PhotoPost Photo Gallery Sales PhotoPost Sales Toll Free Phone Number
Mon-Fri 9am-4pm EST
  PhotoPost Photo Sharing Photo Gallery    Visualize community tm
| | | | | | | | |

Go Back   PhotoPost Community > General Forums > General Discussion

General Discussion General use discussion forum for PhotoPost products.

Reply
 
Thread Tools Rate Thread Display Modes
Old September 16th, 2006, 02:19 PM   #1
thebroadroom
Junior Member
Verified Customer
 
Join Date: Sep 2006
Posts: 5
Script was hacked...please help

Hi there,

My Reviewpost script was recently hacked (the usual, a pop-up with "hacked by so-and-so" plus a trojan virus installed in one of the Reviewpost directories, etc.).

My question is this: is there supposed to be a subdirectory named "pro" inside the "data" directory?

There are two files in it without extensions, "prox" and "xh." I can't delete them or change permissions on them.

Are these two files supposed to be there and is that directory supposed to be there?
thebroadroom is offline   Reply With Quote
Old September 16th, 2006, 04:14 PM   #2
Chuck S
Photopost Developer
Verified Customer
 
Chuck S's Avatar
 
Join Date: Jun 2002
Location: Abingdon,MD
Posts: 75,013
There is no pro directory suppose to be there.

what do you mean the script was hacked there are no security vulnerabilities with our files that have been reported. Looks like they used a 777 directory as a place to begin but what they did was probally independent of the reviewpost application itself.

Without more exact information I can't respond further
__________________
Photopost Developer and Support Engineer

Please do not PM me for support or sales questions. Thank you for your understanding.
Chuck S is offline   Reply With Quote
Old September 17th, 2006, 04:38 PM   #3
thebroadroom
Junior Member
Verified Customer
 
Join Date: Sep 2006
Posts: 5
Thanks for replying so quickly...

I changed the permissions on the data directory to 755...it was 777 indeed. This morning I found another subdirectory in there that didn't belong, but I was able to delete it (it was called "info").

I've notified my host about the "pro" directory. Still can't delete it or the two files inside it.

Is there anything else I can do? I'm already planning on switching hosts. I haven't been happy with this one for a long time.

I have a Photopost script too, I changed the permissions on the data and uploads directories there to 755 as well.

I know some programming but I'm clueless about hackers. We're running a small site that basically makes just enough money to pay for itself, we can't afford expensive solutions.

Again thank you for responding so quickly.
thebroadroom is offline   Reply With Quote
Old September 17th, 2006, 04:55 PM   #4
Chuck S
Photopost Developer
Verified Customer
 
Chuck S's Avatar
 
Join Date: Jun 2002
Location: Abingdon,MD
Posts: 75,013
Our data directory is suppose to be 777 for file uploads to happen.
__________________
Photopost Developer and Support Engineer

Please do not PM me for support or sales questions. Thank you for your understanding.
Chuck S is offline   Reply With Quote
Old September 22nd, 2006, 11:22 AM   #5
thebroadroom
Junior Member
Verified Customer
 
Join Date: Sep 2006
Posts: 5
Thanks and another question...

I've moved my site to a better host. I'd like to renew both our Photopost and ReviewPost scripts...I went to do that, but now I'm confused. Does one renewal cover both PhotoPost and ReviewPost? If you purchase two renewals, does that mean two years of renewal for both scripts, or one year of renewal for each script?

Hope that made sense.
thebroadroom is offline   Reply With Quote
Old September 29th, 2006, 08:52 PM   #6
thebroadroom
Junior Member
Verified Customer
 
Join Date: Sep 2006
Posts: 5
Sorry for the dumb q...

I think my brain was a bit fried from fixing up the site. I got both scripts upgraded and installed fine.
thebroadroom is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Hacked Admin Password dahub General Discussion 1 August 24th, 2006 05:18 PM
photopost gallery hacked nymyth General Discussion 7 June 7th, 2006 02:43 PM
A nicely hacked CMS with PP b6gm6n General Discussion 3 December 15th, 2005 02:26 PM


All times are GMT -5. The time now is 03:58 AM.

Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.