Phising Attack - Joomla! Forum - community, help and support


my site has been hosted powweb.com: http://tigerwests.com.au/ runs 3 year .htaccess ( in same directory index.php file) recommended

code: select all

http://forum.joomla.org/viewtopic.php?t=75376.


weeks ago site has been phising attack several of times, "uploaded" whole folder/ files, etc... way how server followings:

code: select all

- http://tigerwests.com.au/libraries/joomla/html/parameter/element/www.mybank.alliance-leicester.co.uk/ndex.aspct=mybankrhnlogin&/next/
- http://tigerwests.com.au/phpbb3/images/online.lloydstsb.co.uk/customer.ibc.htm
- http://tigerwests.com.au//libraries/simplepie/www.nwolb.com/login.php


...and more...

even changed password host control panel login, ftp user(1 user , me). day after changed password, guys out there still phising upload, maybe scripts(?).
all directory folders permission initially: 755, changed weeks ago being: 711.
files permission: 644

please help!

http://docs.joomla.org/joomla!_administ ... _checklist

a 3 year old htaccess file has changed lot since then, check logs weird entries, check versions , components date





Comments

Popular posts from this blog

Joomla site hacked, cant see front and - Joomla! Forum - community, help and support

Christian Home School Programs - Joomla! Forum - community, help and support

Trouble with PF_OutFlag_I_USE_AUDIO and PF_CHECKOUT_LAYER_AUDIO