Disabling CFEXECUTE without CF Administrator
I haven't touched ColdFusion in probably close to 5 years and I'm totally lost on how to manage the application server. I have a friend who's server is getting hacked quite viciously right now. They have uploaded a shell using a ColdFusion administrator exploit. They have nicely hidden the shell, so I'm unable to locate it. Previously I would search for all instances of CFEXECUTE in *.cfm pages and I would find it quickly and remove it. I would like to disable CFEXECUTE all together, but the hackers have mangled the ColdFusion Administrator to the point that when I go to the security tab, I am redirected out of the Administrator all together.
Is there a configuration setting in an XML file perhaps that I can adjust to disable CFEXECUTE or is the setting in the ColdFusion Administrator the only option?
Thank you for any assistance anyone can offer.
