Re: If your site has been hacked-- things to check
Just to add a couple of suggestions:
First, after your computer is compromised by a virus or other malware, replace your antivirus. This means uninstall, redownload, and reinstall. Some viruses today have a routine that removes the scanning component of the antivirus software, but leaves everything else intact, so it looks like the software is running when it is no longer functional.
Second, get Nessus (nessus.org - registration required but free to use). This is a very popular vulnerability assessment tool. Running this software on your internal network from a computer on that network does a good job of simulating an attack as if that local computer was compromised. The Nessus report will give you a list of security vulnerabilities for all the devices on your network. It is important to keep the individual computers as secure as possible, as well as your internet connection. No matter how good your firewall is, there is still some chance of a compromise, so securing the individual workstations is almost as important as securing your firewall.
__________________
The best way to learn anything, is to question everything.
|