![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
Confirmed User
Industry Role:
Join Date: Aug 2012
Posts: 929
|
Who is getting security.php ???? CHECK YOUR SITES! IT can hurt SEO
For those using hostgator, who here has security.php installed across network?
I have 3 different accounts on hostgator, and they all have security.php added on every account..some kinda backdoor. i tested it by going to domain.com/security.php and saw a "password form. (Note: my sites are NOT connected in any way and i'm using 3 different billing info) |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
Natalie K
Industry Role:
Join Date: Apr 2010
Location: Spain
Posts: 19,050
|
used to be with hostgator, personally recommend adult-hosting.com
good luck with your security problems on your php ![]()
__________________
My official site NatalieK.xxx ![]() ![]() ![]() Skype: gspotproductions - "Converting traffic into income since 2005" |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 |
Confirmed User
Industry Role:
Join Date: Jan 2012
Location: NC
Posts: 7,683
|
log in using ftp and copy paste the source of security.php here
__________________
SSD Cloud Server, VPS Server, Simple Cloud Hosting | DigitalOcean
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
Confirmed User
Industry Role:
Join Date: Aug 2012
Posts: 929
|
When i open the php code, its all encrypted
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#5 |
Raise Your Weapon
Industry Role:
Join Date: Jun 2003
Location: Outback Australia
Posts: 15,605
|
VBulletin doesn't support emojis.
*clap* Dont *clap* use *clap* Hostgator ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 |
So Fucking Banned
Join Date: Aug 2002
Posts: 10,300
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 |
full-time aspiring rapper
Industry Role:
Join Date: Aug 2012
Location: Compton, CA
Posts: 5,746
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 |
Confirmed User
Industry Role:
Join Date: Sep 2015
Posts: 1,045
|
Most times code is base64 encode. You can decode if you wants if just base64. But Horatio is write, 99% It a shellcode.
Are all sites on same server? Shared hosting? Reverse IP Lookup - Find Other Web Sites Hosted on a Web Server If nots maybe all you sites have same hole. Whats your sites runnings? If wordpress make sures all is updated. If some bad php somewheres or old imagemagick could allow remote code exectuions and allows persons to upload shells. Maybe nots your faults if on shared hosting. Maybe other gfy guys can helps that knows mores than me (I expert in onlys blogspots). if he set permissions to 555, woulds that helps?
__________________
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 |
Pay It Forward
Industry Role:
Join Date: Sep 2005
Location: Yo Mama House
Posts: 76,899
|
what script are u runnin? i don't have them
__________________
TRUMP 2025 KEKAW!!! - Support The Laken Riley Act!!! END DACA - SUPPORT AZ HCR 2060 52R - email: brassballz-at-techie.com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 |
Confirmed User
Industry Role:
Join Date: Jan 2012
Location: NC
Posts: 7,683
|
It's a shell script
__________________
SSD Cloud Server, VPS Server, Simple Cloud Hosting | DigitalOcean
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#11 |
Confirmed User
Industry Role:
Join Date: Aug 2012
Posts: 929
|
when i open in dreamweaver, it looks like <?php $rx350q7 = .....
when i googled this, i saw it on one site.. thats about it |
![]() |
![]() ![]() ![]() ![]() ![]() |