Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Page 7 of 9 FirstFirst ... 5 6 7 8 9 LastLast
Results 91 to 105 of 124
  1. #91
    Member
    Join Date
    Apr 2005
    Location
    Istanbul / Turkey
    Posts
    57

    Default

    Quote Originally Posted by JamesSmith View Post
    Also, a neat feature would be to create a directory named after the username in the quarantine directory. As if more than one account becomes compromised and uploads done at the same time we could have the same files being quarantined, overwriting each other.

    /quarantine/username/infectedfiles
    Quarantine files not overwrited... But your ide is good, i will do it..

  2. #92
    Member
    Join Date
    Sep 2003
    Location
    UK, Luton
    Posts
    197

    Default

    Also, a neat feature would be to create a directory named after the username in the quarantine directory. As if more than one account becomes compromised and uploads done at the same time we could have the same files being quarantined, overwriting each other.

    /quarantine/username/infectedfiles
    Regards,
    James Smith
    UH Hosting Ltd

  3. #93
    Member
    Join Date
    Aug 2003
    Posts
    78

    Default

    The current download is missing ftp_clamscan_config.php. Can you please provide me a working ftp_clamscan_config.php file?

  4. #94
    Member
    Join Date
    Dec 2008
    Posts
    8

    Default

    Could you provide manual for installing it on PROFTPd?

    Thank you

  5. #95
    Member
    Join Date
    Apr 2005
    Location
    Istanbul / Turkey
    Posts
    57

    Default Updated !!!

    check it out : anti-gumblar.oxio.net

  6. #96
    Member
    Join Date
    Dec 2008
    Posts
    8

    Default

    I can find only instructions for pureftpd there..

  7. #97
    Member
    Join Date
    Dec 2008
    Posts
    8

    Default

    I do exact know that proftpd can use clamav for file scanning.
    and I think this functionality can help

  8. #98
    Member
    Join Date
    Apr 2005
    Location
    Istanbul / Turkey
    Posts
    57

    Default

    Quote Originally Posted by mitya4004 View Post
    Could you provide manual for installing it on PROFTPd?

    Thank you
    Not yet... But I'm planning to add proftpd support. But I guess proftpd has not similar function to check files after or while upload...

  9. #99
    Member
    Join Date
    Aug 2008
    Posts
    63

    Default :cool:

    Whoa. This is probably the most useful script I have seen. Installed it, runned some tests, looks perfect and does it's job.
    hidonet, please keep up the great job. People, if you like the script, donate. He is doing this for free.
    hidonet, I would suggest one thing to fix for some future release:
    1. All infected files gets transfered in /quarantine/clamav. If you could make it /quarantine/clamav<username>/ would be great!

  10. #100
    Registered User
    Join Date
    Dec 2009
    Posts
    1

    Default

    Quote Originally Posted by hidonet View Post
    check it out : anti-gumblar.oxio.net
    Hello,

    There is an iframe exploit, which generates .pl files and those start sending mails from server localhost.

    Is this give protection for this also ?

  11. #101
    Member
    Join Date
    Apr 2005
    Location
    Istanbul / Turkey
    Posts
    57

    Default

    Quote Originally Posted by onyx_love View Post
    Hello,

    There is an iframe exploit, which generates .pl files and those start sending mails from server localhost.

    Is this give protection for this also ?
    I can add if you want.

    Please send me the content of file. Please make zip and send to hidonet [at] oxio.net

  12. #102
    Member
    Join Date
    Oct 2004
    Posts
    32

    Default

    This script seems very insteresting and useful, for some reason it does not work in my server ... I will keep trying to get it to work..

  13. #103
    Member
    Join Date
    Apr 2005
    Location
    Istanbul / Turkey
    Posts
    57

    Default

    if your server is linux/cpanel/pure-ftpd script can work. if you are getting errors please tell me. i can help you for fix these problems..

  14. #104
    Registered User
    Join Date
    May 2005
    Posts
    4

    Default

    Hi great work !!
    I honestly appreciate what you have made for the community.

    I would like to request 2 things to enhance the features:

    1. I have two servers and get the alerts on the same email address for both the servers. Can you add the server hostname in the email subject? like:

    Gumblar Attack !!! user : trafficn on [HostNameHere]

    2. when the files are quarnteened, its a very logical and good idea to move the files to directories with the username.
    I;d request you add the username dir so the file is moved to the relevent user folder. like:

    /quarantine/clamav/UserNameHere/infectedfile.ext


    Thanks and hope these can be implemented in the next update.

  15. #105
    Member
    Join Date
    Apr 2005
    Location
    Istanbul / Turkey
    Posts
    57

    Default

    Ok I will do these requests in next release ( soon )...

+ Reply to Thread
Page 7 of 9 FirstFirst ... 5 6 7 8 9 LastLast
Similar Threads & Tags
Similar threads

  1. Effective iframe/gumblar hack prevention?
    By Wallaby in forum Security
    Replies: 5
    Last Post: 04-30-2010, 11:36 AM
  2. SOLUTION for Gumblar/IFRAME/JS hacks with stolen FTP Passwords...
    By hidonet in forum cPanel and WHM Discussions
    Replies: 98
    Last Post: 12-22-2009, 10:44 PM
  3. iframe / javascript hacks?
    By jack01 in forum Security
    Replies: 612
    Last Post: 11-20-2009, 09:14 PM
  4. iframe / javascript hacks?
    By jack01 in forum cPanel and WHM Discussions
    Replies: 612
    Last Post: 11-20-2009, 09:14 PM
  5. IP addresses from IFrame Hacks
    By noimad1 in forum cPanel and WHM Discussions
    Replies: 22
    Last Post: 01-29-2008, 04:41 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube