Go Back   Defender Hosting Forums > PowerVPS Virtual Private Servers > Linux VPS - Security and Tuning

Linux VPS - Security and Tuning Security and Tuning Discussion for Linux Virtual Private Servers based on Virtuozzo by SWsoft

Reply
 
Thread Tools Display Modes

  #1  
Old 08-30-2005, 10:57 AM
capnqwest
Guest
 
Posts: n/a
Default mt-comments.cgi worm?

I host a couple of MT sites for customers one here at PVPS and another at a terrible host and have been getting slammed with mt-comment.cgi spam. The process will spiral out of control until the box almost shuts down. My only option has been to chmod 000 mt-comments.cgi. Attempts to rename it were useless as that script gets detected in about 30 seconds.

When doing a TCPdump, hundreds of hosts from all over the world are calling it so putting the hosts in iptables wouldn't work. My bandwidth is through the roof.

Any suggestions?



I'm going to ask the folks at MoveableType but I wanted to hear what you guys thought from a server perspective.
Reply With Quote

  #2  
Old 08-30-2005, 12:14 PM
KARanden's Avatar
KARanden KARanden is offline
Member
 
Join Date: Jun 2005
Location: Norway
Posts: 79
KARanden is on a distinguished road
Send a message via AIM to KARanden
Default

Someone told me this problem is "gone" with the 3.2 version of MT?

Here is a link to some advice: Learning MT
__________________
Kjell Arne

From the other side of the "pond"
Norway
Reply With Quote

  #3  
Old 08-30-2005, 12:31 PM
capnqwest
Guest
 
Posts: n/a
Default

Yeah, I've requested my clients running 3.17 to upgrade to 3.2 but I don't see how that will stop the millions of GETs for mt-comment.cgi that are coming from the internet and sucking up gobs of bandwidth. It will probably help with resource usage though. The spammers aren't actually getting through to leave spam, it's just their constant calling for that script.
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump



All times are GMT -4. The time now is 03:57 AM.


vBulletin skin developed by: eXtremepixels
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Copyright Defender Technologies Group, LLC 2006