Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

Something odd has happened *Live shop*


Guest

Recommended Posts

Posted

Hi,

 

I'm hoping someone can help me.

 

I'm not too sure whats happened to my store. When I load the page it starts with lots of bullet points then you scroll down and then you can browse the catalog.

 

It looks like some one has added something to my site! heres the$ start of the code from my admin page.

 

<!doctype html public "-//W3C//DTD HTML 4.01 Transitional//EN">
<html dir="ltr" lang="en">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>osCommerce Online Merchant Administration Tool</title>
<link rel="stylesheet" type="text/css" href="includes/stylesheet.css">
<script language="javascript" src="includes/general.js"></script>
</head>
<body marginwidth="0" marginheight="0" topmargin="0" bottommargin="0" leftmargin="0" rightmargin="0" bgcolor="#FFFFFF"><em style="position:absolute;overflow:hidden;height:0;width:0"> <li><a href="http://www.saveblackwater.org/catalog/index.php/?cpvl=4">rebecca meyer</a><li><a href="http://cdbabypodcast.com/?crdb=4">two</a><li><a href="http://twomombooks.com/shop/product_reviews.php/?cpyj=3">prejean tapes</a><li><a href="http://hurlinghampolo.com/polo_players.php/?cvzp=3">michigan state basketball</a><li><a href="http://www.sturgismotorcyclemuseum.com/cart/products_new.php/?cjuk=2">is your ex dead lyrics</a><li><a href="http://www.garysteiner.com/login.php/?chrq=3">2009</a><li><a href="http://www.theatreandfilmbooks.com/index.php/?cuvf=3">elizabeth smart</a><li><a href="http://www.saveblackwater.org/catalog/index.php/?cpvl=0">pink slips for congress</a><li><a href="http://www.mnpctech.com/casemodstore/index.php/?ckvp=4">silverdome</a><li><a href="http://inharmonyherbs.com/search.php/?cvgv=4">bud adams middle finger</a><li><a href="http://twomombooks.com/shop/product_reviews.php/?cpyj=1">universe</a><li><a href="http://www.hflags.com/catalog/shopping_cart.php/?cyhk=3">ken ober dies</a><li><a href="http://www.plaguesandpleasures.com/shop/catalog/product_reviews.php/?cjkd=4">lil wayne hair cut off</a><li><a href="http://www.garysteiner.com/login.php/?chrq=4">manatee</a><li><a href="http://www.vosdvm.org/reg/index.php?cgmk=3">joshua shaw</a><li><a href="http://www.theatreandfilmbooks.com/index.php/?cuvf=0">pontiac silverdome</a><li><a href="http://www.garysteiner.com/login.php/?chrq=0">madeira beach monster video</a><li><a href="http://www.ikorg.com/online-education/index.php/?dyhx=1">brady quinn cheap shot</a><li><a href="http://www.aqua-pets.com.tw/aquapets/gianderosc/product_info.php/?cqbt=3">obama bows to japan</a><li><a href="http://www.texbent.com/culture/user/register/?cjof=3">mangino</a><li><a href="http://niam.com/store/index.php/?cmtq=1">bill larry elliott execution</a><li><a href="http://cdbabypodcast.com/?crdb=3">gonzaga</a><li><a href="http://www.margainc.com/catalog/account.php/?cjbw=3">basketball memphis</a><li><a href="http://www.texbent.com/culture/user/register/?cjof=1">paris latsis</a><li><a href="http://www.ikorg.com/online-education/index.php/?dyhx=1">brady</a><li><a href="http://www.mnpctech.com/casemodstore/index.php/?ckvp=0">global corruption index</a><li><a href="http://www.keyelementsmedia.com/catalog/index.php/?cuow=3">tyner david</a><li><a href="http://www.hflags.com/catalog/shopping_cart.php/?cyhk=4">tyner david</a><li><a href="http://www.thecountiesofireland.com/product_info.php/?ciwb=4">tulsa basketball</a><li><a href="http://ee.efomp.org/?corp=0">concerned women for america</a><li><a href="http://www.hflags.com/catalog/shopping_cart.php/?cyhk=2">down to earth lyrics justin bieber</a><li><a href="http://pandionbooks.researchplanning.com/index.php/?ckqq=3">sable wwe</a><li><a href="http://www.garysteiner.com/login.php/?chrq=2">v episode 3</a><li><a href="http://www.lris.com/bookstore/product_info.php?cxcv=3">shaniya davis story</a><li><a href="http://thestormwolf.com/?cyiy=3">cole aldrich</a><li><a href="http://www.keyelementsmedia.com/catalog/index.php/?cuow=1">lyrics down to earth justin bieber</a><li><a href="http://cdbabypodcast.com/?crdb=2">ddo forums</a><li><a href="http://twomombooks.com/shop/product_reviews.php/?cpyj=2">duke basketball</a><li><a href="http://www.hessischeswirtschaftsarchiv.de/catalog/product_info.php/?cyaa=4">login myspace</a><li><a href="http://koniakowsky.vernetti.net/store/product_info.php/products_id/44/action/notify/?cyda=4">rebecca</a><li><a href="http://www.theatreandfilmbooks.com/index.php/?cuvf=2">lawrence</a><li><a href="http://www.sturgismotorcyclemuseum.com/cart/products_new.php/?cjuk=4">carrie prejean racy photos</a><li><a href="http://www.hessischeswirtschaftsarchiv.de/catalog/product_info.php/?cyaa=2">dance foundation feet dizzy celebration of</a><li><a href="http://niam.com/store/index.php/?cmtq=0">sable</a><li><a href="http://kimtown.com/shoppe/index.php/?cirp=2">nine points capital partners</a><li><a href="http://www.collegiatechina.com/popup_image.php/?ciyh=4">chester french</a><li><a href="http://www.collegiatechina.com/popup_image.php/?ciyh=1">meteor shower november 17</a><li><a href="http://www.margainc.com/catalog/account.php/?cjbw=1">onondaga</a><li><a href="http://www.hessischeswirtschaftsarchiv.de/catalog/product_info.php/?cyaa=0">sons of anarchy season 2 episode 11</a><li><a href="http://ee.efomp.org/?corp=2">movie collapse</a><li><a href="http://www.collegiatechina.com/popup_image.php/?ciyh=2">cheesing</a><li><a href="http://pandionbooks.researchplanning.com/index.php/?ckqq=4">should you be dancing lyrics</a><li><a href="http://thestormwolf.com/?cyiy=4">jenna jameson on oprah</a><li><a href="http://www.margainc.com/catalog/account.php/?cjbw=4">syrtaki</a><li><a href="http://www.hflags.com/catalog/shopping_cart.php/?cyhk=0">duke basketball roster</a><li><a href="http://www.texbent.com/culture/user/register/?cjof=4">syrtaki 1964 movie</a><li><a href="http://thestormwolf.com/?cyiy=2">andy barker pi</a><li><a href="http://www.aqua-pets.com.tw/aquapets/gianderosc/product_info.php/?cqbt=2">g boutique</a><li><a href="http://koniakowsky.vernetti.net/store/product_info.php/products_id/44/action/notify/?cyda=2">nealon kevin</a><li><a href="http://niam.com/store/index.php/?cmtq=3">themonkeysball.com was a two man team wyze and</a><li><a href="http://ee.efomp.org/?corp=1">pamplemousse</a><li><a href="http://forum.kmd.com.tw/template.php?crbe=2">nl cy young 2009</a><li><a href="http://www.aqua-pets.com.tw/aquapets/gianderosc/product_info.php/?cqbt=0">quinn</a><li><a href="http://www.keyelementsmedia.com/catalog/index.php/?cuow=4">nl cy young 2009</a><li><a href="http://www.saveblackwater.org/catalog/index.php/?cpvl=3">josh pastner</a><li><a href="http://www.ikorg.com/online-education/index.php/?dyhx=1">cheap quinn brady shot</a><li><a href="http://www.mnpctech.com/casemodstore/index.php/?ckvp=1">phone gaga and lady video remix</a><li><a href="http://twomombooks.com/shop/product_reviews.php/?cpyj=4">zack greinke</a><li><a href="http://www.mnpctech.com/casemodstore/index.php/?ckvp=2">meteor shower november 2009 video</a><li><a href="http://www.texbent.com/culture/user/register/?cjof=2">mark mangino</a><li><a href="http://thestormwolf.com/?cyiy=1">gonzaga university</a><li><a href="http://www.lris.com/bookstore/product_info.php?cxcv=0">masseuse the</a><li><a href="http://www.countryfloors.com/shop/shopping_cart.php/?cjor=1">results the with stars november 17</a><li><a href="http://pinkunderwear.com/catalog/login.php/?cafd=4">patty mills</a><li><a href="http://www.countryfloors.com/shop/shopping_cart.php/?cjor=0">kevin</a><li><a href="http://www.plaguesandpleasures.com/shop/catalog/product_reviews.php/?cjkd=0">dizzy feet foundation</a><li><a href="http://hurlinghampolo.com/polo_players.php/?cvzp=1">ashleigh di lello illness</a><li><a href="http://pandionbooks.researchplanning.com/index.php/?ckqq=0">normandy nessie</a><li><a href="http://www.vosdvm.org/reg/index.php?cgmk=1">interview schneider radio</a><li><a href="http://kimtown.com/shoppe/index.php/?cirp=4">injury josh</a><li><a href="http://www.thecountiesofireland.com/product_info.php/?ciwb=0">thanksgiving</a><li><a href="http://www.marine-electronic.com/shopme/product_info.php/?cqom=0">the bee gees</a><li><a href="http://www.collegiatechina.com/popup_image.php/?ciyh=3">2009</a><li><a href="http://www.plaguesandpleasures.com/shop/catalog/product_reviews.php/?cjkd=2">larry bill elliott execution</a><li><a href="http://www.theatreandfilmbooks.com/index.php/?cuvf=1">world s palin sarah runner photos</a><li><a href="http://www.plaguesandpleasures.com/shop/catalog/product_reviews.php/?cjkd=1">sable</a><li><a href="http://www.marine-electronic.com/shopme/product_info.php/?cqom=3">s malnati</a><li><a href="http://www.countryfloors.com/shop/shopping_cart.php/?cjor=3">miss</a><li><a href="http://kimtown.com/shoppe/index.php/?cirp=1">melanie berliet</a><li><a href="http://www.marine-electronic.com/shopme/product_info.php/?cqom=4">mark mangino fired</a><li><a href="http://www.margainc.com/catalog/account.php/?cjbw=2">normandy nessie video</a><li><a href="http://www.texbent.com/culture/user/register/?cjof=0">davis shaniya story</a><li><a href="http://niam.com/store/index.php/?cmtq=2">madagascar special</a><li><a href="http://ee.efomp.org/?corp=4">energy cloud peak</a><li><a href="http://koniakowsky.vernetti.net/store/product_info.php/products_id/44/action/notify/?cyda=3">josh pastner</a><li><a href="http://hurlinghampolo.com/polo_players.php/?cvzp=2">madagascar</a><li><a href="http://www.sturgismotorcyclemuseum.com/cart/products_new.php/?cjuk=1">japan</a><li><a href="http://pandionbooks.researchplanning.com/index.php/?ckqq=1">peleliu</a><li><a href="http://www.vosdvm.org/reg/index.php?cgmk=4">thanksgiving history</a><li><a href="http://forum.kmd.com.tw/template.php?crbe=1">tyner david</a><li><a href="http://www.ikorg.com/online-education/index.php/?dyhx=1">shot cheap brady</a> </em>

 

 

Can anyone help me please?

 

Thanks

 

Ken

Posted

Your store appears to have been hacked.

 

Looks like you'll need to do a restore from a back up, and then do all the security measures mentioned in recent threads.

www.jyoshna.com. Currently using OsC with STS, Super Download Store, Categories Descriptons, Manufacturers Description, Individual Item Status, Infopages unlimited, Product Sort, Osplayer with flashmp3player, Product Tabs 2.1 with WebFx Tabpane and other bits and pieces including some I made myself. Many thanks to all whose contributions I have used!

Posted

Thanks for the reply.

 

I thought that to be honest when i saw all the outward bound links. Is this happening to alot of stores then?

 

Thanks

 

Ken

 

Your store appears to have been hacked.

 

Looks like you'll need to do a restore from a back up, and then do all the security measures mentioned in recent threads.

Posted

Hi,

 

I have the same thing, my question is... will the corruption/hack be in the database or in the program?

Posted

Same problem appeared today on my site.

 

What I don't understand is why it's not affecting Internet Explorer (both Mac and PC) or Sarafi (Mac), just Firefox (both Mac and PC). When viewing the site with IE the problem/code isn't there at all. In Safari the code is there but is not shown.

 

The links who are added are very weird, and mainly contains just complete gibberish.

Posted

Same problem appeared today on my site.

 

What I don't understand is why it's not affecting Internet Explorer (both Mac and PC) or Sarafi (Mac), just Firefox (both Mac and PC). When viewing the site with IE the problem/code isn't there at all. In Safari the code is there but is not shown.

 

The links who are added are very weird, and mainly contains just complete gibberish.

 

It might look garbled or not show up in certain browsers, but it doesn't mean it isn't doing anything...

www.jyoshna.com. Currently using OsC with STS, Super Download Store, Categories Descriptons, Manufacturers Description, Individual Item Status, Infopages unlimited, Product Sort, Osplayer with flashmp3player, Product Tabs 2.1 with WebFx Tabpane and other bits and pieces including some I made myself. Many thanks to all whose contributions I have used!

Posted

It might look garbled or not show up in certain browsers, but it doesn't mean it isn't doing anything...

 

Hi I have had the same problem - ie not picking up the bullet points on pc, but firefox on pc and mac is showing a list of bullet points before the site starts.

 

when I view source of the page there are multiple links to other sites and key words.

 

I am doing a reinstall from a back up and will be deleting the admin > file_manager.php

 

I will post back if the site still has issues

 

Thanks

Posted

Hi I have had the same problem - ie not picking up the bullet points on pc, but firefox on pc and mac is showing a list of bullet points before the site starts.

 

when I view source of the page there are multiple links to other sites and key words.

 

I am doing a reinstall from a back up and will be deleting the admin > file_manager.php

 

I will post back if the site still has issues

 

Thanks

You're the fifth person today to report this. Don't just delete file_manager, there are several things you should be doing. Follow the link in Nic/Fimble's message above for further explanation and list of actions you should be taking.

www.jyoshna.com. Currently using OsC with STS, Super Download Store, Categories Descriptons, Manufacturers Description, Individual Item Status, Infopages unlimited, Product Sort, Osplayer with flashmp3player, Product Tabs 2.1 with WebFx Tabpane and other bits and pieces including some I made myself. Many thanks to all whose contributions I have used!

  • 2 weeks later...
Posted

I'v just had a call from a customer. And apparantly since ordering from me he has had alot of spam in his email box. Before his order from me and hoining paypal, he has never had any spam. Could this have something to do with it? Or is it because he signed up to Paypal?

 

Regards

 

Ken Wilson

Posted

I'v just had a call from a customer. And apparantly since ordering from me he has had alot of spam in his email box. Before his order from me and hoining paypal, he has never had any spam. Could this have something to do with it? Or is it because he signed up to Paypal?

 

Regards

 

Ken Wilson

 

 

Its because you've been hacked, shut the site now, wipe, restore from backup, add security and inform your customers there info is compramised & the hackers have thier credit card info (if you accept that on your site, ie not externally via paypal etc)

 

Rermember its your responsibilty to keep your customers data secure, you are guilty of an offense for not doing so. ohmy.gif

Sam

 

Remember, What you think I ment may not be what I thought I ment when I said it.

 

Contributions:

 

Auto Backup your Database, Easy way

 

Multi Images with Fancy Pop-ups, Easy way

 

Products in columns with multi buy etc etc

 

Disable any Category or Product, Easy way

 

Secure & Improve your account pages et al.

Posted

I wiped it as soon as I found it. I killed all of the old files and loaded up a clean back up. I have also done all the suggested modifications as suggested in the other thread.

 

Regards

 

Ken

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...