coppermine-gallery.com/forum

Support => cpg1.4.x Support => Older/other versions => cpg1.4 ecards & email => Topic started by: yushan on January 06, 2008, 02:27:29 AM

Title: Coppermine 1.4.10 has been Hijacked
Post by: yushan on January 06, 2008, 02:27:29 AM
Dear Support,
I just found out that my coppermine has been hijacked, everytime I receive an email notification of new user registration, it sends the notification to two emails, one is the admin email (my email ***@***.com) and the other one is the hijacker's email which is kevin082312@gmail.com
I checked the "Gallery administrator email" under config, it has only admin email listed.

Fyi, This is Coppermine Version: 1.4.10

Please help, how do I go about fixing this?

Thanks,
Jason
Title: Re: Coppermine 1.4.10 has been Hijacked
Post by: Nibbler on January 06, 2008, 03:24:34 AM
Check in the user list for the extra admin account and delete it. Update your gallery - current version is 1.4.14.
Title: Re: Coppermine 1.4.10 has been Hijacked
Post by: yushan on January 06, 2008, 04:21:56 AM
Thank you I appreciate it!!! it's fixed now, Phew..I am glad they did not mess up with anything else, they could have deleted pictures, tables etc...that could be really bad. It reminds me I need to make regular backups
Title: Re: Coppermine 1.4.10 has been Hijacked
Post by: Joachim Müller on January 06, 2008, 07:19:15 PM
Keep you gallery (and all other scripts you use) up-to-date. I suggest scanning the site for potential backdoors as well.