Computer Glitch or Hacked?

Flash Runner

New member
None runner related. I was trying to get on here (t4r.org) for alittle while on 12/9, but it seemed the site was down. Now I'm on here and this subsection is changed to "T4Rsssssssssssssss"

This just me or did something happen?
 

Attachments

  • Screen Shot 2018-12-10 at 1.36.26 AM.png
    Screen Shot 2018-12-10 at 1.36.26 AM.png
    34 KB · Views: 421
Register to hide this ad
Yeah, it is a little weird..... Same down time issue here.

Also, up top where it breaks down where in the forum you are, it says:

Toyota 4Runner Forum - Largest 4Runner Forum> Toyota 4Runner Foruma

I am pretty sure it is not supposed to say fourma......
 
Also noticed the "notifications" drop down not working..... [MENTION=165]momo.75[/MENTION] can you shed any light on this?
 
FYI guys

Looks like it got hacked. Would definitely avoid downloading anything from this site, just to be safe. Probably change your password too if you can. Or just don't login right now. Also, site has no forced https? Be careful since it looks compromised.

Software used for this forum is vBadvanced CMPS v3.2.2
Current Version: 4.3.0 (Released 05-13-2014) (hasn't been maintained in 4+ years. Ouch.)

And vBulletin used for this forum is vBulletin Version 3.8.7 (2009 holy shit man!)
Current Version: 5.4.5 (November 14, 2018)

Forum software is at least 5 years out of date. Holy shiiiiiz. Basically an accident waiting to happen. vBadvanced CMPS v3.2.2 appears to be around 2012 and I'm seeing known exploits with version 3.2.2 google search. Is site owner over his head on keeping forum software upgraded? I hope they have a db backup, otherwise they are really up a creek without a 4Runner. I hope our info wasn't compromised.
 
Last edited:
See post above Mod.

If site has been hacked (and all the tell-tell signs are pointing to this) forum users should be aware. You should pin a note to the top of every forum alerting users to this possibility. Otherwise risk compromising everyone's personal info including email addresses, passwords, etc.
 
See post above Mod.

If site has been hacked (and all the tell-tell signs are pointing to this) forum users should be aware. You should pin a note to the top of every forum alerting users to this possibility. Otherwise risk compromising everyone's personal info including email addresses, passwords, etc.

It hasn't been confirmed as to what exactly happened yet.
 
I have also noticed at least on my end/computer that when posting some phrases and or key words after posting are turning into links, one example is...... LED tail lights.

Is anyone else seeing this issue??

Also my browser is "red flagging" the forum as "not secure"!!
 
Last edited:
It hasn't been confirmed as to what exactly happened yet.

True. But been a web dev for 12 years (php, js, mysql, laravel, node, wordpress, magento, etc.). I've seen enough hacked sites to recognize the signs. Something definitely broke. Question is, will the site owner do anything about it or are we at the stage where the site has become too big, too time consuming, and not profitable enough for (them) to manage?

Not bashing the site owner. Simply wondering. Seen this happen where site owner no longer has desire, time, or money to keep up a site and it falls apart quick with hacks from outdated software, no bug fixes, no admin responses, etc. It happens because life happens. :)

Software is at least 5yrs out of date, sure is a telling sign that site has been on cruise control for a really long time.
 
Last edited:
What, if any, risks are there to members of a forum that runs on very old software?

Besides your email/pass being stolen, it could be possible for malware to be installed on your computer through this site, either by you logging in, or clicking a link, (ads, or otherwise) that had been redirected to malware etc. that gets on your computer and either holds it ransom for bitcoin/fiat (locked computer until you pay), or keylogger or some other type of program installs that ends up wasting a significant amount of time in your life to undo.

How likely is that? Probably not likely but it could happen, and that's the whole point really. Take precautions to limit risk. This forum runs on software that is so out of date, I'm surprised it still works. But any a-hole could google known exploits for the version of software and try a few simple scripts to see if they can gain access. I found a few known exploits this morning when I was researching the version of software this forum is running. My face when I saw it was 5 years out of date. :twitch:

This happened on another forum I used to frequent. The a-hole ran a script for known exploit of outdated forum software and gained admin access. He started started deleting content, browsing people's PM's, looking for phone numbers and personal info, etc. It was a mess and they had to immediately upgrade the software and then reimport the data in the new db, then test things, fix some bugs, ask Google to recrawl, etc.
 
Last edited:
But any a-hole could google known exploits for the version of software and try a few simple scripts to see if they can gain access.

Interesting. You know, a few days ago, something similar happened in the off-topic forum. A user by the name of "cloud" had some emotional episodes and got his thread locked down. However, he was able to unlock it, kept posting, and went on to brag about how easy it was for him to do that.

He got banned shortly after, but I wonder if he's back behind the scenes now or if someone else is using the same back doors he discovered last week.
 
It's hacked. Just got this email, coincidentally as I was reading this thread to see if anyone's doing anything about this. If not, it's worth reconsidering using the site considering the risk of giving access to your computer.

v6ilLX6l.jpg
 
It's hacked. Just got this email, coincidentally as I was reading this thread to see if anyone's doing anything about this. If not, it's worth reconsidering using the site considering the risk of giving access to your computer.

v6ilLX6l.jpg

They also posted about this on their FB page. I guess a hacker could have gotten access to that via the site if they managed to get in to the email account the FB page is listed under. The FB page Story in the About section was updated yesterday apparently. The grammar seems a little off to me though, and there's still some typos scattered about the site here.

Do we know who actually owns/runs this site? They're using a WHOIS shield and all I can find is that the site is hosted by Linode and is sharing an IP address with a 'coming soon' style site and what appears to be a Canadian flooring company. Info sec really isn't my specialty though.
 
Well there ya go. That's unfortunate and I don't have high hopes for the future of the site. Current ownership is obviously not taking this seriously, given the amount of users that use this site daily, and I see zero action being taken, to warn us of possible malware, bad links, etc.

According to this archive of the site, I'm guessing a guy named Thai owns it. For those who don't know, google 'wayback machine'. It's a non-profit archive of screenshots of websites throughout the years. I have use it occasionally when I'm tracking down info for clients.

https://web.archive.org/web/20021121112711/http://www.toyota-4runner.org:80/

So then did a google search of just this site using following search string, without the quotes

"site:https://www.toyota-4runner.org/ thai owns forum"

and this thread appeared on search results.
http://www.toyota-4runner.org/comments-suggestions/35756-who-founded-toyota-4runner-org.html

which states
"GatorGreg and Thai started it in November 2002"

So there you go. If you want to pay for previous WHOIS information to see if you can find which one registered the domain, or under what company they registered it, there are sites that will give you past WHOIS results for a fee. Otherwise, you can probably just google to find out who Greg and Thai are if you really need to know their last names.

Until they get this fixed, I'm outta here. No need to put my machine in danger of malware and virus crap.
 
Last edited:

Members online

Forum statistics

Threads
278,307
Messages
3,554,054
Members
248,016
Latest member
Advally Service

Trending content

Back
Top