PDA

View Full Version : iProber



Amaresh
August 20th, 2007, 04:09
After our launch yesterday, we've had people signing up and uploading a script called iProber. It's in chinese and displays a bunch of information about the server, but am I at risk? I'm not entirely sure if it's common for this to happen or if it's sort of a signal that someone's going to try to exploit the server.

Also, I've seen this script on 4-5 accounts uptil now.

I have PHP safe_mode on.

Thanks :)

JonnyH
August 20th, 2007, 04:33
Just get rid of them.

Decker
August 20th, 2007, 08:29
Never been hit with anything I can prove because of it but we ban it 'just in case' I don't trust anyone who thinks they need more info than cPanel can provide or that they feel uncomfortable to ask us about. That and it's usually followed by a semi-hidden forum.

GlennBeforeTime
August 20th, 2007, 08:53
Never been hit with anything I can prove because of it but we ban it 'just in case' I don't trust anyone who thinks they need more info than cPanel can provide or that they feel uncomfortable to ask us about. That and it's usually followed by a semi-hidden forum.

I agree. We have banned this file as well. It can not cause too much of an immediate threat but it does get server information (To the exact detail) and so it can be used to find an exploit.