Before i can upgrade to 2.5 - Joomla! Forum - community, help and support
our club site http://www.excalibursac.co.uk appears have been infected malware octme.wikaba.com, prompted me think should upgrade 2.5 need remove malware first.... please please please ...
problem description :: forum post assistant (v1.2.3) : 14th january 2013 wrote:site appears have been infected malware otcme.wikaba.com
last php error(s) reported :: forum post assistant (v1.2.3) : 14th january 2013 wrote:[27-dec-2012 18:41:37] php warning: missing argument 2 defaultmodlatestview::defaultmodlatestview(), called in /home/excalibu/public_html/components/com_jevents/controllers/modlatest.php on line 124 , defined in /home/excalibu/public_html/modules/mod_jevents_latest/tmpl/default/latest.php on line 54
actions taken resolve forum post assistant (v1.2.3) 14th january 2013 wrote:i\'ve tried removing code .js file, have 2 problems ... finding them all... , code seems reappear!
forum post assistant (v1.2.3) : 14th january 2013 wrote:basic environment :: wrote:joomla! instance :: joomla! 1.5.26-stable (senu takaa ama busani) 27-march-2012
joomla! configured :: yes | read-only (444) | owner: excalibu (uid: 1/gid: 1) | group: excalibu (gid: 1) | valid for: 1.5
configuration options :: offline: 1 | sef: 0 | sef suffix: 0 | sef rewrite: 0 | .htaccess/web.config: yes | gzip: 0 | cache: 0 | ftp layer: 0 | ssl: 0 | error reporting: -1 | site debug: 0 | language debug: 0 | database credentials present: yes
host configuration :: os: linux | os version: 2.6.18-028stab092.1 | technology: x86_64 | web server: apache | encoding: gzip,deflate,sdch | doc root: /home/excalibu/public_html | system tmp writable: yes
php configuration :: version: 5.2.9 | php api: cgi | session path writable: yes | display errors: 1 | error reporting: 6135 | log errors to: error_log | last known error: 14th january 2013 11:43:01. | register globals: | magic quotes: 1 | safe mode: | open base: | uploads: 1 | max. upload size: 2m | max. post size: 8m | max. input time: 60 | max. execution time: 30 | memory limit: 32m
mysql configuration :: version: 5.0.96-community (client:5.0.96) | host: --protected-- (--protected--) | collation: utf8_general_ci (character set: utf8) | database size: 11.12 mib | #of tables: 103detailed environment :: wrote:php extensions :: zip (1.8.11) | libxml () | xsl (0.1) | xmlwriter (0.1) | xmlrpc (0.51) | dom (20031129) | xmlreader (0.1) | xml () | wddx () | tokenizer (0.1) | tidy (2.0) | session () | pcre () | simplexml (0.1) | spl (0.2) | sockets () | soap () | sqlite (2.0-dev) | standard (5.2.9) | reflection (0.1) | pspell () | posix () | mysqli (0.1) | mysql (1.0) | mcrypt () | mbstring () | json (1.2.1) | imap () | iconv () | hash (1.0) | gettext () | gd () | ftp () | filter (0.11.0) | exif (1.4 $id: exif.c,v 1.173.2.5.2.27 2008/12/31 11:17:37 sebastian exp $) | dbase () | date (5.2.9) | curl () | ctype () | calendar () | bz2 () | bcmath () | zlib (1.1) | openssl () | cgi () | timezonedb () | ioncube loader () | zend optimizer () | zend engine (2.2.0) |
potential missing extensions :: suhosin |
switch user environment (experimental) :: php cgi: yes | server su: yes | php su: yes | custom su (litespeed/cloud/grid): yes
potential ownership issues: nofolder permissions :: wrote:core folders :: images/ (755) | components/ (755) | modules/ (755) | plugins/ (755) | language/ (755) | templates/ (755) | cache/ (755) | logs/ (755) | tmp/ (755) | administrator/components/ (755) | administrator/modules/ (755) | administrator/language/ (755) | administrator/templates/ (755) |
elevated permissions (first 10) :: forum/cache/ (770) | forum/files/ (770) | forum/store/ (770) | images/stories/sym/root/installd/perl588installer/cpan-distnameinfo-0.07/ (775) | images/stories/sym/root/installd/perl588installer/cpan-distnameinfo-0.07/inc/ (775) | images/stories/sym/root/installd/perl588installer/cpan-distnameinfo-0.07/inc/module/ (775) | images/stories/sym/root/installd/perl588installer/cpan-distnameinfo-0.07/inc/module/install/ (775) | images/stories/sym/root/installd/perl588installer/cpan-distnameinfo-0.07/lib/ (775) | images/stories/sym/root/installd/perl588installer/cpan-distnameinfo-0.07/lib/cpan/ (775) | images/stories/sym/root/installd/perl588installer/cpan-distnameinfo-0.07/t/ (775) |extensions discovered :: wrote:components :: site :: wrapper (1.5.0) | user (1.5.0) | default (1.4.0) | mailto (1.5.0) |
components :: admin :: mcs (1.0.3) | installation manager (1.5.0) | polls (1.5.0) | frontpage (1.5.0) | joomlaxplorer (1.6.3) | joomlawatch (1.2.9) | jupdateman (1.5.1) | media manager (1.5.0) | jfusion (1.6.0-000) | gallery2 (1.6.0-000) | joomla_int (1.6.0-000) | joomla_ext (1.6.0-000) | elgg (1.6.0-000) | moodle (1.6.0-000) | mybb (1.6.0-000) | mediawiki (1.6.0-000) | prestashop (1.6.0-000) | smf (1.6.0-000) | phpbb3 (1.6.0-000) | wordpress (1.6.0-000) | efront (1.6.0-000) | oscommerce (1.6.0-000) | vbulletin (1.6.0-000) | dokuwiki (1.6.0-000) | smf2 (1.6.0-000) | magento (1.6.0-000) | jfusion user activity module (1.6.0-000) | authentication - jfusion (1.6.0-000) | search - jfusion (1.6.0-000) | user - jfusion (1.6.0-000) | jfusion whos online module (1.6.0-000) | content - jfusion discussion b (1.6.0-000) | jfusion activity module (1.6.0-000) | system - jfusion (1.6.0-000) | system - jfusion magento libra (1.6.0-000) | jfusion login module (1.6.0-000) | contentsubmit (1.5) | language manager (1.5.0) | configuration manager (1.5.0) | rd_rss (1.0.0) | rd_rss (1.0.0) | rd_rss (1.0.0) | trash (1.0.0) | newsfeeds (1.5.0) | search (1.5.0) | extplorer (2.1.0rc5) | contact items (1.0.0) | control panel (1.5.0) | alfcontact (1.9.2) | user manager (1.5.0) | eweather (1.3.22) | j!position (1.0.2) | apoll (1.2) | weblinks (1.5.0) | content page (1.5.0) | autopopulate (1.4.2) | docman (1.4.0.stable) | docman standard buttons (1.4.0.stable) | latest logged downlods - admin (1.4.0) | unapproved documents - admin m (1.4.0) | latest added documents - admin (1.4.0) | downloaded documents - ad (1.4.0) | latest news http://www.joomlatoo (1.4.0) | messaging (1.5.0) | jevents (1.5 rc) | menus manager (1.5.0) | module manager (1.5.0) | mass mail (1.5.0) | plugin manager (1.5.0) | cache manager (1.5.0) | joomlapack (2.1.1) | banners (1.5.0) | jce (1.5.2) | template manager (1.5.0) |
modules :: site :: eweather (1.2.10) | gavick news highlighter gk1 (1.5.1) | latest news (1.5.0) | gallery random block (0.1) | sections (1.5.0) | g2imagescroller (1.0.0) | banner (1.5.0) | find on facebook (1.0.5) | read content (1.5.0) | archived content (1.5.0) | custom html (1.5.0) | wrapper (1.0.0) | feed display (1.5.0) | statistics (1.5.0) | docman ultimate download modul (1.5) | syndicate (1.5.0) | search (1.0.0) | footer (1.5.0) | apoll (1.2.0) | jfusion activity module (1.6.0-000) | newsflash (1.5.0) | latest jevents (1.5 rc) | related items (1.0.0) | eweather forecast (1.3.4) | poll (1.5.0) | joomlawatch visitors (1.2.9) | random image plus (1.6.0c) | jfusion login module (1.6.0-000) | random image (1.5.0) | menu (1.5.0) | login (1.5.0) | jfusion whos online module (1.6.0-000) | jfusion user activity module (1.6.0-000) | joomlawatch agent (1.2.9) | facebook share (1.0.1) | who\'s online (1.0.0) | jevents calendar (1.5 rc) | joomlawatch users (1.2.9) | breadcrumbs (1.5.0) |
modules :: admin :: most downloaded documents - ad (1.4.0) | latest news http://www.joomlatoo (1.4.0) | quick icons (1.0.0) | admin submenu (1.0.0) | title (1.0.0) | custom html (1.5.0) | feed display (1.5.0) | items stats (1.0.0) | footer (1.0.0) | latest news (1.0.0) | online users (1.0.0) | user status (1.5.0) | latest added documents - admin (1.4.0) | latest logged downlods - admin (1.4.0) | logged in users (1.0.0) | toolbar (1.0.0) | unread items (1.0.0) | login form (1.0.0) | unapproved documents - admin m (1.4.0) | admin menu (1.0.0) | popular items (1.0.0) |
plugins :: site :: system - mootools upgrade (1.5) | system - jfusion (1.6.0-000) | system - keycaptcha (5.0.2) | system - debug (1.5) | system - legacy (1.5) | ulti polaroid (1.1.1) | system - backlinks (1.5) | system - remember me (1.5) | system - cache (1.5) | system - sef (1.5) | system - log (1.5) | authentication - jfusion (1.6.0-000) | authentication - joomla (1.5) | authentication - openid (1.5) | authentication - ldap (1.5) | authentication - gmail (1.5) | authentication - example (1.5) | content - page navigation (1.5) | content - jfusion discussion b (1.6.0-000) | bretteleben.de simple picture (1.5.3) | content - code highlighter (ge (1.5) | content - email cloaking (1.5) | content - load modules (1.5) | allvideos (by joomlaworks) (2.5.4) | content - vote (1.5) | content - example (1.0) | content - pagebreak (1.5) | notify docman (1.4.0) | docman standard buttons (1.4.0.stable) | xml-rpc - blogger api (1.0) | xml-rpc - joomla api (1.0) | search - jfusion (1.6.0-000) | search - contacts (1.5) | search - weblinks (1.5) | search - content (1.5) | search - sections (1.5) | search - categories (1.5) | search - newsfeeds (1.5) | user - jfusion (1.6.0-000) | user - joomla! (1.5) | user - example (1.0) | editor - joomlafck (2.6.4.1) | editor - xstandard lite jo (1.0) | joomla! links advanced lin (1.2.0) | advanced link (1.5.1) | spellchecker (2.0.0) | file browser (1.5.0 stable) | image manager (1.5.2) | advanced code editor (1.5.0) | paste (1.5.0) | object support (1.5.1) | paste (1.5.1) | editor - tinymce 3 (3.2.6) | image manager (0.1) | editor - jce 1.5.2 (1.5.2) | button - image (1.0.0) | button - readmore (1.5) | button - pagebreak (1.5) |templates discovered :: wrote:templates :: site :: siteground-j15-55 (1.0.0) | siteground-j15-17 (1.0.0) | siteground-j15-11 (1.0.0) | rhuk_milkyway (1.0.2) | siteground41 (1.0) | ja_purity (1.2.0) | beez (1.0.0) |
templates :: admin :: khepri (1.0) |
i think getting rid of site files best solution.
install brandnew joomla software , run database script in new database , make sure lock or patch wholes.
install brandnew joomla software , run database script in new database , make sure lock or patch wholes.
Comments
Post a Comment