• Debian 11 is approaching its end-of-life (vendor EOL date - August 31, 2026). Plesk Obsidian 18.0.80 will be the last release to support it.
    If you are running Plesk Obsidian on Debian 11, we recommend you upgrade those servers to Debian 12 using our dist-upgrade tool.
  • We plan to deprecate and remove the support for XML RPC protocol versions earlier than 1.6.9.1 in Plesk Obsidian 18.0.82. We strongly recommend that you update all existing integrations using earlier versions of the XML RPC protocol to comply with the version 1.6.9.1 specification.

Looking for Virus/Malicious script...

U

ullone

Guest
Yesterday i have received an email that tell me that my server did a port scanning
Is it possible, in plesk, do a check to see if it is possible to find some rootkits on my server and looking for some evidence of hacking scripts in the server ?
I think that if my server did a port scanning agaist other sites/servers, some intruders has inserted in some place in the server a script to attack other sites. Or not ? Otherwise i don't understand what system has used to server to make the port scanner ?
Is it possible in plesk to verify if exist some virus or malicious scripts on the server ?
Exist a system to check if exist a virus/malicious script in the server ?
Is it possible to install some system in the server to check the existance of virus/malicious scripts ?

I'm not an expert for nothing but now i have lauched the WatchDog software in Plesk panel.

Running WatchDog i have the message :

Warning: Scanning completed at Oct 28, 2006 03:32 AM. Considerable existing/potential security problems were detected in the system. For details, see the log below.
---------------------------- Scan results ----------------------------

MD5
MD5 compared: 53
Incorrect MD5 checksums: 0

File scan
Scanned files: 342
Possible infected files: 0

Application scan
Vulnerable applications: 1

Scanning took 547 seconds
Scan results written to logfile (/var/log/rkhunter.log)

........................

WHAT I HAVE TO DO ???
I have some virus in the server or malicious script ?
 
Back
Top