Support ⇒ Security ⇒ Hacked site / Redirect ⇒ Community Forums ⇒ CPG Dragonfly™ CMS
Forum IndexSecurity

Hacked site / Redirect Reply to topic


Hi all.

I beliwe i have had guests on my dragonfly site.
Due to this i found out that an uppgrade was in its place.

however still people get redirectet away from my site and get a message about trojan on my site.

due to tules here i will not post url to my site unless asked fore.

I realy hope someone could help me here.

Cr
Jon Vatn
this is where i get redirectet.

detected: Trojan program Exploit.JS.Pdfka.w URL:

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
XP MySql


I had the same "warning" from my antivirus when I visited your site.

Good Luck Shocked

Aforo - Google Earth - WebNaranja - DFcms.es

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Centos 5/Apache 2.2.3/MySQL:5.0.45/PHP:5.2.10 /9.2


thanks.

Just hope i dint have to redoo the whole site.
so i would realy apreciete some help here.

I Also tryed to apply a new skin/theme hovever this did not give any effect.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
XP MySql


¿Are you running your website over Windows XP?

Perhaps the infected is your server, not the site.

Change for a moment the index.php for a false index.php (with olny a line with "hello world") if you get again the virus, the problem is in the server.

Aforo - Google Earth - WebNaranja - DFcms.es

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Centos 5/Apache 2.2.3/MySQL:5.0.45/PHP:5.2.10 /9.2


What's this in the end of your website code:

{removed}

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
-


In the code is here:

{removed}


Try to find in:
themes\[Theme_name]\template\footer.html

Aforo - Google Earth - WebNaranja - DFcms.es

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Centos 5/Apache 2.2.3/MySQL:5.0.45/PHP:5.2.10 /9.2


Yes i finaly found it.

However i do not know how that got there.
Also after the lastest upgrade i also changed the theme.

So this meens they have been back Sad
Is there any way stopping this ?

I have now deleted all themes that i do not use.
can i chmod archives ?

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
XP MySql


Perhaps the "problem" came with the theme.

Use only themes of recomended places. Here (dragonflycms.org) you can get many themes.

I use permision 644 for "themes", but I use o.s. linux server, not XP. I don't like XP for servers: it's not so safe or stable.

Aforo - Google Earth - WebNaranja - DFcms.es

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Centos 5/Apache 2.2.3/MySQL:5.0.45/PHP:5.2.10 /9.2


Hmm this cant bee.

All 8 themes that i had instaled contained the same code in the footer.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
XP MySql


Get fresh copies of the themes your using and upload them overwriting the files currently on your server.

If your not sure about a theme. Make a post at www.dfthemes.com with theme name and download location one of our designer will take a look at it.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Multiple Setups


Now i only have dragonflied i think its called Smile and default.

Have edited the files and chmod to 644.

So for now it works great.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
XP MySql

All times are UTC


Jump to: