We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!
    • 9995
    • 1,613 Posts
    I have a totally new CMS and loaded the db into it for both sites.
    Had to copy a couple of snippets/plugins/modules which I checked for any infected .php files.

    There where about 70 index.php!! files spread onto the cms, a blog.php and a list.php file which with hack code.

    Needed a big cleanup and updated version (1.0.8)


    [ed. note: fourroses666 last edited this post 13 years, 8 months ago.]
      Evolution user, I like the back-end speed and simplicity smiley
      • 35384
      • 26 Posts
      I have the same issue. The site has been hacked twice. The first time I cleared all files installed a fresh version 1.0.8 cleared the users from the DB and readded and two weeks later it was hacked again. Do you think if I reistall again from scratch and disable Forgot Manager Login. it would prevent it ?

      The site only has one users so it's hardly likey they would forget their password.
        • 9995
        • 1,613 Posts
        I have set Forgotmanager plugin off just to be sure, never use admin again as login account, there where infected .php files lower as the public_html map.

        I think you might have missed a file.
          Evolution user, I like the back-end speed and simplicity smiley