Portal Home > Knowledgebase > Articles Database > Malware and easyapache
Malware and easyapache
Posted by Indichosts.net, 08-24-2012, 02:08 PM |
maldet gave following on two server on different networks
Since these are under user cpeasyapache I am not sure whereall to look for this intrusion hole...
Any ideas ?
|
Posted by steven99, 08-24-2012, 02:41 PM |
I just scanned one of those with maldetect and it didn't report them -- which indicates to me it doesn't find them as false positives. So, what is in the files on your side? As it is finding them in that directory, you'll have to make sure the server hasn't been rooted in some way. Check logs, run rkhunter, etc . Also make sure those files aren't using a permission set that allows others to write to them.
|
Posted by BestServerSupport, 08-25-2012, 01:03 AM |
From where did you get these results? Are you running any kind of third party virus scanning software on your server?
It may be possible that your third party software considers these PHP files as virus.
|
Add to Favourites Print this Article
Also Read
Domain Help (Views: 718)