Hi Guys,
My Moodle site has just been hacked by Smmart_H0x for some security loophole.
Can someone please advise me how I can close this loophole and remove the splash screen.
Any advice is most welcomed...
Thanks

Hi Guys,
My Moodle site has just been hacked by Smmart_H0x for some security loophole.
Can someone please advise me how I can close this loophole and remove the splash screen.
Any advice is most welcomed...
Thanks
Hello Fergal,
Well, after some Googling it seems that Smmart H0x has been quite busy!
Regarding how to clean and protect your server, you must definitely check with your hosting provider; they'll be able to provide specific help.
Now, regarding Moodle, please see:
https://docs.moodle.org/27/en/Hacked_site_recovery
https://docs.moodle.org/27/en/Security_FAQ
---
As an additional recommendation, please consider reading the moodle.org policy page:
The Site policy is at the foot of each page of Moodle.org along with the Privacy and Contact details.
Yes, indeed, the link is deep down at the deepest and the darkest of depths... of the page... literally! And with barely any contrast at all, I just wonder how many have actually seen it; truth is, I hadn't up to this moment. It really is as if designers didn't want people to be aware of them... but there must be a reason for that, I guess...
Originally, by mere chance; really. I guess I saw someone referencing it. That page used to belong to the documentation pages and it was far more useful then as each section was indexed, or had a link to which one could refer to in specific cases; now one has to just send the link to the whole page and hope that people find the relevant info according to the case or, if one is in the mood, a copy and paste is included
Just curious what version of moodle were you running and what server OS when you were hacked?
I'd say it is not the software used, but how it is used or how it is configured. One could have the best antivirus, but if it isn't properly configured...