Free Server Securiy Scan
Dec 14, 2008Any body knows of free server security scan for my dedicated?
View 4 RepliesAny body knows of free server security scan for my dedicated?
View 4 Repliesi have server and i want to do shell scan and delete the shell
View 4 Replies View RelatedI am not much familiar with windows server scan. How can I do full scan on the server? I want to make sure that server is secure.
View 3 Replies View RelatedWe have a client claming that she gets a Trojan warming when she trys to access her website but using the Trojan scan in cpanel doesn't show anything.
What can we use to scan for Trojan?
What is a rootkit? The following link is a very good read to answer that question.
http://linux.oreillynet.com/pub/a/li...4/rootkit.html
In Summary, a rootkit is a trojan installed on your Linux server after someone has broken into it. These files are used to cover the hackers tracks, and to give the hacker tools to do more dirty work from your server.
Usage:
1. su - (change to root user)
2. mkdir /usr/local/chkrootkit
3. wget ftp://ftp.pangeia.com.br/pub/seg/pac/chkrootkit.tar.gz
4. tar -xvzf chkrootkit.tar.gz
5. cd chkrootkit*
6. cp * /usr/local/chkrootkit
7. cd /usr/local/chkrootkit
8. make sense
Now scan your system:
1. cd /usr/local/chkrootkit
2. ./chkrootkit
chkrootkit may from time to time give false positives. If you ever get a positive or "infected hit" scan a second time. If you do get a positive hit, google the hit to research the issue and steps to correct.
Part 2 - automated chkrootkit, and emailed results.
I'm lazy, and like my server to do the work for me so I have it scan every day, and email me the results.
Usage:
1. vi /etc/cron.daily/chkrootkit
2. add the following code.
Code:
#!/bin/bash
(cd /usr/local/chkrootkit; ./chkrootkit -q 2>&1 | mail -s "Daily chkrootkt scan" you@yourdomain.com)
3. chmod 0755 /etc/cron.daily/chkrootkit
This will email you@yourdomain.com every morning with your chkrootkit results. the -q option will only show you exploits.
Removal:
If you don't like getting the emails or just want to remove this from your server:
1. rm /etc/cron.daily/chkrootkit
2. rm -rf /usr/local/chkrootkit
All files will now be deleted from your server.
Is this possible we can scan virus on the account on server?
View 1 Replies View Relatedhow to correct it?
Code:
---------------------- Start Rootkit Hunter Scan ----------------------
Warning: Checking for prerequisites [ Warning ]
The file of stored file properties (rkhunter.dat) does not exist, and so must be created. To do this type in 'rkhunter --propupd'.
Warning: WARNING! It is the users responsibility to ensure that when the '--propupd' option
is used, all the files on their system are known to be genuine, and installed from a
reliable source. The rkhunter '--check' option will compare the current file properties
against previously stored values, and report if any values differ. However, rkhunter
cannot determine what has caused the change, that is for the user to do.
One or more warnings have been found while checking the system.
Please check the log file (/var/log/rkhunter/rkhunter.log)
Is it advisable to have someone scan your server setup, ie the firewall? If so, what is used to scan the firewall?
View 13 Replies View RelatedWhat's the best way to do a daily check for xss scripts injected into php and html files on a linux box?
I am referring to stuff like framer.z
[url]
which essentially has a telltail signature of
<script>eval(unescape("%77%69...
Is there anything for linux that keeps up with those kinds of script signatures?
I doubt CSF or Clam looks for that kind of stuff, right?
to install secuity patches for each VPS hosted on single host or appling it to host running multiple VPS is enough.
Does same applies to firewall related software..Use it for individual VPS on single host?
[url]
[url]
One of my users posted this in the forum saying my server is scanning his computer. His this serious? Do I have virus? Should i be worried? Well i am kinda worried. I tried googling it, but i can't seem to figure the right keywords for a good result.
So I have a client using Wordpress 3.6, so the scan does little good.
I update the Wordpress to 4.1.1 and do the Scan again. Plesk cannot find the updated install of WP still?
Current server has 4 GB ram, all buffered by linux.
Code:
total used free shared buffers cached
Mem: 4054 3917 137 0 99 2139
-/+ buffers/cache: 1678 2375
Swap: 4094 0 4094
The buffer has 2375 MB of free ram. However this is a heavy mysql server. I want the empty ram be used by mysql so it becomes faster.
We are currently moving to a 8GB ram server, and the free ram will be around 7 GB if we use the exact same configuration. I want the free ram to be 1 GB at most, why pay for 8 GB ram if I'm going to use a fraction of it?
What optimizations should I attempt?
I know about harddisk I/O bottlenecks, I have two SATA drives in the system, and a SAS drive dedicated to mysql, that's all we can afford currently.
All mysql databases are for SMF forums, and currently using MyISAM tables. Switching to another storage engine is a possibility, if it won't create problems in restarts and hot backups.
I run a web design business in South Florida. I currently have an account at ThePlanet to allow me to provide web hosting services to my customers... this is what happened last night.
I received a phone call from an old customer asking me if I was considering changing my computer, i said "well, maybe". My customer then asked me to go an pickup a present. The present was a DELL PowerEdge 2950 server with 6 SCSI (SAS) hard drives 133 gigs each, 2 64-bit Intel-Xeon Quad-Core processors, 4 Gigs FBD RAM, server include an Integrated Intelligent Platform Management Interface (IPMI) 2.0 management controller (with SMASH Command Line Protocol), plus an optional DRAC 5 remote management card with continuous video and Active Directory integration for robust remote server management, Red Hat Enterprise edition with 3 years of support, mounting rack, wheels and cables.
What a present huhh? OK, I'm really excited cause I know this is a top of the line server but i also know that this isn't that easy. I guess if i plug the server to the Internet it will load the IPMI management Controller and try to connect to DELL to activate the product registration or something. My customer said that he was paying a favor he owed me and that the server was too much for him. He got it on an erroneous delivery along with a bunch of boxes and he wanted me to have it since he doesn't know what to do with it. This is not like he did something wrong, he actually asked the delivery guy and his answer was to wait two weeks to see if someone claims it... after the two weeks he said that the package was already paid up to that point by the insurance and if nobody has claimed it means that the package was his possession.
Since i manage remotely my host through a control panel i don't have enough experience to build the infrastructure to provide the connection, so here are my questions...
I guess (i don't know you can correct me) that all software and licenses are pretty much unusable, right?
I cannot even think in keeping the Redhat, right?
What else should I need besides the broadband connection in order to run it at home?... i mean router type-brand-specs, firewall type-brands-specs, etc.
Do you know of any good-cheap-quality High speed connection that i can use on south Florida to provide connection to the server?
Do you think if a company offered free web hosting and free domains people would snap them up like there is no tommorow?
Also does anyone one how much ICANN acredited registrars pay ICANN when they register a new domain?
any feedback would be great!
Simplehelix offers a 128/256 bit RapidSSL Certificate for just $99.95/year. In addition, this certificate comes with a year of dedicated IP address with free installation.
Do you think the conditions are normal?
im looking a free hosting server, let me explain what im looking for, i have some free softwares on my hard drive, i want to host them so other people also downloads these and its give me also a web location to store them in one place, for this im looking a free hosting server which support a great amount of web space and bandwidth.
View 4 Replies View Relatedive created myself a little test site and i mananged to host it with a server thats sitting behind a nat router by forwarding port 80 to it, this site can be accessed from outside my home network by entering the ip address of my router into internet explorer.
then i create myself a free host at no-ip.com and i used the .servegame.com option so its MySite.servegame.com.
it succesfully resolves to my ip becuese when i ping it from the wndows command line it pings the IP of my router.
but for some reason it cant be used to acces my site through a web browser.
the only thing i can think of is that it has somehhing to do with the "domain name" and "server name" fields that you have to fill in while installing apache although no matter what i put into those fields i can stil access my site using my routers IP.
I encounter this problem in one of my server today..
Memory is 99% used
Swap is 100% used
top - 20:50:53 up 2 days, 7:05, 2 users, load average: 69.58, 41.63, 24.91
Tasks: 397 total, 57 running, 334 sleeping, 1 stopped, 5 zombie
Cpu(s): 1.9% us, 96.5% sy, 0.1% ni, 0.0% id, 0.0% wa, 0.5% hi, 1.0% si
Mem: 2076300k total, 2027140k used, 49160k free, 1116k buffers
Swap: 5245212k total, 5245212k used, 0k free, 13108k cached
Over my KVM, it just hang. When I try to type something, it shows this on the KVM screen:
[17379796.260000] HighMem 59*4kB 3*8kB 0*16kB 0*32kB 0*64kB 1*128kB 1*256kB 0*512kB 0*1024kB 0*2048kB 0*4096kB = 664kB
[17379796.260000] Swap cache: add 6615861, delete 6615849, find 2695269/27558673, race 0+86
[17379796.260000] Free swap = 0kB
[17379796.260000] Total swap = 5245212kB
Based on the message on screen, what is the message telling me?
[17379796.260000] HighMem 59*4kB 3*8kB 0*16kB 0*32kB 0*64kB 1*128kB 1*256kB 0*512kB 0*1024kB 0*2048kB 0*4096kB = 664kB
[17379796.260000] Swap cache: add 6615861, delete 6615849, find 2695269/27558673, race 0+86
Look this:
root@empresarios [~]# free -m
total used free shared buffers cached
Mem: 2017 1966 50 0 20 1054
-/+ buffers/cache: 892 1125
Swap: 2000 1378 621
U know more than me, but why my dedicated server is taking Swap if as u cann se still have 50 Mb free of RAM?
My question is, what is a good free server monitoring tool that is external. By that I mean software I install on my computer and I can view from my server from my pc. I hope that makes sense it does to me.
View 6 Replies View Relatedplease provide me some free control panel like webmin!
View 14 Replies View RelatedDo you know is Microsoft Virtual Server 2005 R2 really free? By this I mean can I start VPS hosting business using Microsoft Virtual Server 2005 R2 without paying any license fee for virtualization product? Are there any restrictions?
I was very unpleasantly surprised when I found out that VmWare Server is actually not free and totally unusable for VPS hosting companies, although when you read their FAQ you get impression that its free and that ESX is just "better version". In fact for VPS hosting VmWare is not free and its totally useless.
So I am interested if there is some "minor glitch" in Microsoft agreement for Virtual server as is in VmWare agreement for VmWare Server?
what my options are for a free control panel that is operable on windows server 2003.
View 14 Replies View RelatedAlmost all dedicated server providers offer windows 2003 server free. Any suggestions to choose one way or the other?
Any major limitations either of these cases? I never worked on linux before, have basic experience on unix though.
Please compare reliability, resources (if problems) in terms of cost, extendability, etc.,
Does cPanel support windows?
I am thinking of limestone 8gb Q9300 server (64bit) with their 30% off deal.
*My computer is a computer of a 500 computers network within our company.
* i have been given a STATIC local intranet ip 192.168.10.168 assigned by our IT department via their router.
* i have the internet facility provided through the above mentioned intranet for which i get a dynamic ip ex: 188.54.208.205, 176.44.107.21
* i have installed WAMP server.
my current project for the company i am doing should be able to access via internet in addition to the local access. local access is the primary access method. so now i have installed a free dns service like dyndns. at the setup of that, i have choosen a free subdomain ex: my.freedns.com they offer. then i assigned the ip ex:188.54.208.205. also installed their desktop client for monitoring ip changes auto updates.
Now the problem is : when i hit my.freedns.com the page displaying is of our internet service provider. not of my project homepage . How can i fix so when i issue above subdomain it will show my webserver default page?