Reporting the Shell Script that is your worst nightmare
Forum
  1. Forums
  2. General
  3. General Discussion
  1. Anonymous User
  2. Tuesday, 02 June 2020
  3.  Subscribe via email
Hello,

We are using imunify since the very beginning. Always happy with the improvements and tweak you make for making it the best of best on the market. But the reason I am here today is because 6 months ago I've reported a malicious shell script that is powerful in function and extremely stealth which not fixed yet. They keep udpating their script and adding more features to it and surprisingly it works better than the cPanel itself lol.

I have again reported this malicious shell script hoping that Imunify will fix it in the next update. I want you other member be aware of the shell script that is called ALFA v4 aka Tesla (https://github.com/solevisible/ALFA-SHELL-V4)

here is a screenshot from how it can take over https://i.ibb.co/J2Nn9Mp/Screenshot-at-Jun-03-00-26-38.png

Thank you for your attention and be aware of such malware.
Rate this post:
  1. 03.06.2020 08:06:02
  2. # 1
Sergey Khristich Accepted Answer
Posts: 385
Joined: 20.05.2019
0
Votes
Undo
Hello,
Thanks for the feedback and for reaching out! These samples were processed and the Imunify scanner is already detecting it.
Signature:
SMW-SA-15280-php.bkdr.wshll
If you require any further information, let me know. Hope to hear from you soon.
Marketing Manager
  • Page :
  • 1


There are no replies made for this post yet.
Be one of the first to reply to this post!
Guest
Submit Your Response
Upload files or images for this discussion by clicking on the upload button below. Supports gif,jpg,png,zip,rar,pdf
• Insert • Remove Upload Files (Maximum File Size: 2 MB)
Captcha
To protect the site from bots and unauthorized scripts, we require that you enter the captcha codes below before posting your question.