Errors shutting down site in .inc files

Hello,

 

I am getting the following errors from my host in certain files.  Is there a bug or vulnerability that I am not aware of?  permissions on these files are 755, none of the sites have any users besides test users and admin. 

 

Hello,

During a recent security scan we have identified that one or more of your hosted sites show signs of being compromised as they are hosting known, malicious web-based backdoors.  Specifically, the following file(s) have been accessed by intruders and have been associated with unsolicited bulk email, denial of service or other abusive activity:

We have identified the following known backdoors under your account:
/inc/admin_design.inc.php
/inc/design.inc.php
Quote · 10 Sep 2013

If that is coming from your host, then you will need to talk to your host about getting those two files white listed.

Both of those files contain base64 encoding of information that is part of the dolphin licensing system. I suspect the security scan of those files is a false positive.

Avast is common for false positives on files containing encoded information.


https://www.deanbassett.com
Quote · 10 Sep 2013
 
 
Below is the legacy version of the Boonex site, maintained for Dolphin.Pro 7.x support.
The new Dolphin solution is powered by UNA Community Management System.