MyBB Community Forums

Full Version: Hacked? Post the hackers IP HERE!!!
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Pages: 1 2 3 4
OK, here is mine:

Username: mosyansar
E-Mail: [email protected]
IP: 217.219.184.224
Real Name: mostafa ansar
Level of hacking: Tried to access Admin CP, but failed.
Location: Iran
MyBB ver when hacked: 1.1.5

Sent him an E-mail:

Quote:Hi
ok
I'm really sorry for that
I was testing my ability of hacking


--- Cool_Guy <[email protected]> wrote:

> Hello,
>
> I received a E-mail saing that you have been trying
> to hack into the admin panel, without success.
>
> "A user has tried to access the Administration
> Control Panel for Coolest Tech Forum (Powered by
> MyBB 1.1.4, hacker proof). They were unable to
> succeed in doing so.
> Below are the login details:
>
> Username: mosyansar
> Password: shittt (MD5:
> 4fb607794d6e2cbeae0959dd80a58a00)
>
> IP Address: 217.219.184.224
> Hostname: 217.219.184.224
>
> Thank you."
>
> If you do not immediately apologize for this, you
> will have your IP address reported to the FBI, as
> well as reported on MyBB as a hacker, your IP
> address.
>
> Cool_Guy/Admin
>
My 1.1.3 board was hacked. I sent an anonymous email to him, basically saying he was caught. His IP contains tracking info to his IP, including an abuse email address where I can alert his ISP of this 'abuse.' I'm not sure if I should thought. I'm not sure what to say for such an abuse email, as I don't think he should get severly punished by his ISP for this little thing he did...

I'm not posting his IP info or email address.
You don't think he should get punished for that "little" thing he did? That "little" thing is a felony. If you report him to his ISP (and you SHOULD), he will most likely have his account with them suspended. They may leave it at that or they may press charges, since he is most certainly in violation of his ISPs Terms of Service by using their network to engage in illegal activity.

Report him, show no mercy, and let him fry.
Always report a hacker.

I, personally, have no tolerance for hackers. It is against international laws to hack a site.
Unfortunately, chances are, they used a proxy.
hacked.

165.21.154.14
165.21.154.13
165.21.154.17

220.255.132.80
When I was hacked, hacker used the following ip: 85.105.105.68.

EB
Protoman Wrote:Unfortunately, chances are, they used a proxy.
You are probably right. As a matter of fact I had some "suspicious" registration from the same provider but different ip.

Here is the information from ARIN on this provider:

Quote:OrgName: RIPE Network Coordination Centre
OrgID: RIPE
Address: P.O. Box 10096
City: Amsterdam
StateProv:
PostalCode: 1001EB
Country: NL

ReferralServer: whois://whois.ripe.net:43

NetRange: 85.0.0.0 - 85.255.255.255
CIDR: 85.0.0.0/8
NetName: 85-RIPE
NetHandle: NET-85-0-0-0-1
Parent:
NetType: Allocated to RIPE NCC
NameServer: NS-PRI.RIPE.NET
NameServer: NS3.NIC.FR
NameServer: SEC1.APNIC.NET
NameServer: SEC3.APNIC.NET
NameServer: SUNIC.SUNET.SE
NameServer: TINNIE.ARIN.NET
NameServer: NS.LACNIC.NET
Comment: These addresses have been further assigned to users in
Comment: the RIPE NCC region. Contact information can be found in
Comment: the RIPE database at http://www.ripe.net/whois
RegDate: 2004-04-01
Updated: 2004-04-06

OrgName: RIPE Network Coordination Centre
OrgID: RIPE
Address: P.O. Box 10096
City: Amsterdam
StateProv:
PostalCode: 1001EB
Country: NL

ReferralServer: whois://whois.ripe.net:43

NetRange: 217.0.0.0 - 217.255.255.255
CIDR: 217.0.0.0/8
NetName: 217-RIPE
NetHandle: NET-217-0-0-0-1
Parent:
NetType: Allocated to RIPE NCC
NameServer: NS-PRI.RIPE.NET
NameServer: NS3.NIC.FR
NameServer: SUNIC.SUNET.SE
NameServer: NS-EXT.ISC.ORG
NameServer: SEC1.APNIC.NET
NameServer: SEC3.APNIC.NET
NameServer: TINNIE.ARIN.NET
Comment: These addresses have been further assigned to users in
Comment: the RIPE NCC region. Contact information can be found in
Comment: the RIPE database at http://www.ripe.net/whois
RegDate: 2000-06-05
Updated: 2005-07-27

# ARIN WHOIS database, last updated 2006-06-30 19:10
# Enter ? for additional hints on searching ARIN's WHOIS database.
As you see they cover totally different IP rangers and some of the mwere mentioned on another posts here. It seems that might be the proxy.

EB
85.105.105.68 Turkey
217.219.184.224 Iran

and

165.21.154.14
165.21.154.13
165.21.154.17 Singapore

220.255.132.80

Yep, can't really do much about banning a proxy...
Pages: 1 2 3 4