ez 3.1.4 is hacked.

Author Message

Softriva .com

Friday 12 March 2010 2:57:42 am

Hello,

can some help me! --- what is this? Please see link bellow

http://www.softriva.com/khdmatna

Steven E. Bailey

Friday 12 March 2010 4:23:26 am

I hope you mean 4.1.4 - otherwise, I'd say I'd be very surprised if some software from 7 years ago didn't get hacked.

It looks like someone might have overwritten a line view or block view of whatever object that is on the front page - or perhaps the pagelayout.tpl - and added their own link - that's my first guess. Otherwise, it could have been injected into the database - which should be visible if you try to edit the object.

It's also - if it's 4.1.4 - unlikely that eZPublish was hacked, rather some other part of your setup was compromised. I saw some exploit about the windows version of apache last weekend if I recall correctly - here it is: http://www.senseofsecurity.com.au/advisories/SOS-10-002

Certified eZPublish developer
http://ez.no/certification/verify/396111

Available for ezpublish troubleshooting, hosting and custom extension development: http://www.leidentech.com

Powered by eZ Publish™ CMS Open Source Web Content Management. Copyright © 1999-2014 eZ Systems AS (except where otherwise noted). All rights reserved.

eZ debug

Timing: Jan 18 2025 18:39:25
Script start
Timing: Jan 18 2025 18:39:25
Module start 'layout'
Timing: Jan 18 2025 18:39:25
Module start 'content'
Timing: Jan 18 2025 18:39:26
Module end 'content'
Timing: Jan 18 2025 18:39:26
Script end

Main resources:

Total runtime1.0945 sec
Peak memory usage4,096.0000 KB
Database Queries54

Timing points:

CheckpointStart (sec)Duration (sec)Memory at start (KB)Memory used (KB)
Script start 0.00000.0058 588.9453152.6094
Module start 'layout' 0.00580.0038 741.554739.4141
Module start 'content' 0.00961.0835 780.9688523.6797
Module end 'content' 1.09310.0013 1,304.64848.1875
Script end 1.0944  1,312.8359 

Time accumulators:

 Accumulator Duration (sec) Duration (%) Count Average (sec)
Ini load
Load cache0.00370.3358160.0002
Check MTime0.00130.1203160.0001
Mysql Total
Database connection0.00100.090510.0010
Mysqli_queries1.048795.8218540.0194
Looping result0.00060.0518520.0000
Template Total1.057396.620.5287
Template load0.00230.208520.0011
Template processing1.055096.397820.5275
Template load and register function0.00020.016410.0002
states
state_id_array0.00130.119810.0013
state_identifier_array0.00140.128620.0007
Override
Cache load0.00190.1744110.0002
Sytem overhead
Fetch class attribute can translate value0.00080.073220.0004
Fetch class attribute name0.00180.165230.0006
XML
Image XML parsing0.00070.066720.0004
class_abstraction
Instantiating content class attribute0.00000.001030.0000
General
dbfile0.00090.0829170.0001
String conversion0.00000.001040.0000
Note: percentages do not add up to 100% because some accumulators overlap

Templates used to render the page:

UsageRequested templateTemplateTemplate loadedEditOverride
1node/view/full.tplfull/forum_topic.tplextension/sevenx/design/simple/override/templates/full/forum_topic.tplEdit templateOverride template
2content/datatype/view/ezxmltext.tpl<No override>extension/community_design/design/suncana/templates/content/datatype/view/ezxmltext.tplEdit templateOverride template
2content/datatype/view/ezxmltags/paragraph.tpl<No override>extension/ezwebin/design/ezwebin/templates/content/datatype/view/ezxmltags/paragraph.tplEdit templateOverride template
1content/datatype/view/ezimage.tpl<No override>extension/sevenx/design/simple/templates/content/datatype/view/ezimage.tplEdit templateOverride template
1print_pagelayout.tpl<No override>extension/community/design/community/templates/print_pagelayout.tplEdit templateOverride template
 Number of times templates used: 7
 Number of unique templates used: 5

Time used to render debug report: 0.0001 secs