Solved

Malware Problem on Web Site

Posted on 2013-01-03
6
397 Views
Last Modified: 2013-01-03
Our church web site just presents information and allows downloading recordings of talks/classes.  We don't sell anything, etc.  We don't require login.  We have no scripts, etc.

We use the hosting service, Bluehost.

Google alerted us that we had malware.  We removed it and changed to a 10 character complex password and it keeps coming back.  We have checked for added "chron jobs" and there are none.

Bluehost isn't much help.  Is there a hosting service that will provide adequate security?  We know there are third party security services like sucuri.net but the hosting service should provide some security.  A quick search indicates that none of them seem to make any strong effort on security.

Also, any guidance on third party security services would be welcome.

Thanks.

Gar
0
Comment
Question by:garcpr
  • 3
  • 2
6 Comments
 
LVL 29

Expert Comment

by:Randy Downs
ID: 38740742
There are plenty of hosts like Rackspace that provide much better security but it comes at a cost. Where Bluehost is very reasonably priced they don't offer much in support.

What sort of malware was detected. If it was an exploit of php then shutting down php would resolve the issue but would disable any dynamic pages you have using php.

There are also 3rd party solutions like McAfee that will scan your site for vulnerabilities but that won't help much if your host can't or won't fix them.
0
 

Author Comment

by:garcpr
ID: 38741115
At this point, I'm not sure about the kind of malware (I'm a retired engineer, not an IT person).  And it now appears that our current problem is getting Google to remove a blacklist on our site.  I looked at our code on Bluehost and I don't see any malware lines.  I was going to send you an example (would that have been a problem?).  It involved something about "ifiles".  We don't have any dynamic pages.

Thanks for recommending Rackspace.  Could you suggest a couple more similar services so we can compare them?
0
 
LVL 29

Expert Comment

by:Sudeep Sharma
ID: 38741116
@garcpr,

I would recommend you to scan your website by going to below link. This would scan your website and let you know the probable cause of why it has been listed with Google and also what pages contains the scripts which you would need to remove.

Further you would need to make sure that you website it updated if you are using the older version of wordpress or some old modules of wordpress which are vulnerable.

Link to scan the website:

http://www.sucuri.net/

Sudeep
0
Simplifying Server Workload Migrations

This use case outlines the migration challenges that organizations face and how the Acronis AnyData Engine supports physical-to-physical (P2P), physical-to-virtual (P2V), virtual to physical (V2P), and cross-virtual (V2V) migration scenarios to address these challenges.

 
LVL 29

Expert Comment

by:Randy Downs
ID: 38741919
If you don't have active pages then you probably have some scripts that are causing the problem. Look at your .js files.

Additionally you may have pages & folders that were added to your site.
0
 
LVL 29

Accepted Solution

by:
Randy Downs earned 500 total points
ID: 38741955
0
 

Author Closing Comment

by:garcpr
ID: 38742430
Thanks for your help.

Thanks to Sudeep also for his suggestions.

I checked again and we don't have any scripts or .js files.  There are a few small php files.  I think they are Bluehost files.

Our site is, as I described it, very simple.  It is "small", it's scope and functionality are quite narrow compared to commercial sites, etc.

Gar
0

Featured Post

Migrating Your Company's PCs

To keep pace with competitors, businesses must keep employees productive, and that means providing them with the latest technology. This document provides the tips and tricks you need to help you migrate an outdated PC fleet to new desktops, laptops, and tablets.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How do we balance the user experience (UX) with reasonable security measures? It can be done, if you keep these fundamentals in mind.
Each year, investment in cloud platforms grows more than 20% (https://www.immun.io/hubfs/Immunio_2016/Content/Marketing/Cloud-Security-Report-2016.pdf?submissionGuid=a8d80a00-6fee-4b85-81db-a4e28f681762) as an increasing number of companies begin to…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, Just open a new email message.  In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question