<br>
<b>Warning</b>:  Undefined array key "HTTP_REFERER" in <b>/home/webhostingchenna/domains/webhostingchennai.co.in/public_html/blog/wp-content/plugins/wp-linkbuilder/plugin/plugin_class.inc.php</b> on line <b>637</b><br>
{"id":1139,"date":"2019-03-07T16:25:06","date_gmt":"2019-03-07T10:55:06","guid":{"rendered":"http:\/\/www.webhostingchennai.co.in\/blog\/?p=1139"},"modified":"2019-04-15T09:55:07","modified_gmt":"2019-04-15T04:25:07","slug":"pyxsoft-antimalware-guide","status":"publish","type":"post","link":"https:\/\/www.webhostingchennai.co.in\/blog\/pyxsoft-antimalware-guide\/","title":{"rendered":"Pyxsoft AntiMalware : Installation and Configuration (Step by Step Guide)"},"content":{"rendered":"<h4><span style="">Pyxsoft AntiMalware : Installation and Configuration (Step by Step Guide)<\/span><\/h4>\n<p><strong>Pyxsoft antimalware<\/strong> Plugin for cPanel\/WHM protects your server from attacker scripts such as <a href="">c99shell<\/a>, <a href="">r57shell<\/a>, <a href="">ANIShell,<\/a> and hundreds more. It is a real-time Anti Malware for cPanel\/WHM. Attackers can take control of your servers or can damage your customer\u2019s data by uploading one of these scripts.<\/p>\n<p><strong>Pyxsoft antimalware plugin works to protects your server in two ways<\/strong><\/p>\n<p><strong>1.Protecting from the six entrance of server<\/strong><\/p>\n<ul>\n<li>SQL Injection<\/li>\n</li><li>Legitimate Access (SSH, cPanel etc)<\/li>\n</li><li>Web Forms<\/li>\n</li><li>FTP<\/li>\n</li><li>Brute Force Attacks<\/li>\n</li><li>Installed Trojans or shells<\/li>\n<\/ul>\n<p><strong>2.With additional methods<\/strong><\/p>\n<p><strong>Scanning all changes every night<\/strong><\/p>\n<p>On every night the Pyxsoft antimalware plugin will scan all the files changed during last day and the results are mailed to root administrator. The scan is small and will detect all the new malware installed in the server.<\/p>\n</p><p><strong>Blocking generic bad-requests<\/strong><\/p>\n<p>Pyxsoft antimalware plugin employs many Mod security rules that reject PHP injection, SQL injection and many known script vulnerabilities such as Timthumb exploit, Joomla password change exploit, OsCommerce upload exploit, and much more. It will keep the customers safe even if their scripts are unsafe and out of date. Also always remember that the Pyxsoft antimalware plugin will help you managing your servers, it not replaces the administrator.<\/p>\n</p><p>There are also certain cases where Pyxsoft antimalware plugin will not provide protection. These are as follows:<\/p>\n</p><ul>\n<li>If attacker steals or guess your SSH password.<\/li>\n</li><li>If you don\u2019t delete the malware found in the regular scan.<\/li>\n</li><li>If your server is already hacked with a rootkit.<\/li>\n</li><li>Malware uploaded via cPanel file manager will be detected at the night scan.<\/li>\n<\/ul>\n<p><strong>Scanning your whole server<\/strong><\/p>\n<p>Initially the Pyxsoft antimalware plugin will scan the entire server to find out the installed malware. The definitions include ClamAV database and 6,000 additional malware signatures including perl files, PHP shells, PHP uploaders, PHP downloaders, IRC bots and Mass Mailers.<br>\nYou will get the detailed list of the infected files once the scanning of the server is finished. Scanning is called with the nice Linux commands. Scanning the whole server will not increase the server load in more than 1 or 1.5 units.<\/p>\n</p><p><strong>Inspecting uploads<\/strong><\/p>\n<p>Most important feature is that the customers never upload PHP scripts using HTML formats. Pyxsoft antimalware plugin will scan all HTTP and FTP files in real time. All perl and PHP scripts will be rejected in HTTP uploads. If you keep Pyxsoft antimalware plugin to inspect all HTTP uploads while starting a new server, the chance of hacking can be reduced.<\/p>\n</p><p>Attackers tries all new discovered script vulnerabilities. Many times, attackers have user and password for WordPress, Joomla or OsCommerce sites and can use them to upload malware scripts. Even in those cases, they will not be able to upload their scripts.<\/p>\n</p><p>For the proper working Pyxsoft antimalware plugin needs,<\/p>\n</p><ul>\n<li>WHM\/cPanel version 11.30 or superior<\/li>\n</li><li>Apache Web Server<\/li>\n</li><li>Mod Security 2.5 or superior installed<\/li>\n</li><li>Internal WHM Ioncube loader enabled<\/li>\n</li><li>ClamAV Antivirus installed<\/li>\n<\/ul>\n<p><strong>Note :<\/strong>\u00a0Pyxsoft antimalware plugin will not work with Lighttpd, Litespeed or Nginx web servers.\u00a0The plugin will work in trial mode for 7 days even if you don\u2019t have license.<\/p>\n<p><strong>Installing &amp; configuring the Pyxsoft antimalware plugin<\/strong><\/p>\n<p>For installing the <a href="">Pyxsoft antimalware plugin<\/a>, execute the following commands in a SSH console:<\/p>\n<pre>root@server [~]# cd ~\r\n\r\nroot@server [~]# wget http:\/\/www.pyxsoft.com\/software\/antimalware\/anti_malware.tar.gz\r\n\r\nroot@server [~]# tar -xzf anti_malware.tar.gz\r\n\r\nroot@server [~]# cd anti_malware\r\n\r\nroot@server [~]# sh install.sh<\/pre>\n<p>If the installation is completed successfully, enter WHM and go to Pyxsoft Antimalware.<\/p>\n</p><p><strong>Installing Mod Security<\/strong><\/p>\n<p>The following steps are to be performed to install mod security, and care should be taken when recompiling the system. (Do it at your own risk.)<\/p>\n</p><ul>\n<li>Log into your WHM panel<\/li>\n</li><li>Click on EasyApache option<\/li>\n</li><li>Click on &#8220;Previously Saved Config&#8221; and &#8220;Start cusomizing based on profile&#8221; button.<\/li>\n</li><li>Select Apache 2.2 (or Apache 2 if you use PHP 4) and go to Next Step<\/li>\n</li><li>Select your preferred PHP Version. PHP 5 is recommended. Go to Next Step.<\/li>\n</li><li>Select minor version or use the selected one. Go to Next Step.<\/li>\n</li><li>Check the Mod Security option. Leave the other options as suggested.<\/li>\n</li><li>Click &#8220;Save and Build&#8221;<\/li>\n</li><li>Click on &#8220;Yes&#8221; when asked you to recompile Apache and PHP and wait until the process is finished.<\/li>\n<\/ul>\n<p><strong>Enabling Ioncube<\/strong><\/p>\n<p>Follow the steps to enable the internal ioncube loaders in order to execute Pyxsoft antimalware plugin.<\/p>\n</p><ul>\n<li>Log into your WHM panel<\/li>\n</li><li>Go to Tweak Settings Click PHP<\/li>\n</li><li>Check &#8216;ioncube&#8217;\u00a0in cPanel PHP loader. If you had selected source guardian, it means that you probably have another extension in conflict with Anti Malware Plugin.<\/li>\n</li><li>Save the changes.<\/li>\n<\/ul>\n<p><strong>Installing ClamAV<\/strong><\/p>\n<p>Installing <a href="">ClamAV<\/a> is easier while compared to the installation of mod security. Steps are as follows<\/p>\n<ul>\n<li>Log into your WHM panel<\/li>\n</li><li>Click on Manage Plugins option.<\/li>\n</li><li>At the right side of the screen, locate ClamAV and check &#8220;Install and keep updated&#8221;<\/li>\n</li><li>Click Save.<\/li>\n<\/ul>\n<p>cPanel\u00a0will take about 20 minutes to install ClamAV in your server and the operation should not be interrupted in between.<\/p>\n</p><p><strong>Uninstalling the Pyxsoft antimalware plugin<\/strong><\/p>\n<p>For uninstalling the Pyxsof antimalware plugin, execute the following commands in a SSH console:<\/p>\n</p><pre>root@server [~]# cd \/usr\/share\/ilabs_antimalware\/includes\r\n\r\nroot@server [~]# sh uninstall.sh<\/pre>\n<p>You should verify that your Apache (httpd) and ftp (pure-ftpd) services are running after uninstalling the Pyxsoft antimalware plugin.<\/p>\n</p><p>Screenshots of Pyxsoft antimalware plugin in WHM<\/p>\n</p><p><a href=""><img data-recalc-dims=""><\/a><\/p>\n<p>General Settings : Here we can set the common settings for the plugin<\/p>\n</p><p>For installing Linux Malware Detect (Maldet) On CentOS : <a href="">Click here<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#46;&#46;&#46;<\/p>\n","protected":false},"author":1,"featured_media":1051,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[20],"tags":[137,139,136,141,138,140],"class_list":["post-1139","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-vps","tag-antimalware","tag-antimalware-installation","tag-pyxsoft","tag-pyxsoft-configuration-guide","tag-pyxsoft-installation","tag-pyxsoft-installation-guide"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2019\/02\/pyxsoft.jpg?fit=640%2C240&ssl=1","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p9NOHH-in","jetpack-related-posts":[{"id":630,"url":"https:\/\/www.webhostingchennai.co.in\/blog\/securing-your-cpanel-server-webhosting-chennai\/","url_meta":{"origin":1139,"position":0},"title":"How to secure your WHM\/cPanel server","author":"Cavin","date":"October 10, 2017","format":false,"excerpt":"Secure your cPanel server After the initial setup of cPanel server the server is not very secure and there are many things that can be done to secure your server. In this tutorial we will go over some steps that include few software installation and web server security settings modification.\u2026","rel":"","context":"In &quot;WHM&quot;","block_context":{"text":"WHM","link":"https:\/\/www.webhostingchennai.co.in\/blog\/category\/whm\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/10\/cpanel-secure.jpg?fit=640%2C260&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/10\/cpanel-secure.jpg?fit=640%2C260&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/10\/cpanel-secure.jpg?fit=640%2C260&ssl=1&resize=525%2C300 1.5x"},"classes":[]},{"id":558,"url":"https:\/\/www.webhostingchennai.co.in\/blog\/tips-securing-cpanel-server\/","url_meta":{"origin":1139,"position":1},"title":"Tips for securing your cPanel server","author":"Cavin","date":"July 21, 2017","format":false,"excerpt":"In this tutorial we are going to see, how to secure our cPanel\/WHM installed server. Use Secure Passwords Insecure passwords are one common security vulnerability. If an account password is insecure and compromised client sites can be defaced, hacked and valuable data can be stolen. Always change your password as\u2026","rel":"","context":"In &quot;LINUX&quot;","block_context":{"text":"LINUX","link":"https:\/\/www.webhostingchennai.co.in\/blog\/category\/linux\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/07\/tips-cpanel.jpg?fit=640%2C260&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/07\/tips-cpanel.jpg?fit=640%2C260&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/07\/tips-cpanel.jpg?fit=640%2C260&ssl=1&resize=525%2C300 1.5x"},"classes":[]},{"id":753,"url":"https:\/\/www.webhostingchennai.co.in\/blog\/domain-already-exists-error\/","url_meta":{"origin":1139,"position":2},"title":"Domain already exists error while adding a subdomain or addon domain in cPanel","author":"Cavin","date":"March 5, 2018","format":false,"excerpt":"Domain already exists error while adding a subdomain or addon domain in cPanel In this blog we are going to see a\u00a0 very common error when adding an addon or parked domain via cpanel. This error we see is usually very generic and doesn\u2019t provide any information such as \u201ccannot\u2026","rel":"","context":"In &quot;WHM&quot;","block_context":{"text":"WHM","link":"https:\/\/www.webhostingchennai.co.in\/blog\/category\/whm\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2018\/03\/cPanel.jpg?fit=640%2C260&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2018\/03\/cPanel.jpg?fit=640%2C260&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2018\/03\/cPanel.jpg?fit=640%2C260&ssl=1&resize=525%2C300 1.5x"},"classes":[]},{"id":1194,"url":"https:\/\/www.webhostingchennai.co.in\/blog\/cpanel-logs\/","url_meta":{"origin":1139,"position":3},"title":"cPanel Logs &#8211; Apache, Access, Email, Error, FTP, MySQL, WHM","author":"Cavin","date":"February 19, 2019","format":false,"excerpt":"cPanel Logs - Apache, Access, Email, Error, FTP, MySQL, WHM cPanel uses a graphical interface to make web hosting super easy, but there are command line tools you could familiarize yourself with for advanced troubleshooting. cPanel logs most activity that happens on a server to log files so you can\u2026","rel":"","context":"In &quot;cPanel&quot;","block_context":{"text":"cPanel","link":"https:\/\/www.webhostingchennai.co.in\/blog\/category\/cpanel\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2019\/02\/cpanel-logs.jpg?fit=640%2C260&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2019\/02\/cpanel-logs.jpg?fit=640%2C260&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2019\/02\/cpanel-logs.jpg?fit=640%2C260&ssl=1&resize=525%2C300 1.5x"},"classes":[]},{"id":2001,"url":"https:\/\/www.webhostingchennai.co.in\/blog\/restart-cpanel-service-using-ssh\/","url_meta":{"origin":1139,"position":4},"title":"How to Restart cPanel Service using SSH?","author":"Cavin","date":"September 2, 2024","format":false,"excerpt":"Restart cPanel Service using SSH - This guide will assist you in how to restart cPanel using the command prompt. Restarting cPanel\u00a0will restart all services on the cPanel server, including, MySQL, server, tail watch, and so on. With SSH access, you can perform system configurations and execute core commands. You\u2026","rel":"","context":"In &quot;VPS&quot;","block_context":{"text":"VPS","link":"https:\/\/www.webhostingchennai.co.in\/blog\/category\/vps\/"},"img":{"alt_text":"Restart cPanel Service using SSH","src":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2024\/09\/ccc.jpg?fit=952%2C467&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2024\/09\/ccc.jpg?fit=952%2C467&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2024\/09\/ccc.jpg?fit=952%2C467&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2024\/09\/ccc.jpg?fit=952%2C467&ssl=1&resize=700%2C400 2x"},"classes":[]},{"id":624,"url":"https:\/\/www.webhostingchennai.co.in\/blog\/optimizing-mysql-apache-cpanelwhm-server\/","url_meta":{"origin":1139,"position":5},"title":"Optimizing MySQL &#038; Apache on cPanel\/WHM server","author":"Cavin","date":"October 10, 2017","format":false,"excerpt":"From this post we are going to see how to optimize MySQL & Apache on cPanel\/WHM server. On this optimization process we will go over the Apache core configuration and modules that are part of Apache core. We think that with the correct settings of Apache and MySQL you can\u2026","rel":"","context":"In &quot;VPS&quot;","block_context":{"text":"VPS","link":"https:\/\/www.webhostingchennai.co.in\/blog\/category\/vps\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/10\/optimi-mysql-apache.jpg?fit=640%2C260&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/10\/optimi-mysql-apache.jpg?fit=640%2C260&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/www.webhostingchennai.co.in\/blog\/wp-content\/uploads\/2017\/10\/optimi-mysql-apache.jpg?fit=640%2C260&ssl=1&resize=525%2C300 1.5x"},"classes":[]}],"_links":{"self":[{"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/posts\/1139","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/comments?post=1139"}],"version-history":[{"count":4,"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/posts\/1139\/revisions"}],"predecessor-version":[{"id":1173,"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/posts\/1139\/revisions\/1173"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/media\/1051"}],"wp:attachment":[{"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/media?parent=1139"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/categories?post=1139"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.webhostingchennai.co.in\/blog\/wp-json\/wp\/v2\/tags?post=1139"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}</p></a></p></a></p></pre></strong></p></li></ul></a></p></strong></p></li></ul></strong></p></li></ul></strong></p></pre></a></p></strong></p></strong></p></li></ul></strong></p></strong></p></li></ul></strong></p></strong></p></strong></p></li></ul></strong></p></strong></p></a></a></a></strong></p></span></h4>