they didnt go into great detail, but after I got the email I thought - why didnt they tell me what script was it - LOL, but here is the email I got
PP has linkadmin and jmb AGP running it, I never heard linkadmin getting hacked on hardly any LL
It does look like some script on your site has a vulnerability. You'll see iframe tags added to your .htm files that are group writable by the www user (apache). Your ftp account does not look like it's been compromised. Your ** user has only logged in once this month. I've removed permissions for apache to write to your files and removing the iframes for you now.
|