Sanjoy Roy

[MCM, MCP, SCJP] – Senior PHP Programmer

Monthly Archives: May 2011

My site is hacked what to do?


If you are running store using creloaded 6.2 try to find the following signatures from your PHP scripts:

base64_decode
ob_start_flush
try_pick_colors
engines110
CoreLibrariesHandler

Mostly they are injected at the top of each files <?php //// ?>
Check the .htaccess file
Remove all uploaded .php script from /images/ directory.
Apply the patch.
https://www.creloaded.com/fdm_file_detail.php?file_id=191 (You need to register and login to creloaded site before you can download)
Change the /admin/ directory name.
Put a .htaccess password to /admin/ directory

How to report to google Publishing Protection Team when site is showing Reported Attack Page! (FireFox)


Browse: http://www.google.com/safebrowsing/report_error/?tpl=mozilla
Enter the URL: http://xyz.com.au
Type the captcha code
In comment area, write:
Dear Phishing Protection Team,
We are recently getting “Reported Attack Page!” on our site: http://xyz.com.au
We have recently cleaned the site and we can browse using Internet Explorer.
Please review our site and remove the publishing error.
Thank you.
Regards,
Company Name
Click on “Submit Report” when done.

How to restart cPanel service from command line – Linux Server?


In order to restart cPanel service from command line one need to execute below mentioned command:
[root@root ~]# /etc/rc.d/init.d/cpanel restart

How to report to google Publishing Protection Team when site is listed as compromised


You have to login to gmail (webmasters tools) to do this, here is the link:
https://www.google.com/webmasters/tools/home?pli=1
Click on Add a Site button and add your site url.
Then browse
https://www.google.com/webmasters/tools/reconsideration
Then write something like:
Dear Publishing Protection Team,
Our site is listed as “compromised.” on our site: http://www.xyz.com.au. The google safebrowsing diagnostic report is “This site is not currently listed as suspicious.”.
We can browse safely without having any suspicious alert.
Please review our site and remove the publishing notification.
Thank you.
Regards,
XYZ Pty Ltd.
Then Press “Request Consideration” button to finish. It usually takes 2 weeks (+) to review and get back to normal.

To Recover Your Parallels Plesk Panel Password on a Linux Server


Using SSH, log in to your server with the User ID and Password that you created when you set up your dedicated hosting account.
At the command line, type su -.
For your password, use the same password that you use with your User ID.
Type cat /etc/psa/.psa.shadow
This file contains your admin Parallels Plesk Panel password.

Where is CPanel Bandwidth Usage