Jump to content

My prestashop was compromised


Kunal0

Recommended Posts

Hi,

I'm really at a wits end at the moment. As i'm struggling and really could do with some help.

I had a Prestashop shop setup for a business. unfortunately the website was compromised and corrupted as I was told by my hosting provider.

I had it cleaned by there security team so there is no more malware or anything running on there but unfortunately now nothing shows in terms of the shop front or anything I can still access the shop front.

I tried to create a new directory on my domain and install the latests version of Prestashop there. I then took the backup from MySQL of the other database and restored on that database that was fresh installed and crossed my finger's in hoping that would fix it but now i'm getting a 404 error every time i visit the site. I seem to be at an inter pass and stuck now as I don't know what to do.

Any help or tips would be fantastic and greatly apreciated

 

Thank you

Kind regards

 

Kunal

 

Link to comment
Share on other sites

Can you please share the site URL?

As per our understanding, it seems you need to update the ps_shop_url table to reflect the new URL (As per the new directory you have created). 

We believe you need to update the physical_uri column in the table to the new directory value which you have created. 
 

Link to comment
Share on other sites

Sorry for the delay in getting back to you the site directory is in a sub directory from my root folder /New_Prestashop/can you help me with the physical _uri: ive tried/New_Prestashop/

and it hasnt made any difference.

Link to comment
Share on other sites

Right iv'e made progress I can now see a screen that says ill be back but the image doesn't load but I can see a store front kind off. I tried to login into the backend but cant get in. It says the password or employee doesn't exist.

Any help be greatly apreciated. 

Kind regards

 

Kunal

Link to comment
Share on other sites

Yes, you need to set the the physical_uri to  /New_Prestashop/ in the DB.

After that,you also need to regenerate the .htaccess file to show the images etc but to generate the .htaccess, you need to login into the admin panel.

Have you checked if there is data in the employee table ?

 

 

Link to comment
Share on other sites

There is data in the employee table but it is md5 encrypted i believe and every time i use my  password from the original database i took the backup from I cant get in. As that is an older version the only thing I can think is the Md5 encryption has changed between v6 and v7 I believe.

Thank you for your help so far Sorry to trouble you yet again?

 

Kunal

Edited by Kunal0 (see edit history)
Link to comment
Share on other sites

Right I have tried a few things I managed to locate the cookie key  and tryed creating new password online using MD5 hash generator the value i got i placed that in the employee table for the the password value then went to admin section and entered that password and still couldn't get in. Im thinking now as the cookie key is messed up somewhere between v1.6 and 1.7. Is it worth removing the whole lot. reinstalling it and only taking certain tables i need from existing old database and not take the whole lot.

Your thoughts would be great

 

Kunal.

 

Link to comment
Share on other sites

Right Im now again stuck I have tried the password a few times with the md5 generator from the cookie key and copy the password generated value into the employee table in password but when I log in with this details it says The employee does not exist, or the password provided is incorrect. 

Please can somebody help me.

 

Kunal

Link to comment
Share on other sites

Right the plot thicken's I used the reset password link.

When I click the link in the email enter the new password and confirm  it says that your link has expired.

Im now reaching frustration point any guidance will be greatly apreciated.

 

Kunal

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...