Search (advanced search) | ||||
Use this Search form before posting, asking or make a new thread.
|
11-25-2014, 04:43 AM
Post: #1
|
|||
|
|||
CryptoPHP - Backdoor in Thousands of CMS Plugins and Themes
http://thehackernews.com/2014/11/cryptop...hemes.html
go here and read the story |
|||
11-26-2014, 02:14 AM
Post: #2
|
|||
|
|||
RE: CryptoPHP - Backdoor in Thousands of CMS Plugins and Themes
(11-25-2014 04:43 AM)xiaofang Wrote: http://thehackernews.com/2014/11/cryptop...hemes.htmlHOW THE HELL CAN WE KNOW WHICH SCRIPT? UNKNOWN DETAILS and I HAVENT SEEN ANY UPDATE OR THREAD ABOUT THIS IN THE FORUM... I HOPE ITS NOT AS BAD AS IT SEEMS... PERSONALLY I PREFER MORE EASY AND USEFUL SCRIPTS, THAN TO DOWNLOAD THEM FROM UNKNOWN SOURCES. |
|||
11-26-2014, 02:21 AM
(This post was last modified: 11-26-2014 02:21 AM by DrugsIsTakingOverYourMind.)
Post: #3
|
|||
|
|||
RE: CryptoPHP - Backdoor in Thousands of CMS Plugins and Themes
(11-26-2014 02:14 AM)crymetyme Wrote:Open your eyes a bitalready topic about in VIP section if imright(11-25-2014 04:43 AM)xiaofang Wrote: http://thehackernews.com/2014/11/cryptop...hemes.htmlHOW THE HELL CAN WE KNOW WHICH SCRIPT? UNKNOWN DETAILS and I HAVENT SEEN ANY UPDATE OR THREAD ABOUT THIS IN THE FORUM... |
|||
11-26-2014, 02:31 AM
Post: #4
|
|||
|
|||
RE:
I would say that at least 80% of the shared code has this backdoor, so it was your fault not using malware antivirus or run your own tests before uploading to your servers.
TAC from wordpress and Core Security Ninja http://codecanyon.net/item/core-scanner-...ja/2927931 https://wordpress.org/plugins/tac/ https://wordpress.org/plugins/wordfence/ https://wordpress.org/plugins/sucuri-scanner/ http://wordpress.org/plugins/wp-antiviru...rotection/ http://wordpress.org/plugins/antivirus/ https://wordpress.org/plugins/gotmls/ https://wordpress.org/plugins/quttera-we...e-scanner/ https://wordpress.org/plugins/wemahu/ http://wordpress.org/plugins/exploit-scanner/ If you really need to know if it changes something into the system with no notice check: http://wordpress.org/plugins/wp-changes-tracker/ Log checker: https://wordpress.org/plugins/wp-security-audit-log/ And do a run into your site: http://sitecheck.sucuri.net/ For the files, just unzip into your local folder and run an Antivirus program. If your server has been compromissed, let me know, as security sysadmin with 15y of experience I can track and isolate the thread, securizing your system from hackers. **Only for VPS or dedicated servers over Linux. Just send me a pm. -oo- |
|||
11-26-2014, 03:15 AM
Post: #5
|
|||
|
|||
RE:
Yes check always script before u use them. there is lots of newbie and leechers in the scene and they think is BIG to share others artwork decoding and nulling. Yes this is a art. and lots of hours behind all decoded and nulled script good guy share and fix.
But leecher see only one thing and take credits so lots of host are hijacked becuase they not test before. so check all you newer know |
|||
11-26-2014, 04:37 AM
Post: #6
|
|||
|
|||
RE:
fake news, they want force you to buy things than download for free, peace
|
|||
11-26-2014, 05:44 AM
(This post was last modified: 11-26-2014 05:45 AM by xiaofang.)
Post: #7
|
|||
|
|||
RE:
You think smile
you can do some command line hehe and see if your host and domain is hijacked with a backdoor. If you do a search you will find some useful command line. so is not fake news So always check script before and maybee look after some png file |
|||
11-26-2014, 06:41 AM
Post: #8
|
|||
|
|||
RE: CryptoPHP - Backdoor in Thousands of CMS Plugins and Themes
(11-26-2014 02:21 AM)DrugsIsTakingOverYourMind Wrote:TOO BUSY BRO FOR STAYING UPDATED IN EVERY THREAD...(11-26-2014 02:14 AM)crymetyme Wrote:Open your eyes a bitalready topic about in VIP section if imright(11-25-2014 04:43 AM)xiaofang Wrote: http://thehackernews.com/2014/11/cryptop...hemes.htmlHOW THE HELL CAN WE KNOW WHICH SCRIPT? UNKNOWN DETAILS and I HAVENT SEEN ANY UPDATE OR THREAD ABOUT THIS IN THE FORUM... |
|||
11-26-2014, 06:43 AM
Post: #9
|
|||
|
|||
RE:
this actually happens tho, this is why I never use a plugin/theme on my site that was shared on a blackhat forum.
|
|||
11-26-2014, 12:06 PM
Post: #10
|
|||
|
|||
RE:
(11-26-2014 02:31 AM)basuraza Wrote: I would say that at least 80% of the shared code has this backdoor, so it was your fault not using malware antivirus or run your own tests before uploading to your servers.Thanks for your post, it is very useful , is there any good security check list for linux Vps which you can share ? It would be very helpful |
|||