How to remove CoinHive malware from Laravel

Rizky Syazuli posted 1 year ago


I'm seeing this script injected all over my site. Looking at the contents, it looks like the crypto mining malware everyone's been talking about. I'm using Laravel version 5.0.35.

<script src='/vendor/composer/installed.js'></script>

This malware manages to modify the contents of my Laravel setup. Here's a screenshot of the /vendor/composer folder which contains new files which doesn't exist in the original source code.

FTP screenshot

Removing those files fixes the problem. But i could use some tips to permanently remove this malware threat. Don't want this to happen again.


Sign in to participate in this thread!

We'd like to thank these amazing companies for supporting us