Post by moco123 » Wed Dec 16, 2020 6:39 am

Hello everyone,
My website is hijacked. when I access my website/admin URL, I will be redirected to this strange website: 17teshreen.com.
What shall I do? Which kind of files is attacked? How to find the files more directly? Where can I report such malicious sites?

Thank everyone in advance!
Last edited by moco123 on Thu Jan 14, 2021 9:28 am, edited 1 time in total.

New member

Posts

Joined
Sun Oct 18, 2020 12:03 pm

Post by ADD Creative » Wed Dec 16, 2020 7:32 am

Make sure you change all passwords including all FTP accounts. Remove any accounts (OpenCart and FTP) that aren't needed any more. Weak and stolen passwords are probably the most common way to get into a site.

Check the files on your server against a fresh download of your OpenCart version to see if any other files have been changed or added.

Check your database content for any injected JavaScript.

Look through your server web logs and FTP logs (you may need to ask your host for these) at around the time the attack takes place for anything suspicious.

www.add-creative.co.uk


Expert Member

Posts

Joined
Sat Jan 14, 2012 1:02 am
Location - United Kingdom

Post by moco123 » Wed Dec 16, 2020 9:42 am

Thank you so much. You're always the first to respond.
I would like to know whether there are laws, organizations or governments that handle such reports?
Someone has robbed you and you can't fight back?

New member

Posts

Joined
Sun Oct 18, 2020 12:03 pm

Post by ADD Creative » Wed Dec 16, 2020 10:01 am

There are laws and government organisations. I expect they will be different for each country. For example in the UK it would be. https://www.actionfraud.police.uk/

www.add-creative.co.uk


Expert Member

Posts

Joined
Sat Jan 14, 2012 1:02 am
Location - United Kingdom

Post by moco123 » Wed Dec 16, 2020 1:05 pm

Thanks for you reply.
Does anyone know of similar sites in the USA?

New member

Posts

Joined
Sun Oct 18, 2020 12:03 pm

Post by EvolveWebHosting » Mon Dec 21, 2020 2:01 am

This is good advice about changing passwords and checking files. However, it's hard to manually check all of the files and stay on top of them if there's an ongoing attack. I would suggest a firewall to prevent further attacks and a malware scan and cleanup, if needed. Hope you're able to get it straightened out soon!
I would also add to make sure you're running a supported PHP version, your Opencart store, theme and all extensions are up to date to reduce the vulnerabilities.

Opencart Hosting Plans, Domain Registration, Microsoft and Google Email and More
Visit our website for great deals and most importantly, fast and friendly support - www.evolvewebhost.com


User avatar
Active Member

Posts

Joined
Fri Mar 27, 2015 11:13 pm
Location - Denver, Colorado, USA

Post by moco123 » Sat Jan 09, 2021 11:14 am

Sorry for late reply. Thanks for your suggestion.

New member

Posts

Joined
Sun Oct 18, 2020 12:03 pm

Post by by mona » Sat Jan 09, 2021 2:32 pm

moco123 wrote:
Wed Dec 16, 2020 1:05 pm
Thanks for you reply.
Does anyone know of similar sites in the USA?
https://www.justice.gov/criminal-ccips/ ... erty-crime

DISCLAIMER:
You should not modify core files .. if you would like to donate a cup of coffee I will write it in a modification for you.


https://www.youtube.com/watch?v=zXIxDoCRc84


User avatar
Expert Member

Posts

Joined
Mon Jun 10, 2019 9:31 am

Post by EvolveWebHosting » Sat Jan 09, 2021 7:08 pm

moco123 wrote:
Sat Jan 09, 2021 11:14 am
Sorry for late reply. Thanks for your suggestion.
No problem. If we can help at all, let us know over live chat or email through our websites, hello@evolvewebhost.com

Opencart Hosting Plans, Domain Registration, Microsoft and Google Email and More
Visit our website for great deals and most importantly, fast and friendly support - www.evolvewebhost.com


User avatar
Active Member

Posts

Joined
Fri Mar 27, 2015 11:13 pm
Location - Denver, Colorado, USA

Post by Naheed » Mon Feb 22, 2021 4:02 pm

So, sad to know that you are unable to access your website/admin URL,
I will suggest to:
1. Check your site for malware.
2. Check-in your database for unauthorized users
3. Check unusual folders + files

User avatar
Active Member

Posts

Joined
Mon Aug 10, 2020 11:19 pm
Who is online

Users browsing this forum: No registered users and 47 guests