Belloo - Complete Premium Dating Software Unlimited Domains

Belloo - Complete Premium Dating Software Unlimited Domains v4.5.3.6 Untouched

No permission to download

KeepUp01

Member
May 19, 2022
43
12
8
Whenever I click Customize I always get the error not found with the link ../belloo/administrator/editor/theme/default/mainDefaultLeft7792

What am I doing wrong? Because now I can't Edit the website presets
Do you have ReWrite on?
 

KeepUp01

Member
May 19, 2022
43
12
8
No I didn't touch the .htaccess file at all
Ok but do you have rewrite module ON?

Sudo a2enmod rewrite
Also check chmod -R 775 /var/www/belloo-folder/
And chown -R www-data:www-data /var/www/belloo-folder/
Then just sudo service apache2 restart and check if it works.
 

KeepUp01

Member
May 19, 2022
43
12
8
Dear forum users BABIATO.
Please share the library of original pictures that are installed in the demo version.
Example: https://www.belloo.date/3.5/assets/sources/uploads/5d7b123f845f8_4.png
This is for gifts - https://premiumdatingscript.com/gifts/21.png
On my test domain, they are all loaded from the developer's site.
It takes a very long time to change each picture manually, through the database.
Thank you in advance.
Download and upload all the photos to your belloo folder, then just go to database and change the link for everyone.
You don’t need to delete every single gift and create it again using local photo.
 

Natali

Member
May 11, 2022
51
9
8
Download and upload all the photos to your belloo folder, then just go to database and change the link for everyone.
You don’t need to delete every single gift and create it again using local photo.
Thanks to.
Are you suggesting to do this with every picture or is there another option?
Quote: "Download and upload all the photos to your belloo folder, then just go to database and change the link for everyone."
10 pieces. in the menu + "Gifts" + Plugins ???
Where can photos be downloaded from?
Sincerely.
 

BellooRU

Active member
Banned User
May 16, 2022
84
105
33
About zhduli.ru Despite my CHMOD (444) restrictions, someone was again able to access the site (through vulnerabilitis in components of script and IndoXploit) and replaced the files in the root with files with its contents.
Before infected, the file 635cdaa6ab23d_f5.phtml was uploaded to the zhduli.ru/assets/sources/uploads folder, through which the attack occured. That is it is necessary to exclude the upload of this type files (extension) on website

Code:
112.215.151.229 - - [29/Oct/2022:10:47:11 +0300] "POST /plugins/orakuploader/orakuploader.php?filename=be.php&path=plugins/orakuploader/&main_path=storage/products&thumbnail_path=storage/products/thumb&watermark=&orakuploader_crop_to_width=0&orakuploader_crop_to_height=0&orakuploader_crop_thumb_to_width=0&orakuploader_crop_thumb_to_height=0 HTTP/2.0" 404 523 "https://www.sellwithtrust.site/post-ad" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:47:36 +0300] "GET /assets/sources/upload.php HTTP/2.0" 400 62 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:47:50 +0300] "POST /assets/sources/upload.php HTTP/2.0" 200 133 "http://indigorentacar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:47:58 +0300] "GET /assets/sources/uploads/635cdaa6ab23d_f5.phtml HTTP/2.0" 200 4739 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:48:09 +0300] "GET /assets/sources/uploads/635cdaa6ab23d_f5.phtml?Fosforo5 HTTP/2.0" 200 8714 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:48:45 +0300] "GET /assets/sources/uploads/635cdaa6ab23d_f5.phtml?Fosforo5&dir=/var/www/bride/data/www/zhduli.ru/assets/sources/uploads&do=upload HTTP/2.0" 200 6327 "https://zhduli.ru/assets/sources/uploads/635cdaa6ab23d_f5.phtml?Fosforo5" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"

I prevented users from uploading anything other then pictures and videos. I'll wait for result.
 

Attachments

  • virus_635cdaa6ab23d_f5.zip
    19.6 KB · Views: 6
  • 635cdaa6ab23d_f5.jpg
    635cdaa6ab23d_f5.jpg
    136.7 KB · Views: 42
Last edited:

Natali

Member
May 11, 2022
51
9
8
About zhduli.ru Despite my CHMOD (444) restrictions, someone was again able to access the site (through vulnerabilitis in components of script) and replaced the files in the root with files with its contents.
Before infected, the file 635cdaa6ab23d_f5.phtml was uploaded to the zhduli.ru/assets/sources/uploads folder, through which the attack occured. That is it is necessary to exclude the upload of this type files (extension) on website

Code:
112.215.151.229 - - [29/Oct/2022:10:47:11 +0300] "POST /plugins/orakuploader/orakuploader.php?filename=be.php&path=plugins/orakuploader/&main_path=storage/products&thumbnail_path=storage/products/thumb&watermark=&orakuploader_crop_to_width=0&orakuploader_crop_to_height=0&orakuploader_crop_thumb_to_width=0&orakuploader_crop_thumb_to_height=0 HTTP/2.0" 404 523 "https://www.sellwithtrust.site/post-ad" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:47:36 +0300] "GET /assets/sources/upload.php HTTP/2.0" 400 62 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:47:50 +0300] "POST /assets/sources/upload.php HTTP/2.0" 200 133 "http://indigorentacar.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:47:58 +0300] "GET /assets/sources/uploads/635cdaa6ab23d_f5.phtml HTTP/2.0" 200 4739 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:48:09 +0300] "GET /assets/sources/uploads/635cdaa6ab23d_f5.phtml?Fosforo5 HTTP/2.0" 200 8714 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
112.215.151.229 - - [29/Oct/2022:10:48:45 +0300] "GET /assets/sources/uploads/635cdaa6ab23d_f5.phtml?Fosforo5&dir=/var/www/bride/data/www/zhduli.ru/assets/sources/uploads&do=upload HTTP/2.0" 200 6327 "https://zhduli.ru/assets/sources/uploads/635cdaa6ab23d_f5.phtml?Fosforo5" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"

I prevented users from uploading anything other then pictures and videos. I'll wait for result.
Hello, BellooRU. Please tell me how to do this, prevent users from uploading anything other than images and videos.
Sincerely.
 

KeepUp01

Member
May 19, 2022
43
12
8
Thanks to.
Are you suggesting to do this with every picture or is there another option?
Quote: "Download and upload all the photos to your belloo folder, then just go to database and change the link for everyone."
10 pieces. in the menu + "Gifts" + Plugins ???
Where can photos be downloaded from?
Sincerely.
You must login into admin panel, go to Settings —> Gifts. Then right click on the website and select “Inspect Element”, go to Resources and reload the page. There you will have the resource link “belloo.date” or “premiumdatingscript.com” which contains the .png. Download everyone and upload to your website via FTP (ie /var/www/belloo-folder/new-img/). Then go to database, select GIFTS and edit everyone to “YourSite.com/new-img/GIFTnumber.png”
 
  • Like
Reactions: Natali

Natali

Member
May 11, 2022
51
9
8
You must login into admin panel, go to Settings —> Gifts. Then right click on the website and select “Inspect Element”, go to Resources and reload the page. There you will have the resource link “belloo.date” or “premiumdatingscript.com” which contains the .png. Download everyone and upload to your website via FTP (ie /var/www/belloo-folder/new-img/). Then go to database, select GIFTS and edit everyone to “YourSite.com/new-img/GIFTnumber.png”
Thanks to. Solved the problem with resaving the image on the site.
 

mywashe

Member
Oct 9, 2022
82
10
8
Ok but do you have rewrite module ON?

Sudo a2enmod rewrite
Also check chmod -R 775 /var/www/belloo-folder/
And chown -R www-data:www-data /var/www/belloo-folder/
Then just sudo service apache2 restart and check if it works.
Yes it is on, however I am unable to use the commands you suggested since I don't have persmion to use shell. Soo is there no other way to have the issue of customizing website presets fixed
 

Attachments

  • ssh.png
    ssh.png
    16.8 KB · Views: 15

Natali

Member
May 11, 2022
51
9
8
Good day, dear members of the BABIATO forum.
Please tell me how to get rid of this when loading the script.
Performing a "TLS handshake with s3-us-west-2.amazonaws.com..."
Website page loading 1.5 -2 minutes.
Do not offer to switch to VPS.
Thank you.
 

KeepUp01

Member
May 19, 2022
43
12
8
Looks like gandon Sosa reads this forum. Today I received a message from my hosting support, that "one of my sites has been hacked". The archive contains modified files (if anyone is interested).
p.s. .htaccess file (with new content) added to all script's folders.
p.p.s After recovery assigned CHMOD read only (444) for .htaccess and index.php I hope Sosa (condom) will try to do something with my zhduli.ru again and I can check if the protection against it ist good - change CHMOD.
Ok that's kinnda weird. I have the same virus on my virtualized system.

I have installed it (Belloo) after your comment and now i can see a folder named "wp-includes", a years.php and index.php folders and files that are not the default ones.

Also, my ".htaccess" file is empty and you can not pass the landing page in desktop or loading page in mobile.

There's also a "license.txt" file under /bello-folder/wp-includes/images/

How did i see it? Before publishing the website i gave 775 permissions to all the files that are in belloo's folder, and the new ones just have the permission 644.

Also, there's no way to login into admin panel. And idk why but virustotal does not detect any virus in any file.

Edit: since i have the dns with Cloudflare, i can see that this morning at 11:00 UTC+1 my website got 7k requests from USA and 1 attack blocked (the folders and files that I mentioned before where created today at 08:30 UTC+1)

Edit2: there are 2 files called "about.php" and "about.PHP" under /belloo-folder/assets/sounds/

Edit3: There are also 2 files called "635af140465f2_f5.phtml" and "wsoyanzorng.php" (idk if that's spanish cuz "Soy Anzo" means "I am Anzo"). And a file called "votes.php" under /belloo-folder/css/.
 
Last edited:

BellooRU

Active member
Banned User
May 16, 2022
84
105
33
tell me how to do this, prevent users from uploading anything other than images and videos.
When I find a solution that works correctly, I will publish everything.
I have installed it (Belloo) after your comment and now i can see...
Have you used the update archives (update-4.3.zip, update-4.3.1.zip etc)? Where do you get them from?
And what is your connect.php (where do you get it from)? I used from UKgamer on zhduli.
If someone else report about problem, then the author has begun his own war.
 
Last edited:

mywashe

Member
Oct 9, 2022
82
10
8
Is there anyone who's having Paypal working? Whenever I try to buy Premium and select paypal as payment method I get the error from Paypal

"Things don't appear to be working at the moment. Please try again later."
 

Attachments

  • ppl.png
    ppl.png
    30.6 KB · Views: 6

ukgamer

Well-known member
Trusted Uploader
Mar 7, 2019
2,061
1,143
113
EmbedWorld Movie API
embedworld.xyz
When I find a solution that works correctly, I will publish everything.

Have you used the update archives (update-4.3.zip, update-4.3.1.zip etc)? Where do you get them from?
And what is your connect.php (where do you get it from)? I used from UKgamer on zhduli.
If someone else report about problem, then the author has begun his own war.
As I’ve stated a few times on here now , no one uses my files or my connect , they was all replaced by admin many many months ago 🙂
 

MasterX

Member
May 21, 2022
82
24
8
Dear forum users BABIATO.
Please share the library of original pictures that are installed in the demo version.
Example: https://www.belloo.date/3.5/assets/sources/uploads/5d7b123f845f8_4.png
This is for gifts - https://premiumdatingscript.com/gifts/21.png
On my test domain, they are all loaded from the developer's site.
It takes a very long time to change each picture manually, through the database.
Thank you in advance.

if you are using a clean install, do the following:

1. Create a directory called "gifts" in:
Your_Site/assets/sources/uploads/

2. Upload the attached file "file_gifts"

3. Run the query below changing the text "your_site" to your full domain.

SQL:
TRUNCATE TABLE gifts;
INSERT INTO `gifts` (`id`, `gift`, `price`, `icon`) VALUES
(1, 'Treasure', 55, 'https://your_site.com/assets/sources/uploads/gifts/1.png'),
(2, 'Cake', 150, 'https://your_site.com/assets/sources/uploads/gifts/2.png'),
(3, 'Wine', 200, 'https://your_site.com/assets/sources/uploads/gifts/3.png'),
(4, 'Flowers ', 250, 'https://your_site.com/assets/sources/uploads/gifts/4.png'),
(5, 'Present', 200, 'https://your_site.com/assets/sources/uploads/gifts/5.png'),
(6, 'Heart candy', 50, 'https://your_site.com/assets/sources/uploads/gifts/6.png'),
(7, 'kiss', 100, 'https://your_site.com/assets/sources/uploads/gifts/7.png'),
(8, 'beer', 150, 'https://your_site.com/assets/sources/uploads/gifts/8.png'),
(10, 'cup', 250, 'https://your_site.com/assets/sources/uploads/gifts/10.png'),
(11, 'flower', 100, 'https://your_site.com/assets/sources/uploads/gifts/11.png'),
(12, 'crown', 1500, 'https://your_site.com/assets/sources/uploads/gifts/12.png'),
(13, 'hearts', 250, 'https://your_site.com/assets/sources/uploads/gifts/13.png'),
(14, 'hear candy 2', 200, 'https://your_site.com/assets/sources/uploads/gifts/14.png'),
(15, 'champagne', 25, 'https://your_site.com/assets/sources/uploads/gifts/15.png'),
(16, 'coffe', 25, 'https://your_site.com/assets/sources/uploads/gifts/16.png'),
(17, 'cupido', 50, 'https://your_site.com/assets/sources/uploads/gifts/17.png'),
(18, 'flowers 3', 500, 'https://your_site.com/assets/sources/uploads/gifts/18.png'),
(19, 'dairy love', 25, 'https://your_site.com/assets/sources/uploads/gifts/19.png'),
(20, 'handcops', 500, 'https://your_site.com/assets/sources/uploads/gifts/20.png'),
(21, 'heart', 25, 'https://your_site.com/assets/sources/uploads/gifts/21.png'),
(22, 'heart 2', 25, 'https://your_site.com/assets/sources/uploads/gifts/22.png'),
(23, 'heart 3', 150, 'https://your_site.com/assets/sources/uploads/gifts/23.png'),
(24, 'ring', 1000, 'https://your_site.com/assets/sources/uploads/gifts/24.png'),
(25, 'bear', 350, 'https://your_site.com/assets/sources/uploads/gifts/26.png'),
(26, 'candy', 550, 'https://your_site.com/assets/sources/uploads/gifts/26.png'),
(27, 'cake', 600, 'https://your_site.com/assets/sources/uploads/gifts/27.png'),
(28, 'honor', 750, 'https://your_site.com/assets/sources/uploads/gifts/28.png');
 

Attachments

  • file_gifts.zip
    169.8 KB · Views: 20

About us

  • Our community has been around for many years and pride ourselves on offering unbiased, critical discussion among people of all different backgrounds. We are working every day to make sure our community is one of the best.

Quick Navigation

User Menu