Phising Attack - Joomla! Forum - community, help and support
my site has been hosted powweb.com: http://tigerwests.com.au/ runs 3 year .htaccess ( in same directory index.php file) recommended
weeks ago site has been phising attack several of times, "uploaded" whole folder/ files, etc... way how server followings:
...and more...
even changed password host control panel login, ftp user(1 user , me). day after changed password, guys out there still phising upload, maybe scripts(?).
all directory folders permission initially: 755, changed weeks ago being: 711.
files permission: 644
please help!
code: select all
http://forum.joomla.org/viewtopic.php?t=75376.weeks ago site has been phising attack several of times, "uploaded" whole folder/ files, etc... way how server followings:
code: select all
- http://tigerwests.com.au/libraries/joomla/html/parameter/element/www.mybank.alliance-leicester.co.uk/ndex.aspct=mybankrhnlogin&/next/
- http://tigerwests.com.au/phpbb3/images/online.lloydstsb.co.uk/customer.ibc.htm
- http://tigerwests.com.au//libraries/simplepie/www.nwolb.com/login.php...and more...
even changed password host control panel login, ftp user(1 user , me). day after changed password, guys out there still phising upload, maybe scripts(?).
all directory folders permission initially: 755, changed weeks ago being: 711.
files permission: 644
please help!
http://docs.joomla.org/joomla!_administ ... _checklist
a 3 year old htaccess file has changed lot since then, check logs weird entries, check versions , components date
a 3 year old htaccess file has changed lot since then, check logs weird entries, check versions , components date
Comments
Post a Comment