|
#1
|
|||
|
|||
|
Sorry if its in a wrong section, today i got surprised 1 acount in my reseller acount had a script like a shell script, thats works like a mini-cpanel, give acess to up, down, delete files and more... so somebody know how i can block this type of acess, since i dont know how he have uploaded the file to the server?? its what i m find now, but i remember about see something about block shell acess and other class of hackers atemp.
I have attached the file in txt format, becuz if u rename to .php its alert antivirus against trojan virus. Last edited by GatorDrewH; 10-31-2008 at 06:52 PM. |
|
#2
|
||||
|
||||
|
For me that file that is in .txt gives me a virus alert!
__________________
A REAL man loves his woman every day of the month http://www.piclikes.com/like/444 Green Cigs http://www.greencigs.info |
|
#3
|
|||
|
|||
|
i now dude, but for sure, up to a acount in public_html or another folder then rename to something.php like j.php and go www.ursite.com/j.php u gonna see its a shell script --- my reseller acount is brhost.info u can check, its hosted in hostgator, i m not a hacker or something, i just want a answer for this.... yo vejo q oste es de espana, yo soy brasileno...
|
|
#4
|
||||
|
||||
|
and my computer now is not happy and really playing up...I think that she needs a reboot after trying to open that .txt file......
__________________
A REAL man loves his woman every day of the month http://www.piclikes.com/like/444 Green Cigs http://www.greencigs.info |
|
#5
|
|||
|
|||
|
go there [removed] i have uploaded the file in this host, but plz dont do nothing just for check..
Last edited by GatorZach; 10-31-2008 at 08:45 PM. |
|
#6
|
||||
|
||||
|
No thanx! Not after what it did to my computer 10 minutes ago!
__________________
A REAL man loves his woman every day of the month http://www.piclikes.com/like/444 Green Cigs http://www.greencigs.info |
|
#7
|
||||
|
||||
|
It's a phpshell script, kind of hacker's toolbox.
It should not harm your PC if you try to download it in a text file, especially if your antivirus blocks it (my McAfee did).
__________________
quietFinn - netFinn Finland "Be who you are and say what you feel because those who mind don't matter and those who matter don't mind." - Dr. Seuss |
|
#8
|
|||
|
|||
|
yeah its shell script, my question is how i can block acess like this since i cant found how he uploaded this to the server.... maybe if i use a .hataccess file or only the hosting can do something???
|
|
#9
|
||||
|
||||
|
My question is...
Do you really want a client like this who uploads this kind of stuff to your server?
__________________
A REAL man loves his woman every day of the month http://www.piclikes.com/like/444 Green Cigs http://www.greencigs.info |
|
#10
|
|||
|
|||
|
for sure, its not my customer, why he was upload this, then make a backup of all files and download it, since he have total acess to ftp and cpanel.. its a hacker.. i still try to find how he have uploaded, but cant, i am waiting hostgator suport with log acess to check.
|
|
#11
|
|||
|
|||
|
Considering the nature of your problem, you'll need to contact security@hostgator.com to get help, not via the peer support forums.
|
|
#12
|
|||
|
|||
|
Quote:
|
|
#13
|
|||
|
|||
|
Seems interesting,
Since the time everybody searches for to give separate cpanel access, the clean part can be a base. |
|
#14
|
|||
|
|||
|
Quote:
I m still find a solution to block shell acess, i think only hostgator can do it for me. |
|
#15
|
||||
|
||||
|
If you were in a dedicated I would recommend you to use a script that works really nice in my server. It is called Upload Guardian.
You can define any type of script that you want to block for any upload. So, it always check what is uploading to the server and if it has some of the scripts defined it will delete the file and alert you of the upload. I am really happy with this script. But this script can not be installed in a reseller account, sorry. By the way, can you post only the first one or two lines of that script that you got? I will like to check that against my upload guardian script if you don't mind. Obrigado.
__________________
Sergio www.EspacioyDominio.com espacio con dominio incluido. www.HOSTnDOMAINS.com domains, appraisals, SSL Certificates and more... |
![]() |
| Bookmarks |
«
Previous Thread
|
Next Thread
»
| Thread Tools | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Secure Form Mail Script | Yari Gio | Webhosting | 1 | 11-22-2007 09:50 PM |
| what type of hosting to get? | meesterrob | Pre-Sales Questions | 8 | 05-22-2007 01:31 PM |
All times are GMT -5. The time now is 10:44 PM.










