[gentoo-user] OT joomla, defacement and remote shell

2008-09-14 Thread Michele Schiavo
How can i prevent the execution of this file ? FILE QUARANTINED Antigen for SMTP removed ii4.php since it was found to be infected with Mal/PHPShell-A virus. signature.asc Description: Questa รจ una parte del messaggio firmata digitalmente

Re: [gentoo-user] OT joomla, defacement and remote shell

2008-09-14 Thread Matt Harrison
Michele Schiavo wrote: How can i prevent the execution of this file ? Please don't spread an infected file to the whole list, just give a description of your problem and people might be able to help. Right now it just looks like you're trying infect list members with something. Matt

Re: [gentoo-user] OT joomla, defacement and remote shell

2008-09-14 Thread Michele Schiavo
I was infected with PatriotCracker c99shell if someone know it. I'd like to know how can i protect php from the execution on particular function. I'dont know exactly what because i don't good php. that's why i attached the php file, until now i didn't think this is a virus. Searching on