I dug around and found the pp_pro.php file was hacked with one line that sends $request() to a hacker.
I am not sure how they did this as even the last modified date didn't change.
Anyone have this happen to them? how did you secure the site? my host isn't very helpful
thanks
Dedication and passion goes to those who are able to push and merge a project.
Regards,
Straightlight
Programmer / Opencart Tester
Dedication and passion goes to those who are able to push and merge a project.
Regards,
Straightlight
Programmer / Opencart Tester
How about using SSL certificates will it not be useful ?straightlight wrote: ↑Sun Oct 14, 2018 1:06 am444 would be the lease but not effective for all PCI servers. However, since we're looking at a network attack enquiry, contacting your host would be the best option.
Urgent Questions shoot here: khnaz35@gmail.com
Enjoy nature
SSL certificates does provide security to users when browsing but has nothing to do with potential network attacks.khnaz35 wrote: ↑Sun Oct 14, 2018 1:03 pmHow about using SSL certificates will it not be useful ?straightlight wrote: ↑Sun Oct 14, 2018 1:06 am444 would be the lease but not effective for all PCI servers. However, since we're looking at a network attack enquiry, contacting your host would be the best option.
Dedication and passion goes to those who are able to push and merge a project.
Regards,
Straightlight
Programmer / Opencart Tester
Good to know that, how about Sitelockstraightlight wrote: ↑Sun Oct 14, 2018 7:37 pmSSL certificates does provide security to users when browsing but has nothing to do with potential network attacks.khnaz35 wrote: ↑Sun Oct 14, 2018 1:03 pmHow about using SSL certificates will it not be useful ?straightlight wrote: ↑Sun Oct 14, 2018 1:06 am444 would be the lease but not effective for all PCI servers. However, since we're looking at a network attack enquiry, contacting your host would be the best option.
Urgent Questions shoot here: khnaz35@gmail.com
Enjoy nature
But this is what I have: https://www.getastra.com/blog/911/how-t ... ware-hack/
and it's not getting fixed no matter what i do.
If it's what you have and worry about security issues, using integrated platforms into Opencart or vice-versa is unsupported on the forum since it includes this reason and this reason on being about security issues outside the scope of Opencart. If your host mentions that Opencart is not safe, it's because no mention has been provided to them regarding integrated platforms. Which is why, using remote APIs / Webservices are the best option via SSL so to avoid high levels and potential risks through the network. Since Magento does not provide those services, at least not out of the box, not an issue with Opencart period.xaappx1 wrote: ↑Mon Oct 15, 2018 8:31 amThe host is blaming OpenCart, saying it's not secure. I'm really not sure who to believe.
But this is what I have: https://www.getastra.com/blog/911/how-t ... ware-hack/
and it's not getting fixed no matter what i do.
Dedication and passion goes to those who are able to push and merge a project.
Regards,
Straightlight
Programmer / Opencart Tester
A few other thing you could do.
Compare the files on your server to a clean version of the same version of OpenCart or a original backup. See if any files have been added that give access to your site.
Look through your web access logs for any suspicious activity around the time the hack was added.
Look through your servers FTP logs for any access that isn't you. You may need to ask your host for these.
I would clean out all your hacked files, reset all the site folder and file permissions to 755 and 644 respectively then install Crawlprotect and keep that up to date via its own control panel at least weekly but daily if you can.
Also, if you can manage it maybe upgrade your OC to 1.5.6.5.
Opencart 1.5.6.5/OC Bootstrap Pro/VQMOD lover, user and geek.
Affordable Service £££ - Opencart Installs, Fixing, Development and Upgrades
Plus Ecommerce, Marketing, Mailing List Management and More
FREE Guidance and Advice at https://www.ecommerce-help.co.uk
Users browsing this forum: Bing [Bot] and 75 guests