1. Please take a little time for this simple survey! Thank you for participating!
    Dismiss Notice
  2. Dear Pleskians, please read this carefully! New attachments and other rules Thank you!
    Dismiss Notice
  3. Dear Pleskians, I really hope that you will share your opinion in this Special topic for chatter about Plesk in the Clouds. Thank you!
    Dismiss Notice

Spam - How are they getting to /tmp

Discussion in 'Plesk 11.x for Linux' started by whnunlife, Oct 24, 2012.

  1. whnunlife

    whnunlife New Pleskian

    11
     
    Joined:
    Oct 16, 2012
    Messages:
    10
    Likes Received:
    0
    So I was running top, and noticed that one of my domains, had many perl scripts running. After doing a perl script scan, I found that they somehow upload a file and extracted it.

    This is the path:

    /tmp/.picl/st

    Within this folder, there are the following:

    eb.php
    in
    index.html
    ini.inc
    in.txt
    list.txt
    ms
    msg.txt
    send.pl
    users

    and a few other files.

    So, after I remove this entire folder, how can I make sure that this does not happen again?
     
Loading...