How get Joomla running after PHP.Backdoor.Trojan infection?

Discussion regarding Joomla! 2.5 security issues.

Moderators: Bernard T, mandville, fcoulter, PhilD, General Support Moderators

Forum rules
Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting, this means YOU.
Forum Post Assistant / FPA - If you are serious about wanting help, you will use this tool to help you post.
Locked
tskogstrom
Joomla! Fledgling
Joomla! Fledgling
Posts: 1
Joined: Sun Dec 28, 2014 2:51 pm

How get Joomla running after PHP.Backdoor.Trojan infection?

Post by tskogstrom » Sun Dec 28, 2014 3:11 pm

Hi
My web service provider found the infection and renamed my "public_html" folder to "public_html_hacked", and created a new quite empty one without Joomla.

My Joomla v2.5.17 is installed by the service provider's Installatron application. If I install it again to the new created public folder, I cannot use any of may backup copies in the old one - I guess ? Not through the installatron application anyhow.

I easily can rename the old folder to the valid public name again, but I guess the virus still could be there.

Can I use ftp to save the articles in a format I could use somehow in a new set up of Joomla? If that is the best, I like to upgrade to version 3 instead of v2.5.17 in that case.

Any suggestions?


How would YOU handle this situation?

Happy for any suggestions
Merry Christmas

jcms
I've been banned!
Posts: 2233
Joined: Wed Nov 19, 2014 9:23 am

Re: How get Joomla running after PHP.Backdoor.Trojan infecti

Post by jcms » Sun Dec 28, 2014 3:39 pm

- backup your old site, update to joomla 3.x
- check malware and remove them.

User avatar
Per Yngve Berg
Joomla! Master
Joomla! Master
Posts: 25779
Joined: Mon Oct 27, 2008 9:27 pm
Location: Akershus, Norway

Re: How get Joomla running after PHP.Backdoor.Trojan infecti

Post by Per Yngve Berg » Sun Dec 28, 2014 6:43 pm

Mod. Note: Relocated the Topic to the Security J2.5 Forum.
See the stickies in this forum for how to recover from a hack.


Locked

Return to “Security in Joomla! 2.5”