothing showing up here using Avira AV.

When I tried to save your page to file though, got SEVERAL errors saying stuff couldn't be read.

Here's one of the errors:

C:\Tunes\index_files\lg-share-en.gif could not be saved, because the source file could not be read.

Try again later, or contact the server administrator.

Also,

There is absolutely nothing showing up in the body of the page, but that's probably due to adblockplus? Is that site one big advertisement or something?

I'm using the Seamonkey web browser on XP Pro, fwiw.

  • 0

There's nothing malicious on your site. There's the addthis referrer to post your site on social networking sites and an amazingcounter thingy which I guess is just a simple visit counter. But there's nothing malicious here.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft should never have purchased anything after RARE.
    • Call of Duty: Vanguard, EA Sports FC 26, and more come to Xbox Game Pass by Pulasthi Ariyasinghe Microsoft is in the process of making some big changes to Xbox Game Studios right now, which might include studio shutdowns, but Game Pass drops aren't pausing for that. The second wave of June was just announced, unveiling another Call of Duty addition, the latest soccer game from EA, an indie road trip hit from last year, and more. While Microsoft said it won't put Call of Duty titles on Game Pass on the day of launch anymore, older titles keep landing, with the latest one being 2021's Call of Duty: Vanguard. Here are all the games that were announced today for Xbox Game Pass, their platforms, and arrival dates: Junkster (Cloud, XBOX Series X|S, Handheld, and PC) – June 16 Call of Duty: Vanguard (Cloud, Console, and PC) – June 17 EA Sports FC 26 (Cloud, Console, and PC) – June 18 Abyssus (Cloud, Xbox Series X|S, and PC) – June 25 RV There Yet? (Cloud, Xbox Series X|S, and PC) – June 30 Tony Hawk's Pro Skater 3 + 4 (Cloud, Console, and PC) – July 2 Winds of Arcana: Ruination (Cloud, Console, Handheld, and PC) – July 6 From the bunch, Junkster is the sole day-one drop into Game Pass libraries of this selection. As new games arrive, eight will be leaving the Game Pass programs on June 30. Here's the full list of leaving titles: Mecha Break (Cloud, Console, and PC) Payday 2 (Console) Rise of Tomb Raider (Cloud, Console, and PC) Tomb Raider (Cloud, Console, and PC) Slay the Spire (Cloud, Console, and PC) Ultimate Chicken Horse (Cloud, Console, and PC) Volcano Princess (Cloud, Console, and PC) Unpacking (Cloud, Console, and PC) With June drops finished, Microsoft should have a new Game Pass announcement in about two weeks to reveal the first wave of games coming to subscribers in July. Already confirmed games for the month include the Halo: Campaign Evolved remake, Corsair Cove, SpeedRunners 2: King of Speed, and Mistfall Hunter.
  • Recent Achievements

    • One Year In
      Console General earned a badge
      One Year In
    • One Year In
      Twozo Technologies earned a badge
      One Year In
    • One Month Later
      Twozo Technologies earned a badge
      One Month Later
    • Week One Done
      Twozo Technologies earned a badge
      Week One Done
    • Veteran
      branfont went up a rank
      Veteran
  • Popular Contributors

    1. 1
      +primortal
      522
    2. 2
      +Edouard
      207
    3. 3
      PsYcHoKiLLa
      112
    4. 4
      Steven P.
      89
    5. 5
      Nick H.
      71
  • Tell a friend

    Love Neowin? Tell a friend!