1. Advertising
    y u no do it?

    Advertising (learn more)

    Advertise virtually anything here, with CPM banner ads, CPM email ads and CPC contextual links. You can target relevant areas of the site and show ads based on geographical location of the user if you wish.

    Starts at just $1 per CPM or $0.10 per CPC.

Who is reponsible for virus in a Joomla based site?

Discussion in 'Joomla' started by Deepika20, Oct 30, 2011.

  1. #1
    1.Is it the website designer/developer,or is it the hosting company?

    2.What steps must be taken so that all virus is removed immediately from such a site?
     
    Deepika20, Oct 30, 2011 IP
  2. elicitservers

    elicitservers Peon

    Messages:
    714
    Likes Received:
    7
    Best Answers:
    1
    Trophy Points:
    0
    #2
    Could be anyone/anything. Usually the culprit is insecure or out of date scripts, it's good to keep all your scripts updated since vulnerabilities are patched from time to time to prevent issues like this. The hosting company can have implementations to help secure a site, so it's good to see if you host has any of these implementations in place.

    You can get your provider to re-create your account on the server, but beforehand take a backup and scan it against your A/V to remove any infected files, then re-upload or restore your files from the backup.
     
    elicitservers, Oct 30, 2011 IP
  3. gtownfunk

    gtownfunk Member

    Messages:
    26
    Likes Received:
    0
    Best Answers:
    1
    Trophy Points:
    41
    #3
    It depends what kind of virus you're talking about. If someone is running a cross-site scripting exploit on you, recreating the account and putting the code back on is not going to help. I have had several Joomla sites and no viruses.
     
    gtownfunk, Oct 30, 2011 IP
  4. RW1210

    RW1210 Peon

    Messages:
    29
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #4
    If you read Hosting Company Policy, they are not responsible for any 3rd party software. In some cases of intrusive scripts/virus host can block your site and ask to remove completely from their servers but if you have luck they will warn you and help you to clean up the mess.
     
    RW1210, Nov 1, 2011 IP
  5. seo.vijay

    seo.vijay Member

    Messages:
    391
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    30
    #5
    Virus can come from anyone's hand who is using FTP or cPanel, It can be you or your designer. And Its sure hosting company is not responsible for this.
     
    seo.vijay, Nov 1, 2011 IP
  6. futureslay

    futureslay Peon

    Messages:
    27
    Likes Received:
    0
    Best Answers:
    2
    Trophy Points:
    0
    #6
    Anyone at all with the ability to upload, download and/or modify the files directly.
     
    futureslay, Nov 7, 2011 IP
  7. VideoWhisper.com

    VideoWhisper.com Well-Known Member

    Messages:
    330
    Likes Received:
    6
    Best Answers:
    2
    Trophy Points:
    113
    Digital Goods:
    2
    #7
    Usually malware gets on joomla sites after attacks based on component vulnerabilities. In example a component that allows users to upload their picture but does not check file contents/extensions, so attackers can upload a php script to take over the website. Usually modern attacks are more complex than this example.

    You have to clean it up or best reinstall everything from scratch and then make sure exploits are closed.

    For that you'll have to update all software to latest available version, stop using components that are known to have exploits (check vulnerability sites for each of the components you're using), change passwords from time to time (especially after new developers worked on the server).

    If it's a profitable production site, hire a security adviser to check it from time to time and run some scanners to look for suspicious files.
    In example http://ateom.com/malwarescanner/ .

    Also, make sure server has magic_quotes On to prevent some variable attacks.
     
    VideoWhisper.com, Nov 8, 2011 IP
  8. md7waseem

    md7waseem Peon

    Messages:
    86
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Change file permissions unwritable except cache, tmp, images. Its might be a good solution
     
    md7waseem, Nov 17, 2011 IP