Linux Software & Blog
- Upgrade CentOS 4.8 to 5.x (32bit) (47)
- Linux Malware Detectection (11)
- Linux Malware Detect: 2 Years Strong (10)
- Happy Birthday APF: 8 Years Strong (7)
- Nginx: Caching Proxy (7)
- LMD: One Year Later (7)
- Data Integrity: AIDE for Host Based Intrusion Detection (5)
- ATA Over Ethernet: As an Alternative (5)
- BFD 1.4: Important Security Fix (4)
- Better Late Than Never: Linux Malware Detect 1.3 (3)
- Mikkie: As for the problem with Modsec 2.7, it seems this can be workaround by appending an unused Action...
- Mikkie: Maldet has been awesome so far, and we have been using it together with Modsecurity. However,...
- Ryan M.: maldet -c /path/to/file
- Awais Zaib: How do i send malicious script signature to you that is not detected by maldet ?
- Ryan M.: In the file /usr/local/maldetect/internals.conf, change the line that...
- Glenn: I've run into a small problem like I can see many others have. When running: maldet -m...
- james o: Thanks for an awesome malware detection solution!
- Brandon: Hi Ryan, When running maldet in ionotify mode, it writes an empty file named "0" in the directory...
Donation Roll
2/22/2013 Senol ERDOGAN $5
2/13/2013 Steve Thompson $10
2/12/2013 Conor Moran $50
2/11/2013 Hennings Bitsch $30
2/8/2013 Viewdale Holdings $50
More...
LMD Malware Updates- gzbase64.inject.unclassed.792.MD5
Mon, 03 Jun 2013 04:00:20 UTC - gzbase64.inject.unclassed.1185.MD5
Mon, 03 Jun 2013 04:00:16 UTC - perl.ircbot.Arabhack.1792.MD5
Mon, 03 Jun 2013 04:00:15 UTC - php.cmdshell.r57.4571.MD5
Mon, 03 Jun 2013 04:00:14 UTC - php.cmdshell.mic22.4153.MD5
Mon, 03 Jun 2013 04:00:14 UTC - perl.ircbot.karawan.2793.MD5
Mon, 03 Jun 2013 04:00:14 UTC - php.ircbot.pbot.8038.MD5
Mon, 03 Jun 2013 04:00:09 UTC - php.nested.base64.8605.MD5
Mon, 03 Jun 2013 04:00:09 UTC - php.ircbot.pbot.8125.MD5
Mon, 03 Jun 2013 04:00:08 UTC - php.ircbot.pbot.7716.MD5
Mon, 03 Jun 2013 04:00:06 UTC
- gzbase64.inject.unclassed.792.MD5

about 1 year ago
For working with Cpanel , you need to make sure that cpanel runs the post and pre upcp commands which disable and reenable LES. these scripts that you may need to edit / create are :
/scripts/postupcp and /scripts/preupcp
about 1 year ago
Same question as above. I wonder if somebody has test this script on cPanel. And if there is special setup for cPanel.
about 1 year ago
The use of LES on a cPanel server will lead to issues as certain RPMs that have had immutable bits set cannot be upgraded. This then leads to failure of cPanel component or scripts like upcp used to upgrade the system. As yum can’t upgrade RPMs with files set immutable, upcp then fails.
about 2 years ago
Dear sir,
please If I use this script and enable all option ( les -ea)
is that influence on server updates and cpanel update ?
please advise me