Full Disclosure mailing list archives

Re: connect back PHP hack


From: el8 () hushmail com
Date: Wed, 11 Feb 2009 11:42:06 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

My server was recently computer hacked and I found this in one of
the left over files:

$cb =
"gLuCIj7qTgdDAOa3VxxL1YPjYwd8FhlW9WVhGJjdaSHVHZF03UykKWLkkCLnS1sxAGy
Hyqc8gAKd2j9YkoplZBg1latxn0cgf2jn1PZpfem1GqlWNpJzcInG50GnNOhVZXoXuVP
adSFpz4vnbI1ZXyqPOoRFOe52cBr5MC3Gv78YZgUJxdXzERb1JoyeBcfwbhFCsf2KxYz
svau5zvvV0Qn8k7sEGJfO8mZNFYqBL0bHJSSbZTYUud0uOEHeAbwunm9rGZ7v4Chhxgf
PoEq9VZ9BAuAVVQcc2AmB7LU8fEKrI5tQbTqN1Y5NItApIK3zxeSVqlgdbQYAolEugZv
bDlHQ0iHSVzPJOOESWGCkjcGbdSPE6ZbP6kEbGUcTD1P5v6y3IdVMK61TYuxtFEaAe8g
jBBZmn9yGTiwHi2gNVX3mobRAqG72vDPPL9jygoUfPJhnefw4ZKEW8luvI2Sevd7l5ou
fO67FOX0LgfMOCVTYgrhc76NpagI1LWF664RBndZwajhnMf6l7RLEIRjbmLMJjFVCY4l
IFhYz4DPkiUjW1eovB34hxRUUzmE4FjZMuFyIgZhfotoOCmvrnLrxYhLkx5fxqT66n96
k6P3Ssc6UHxP1KH1v0sbfc0FVSjrz5aZDFrfHcRfRpJEVYSq2CqDF87JolZv2iiYf9rD
VZ5Qo1Dtv3wIfzqIeowcZD8LsNlygKZ3GXcDzGJMS";

Can an expert tell me what it is please?
-----BEGIN PGP SIGNATURE-----
Charset: UTF8
Version: Hush 3.0
Note: This signature can be verified at https://www.hushtools.com/verify

wpwEAQMCAAYFAkmS/94ACgkQhtejBzrM32mCYgP/Y6hGFS+zP0LlfmtHUUb8jonHlUmy
gcvAfUXVVqWIgenCQgiBqX6TwWu0VjzC4xBWvxYiWyKPxnsJecSk8lrxzf9e1QiUa2uL
9LQ+wHvW81EZiXKAmvI73VIIze3QoMVeGed2WeUHG3JDQvzPqeyIrhyWj75lk9c6Ht+Z
JiwKL/U=
=H9Es
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: