![]() In other words, it may be possible to log into your server FTP account and then go up-up-up a few levels until you can see a directory of all users sharing the server. We had some discussion here recently about some hosts leaving other users' accounts accessible via FTP. If it's been modified to invoke a 302 redirect, then you need to see to your server security configuration first, then remove the hacker's code - No use signaling that you're on to his tricks before a solid security fix is in place. asp code that is involved with serving this requested page. If the request IP address you see in the sniffer log is indeed that of your own server, then I'm afraid you've been hacked.Īlso, I note that you're (apparently) on an IIS server, so while we may be able to help a bit more with diagnosis, it's likely you'll get better detailed advice for solutions over in our IIS forum. The diversion via 302 redirect must be as a result of a 302 redirect being present on your server, or as a result of the DNS request for "yourdomain" returning an IP address other than your own. Your server has been hacked, or your DNS has been poisoned. Note that the "not my domain" has so many advertisements on the page it's ridiculous. Object movedObject MovedThis object may be found here. HTTP Status Code: HTTP/1.1 302 Object moved NET CLR 7) WEB SNIFFER SOFTWARE VERSION/1.0.24 User-Agent: Mozilla/4.0 (compatible MSIE 6.0 Windows NT 5.1 SV1. okĪccept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, application/x-shockwave-flash, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, application/vnd.xfdl version="6.5.0", */* ![]() HTTP version: HTTP/1.1 HTTP/1.0 (with Host header) HTTP/1.0 (without Host header)Ĭonnect to "THE IP ADDRESS" on port 80. This is what leads me to think a scammer is present. On the web sniffer, I ran a HTTP header query on a link that should return a 301 error. Please post the contents of your server error log, cleaned-up in compliance with our Terms of Service and the Apache forum charter.Īs for my server logs I have to wait awhile before they are updated with the 500 server error, once that's done I'll include them as well. It is very unlikely that someone else can use a 302 to redirect your site to their site In order to do that, they would have to install the 302 redirect on your server, which means you've got much more serious security problems that just a little scraping going on. But let's get the other items fixed first. Someone may indeed be crawling your site through a proxy, spoofing googlebot. I also suspect a spammer is using Googlebot to crawl through a proxy to my site and using a 302 error somehow to redirect to his site. To assist in getting valid results, completely flush your browser cache before testing. In order to help with this problem, we'll need to see the contents of your server error log after one of these 500-Server Error events. ![]() Instead, put up a page that says, "We're sorry, but the page you requested is no longer available." Then provide text links to your home page, site map, categories, forums, etc. There is nothing wrong with your ErrorDocument directive, except for your "intention." Directing all missing pages to your home page may give you serious duplicate-content problems. RewriteRule ^member( )\.html$ /profile.php?mode=viewprofile
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |