Black Webmasters Forum

 


Reply
  #1  
Old 10-07-2010, 08:00 PM
Administrator
 
Join Date: Aug 2010
Posts: 85
Thanks: 7
Thanked 21 Times in 20 Posts
Default Hacked? Check Your Banner Code & Users

A high number of sites got hit by the latest OpenX security hole. Although OpenX released a patch, it did not clean out what the hackers added.
After your updated installation make sure you dont have any "PREPEND" or "APPEND" code added to your banner code. This can be found under the 'Advanced' tab within Banner Properties.

If you are sure you have never used a Prepend or Append code in your banners you can clear out all of the bad code with these 2 SQL queries:

* Use phpMyAdmin only if you know what you are doing. *

UPDATE ox_banners SET append = null, prepend = null
WHERE append LIKE '%ifra%' OR prepend LIKE '%ifra%';

UPDATE ox_zones SET append = null, prepend = null
WHERE append LIKE '%ifra%' OR prepend LIKE '%ifra%';

Next make sure you dont have an added user: temp2

Default Manager > Inventory > User Access

If you see the user TEMP2, delete it. If you dont the hackers can get right back into your installation to add more bad code.

Good luck.
__________________
Follow Me On Twitter
Reply With Quote
Reply

Tags
hack, hacking, openx, temp2

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


 
Our Sponsor Links

Help Us Grow


Follow Black Webmasters on Twitter
Black Webmasters on Twitter



Link to us:
Black Webmasters Forum
Please link to: http://www.blackwebmasters.com



Premium Wordpress Themes
Premium Wordpress Themes



Content Relevant URLs by vBSEO 3.6.0