Skip to main content

Account Compromised Question

Comments

2 comments

  • filip212
    .htaccess of that ftp account SecFilterEngine Off SecFilterScanPOST Off and he have many symlinks like config.php: Link/shortcut file config.php Point link/shortcut to: /home2/user/public_html/config.php Scripts are from web [removed]
    0
  • cPanelMichael
    Hello, It's difficult to pinpoint the specific vulnerability or exploit used by an attacker to hack your server or websites. One could speculate on common methods (e.g. symlink attack), but it really requires a qualified system administrator to investigate the logs on your server and determine the source of the attack. There is a thread here where a similar question is asked: Log Files To Check After Account Hacked Thank you.
    0

Please sign in to leave a comment.