HTML Logo by World Wide Web Consortium (www.w3.org). Click to learn more about our commitment to accessibility and standards.

Moving forward with Composr

ocPortal has been relaunched as Composr CMS, which is now in beta. ocPortal 9 will be superseded by Composr 10.

Head over to compo.sr for our new site, and to our migration roadmap. Existing ocPortal member accounts have been mirrored.


Malware Warning

Login / Search

 [ Join | More ]
 Add topic 
Posted
Rating:
#79337 (In Topic #16159)
Avatar

Fan in training

From hosting company

Today i received an email from my hosting company where ocportal resides with the following warning:

We have recently discovered suspect files in your cpanel account.

These files have been classified as Malware or potential Malware, and we strongly urge you to remove or disinfect them.

/home/xxxxxxxx/public_html/sources/files.php

I fired back an email after comparing the above file with the one downloaded within ocportal. Both were exactly the same. They then replied.

As you can imagine, we have thousands of these reports to handle. It is your job to ensure that this file has not been tampered with - by comparing it with the authors original supplied code. Some scripts legitimately carry the code we found in this script, but it's impossible for us to know if it is genuinely suspect or not. We are acting purely in an advisory capacity in this instance.

As our email says - you should check each file to ensure it is genuine. If so, then don't worry! You might get notified about this every week unless you can provide us with an MD5 hash of the original, unaltered file, we can add it to our ignore list.

So my question is can i be supplied with an MD5 hash for the original unaltered file in question? I don't fancy getting these emails on weekly basis.

Many thanks for any advise.

Nick
Back to the top
 
Posted
Rating:
#79338
Avatar

Fan in training

Quick update. They requested the file in question and will now add it to there ignore list.

So hopefully this issue is now resolved.

 :thumbs:
Back to the top
 
Posted
Rating:
#79339
Avatar

Community saint

MD5 for /sources/files.php is:

469d60a4a1718b0b4f8d03da04bd76c9

Tell us who your host is so that we can avoid them …

 :o

Take my advice. I'm not using it!

View my working ocPortal site (version 9.x.x) at Anglo-Indian Portal
Back to the top
 
Posted
Rating:
#79340
Avatar

Fan in training

lol, thxs Fletch.

Will forward that on. :thumbs:
Back to the top
 
Posted
Rating:
#79343
Avatar

Community saint

Fletch said

Tell us who your host is so that we can avoid them …

 :o

ROFL!!
Back to the top
 
1 guests and 0 members have just viewed this: None
Control functions:

Quick reply   Contract

Your name:
Your message: