Jump to content



Latest News: (loading..)

- - - - -

jQuery through URI, error or hack?


  • Please log in to reply
No replies to this topic

#1   DogFoodIT

DogFoodIT
  • Members
  • 58 posts
  • Real Name:ben

Posted 18 June 2013 - 06:46 AM

Hi All,

I have been noticing some strange activity on our site as of late and it makes me a little concerned, When perving on the Who's Online page i sometimes see the follow code in the links (URL) reading from bottom up!
Please note: this is a copy of the Who's Online.php Attached File  js.JPG   35.63K   3 downloads

Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:50 16:30:50 /ext/jquery/ui/);if(c.label===null)c.label=this.buttonElement.html();if(this.element.is( Yes Not Found
Active with no Cart 00:00:00 Guest centra168.lnk.telstra.net 16:30:48 16:30:48 /advanced_search_result.php?keywords=14.97&search_in_description=0&x=0&y=0 Yes Yes
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:47 16:30:47 /ext/jquery/ui/).html(this.buttonElement.find( Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:41 16:30:41 /ext/jquery/ui/).addClass(this._triggerClass).html(f== Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:38 16:30:38 /ext/jquery/fancybox/;m.html(C);F();break;case Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:35 16:30:35 /ext/jquery/fancybox/;m.html( Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:33 16:30:33 /ext/jquery/fancybox/:m.html(e.content);F();break;case Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:30 16:30:30 /ext/jquery/fancybox/+d.titlePosition).html(s).appendTo( Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:27 16:30:27 /ext/jquery/fancybox/)x=w}m.html(x);F()}}}));break;case Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:25 16:30:25 /ext/jquery/fancybox/%27+d.href+%27 Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:22 16:30:22 /ext/jquery/bxGallery/%27+o.load_image+%27 Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:19 16:30:19 /ext/jquery/bxGallery/%27+$this.attr(%27src%27)+%27 Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:11 16:30:11 /ext/jquery/]};F.optgroup=F.option;F.tbody=F.tfoot=F.colgroup=F.caption=F.thead;F.th=F.td;if(!c.support.htmlSerialize)F._default=[1, Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:08 16:30:08 /ext/jquery/)j.html(e?c( Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:30:03 16:30:03 /https://twitter.com Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:29:56 16:29:56 //smarticon.geotrust.com/si.js Yes Not Found
Active with no Cart 00:00:00 Guest t197.topaz.fastwebserver.de 16:29:49 16:29:49 /

As you can see it looks like the server is trying to access certain files or call functions etc through the URL, first of all can hacking be done like this???

I have also noticed this in the error_logs (as the files do not exist).

or is this a error with my site not running some JQuery correctly?

any advise would be fantastic.

thanks