What are the best ways to protect your websites from malware?

David Beroff

Well-known member
Registered
Joined
Jun 14, 2016
Messages
1,477
Points
63
Can you guys tell me what are the best ways to protect your websites from malware? I would like to know both ways including manual ways and using tools to scan, remove malware from websites. Thanks!
 

mobin

Well-known member
Registered
Joined
Jun 22, 2017
Messages
234
Points
28
Securing your website is not a onetime task...you need to give your continued attention to make things secure. There are various factors that can affect website security

1. Application level security. This includes closing down all security holes, put measures against known kind attacks, audit the application periodically and, protect from brute-force attempts, patch your application for known vulnerabilities and updates

2. Application Server / Web Server security :- There are certain security measures that you can enforce from service level. We can count layers like WAF, Request filters, etc in this level. Also there are certain server settings that you need to take care to avoid possible attacks

3. Firewall or Proxy :- This you can include in above server itself or use a separate server to hide your actual web server. Having a dedicated WAF can defend good levels of attacks.

4. Operating System and Permissions:- make sure your OS is tweaked for best security and file permissions are properly set to avoid exploiting your file system.

All above points are broad and depend on the type of your hosting. So consult a good agency for advice for your specific server/environment.
 

djsmiley2k

Well-known member
Registered
Joined
Jul 10, 2016
Messages
198
Points
18
djsmiley2k
3. Firewall or Proxy :- This you can include in above server itself or use a separate server to hide your actual web server. Having a dedicated WAF can defend good levels of attacks.
Can you elaborate this? how to use Proxy to protect our websites from bad guys/things?
 

mobin

Well-known member
Registered
Joined
Jun 22, 2017
Messages
234
Points
28
mobin
It is more about traffic filtering and to hide your actual web server running your application. Filtering means, you can apply some rules to filter out bad traffic, control incoming packets and help to maintain the actual server to process only that is intended to.
 

Alexandrea23

New member
Registered
Joined
Jul 3, 2018
Messages
8
Points
1
I think the best way to protect your websites from malware,was to avoid downloading from other malicious sites and providing information and other personal details.
 

24x7serverman

Well-known member
Hosting Provider
Registered
Joined
Jul 25, 2017
Messages
651
Points
28
You should follow these steps to keep your website clean from virus/malware:-

1) Always keep CMS, Plugins, theme, any other module upto to date.
2) Scan your website using Sucuri scanner:- https://sitecheck.sucuri.net/
3) Sucuri also provides Web Application Firewall which you can enable for your website to prevent attackers to visit your website.
4) Follow this article to keep the PCI compliance for your website:- https://blog.sitelock.com/2016/11/pci-compliance-the-key-to-ecommerce-customer-trust/
5) Always use a strong password which has a combination of uppercase and lowercase letters, and includes digits and/or special characters.

I hope it helps. :)
 

Malware.Expert

Member
Registered
Joined
Jun 18, 2018
Messages
55
Points
18
If you using Control Panel like cPanel, i suggest use some Security Plugins like cPGuard or imunify360. If not wanna use Security Plugins, then suggest hardening server and use Web Application Firewall with ModSecurity rules.

Also make sure you keep always software up to date.

There is also free malware scanners, like Maldet, ClamAV and use with them additional malware rules.
 
Older Threads
Replies
2
Views
1,283
Replies
0
Views
1,218
Replies
3
Views
1,317
Replies
10
Views
1,898
Newer Threads
Replies
6
Views
1,647
Replies
6
Views
1,890
Replies
7
Views
1,462

Latest Hosting OffersNew Reviews

Sponsors

Tag Cloud

You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an alternative browser.

Top