Find and remove malware on a Linux server

En curso Publicado Dec 8, 2014 Pagado a la entrega
En curso Pagado a la entrega

The IP address of my dedictaed linux server keeps getting blacklisted by the CBL.

I have tried search the log files but I can't see how/if the server is actually infected with malware.

The CBL gives the following reason for the blacklisting

"This IP is sending email in such a way to indicate that it is, or is NATting for a web server that is infected with a spam sending script, like Darkmailer, DirectMailer, r57shell, or some analogous Perl, PHP or CGI script."

I am looking for a Linux expert who is experienced at looking at log files and port activity to find the source of the infection and remove it.

My server doesn't have a GUI e.g. Plesk and so is accessed by SSH command line only.

The server runs Magento and two installation of Wordpress. Hence the ideal person would be familiar with these two pieces of software, to ensure that any investigation work undertaken doesn't disrupt the actual server working.

In terms of action already taken, I was mostly worried about wordpress vulnerabilities. Hence I have installed the premium version of WordFence to protect the wordpress installations. I have also deleted all blog comments and prevented future blog comments in case this was allowing some kind of malicious injection.

I have setup a SPF record to identify the IP address as being able to send emails on behalf of my domain name. I have also setup the server hostname and reverse DNS. HOwever, I realise this doesn't address the malware issue.

I have tried to look at the server logs but I can't see much activity on Port 25. However, I am aware that some malware can bypass the logs so this doesn't catch everything, I also ran [login to view URL] but this flagged up logs of jpg files which in fact were not corrupted at all, and so it doesn't really help find the cause of the issue.

If you are interested please give an an idea of your experience in fixing this kind of issue, as really I would like to pay the price for an expert rather than an enthusiastic learner.

Manejo de email Linux Magento PHP WordPress

Nº del proyecto: #6837968

Sobre el proyecto

17 propuestas Proyecto remoto Activo Dec 8, 2014

17 freelancers están ofertando un promedio de £155 por este trabajo

raju51279

hello sir , we can do it and we will submit the site in google and remove blacklist issure from all search engine. thanks raj

£94 GBP en 3 días
(1047 comentarios)
8.5
p4provider

Hello, Here are Magento Experts , 1. Easy access on IMs like Gtalk, Skype, Yahoo and MSN 2. Excellent Communication Skills 3. Immediate response to concerns and queries 4. Payments linked to delivery miles Más

£150 GBP en 3 días
(159 comentarios)
7.8
letshappy

hello, i am red hat certified engineer and i am more then 4 year experience in this field i easily can do this task ready to start now thanks

£142 GBP en 1 día
(212 comentarios)
7.5
metaexcel

Hello Sir, I will go through your whole server manually. My experience says that If one infected file exists on your server then it will infect your whole server. So I need to check each file and folder manually. I wil Más

£89 GBP en 3 días
(357 comentarios)
7.2
Armref

A proposal has not yet been provided

£105 GBP en 1 día
(67 comentarios)
6.8
tuxadmin

Hi, My name is Jerome, I have been working for the past 16 years as an information security expert. I am ranked #1 in Web Security here on Freelancer. My bid for your project includes : 1) removing any harmful Más

£225 GBP en 3 días
(132 comentarios)
6.6
suy99

A proposal has not yet been provided

£277 GBP en 3 días
(60 comentarios)
5.4
webrevolution

Hello, I have huge experience in Linux server Also about LAMP architecture, I have atleast 10 years experience in LAMP. I can help you transfer hosting , help you backup your data reliably or restore your Más

£222 GBP en 3 días
(22 comentarios)
5.1
darklca

Hello i`m unix/linux eng with exp over 15y, i`ll be glad to help u with your malware. Im only writing so u will have backup options in case those india guys will not handle it properly :) So in case other guys fai Más

£111 GBP en 0 días
(16 comentarios)
3.9
adamzaleski

Hello I'm willing to help you with mailware removal on your Linux sever. I'm experienced system administrator with more then 10years of experience in IT. Could you please tell me what Linux distribution you are us Más

£61 GBP en 3 días
(18 comentarios)
3.7
JinThunder

A proposal has not yet been provided

£150 GBP en 3 días
(0 comentarios)
0.0