Member
Member
minutepapillon   28-06-2012, 09:56
#1

Hi everyone,
As I said, it's my third time my site gets hacked BUT it is not necessarily ZP who should be blamed :
My www contains a wordpress CMS and a subdirectory with a zp in it. I must admit that my zp has been forgotten for a while without any upgrade (so I am the one who should be blamed first !)
Here is my question :
The index.php at the root has been corrupted (not it the zp directory IN THE ROOT.)
This has been added :
`

Administrator
Administrator
acrylian   28-06-2012, 11:55
#2

It is not really possible for us to tell how this happened. If you have any Zenphoto before 1.4.1.6 it might have been or if your file/folder permissions were to low but then the install should have been affected. If you are not on the current release we really recommend to upgrade. That way you will also upload fresh files.

So it might have been the WP install or even the server itself. You should also contact your host about that. They might have more tools to tell how that might have happened.

I did remove part of your code so it does not hurt us here.

Member
Member
minutepapillon   28-06-2012, 12:11
#3

Thanks acrylian,
First I had removed most of the 64_coded c***p in the sample I provided.
The upgrade is done.
... for the rest ... I will inquire ...
Bye,
n

Member
Member
minutepapillon   28-06-2012, 12:35
#4

... by the way, I am having a hard time to find the procedure for changing database pw ... (not on my provider's side, I mean in zp config files ...)
Any link where it is explained ?
Thanks

Administrator
Administrator
acrylian   28-06-2012, 12:37
#5

You should probably remove all of the code you posted above, the eval() part is the important one that prints encoded javascript code.

The database credentials for Zenphoto are within the config file within /zp-data.

Member
Member
minutepapillon   28-06-2012, 12:53
#6

Thanks !
(for this last answer and for the rest !)

  
Powered By MyBB, © 2002-2026 MyBB Group.
Made with by Curves UI.