1
shalommemphi
FILE index.php HACKED

Today after over 4 years with no problem one of my sites was hacked. The index.php file had this added to the end.
------------------------------------------
echo "";

?>


--------------------------------------------
FIRST: How can I protect to ensure this isn't done again. I have made sure the index.php file is set to READ only permission 444. Has anyone else had this issue.
Helping each other with Knowledge

2
bjuti
Re: FILE index.php HACKED
  • 2009/4/7 13:39

  • bjuti

  • Just can't stay away

  • Posts: 871

  • Since: 2009/1/7 2


I had similar situation with one site made with XOOPS 2.0.18 i think.

As far as i know, and I'm not an expert on this, this hack is caused by trojan who entered on server via ftp passwords from your system.

That's my opinion.

3
DonCurioso
Re: FILE index.php HACKED

A die site called xoopsdemos had these same problem... two days after, it was hacked by a well-knowed turkish hackers group.

Close your site, ask your hosting service about this & change right now all your passw. I hope you´ll have a database backup copy.

All da best luck with it.
HispaXoops | Xoops España

That's the way i like it! | Nada mejor que una Alhambra bien helada con aceitunas...

4
shalommemphi
Re: FILE index.php HACKED

After checking into it all sites on my hosting server with the file name of index.php had this malware attack and were hacked.

Luckily the hosting provider was able to search and delete all the files where this hack place the