CHF Site restored - apparently a file was exploited
#1
Posted 07 May 2012 - 11:06 AM
I was informed by one CHF member and Sohan (Moderator) that CHF was "hacked" last week. If you go to Firefox/Google Chrome, it will indicate it has been hit by malware (virus or spyware). But you can browse CHF using internet explorer.
I've managed to restore all files dated back to last October (apparently some posts and members are "lost"), as well as done all security measures.
Apparently, according to my webhost report, a file was exploited which allowed the uploading of a PHP shell to the account, causing a compromise to the account.
I will be working on google chrome and firefox to get CHF back. In the meanwhile, you can still browse and use CHF using internet explorer.
I will try to work on the skin when I have the time (quite busy with my work).


"夫君子之行:靜以修身,儉以養德;非淡泊無以明志,非寧靜無以致遠。" - 諸葛亮
One should seek serenity to cultivate the body, thriftiness to cultivate the morals. If you are not simple and frugal, your ambition will not sparkle. If you are not calm and cool, you will not reach far. - Zhugeliang
#2
Posted 07 May 2012 - 11:22 AM
#3
Posted 08 May 2012 - 07:41 AM
Is there any chance of recovering the data from October til now?
Unfortunately, the latest backup is corrupted with some files infested with malware. I do daily backup. Therefore, if you try to restore that database, the same problem will occur. Therefore, I've to restore an older database with the last version of software, and then upgraded the software and database to the lastest version.
So, I won't be able to recover the data from October till now. So sorry for that.


"夫君子之行:靜以修身,儉以養德;非淡泊無以明志,非寧靜無以致遠。" - 諸葛亮
One should seek serenity to cultivate the body, thriftiness to cultivate the morals. If you are not simple and frugal, your ambition will not sparkle. If you are not calm and cool, you will not reach far. - Zhugeliang
#4
Posted 08 May 2012 - 05:16 PM
Unfortunately, the latest backup is corrupted with some files infested with malware. I do daily backup. Therefore, if you try to restore that database, the same problem will occur. Therefore, I've to restore an older database with the last version of software, and then upgraded the software and database to the lastest version.
So, I won't be able to recover the data from October till now. So sorry for that.
Can you restore a recent malware-infested copy to a different server and open it to non-public traffic, so that we could manually retrieve some of the posts made in the last half a year? Otherwise, there is a credibility issue with your site.
#5
Posted 08 May 2012 - 06:37 PM
Okay, thank you.Unfortunately, the latest backup is corrupted with some files infested with malware. I do daily backup. Therefore, if you try to restore that database, the same problem will occur. Therefore, I've to restore an older database with the last version of software, and then upgraded the software and database to the lastest version.
So, I won't be able to recover the data from October till now. So sorry for that.
Good idea.Can you restore a recent malware-infested copy to a different server and open it to non-public traffic, so that we could manually retrieve some of the posts made in the last half a year? Otherwise, there is a credibility issue with your site.
#6
Posted 09 May 2012 - 12:13 AM
Hi all,
I was informed by one CHF member and Sohan (Moderator)
That CHF member was me ! Why so hesitant to mention me when I alerted the staff here ?
I noticed the error from Google chrome for many days but you guys didn't seem to be aware of it, that's why I made an alert.
I am very disappointed that 6 months of data was lost instead of just 1 week.
This is not the first time this carelessness was practised in this forum.
#7
Posted 14 May 2012 - 03:16 AM
When CHF was hacked, several pages of the non english topic "Poesia Cinese" got lost. Please let me know whether there is any possibility of recovering them. If your answer is yes, I will wait until this work is done. Otherwise, I could try to restore the pages on the basis of my contributions to the topic.
Best regards.
Paysan
#8
Posted 07 March 2013 - 08:39 PM
How much posts were lost? I wanna know since it's strange the website's been up since 2004 but only 227,000+ posts...
I research stuff I like, I enjoy it as a hobby but one day I plan to get a master's degree in something I enjoy a lot.
Aeneas was real, because Trojan war happened after founding of Xia and Shang dynasty of China!
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users












