• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Securing my website

Joined
Jun 16, 2008
Messages
456 (0.08/day)
Location
San Antonio TX
System Name Don't Tell My Wife
Processor i7-13700K
Motherboard ASUS ROG Strix Z690-F Gaming WiFi 6E
Cooling ASUS ROG Strix LC II 240 + Four 120mm Noctua's
Memory 32GB Vengeance DDR5 5600
Video Card(s) RTX 3080Ti
Storage (3) M.2 SSD's
Display(s) Phillips 144Hz 1Ms + Gigabyte 34" ultrawide
Case Lian Li Lancool 2 Mesh
Audio Device(s) Onboard Sound
Power Supply Corsair 850w Modular
Mouse G502 Hero
Keyboard Steelseries MERC - best kbd EVER!
Software Win 10 Pro

Solaris17

Super Dainty Moderator
Staff member
Joined
Aug 16, 2005
Messages
25,845 (3.79/day)
Location
Alabama
System Name Rocinante
Processor I9 14900KS
Motherboard EVGA z690 Dark KINGPIN (modded BIOS)
Cooling EK-AIO Elite 360 D-RGB
Memory 64GB Gskill Trident Z5 DDR5 6000 @6400
Video Card(s) MSI SUPRIM Liquid X 4090
Storage 1x 500GB 980 Pro | 1x 1TB 980 Pro | 1x 8TB Corsair MP400
Display(s) Odyssey OLED G9 G95SC
Case Lian Li o11 Evo Dynamic White
Audio Device(s) Moondrop S8's on Schiit Hel 2e
Power Supply Bequiet! Power Pro 12 1500w
Mouse Lamzu Atlantis mini (White)
Keyboard Monsgeek M3 Lavender, Akko Crystal Blues
VR HMD Quest 3
Software Windows 11
Benchmark Scores I dont have time for that.
what are they doing/trying to do?
 

Easy Rhino

Linux Advocate
Staff member
Joined
Nov 13, 2006
Messages
15,443 (2.43/day)
Location
Mid-Atlantic
System Name Desktop
Processor i5 13600KF
Motherboard AsRock B760M Steel Legend Wifi
Cooling Noctua NH-U9S
Memory 4x 16 Gb Gskill S5 DDR5 @6000
Video Card(s) Gigabyte Gaming OC 6750 XT 12GB
Storage WD_BLACK 4TB SN850x
Display(s) Gigabye M32U
Case Corsair Carbide 400C
Audio Device(s) On Board
Power Supply EVGA Supernova 650 P2
Mouse MX Master 3s
Keyboard Logitech G915 Wireless Clicky
Software The Matrix
yea a description of the problem would be nice...
 
Joined
Jun 16, 2008
Messages
456 (0.08/day)
Location
San Antonio TX
System Name Don't Tell My Wife
Processor i7-13700K
Motherboard ASUS ROG Strix Z690-F Gaming WiFi 6E
Cooling ASUS ROG Strix LC II 240 + Four 120mm Noctua's
Memory 32GB Vengeance DDR5 5600
Video Card(s) RTX 3080Ti
Storage (3) M.2 SSD's
Display(s) Phillips 144Hz 1Ms + Gigabyte 34" ultrawide
Case Lian Li Lancool 2 Mesh
Audio Device(s) Onboard Sound
Power Supply Corsair 850w Modular
Mouse G502 Hero
Keyboard Steelseries MERC - best kbd EVER!
Software Win 10 Pro
Trying to get into the admin area..trying to mess with the modules..ect ect. The website is based on Nuke Evolution Extreme 2.0
 
Joined
Aug 24, 2007
Messages
443 (0.07/day)
Location
BY-S36
System Name Bitch / Dogma
Processor 955 BE @ 3.8Gig / 9850 @stock
Video Card(s) 8800 GTX 512 / 4890
Storage 8 x Samsung F2 1.5TB, 8 x Seagate 500s
Display(s) Acer 24 / Dell 24
Case Lian li / Akasa
Software Win server 2008 / Win 7
You will constantly get attacked by bots, scripts...you name it...

here is one extract from my web server:
- [Sat Mar 27 17:56:09 2010] [error] [client 124.42.124.251] File does not exist: C:/UniServer/www/scripts
- [Sat Mar 27 17:57:16 2010] [error] [client 124.42.124.251] File does not exist: C:/UniServer/www/phpMyAdmin
- [Sat Mar 27 17:58:26 2010] [error] [client 124.42.124.251] File does not exist: C:/UniServer/www/phpmyadmin
- [Sun Mar 28 10:35:55 2010] [error] [client 94.102.211.93] File does not exist: C:/UniServer/www/phpMyAdmin
- [Sun Mar 28 10:36:45 2010] [error] [client 94.102.211.93] File does not exist: C:/UniServer/www/phpmyadmin
- [Sun Mar 28 10:37:39 2010] [error] [client 94.102.211.93] File does not exist: C:/UniServer/www/pma
- [Sun Mar 28 10:38:32 2010] [error] [client 94.102.211.93] File does not exist: C:/UniServer/www/mysql
- [Sun Mar 28 10:39:24 2010] [error] [client 94.102.211.93] File does not exist: C:/UniServer/www/scripts
- [Sun Mar 28 12:50:14 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/phpmyadmin
- [Sun Mar 28 12:50:15 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/pma
- [Sun Mar 28 12:50:16 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/admin
- [Sun Mar 28 12:50:17 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/dbadmin
- [Sun Mar 28 12:50:18 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/mysql
- [Sun Mar 28 12:50:20 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/php-my-admin
- [Sun Mar 28 12:50:21 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/myadmin
- [Sun Mar 28 12:50:22 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/PHPMYADMIN
- [Sun Mar 28 12:50:23 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/phpMyAdmin
- [Sun Mar 28 12:50:24 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/config
- [Sun Mar 28 12:50:28 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/phppgadmin
- [Sun Mar 28 12:50:34 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/phpMyAdmin2
- [Sun Mar 28 12:50:35 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/mail
- [Sun Mar 28 12:50:38 2010] [error] [client 61.147.67.206] File does not exist: C:/UniServer/www/webmail

The best options for you are:

Make sure that you regularly patch your server...PHP, MySQL, Apache, IIS etc
Add the incoming IP addresses to your block list at the router (tbh this will be a full time job as the IPs will change day by day
Make sure that your admin passwords are long, alpha-numeric and contain at least one special char.
 

Solaris17

Super Dainty Moderator
Staff member
Joined
Aug 16, 2005
Messages
25,845 (3.79/day)
Location
Alabama
System Name Rocinante
Processor I9 14900KS
Motherboard EVGA z690 Dark KINGPIN (modded BIOS)
Cooling EK-AIO Elite 360 D-RGB
Memory 64GB Gskill Trident Z5 DDR5 6000 @6400
Video Card(s) MSI SUPRIM Liquid X 4090
Storage 1x 500GB 980 Pro | 1x 1TB 980 Pro | 1x 8TB Corsair MP400
Display(s) Odyssey OLED G9 G95SC
Case Lian Li o11 Evo Dynamic White
Audio Device(s) Moondrop S8's on Schiit Hel 2e
Power Supply Bequiet! Power Pro 12 1500w
Mouse Lamzu Atlantis mini (White)
Keyboard Monsgeek M3 Lavender, Akko Crystal Blues
VR HMD Quest 3
Software Windows 11
Benchmark Scores I dont have time for that.
^ this. it happens all the time

[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:14 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:15 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:15 2010] [error] [client 83.7.109.170] File does not exist: /usr/local/apache/htdocs/images, referer:
[Fri Apr 02 15:25:18 2010] [error] [client 60.28.232.49] File does not exist: /usr/local/apache/htdocs/upimg, referer:
[Fri Apr 02 15:25:18 2010] [error] [client 60.28.189.102] File does not exist: /usr/local/apache/htdocs/upimg, referer:

password protect important dir and I personally 775 dir. and 644 files as a general rule. of course certain files and dir will get certain permissions.

EDIT:: also to make it easy. if you have root access and an FTP account get your self file-zilla or any other easy use FTP program. It allows you to do the changes above in bulk.



take that picture for example. you can right click on any dir. or hit CTRL+A and select them all. right click enter the permissions you want to give click "recurse" and you can apply them to files+dir. files or just dir. So say for example you want to go basic like i said above. you would go to root. select all right click. type 755 recurse "apply to all dir." then hit ok. it will immedietly start to change all your dir permissions (including sub dir.) to the permissions you set. after the operation is done. go back to root. select all type 644 recurse "apply to files only"
 
Last edited:
Top