Looked at the access logs for "petra" found this during the attack:
66.249.65.5 - - [23/Feb/2017:22:36:26 -0500] "GET /1714/9292rgpmuw/-guwuiwp-jmf-snj-756278-rgs/wwq HTTP/1.0" 301 395 "-"...
I do have Plesk and it is very user friendly. I have installed "watchdog" and it runs a script periodically and sends me an email. No viruses found but it did come up with this:
[14:28:03] Info:...
Well, I thought I took care of that by making him start from scratch. I dumped the entire site, including the database, did a clean install of wordpress myself from wordpress.org and only installed...
I must also tell you that one of my my friends newly installed website which was a wordpress site from another host, Web.com, which i let them install...big mistake...had some bad code and I see user...
You are right. I was doing it wrong. It did look like a 1 to me...so this is what I got:[root@dedicated ~]# ls -l /proc/4600
ls: cannot access /proc/4600: No such file or directory
[root@dedicated...
tried to do the 1s -1 /proc/4600and the other. Terminal said there was no such thing as 1s. I am using -bash: in front of everything but the| grep perl revealed 2 instances of perl.
usr/bin/perl and...
Here is what support sent me. I'm suppose to do this myself. Yes, someone else got into terminal cause when remotely logged in I saw this last Login: the feb 23 14:59:13 2017 from...
Relative newbie to Linux so please be kind and assume I've done little in the way of command line but i have been thrusted into this position.
Here goes. There is a perl script on my box that is...