View Single Post

(#3 (permalink))
Old
N1ghtf4ll3r's Avatar
N1ghtf4ll3r N1ghtf4ll3r is offline
Junior Member
N1ghtf4ll3r is on a distinguished road
 
Posts: 5
Join Date: Jun 2008
Default 06-21-2008, 07:49 PM

Just done that, erm, appears that after a bit of research that i have done.... well, simply put, i believe your servers have been hacked. Be warned, any one else with a simple machines forum, will quite likely be posting this issue very soon.

Following thread may help owners and operators of the servers that 000webhost use.

http://www.simplemachines.org/commun...topic=244093.0

Quote:
If its inserted into the php files themselves., then usually these type of injections are as a result of a host hack.
I'd recommend contacting your host asap.

If your on a shared server, it can often be wise to check other sites hosted on the same server. (Use a site like myipneighbors.com ) And see whether there index.php's have been affected aswell.
Then you'll know whether that entire shared server has been compromised.

- Double check all your mods are latest versions.
- That you've got attachments encrypted.
- Any other scripts your running are upto date.

Unfortunately, just replacing the files isn't enough. You and/or your host need to find out how it was caused. Otherwise it could continue to happen.
Nothing else i can do really, other then inform you guys and all other simple machines forum users. Now its down to Admin and owners of 000webhost to fix this problem.

Thanks for the partial help sizzlefire, but as i said i stripped SMF to bits to find the problem and its definitely a hack.

Keep me informed, perhaps sticky this topic, so that way others dont have to post a new thread.
Reply With Quote