osCommerce v2.2 Website Infections

July 6, 2010 Uncategorized

During the past 10 days we started seeing a number of websites using osCommerce v2.2 being infected.
The infection usually included some randomly named folder with a list of files in them. Some of the folder names we’ve seen include:

catalog
feeds
image
scripts
items
rss
inventory
visual

The names are common, but are randomly selected by the hacker infecting the website.
Inside the folder are [...]

Read the full article →