Results 1 to 6 of 6

Thread: Need help please

  1. #1
    Join Date
    Jun 2006
    Posts
    15

    Default Need help please

    Hello,
    I have been notified by my web host that my website has been exploited to send spam and pishings .
    And he has suspended it.
    Important; I have many sub domains
    I asked him for an explanation, he appointed me records, telling me these cases send emails and pishings
    Example:
    public_html/indexu/themes/default/mail
    public_html/indexu/themes/kosmos/mail
    public_html/others/xx/libs/Pear/Mail "no indexu"
    others………."no indexu"

    I havn’t understand anything.

    I checked my site and I find a script that is not for me has been installed on my site. It is a complete script with php files, html, text, some documentation in Word files, here is some informations:
    ---begin----
    Eggheads Development Team
    www.eggheads.org
    ---End-----

    As a beginner, I do not know how the hacker was able to install it. It was in a directory script "php-nuke" version 7.5.

    I restored an old version of my sites, which is not up to date.
    By cons I do not know what process has affected my databases sql or just files php? That is to say I could retrieve the latest data bases and put them with the old version that I restored.
    Thank you in advance.
    Last edited by kiwimanga; 05-11-2008 at 05:02 PM. Reason: error

  2. #2
    Join Date
    Nov 2004
    Posts
    1,822

    Default

    what version indexu are you using? need to upgrade if you are using 5.1 - it had security problems. You should be bale to restore old database without any issues.
    Main IndexU sites : | Campsite Directory | Tourist Guide | Places2B | AfterDirectory <-- Half price submission using coupon DP50 (from just $11 premium, and $10 basic permanent )

  3. #3
    Join Date
    Jun 2006
    Posts
    15

    Default thank you

    Quote Originally Posted by inspireme View Post
    what version indexu are you using? need to upgrade if you are using 5.1 - it had security problems. You should be bale to restore old database without any issues.
    thank you for you answer my version it's 5.4.0
    Last edited by kiwimanga; 05-11-2008 at 05:05 PM. Reason: error

  4. #4
    Join Date
    Jun 2002
    Location
    Winnipeg Canada
    Posts
    4,913

    Default

    php-nuke has probably been the worst script (other than sendmail) on the net for exploits.

    This has nothing to do with IndexU OTHER than possibly using the IndexU engine to send spam.

    Your server/account was hacked. You need to fix it. The FIRST thing you need to do is remove the offending script from your server. Then change all your passwords using a random password generator of at least 10 characters in length.

    Then scan your HOME computer for viruses, do not use norton or mcafee products to do this.

    Then go back to the server/account (which is it anyways? Dedicated server? VPN? Shared Account?) and get the access_log and determine how they got in. Then you need to fix that.

    And lets not forget, either update or delete php-puke.

  5. #5
    Join Date
    May 2007
    Location
    NJ, United States
    Posts
    1,651

    Default

    Quote Originally Posted by Bruceper View Post
    php-nuke has probably been the worst script (other than sendmail) on the net for exploits.
    Couldn't agree with you more! Its not even worth running that script because of all the hacks and problems. Your left putting in security fixes daily, and God forbid if you dont

    Quote Originally Posted by Bruceper View Post
    Then scan your HOME computer for viruses, do not use norton or mcafee products to do this.
    Not really sure why you say "do not use norton or mcafee"!?!?!? Both are leaders in the industry for virus and spyware detection.

    Quote Originally Posted by Bruceper View Post
    or delete php-puke.
    "delete" being the key word!!!
    FSGDAG | IndexU Hosting | Owner
    Website | NiceCoder Script Hosting and More! | Web4URL is For Sale!
    Follow Us On Twitter | FaceBook Profile | YouTube Videos

  6. #6
    Join Date
    Jun 2002
    Location
    Winnipeg Canada
    Posts
    4,913

    Default

    I say not to use norton or mcafee products because in all the years I've been around online they consistently score the lower in detection and the highest in the PITA factor with trying to take over your system and be more than they should be.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •