Thread: Hackers?
View Single Post
Old 2007-02-25, 10:33 AM   #11
cd34
a.k.a. Sparky
 
cd34's Avatar
 
Join Date: Sep 2004
Location: West Palm Beach, FL, USA
Posts: 2,396
that exploit is typically installed through FTP rather than a server exploit. I would change your password, have your host find out what IP address modified the files (there will be a GET followed by a PUT), then find all of the files that the IP address modified. Typically, they will only modify domains in the root of each domain name, and usually only index.html and index.php
__________________
SnapReplay.com a different way to share photos - iPhone & Android
cd34 is offline   Reply With Quote