I've just finished rebuilding the main pages of this site, thanks to a skiddie defacing every default.asp on the server :( Foruntately, I have a complete backup, and this is an IIS server that I don't host, so it's not a complete loss. It's the annoyance factor more than anything. Well, that combined with the possibility that Google might re-index it believing I really am a turkish hacker for Allah. Or something.
But it's also annoying these crackers call themselves hackers. I am a hacker, and proud of it. A typical cracker doesn't even touch the level of skill necessary to warrant the tag "hacker." It's like being able to hot rod a car, but call yourself a mechanic. Pah!
Anyhow, onwards and upwards. Prior to this attack I decided to keep the odd cracks that appeared in my directories. They were mostly files that, unless you knew were there, you couldn't find. Like isko.txt, for example. I have therefore devote a directory to storing these called 'crackme'. I current have:
isko - a pointless, but unobtrusive, message
db
default - without extensions
default.html - the wrong extension
home.html - duplicated several times under the different names below
index.cfm
index.htm
index.html
www.arplhmd.cjb.net_@@RNDSTR@@ - obviously the covert crackers :)
Of all of these, the ones I'm impressed by is the 500K Street Fighter animation, and the one that tries to load a SWF from their site... and let's me install the player if the browser doesn't have it.
I finally have some good code to do that! It's bullet proof, and I doubt they'll come looking for royalty payments ;)