WordPress.org

Ready to get started?Download WordPress

Forums

Hacklog Remote Attachment
Código Malicioso (1 post)

  1. Rodrigo Luis
    Member
    Posted 2 years ago #

    ############## Versão em Português ##############
    Baixei o plugin "hacklog remote attachment" para utilizar em um blog wordpress, para que funciona-se em um determinado domínio e fazendo upload dos arquivos para outro domínio via conexão FTP, entretanto no arquivo da classe PHP, localizado em "includes/hacklogra.class.php" entre as linhas 523 e 529 há um código que cria arquivos HTML (index.html) com a frase "Silence is golden.".

    Como neste caso, eu não possuo no outro servidor de armazenamento das imagens a mesma estrutura de pastas do WordPress, criei apenas uma pasta na raiz do FTP para que o plugin colocasse as imagens dentro desta pasta, e toda vez que novas imagens eram enviadas utilizando o plugin, o site hospedado no servidor onde as imagens eram armazenadas ficava fora do ar, "hackeado" com esse index.html na pasta raiz.

    Como solução comentei as linhas, evitando a criação destes arquivos index.html.

    ############## English Version ##############
    I downloaded plugin "hacklog remote attachment" to use in an wordpress blog, that works in certain domain and uploading files to another domain via FTP connection, however the PHP class file located in "includes/hacklogra.class.php "between lines 523 and 529 have a code that creates HTML files (index.html) with the phrase "Silence is golden." in folders.

    In this case, I do not have on other storage images server same folder structure in WordPress server, I just created a folder in FTP root folder for these plugin put images inside these folder, and whenever new images were sent using plugin, my hosted site on server where the images were stored was out of air, was "hacked" with these index.html in root folder.

    As to work, I commented these lines, avoiding creation of these files index.html in folders.

    http://wordpress.org/extend/plugins/hacklog-remote-attachment/

Topic Closed

This topic has been closed to new replies.

About this Plugin

About this Topic

  • RSS feed for this topic
  • Started 2 years ago by Paulino Michelazzo
  • This topic is not resolved
  • WordPress version: 3.3.1