Knowledgebase

Portal Home > Knowledgebase > Articles Database > script spam and block ip...


script spam and block ip...




Posted by ttgt, 01-27-2014, 11:02 AM
Hi, frequently,user's site will be upload form or use it's default form to spam, and when i find it,i need to manually to chomwn 000 the folder of the account, but my ip may be already thought as spam and list on blocking. my servers are cloudlinix with cpanel, do you have any ideal to avoid it ? thanx

Posted by zacharooni, 01-27-2014, 11:36 AM
It sounds like you need to start reviewing your orders before accepting them. Also, how long does an account usually sit for before starting to spam? You could implement auto Demo-mode which will disable email on cPanel servers, then after say 24 or 48 hours, it will allow outbound email. You can't really do anything to completely avoid it except harden your infrastructure, scan outgoing emails, setup modsecurity, and enforce strong passwords. Maybe look for commonalities in the accounts that you end up touching, such as common reseller, common recipient as well.

Posted by ttgt, 01-27-2014, 11:41 AM
those users are fine and not spam by them self,it is because they may use some cms frequently(ex:joomla or wordpress),and the cms or it's addon has form or be upload a form to spam.

Posted by zacharooni, 01-27-2014, 11:51 AM
You could easily construct a ModSecurity SecRule to block specific plugins or filenames/directories to block them.



Was this answer helpful?

Add to Favourites Add to Favourites    Print this Article Print this Article

Also Read
Looking for Liaisons (Views: 558)


Language:

Contact us