X-Cart: shopping cart software

X-Cart forums (https://forum.x-cart.com/index.php)
-   Changing design (https://forum.x-cart.com/forumdisplay.php?f=51)
-   -   Spontaneous Smarty Errors (https://forum.x-cart.com/showthread.php?t=52573)

JazzyJeff 02-28-2010 12:45 PM

Spontaneous Smarty Errors
 
Site was working fine this morning. No changes were made to any code recently.

Went away for 3 hours today and after came back noticed that site (both customer side and admin, and in all browser platforms) is throwing off all kinds of smarty errrors. Examples:

Warning: Smarty error: unable to read resource: "poweredby.tpl" in /home/jansenme/public_html/Smarty-2.6.12/Smarty.class.php on line 1093

Warning: Smarty error: unable to read resource: "dialog_tools_cell.tpl" in /home/jansenme/public_html/Smarty-2.6.12/Smarty.class.php on line 1093

After initially posting this the prices are all gone from the website.

Site format is screwed up and certain things in admin that are normally available as links in menu boxes are not available.

Any idea how smarty errors can spontaneously appear? Any easy fix?

Thanks

Emerson 02-28-2010 01:26 PM

Re: Spontaneous Smarty Errors
 
Hi Jeff,

Have you checked to see that the files it is complaining about are there?
If so check permissions/ownership on the files and make sure they are correct.

JazzyJeff 02-28-2010 01:28 PM

Re: Spontaneous Smarty Errors
 
The files are there and permissions haven't been changed. Host gave me a list of files changed since midnight and there is nothing suspicious.

I've opened a HotRush ticket with Qualiteam but they aren't open for quite awhile yet.

In meantime the site is unusable. Very frustrating.

Emerson 02-28-2010 01:29 PM

Re: Spontaneous Smarty Errors
 
Does the account have enough disk space?
Check in cpanel and make sure you are not at the limit

JazzyJeff 02-28-2010 01:37 PM

Re: Spontaneous Smarty Errors
 
Quote:

Originally Posted by Emerson
Does the account have enough disk space?
Check in cpanel and make sure you are not at the limit


Yes - using 3927.11 / ∞ MB

Nowhere near the maximum

JazzyJeff 02-28-2010 01:43 PM

Re: Spontaneous Smarty Errors
 
Any idea why the smarty errors are changing without any change to the site? Now the smarty error on top of every page (customer and admin) is:

Warning: Smarty error: unable to read resource: "alteredCart_lib.tpl" in /home/jansenme/public_html/Smarty-2.6.26/Smarty.class.php on line 1093

No prices are displayed (no error) and dialog boxes with menu links on top in admin are empty. Seems quite strange that errors are changing without some intervention.

Emerson 02-28-2010 01:54 PM

Re: Spontaneous Smarty Errors
 
Hard to tell Jeff,

Are you sure there are no issues with the server?
Has the host checked the server/logs for hacks?

JazzyJeff 02-28-2010 05:16 PM

Re: Spontaneous Smarty Errors
 
With the number of files that were missing/deleted - all in Skin1 - it had to be a hack of some type. I have changed all passwords and manually uploaded the missing files. WiredTree was taking too long (couple of hours) before they were in a position to do a restore from backup - so I manually uploaded and modified the files. What a hassle and lost about 7 hours of usable uptime today.

Now just have to try to figure out how it happened and how to prevent it from happening again.

Emerson 02-28-2010 05:25 PM

Re: Spontaneous Smarty Errors
 
If it was a hack they should be able to tell from the logs on the server how and where it happened.

JazzyJeff 02-28-2010 05:38 PM

Re: Spontaneous Smarty Errors
 
They don't seem to interested in reviewing logs to figure it out. However, I am manually doing a FTP backup of all files to a local drive, and in the process AVG found a trojan in the files.

Trojan Horse PHP Backdoor.R57Shell was inserted into the files directory using filename tpl.php. Without researching the trojan yet that would likely be the cause of today's events.

Emerson 02-28-2010 05:41 PM

Re: Spontaneous Smarty Errors
 
Wow I am surprised they would not be interested in helping there.

r57shell is a nasty backdoor program that can give hackers pretty much control of your account.
You will need to find where that script is and remove it. Most importantly you need to find out how they uploaded it to the server in the first place or they will just come back and upload it again.


All times are GMT -8. The time now is 05:12 AM.

Powered by vBulletin Version 3.5.4
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.