Jump to content

hackers signs up


easyhosting

Recommended Posts

Hi i am using Version: 5.3.13 so how come i get this client

 

 

whmcs1.jpg

 

also i get 16 requests like this

 

Client ID: 1 - Cpanel Exploiter has requested to change his/her details as indicated below:

 

Address 1: 'cpanel' to 'AES_ENCRYPT(1,1), address1= (SELECT MIN(username) FROM tbladmins)'

Address 2: 'security' to 'AES_ENCRYPT(1,1), address2= (SELECT MIN(password) FROM tbladmins)'

City: 'test' to 'AES_ENCRYPT(1,1), city= (SELECT MAX(username) FROM tbladmins)'

State: 'hacked' to 'AES_ENCRYPT(1,1), state= (SELECT MAX(password) FROM tbladmins)'

Default Payment Method: '' to ''

If you are unhappy with any of the changes, you need to login and revert them - this is the only record of the old details.

This change request was submitted from ip-50-63-172-233.ip.secureserver.net (50.63.172.233)

 

 

http: //niceday-hosting.co.uk/dev/admin/

 

but i dont even have a dev licence or dev folder on this account

Link to comment
Share on other sites

...

but i dont even have a dev licence or dev folder on this account

 

 

It seems you did on April 20 and google saw it.

This is Google's cache of /http://niceday-hosting.co.uk/dev/submitticket.php. It is a snapshot of the page as it appeared on Apr 20, 2015 14:11:56 GMT. The current page could have changed in the meantime.

 

devaccndh.png

Link to comment
Share on other sites

It seems you did on April 20 and google saw it.

 

 

[ATTACH=CONFIG]8426[/ATTACH]

 

so you are admitting the WHMCS system is wrong

 

Type: Development License

Primary Domain: easyasabc-hosting.co.uk

Primary IP: xx.xx.xx.xxx

 

look at ticket TWE-600826 and you will see my dev licence was moved to the current domain on 1st Dec 2014, so could not be at /http://niceday-hosting.co.uk/dev/ on April 20 2015

Link to comment
Share on other sites

What the heck are you talking about?

 

i replied to your post where you started

 

Google's cache of /http://niceday-hosting.co.uk/dev/submitticket.php. It is a snapshot of the page as it appeared on Apr 20, 2015 14:11:56 GMT.

 

which was impossible as no dev licence was active on that domain as the WHMCS ticket shows it was on its current domain since 1st Dec 2014 and no dev folder was on the domain niceday-hosting.co.uk, so no idea where this WHMCS Exploiter and Cpanel Exploiter accessed, but this shows that and exploit is their in the latest version of WHMCS

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use & Guidelines and understand your posts will initially be pre-moderated