![]() |
My webserver security
I am running a www server and all is well except for Awstats on one of the domains is logging hits on:
Code:
/webmail/src/left_main.phpAnother domin is logging hits on: Code:
/mysqladmin/scripts/setup.phpThanks in advance. |
Re: My webserver security
My web sites often get brute force attacks, and my ftp site had nothing but attacks.
None got it, and I shunted things around so the ftp was locked down to just the IP address which needed access. They do a port scan, find a potentially vulnerable service running and start hammering it. |
Re: My webserver security
Quote:
|
Re: My webserver security
1 Attachment(s)
Quote:
"morfeus-strikes-again" also shows up and a quick google gives: Quote:
ooh so much to do with so little time! |
Re: My webserver security
Is the PMA install one of your own? If so get rid of the setup.php file and even update to a version 3
|
Re: My webserver security
Quote:
|
Re: My webserver security
Check the logs, they should all be from the web root. Just that PMA could be installed anywhere on any web folder..
I normally have it on a subfolder of a domain that way it's not in the usual place because if you look at the logs it's probing for default locations of various version 2s of PMA |
Re: My webserver security
Thanks, I'll look this evening and I also need to look at fail2ban.
|
Re: My webserver security
PMA now on 3.3.4, no setup.php, fail2ban configured ok and tested.
Will need to keep an eye on awstats now but should be ok (fingers crossed) Thanks :) |
Re: My webserver security
:clap:
|
| All times are GMT +1. The time now is 10:19. |
Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
All Posts and Content are © Cable Forum