Author Topic: My client has been hacked and her database emptied -- help!  (Read 1449 times)

mcgrane

  • Posts: 30
    • View Profile
My client has been hacked and her database emptied -- help!
« on: March 14, 2007, 01:50:43 pm »
I have a client with LMpro on her site and she emailed me this morning (NZ time) with some alarming news. I'll copy her note below my sig.

Can you suggest how this could have happened? Is it is possible to retrieve her list? What do we need to do to make sure this can't happen in the future?

Thanks,
Len.

Quote
Len, Someone deleted my entire database of subscribers. People have been submitting bogus names for 2 weeks. I've been going in several times a day and deleting them. They have been writing sexual phrases in the name field. There were 725 names and emails over 2 years or more. They didn't delete my followups yet though. Is there anyway for you to retrieve the list? Otherwise its bye bye to my newsletter.
 


Quote
Here is the message I get when trying to subscribe:
 
Warning: mysql_num_rows(): supplied argument is not a valid MySQL result resource in /home3/allen/thecrystaltarot-www/newsletter/signup.php on line 93

Warning: mysql_num_rows(): supplied argument is not a valid MySQL result resource in /home3/allen/thecrystaltarot-www/newsletter/signup.php on line 151
Database error while inserting

DW

  • Administrator
  • Posts: 3787
    • View Profile
    • https://legacy.listmailpro.com
My client has been hacked and her database emptied -- help!
« Reply #1 on: March 14, 2007, 02:15:35 pm »
It's possible the users database table simply became corrupted.  Try manually running the following queries with a tool like PhpMyAdmin
Code: [Select]
REPAIR TABLE lm_users
If that fails, try:
Code: [Select]
REPAIR TABLE lm_users USE_FRM
Visit this post for more information about banning automated / malicious subscriptions.

Please let me know if I can be of further assistance.

Regards
Dean Wiebe
ListMailPRO Author & Developer - Help | Support | Hosting

mcgrane

  • Posts: 30
    • View Profile
Could you do this for me, Dean?
« Reply #2 on: March 17, 2007, 07:10:46 pm »
Dean, I don't know how to run that test / restore. Would you be able to do it for me if I gave you the access details? How much would you need to charge?

Please contact me at <edit>

Thanks,
Len