Servers and Hosting Server Issues - Shared, Virtual, and Dedicated Hosting Options.

Reply
 
Thread Tools

  #1  
Old 05-03-2012, 02:38 PM
rusty105 rusty105 is offline
Tazmanian
 
Real Name: John
Join Date: Nov 2005
Admin Experience: Intermediate
Location: NY
Age: 43
Posts: 795
rusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to all
Default Keeping your server virus/malware free.
Is there a program/script that can scan your 'public_html' on a cpanel install and look for malware and viruses?

I want to stay ahead of them.
__________________
Rusty
Reply With Quote
  #2  
Old 05-03-2012, 03:27 PM
Adam H's Avatar
Adam H Adam H is offline
Think before you speak
 
Real Name: Adam
Join Date: Jun 2008
Admin Experience: Guru
Location: UK
Age: 31
Posts: 957
Adam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant futureAdam H has a brilliant future
Default
clamAV installed on to cpanel will do that for viruses but not malware, Another way of doing it is to download the entire public_html folder to your computer and do a scan with NOD32 and Malwarebytes. Them two put together will pick up basically anything.
__________________
:: Rivmedia - vBulletin and Forum services
:: Mammoth Host - UK Small Business Hosting
:: Webmaster Forums - Join our Webmaster community Today
The opinions expressed in forum posts are my own personal opinions and do not represent any companies that i am associated with.
Reply With Quote
  #3  
Old 05-04-2012, 06:46 AM
rusty105 rusty105 is offline
Tazmanian
 
Real Name: John
Join Date: Nov 2005
Admin Experience: Intermediate
Location: NY
Age: 43
Posts: 795
rusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to all
Default
Quote:
Originally Posted by Adam H View Post
clamAV installed on to cpanel will do that for viruses but not malware, Another way of doing it is to download the entire public_html folder to your computer and do a scan with NOD32 and Malwarebytes. Them two put together will pick up basically anything.
Will calmAV opn cpanle run automatically? I am looking for something I can set up on a cron tab and have me alert me if needed.
__________________
Rusty
Reply With Quote
  #4  
Old 05-04-2012, 02:33 PM
BHH BHH is offline
Tazmanian
 
Join Date: Feb 2010
Admin Experience: Guru
Posts: 196
BHH is a jewel in the rough
Default
Honestly I don't run any virus scanner. I always restrict what my users can upload and disable any php execution from my upload folders.
Reply With Quote
  #5  
Old 05-04-2012, 03:12 PM
rusty105 rusty105 is offline
Tazmanian
 
Real Name: John
Join Date: Nov 2005
Admin Experience: Intermediate
Location: NY
Age: 43
Posts: 795
rusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to all
Default
Quote:
Originally Posted by BHH View Post
Honestly I don't run any virus scanner. I always restrict what my users can upload and disable any php execution from my upload folders.
I was thinking more along the lines of the base64 decode stuff that finds its way into my .php files every now and then
__________________
Rusty
Reply With Quote
  #6  
Old 05-04-2012, 04:52 PM
BHH BHH is offline
Tazmanian
 
Join Date: Feb 2010
Admin Experience: Guru
Posts: 196
BHH is a jewel in the rough
Default
I usually disable that stuff via php.ini as with other functions.

Plus, no anti-virus will protect against that.
Reply With Quote
  #7  
Old 05-04-2012, 07:10 PM
rusty105 rusty105 is offline
Tazmanian
 
Real Name: John
Join Date: Nov 2005
Admin Experience: Intermediate
Location: NY
Age: 43
Posts: 795
rusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to allrusty105 is a name known to all
Default
Quote:
Originally Posted by BHH View Post
I usually disable that stuff via php.ini as with other functions.
Elaborate?
__________________
Rusty
Reply With Quote
  #8  
Old 05-04-2012, 07:16 PM
Judge Dredd's Avatar
Judge Dredd Judge Dredd is offline
Tazmanian
 
Real Name: Dustin
Join Date: Apr 2011
Admin Experience: Intermediate
Location: Arizona
Posts: 3,064
Judge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud ofJudge Dredd has much to be proud of
Default
You mean infections that can be uploaded through a site, or just viruses...?
Reply With Quote
  #9  
Old 05-04-2012, 07:26 PM
BHH BHH is offline
Tazmanian
 
Join Date: Feb 2010
Admin Experience: Guru
Posts: 196
BHH is a jewel in the rough
Default
Quote:
Originally Posted by rusty105 View Post
Elaborate?
In my php.ini I have:
Code:
disable_functions = dl,exec,passthru,shell_exec,system,proc_open,popen,curl_exec,curl_multi_exec,parse_ini_file,show_source

open_basedir = /home
  • You can also disable running php from you uploads/attachment folders via htaccess
  • Never run php processes as root, or any high level users.
  • Install mod_security
  • Install a firewall
  • Keep your software up-to-date
  • Be careful when installing 3rd party plugins as that usually where the security holes lie.
  • Remove software versions from your footer, header, html, etc.
  • Don't piss people off
Reply With Quote
  #10  
Old 05-04-2012, 08:30 PM
Alex.'s Avatar
Alex. Alex. is offline
The Ancient Dragon
 
Real Name: Alex
Join Date: Jul 2007
Admin Experience: Advanced
Location: US
Posts: 8,681
Alex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant futureAlex. has a brilliant future
Default
My server knowledge is a bit rusty, but couldn't you (Assuming you have the money) to use a separate server for your public uploads by members? Wouldn't that sever the possibility of your main server being infected?
Reply With Quote
  #11  
Old 05-05-2012, 03:04 AM
BHH BHH is offline
Tazmanian
 
Join Date: Feb 2010
Admin Experience: Guru
Posts: 196
BHH is a jewel in the rough
Default
Quote:
Originally Posted by Cipher View Post
My server knowledge is a bit rusty, but couldn't you (Assuming you have the money) to use a separate server for your public uploads by members? Wouldn't that sever the possibility of your main server being infected?
It definitely ads security by obscurity, but that will just resolve exploits in your uploader.

Securing your php scripts is the best security.
Reply With Quote
  #12  
Old 05-05-2012, 10:36 AM
Shawn Gossman's Avatar
Shawn Gossman Shawn Gossman is offline
Severe Weather Spotter
 
Real Name: Shawn Gossman
Join Date: Dec 2005
Admin Experience: Guru
Location: Hurst, Illinois
Age: 29
Posts: 1,916
Shawn Gossman is a splendid one to beholdShawn Gossman is a splendid one to beholdShawn Gossman is a splendid one to beholdShawn Gossman is a splendid one to beholdShawn Gossman is a splendid one to beholdShawn Gossman is a splendid one to beholdShawn Gossman is a splendid one to behold
Default
Here is a site I use for free
http://sitecheck.sucuri.net/scanner/
__________________
My Blogs
Your Dream Blog - Blogging tips, resources and news.
Your Forum Blog - Forum owner tips and resources.

My Forums
Blogging Friends - A forum for bloggers specifically.
National Skywarn - Skywarn Storm Spotters Forum.
Reply With Quote
Reply

  Admin Zone Forums > The Community Zone > Managing an Online Community > Servers and Hosting





Currently Active Users Viewing this Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Malware and virus warnings on my site Lenka Site Security 6 04-11-2012 04:51 PM
Looking for a free server and a free shoutcast server. QWERTY Servers and Hosting 4 02-12-2008 07:49 PM
Need Help with Malware Pop-Ups Katy vBulletin 9 10-10-2007 04:53 PM
Keeping the donations coming in to pay server rental.. movielad Generating Revenue 4 05-06-2006 05:31 PM
Offer free virus-checking and file storage gunkpots phpBB 0 03-22-2005 01:30 PM


 

All times are GMT -4. The time now is 02:49 PM.


Powered by: vBulletin
Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Page generated in 0.07788301 seconds with 15 queries
The Admin Zone copyright 2003-2014 All Rights Reserved. Content published on The Admin Zone requires permission for reprint.