.htaccess hacked

Discussion in 'Site & Server Administration' started by Pathan, Feb 18, 2009.

  1. #1
    Hello,

    Today couple of websites on my server were redirecting to some other website, after investigating the issue I have noticed that some one have modified the .htaccess file which was redirecting to some other website. I have also noticed that Last Login IP in cpanel was totally different IP then mine. Can anybody please tell me why this was happened i am running APF Firewall on cpanel/whm server, I have also installed Mod_security. I Would appreciate if some one will help me fixing this security threat.

    -Regards.
     
    Pathan, Feb 18, 2009 IP
  2. Camay123

    Camay123 Well-Known Member

    Messages:
    3,423
    Likes Received:
    86
    Best Answers:
    0
    Trophy Points:
    160
    #2
    insecured password ?
     
    Camay123, Feb 19, 2009 IP
  3. Pathan

    Pathan Well-Known Member

    Messages:
    2,196
    Likes Received:
    218
    Best Answers:
    0
    Trophy Points:
    165
    #3
    No Password was a real hard one I mean combination of $%)(_122 it was 100% Secure, so its not the reason that password was easy one.
     
    Pathan, Feb 20, 2009 IP
  4. grk519

    grk519 Peon

    Messages:
    293
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Have you checked your log files to see if anything malicious was uploaded / executed? Have you secured your /tmp directory? Have you disabled insecure PHP functions?
     
    grk519, Feb 20, 2009 IP
  5. Pathan

    Pathan Well-Known Member

    Messages:
    2,196
    Likes Received:
    218
    Best Answers:
    0
    Trophy Points:
    165
    #5
    tmp directory is already secured. Still waiting for better solutions.
     
    Pathan, Feb 20, 2009 IP