GoWebsite.com provides Domain Registration
Website Hosting, On-Line Shopping Carts, SEO
Blog Hosting, Email Accounts, Security Certificates,
Merchant Accounts & other Website Products.
Free setup! Speak with us anytime: 480-624-2500

Identifying, Removing, and Preventing Malware on Your Hosting Server

Malware is short for malicious software. It's a catch-all term that describes harmful applications or other malicious code such as adware, spyware, trojan horses, worms or viruses.

Malware comes in many forms, from an unwanted ad reappearing on your Website to an executable file that infects visitors who click on it. Telltale signs that your Website is infected can include unexplained ads, links or pop-ups, but some malware can have no noticeable effects at all.

Your best defenses against malware are staying current with third-party application patches and using strong server passwords. When checking for the presence of malware, be sure to check the code residing on your server and not your backup files. Always use a virtual machine for verification to avoid infecting your own computer.

We cannot assist you with removing malware from your server. Consider taking your Website down immediately to prevent infecting visitors, and take action quickly to identify/remove it.

Identifying Malware

If you think you're having an issue with malware, change passwords that would be affected such as FTP or database passwords. Then use these guidelines to identify the problem.

NOTE: Always use a virtual machine to test for malware to prevent infecting your own computer. To get accurate results, test your currently-live code from your hosting server and not your backup files.

Check online malware clearing houses. Review Websites such as Stop Badware and antiphishing.org for information about current known issues.

Check Google SafeBrowsing diagnostics. Visit http://www.google.com/safebrowsing/diagnostic?site=www.example.com and replace www.example.com with your Website.

Test all downloadable software posted on your Website. Software downloads can pass on malware. Even if you developed the software, it might have been altered by a hacker.

Test all links from your Website. Make sure they do not go to Websites containing malware.

  • Search for unknown links or links to executables such as .exe, .bat, .cmd, .scr, or .pif.
  • Use a link-checker software to scan all links in your code.

Check the ads on your Website. Malware can be distributed through ads on your Website. Identify these with a link-checker software and research your ad partners on the Internet to see if others have had similar problems.

Check all user-posting areas of your Website. Scan all links with a link-checker.

Be alert to hacking attacks. Injection (inserting code or executables onto your Web pages) is a common method of hacking that exploits a security vulnerability to introduce harmful code, so look for code you didn't add.

  • Look for invisible frames. They are virtually invisible because of their size, and are usually placed at the very top or bottom of the source code. Search for iframe tags with height=“0” width=“0”.
  • Look for strange code. A common way to hide malware is hiding it with encoding or encrypting:
    • Encoded code uses hex or unicode/wide characters. Look for strings of percent signs (%) followed by two characters (e.g. %ww%xx%yy) or \u followed by 4 characters (e.g. \u9900\u1212\u8879).
    • Encrypted code is harder to find because there are no set patterns. Most Web syntax is based on English words, so most of your code should be somewhat readable. Look for large sections of code that are completely unintelligible blocks of letters, numbers, and symbols.

Download your Website's files to a virtual machine and scan them. Avoid infecting your own machine by using a virtual machine, and scan using anti-virus and anti-spyware programs.

NOTE: Most hacking focuses on HTML code but malware can also be included in other file types such as executables, javascript files, PDFs or even images if the hacker gains access to your hosting server.

Removing Malware

If you discover you have malware, use these suggestions to remove it from your Website.

Remove all links to malware Websites from your Website.

Remove infected software. Do not offer it again until you are sure that it is not infected. If you created the software, use malware prevention Websites to learn guidelines for software compliance.

Remove malware-infected ads. If you use an ad network, you might need to remove all of the network's ads until you are certain that the network is clear. You might also contact your ad provider.

Edit or remove user-generated posts where malware is present.

If you think your Website has been hacked, use the following guideline to resolve issues and get back online.

  • Take the Website offline to avoid putting Website visitors and customers at risk.
  • Remove all offending code. This is only effective long-term in conjunction prevention.
  • Fix underlying security vulnerabilities to prevent future attacks.
  • Check for and remove "back doors" left by the hacker. A back door allows the hacker future access even after you secure the Website.
  • Check for and install updates, and research the software you are using to find out if other users have been affected.

Preventing Malware

NOTE:Some features in this article are only available in the full version of WebsiteLock. For more information on how to upgrade, see Upgrading from Website Protection Malware Scanner to Website Protection Website Scanner.

Prevention is the most important tool against malware. Follow these guidelines to save time, effort, and trouble in the future.

Use a daily Website scanning utility. Vulnerability scanners can detect vulnerabilities that a hacker could potentially exploit.

  • Scan your Website daily, even if you haven't updated your Website.
  • Correct vulnerabilities immediately.

Check all software before making it available for download. Scan all software before offering it and if you are a software developer, consider a Code Signing Certificate to protect your code from being altered.

Use only reputable ad providers and monitor them regularly. Make sure your ad providers are currently malware-free and that they scan regularly for malware from advertisers. Use Internet searches and review Websites to check out new partners for previous or current problems.

Monitor user-generated areas of your Website. Post terms of use for your forums or blogs to explicitly forbid posting links to malware. Actively monitor these areas for suspicious links or executables.

Use strong passwords. For guidelines on creating a password see Generating a Strong Password.

Use FTP-SSL, if available. To check your hosting server for FTP-SSL availability and to connect using FTP-SSL, see Connecting to Your Shared Hosting Account with FTP-SSL.

Keep everything up to date. Install the latest available version and all available patches for third-party software on your Website. This is integral to preventing malware, because if the software you use has a security vulnerability, then your Website is also vulnerable.

Domain Registration
Pay less for website domain names. Register your own .com, .net or .org for as low as $10.18 per year. Everything you need to get online - FREE with your domain.
Website Builder
For as little as $3.89 per month you can build your Website online with Website Builder using our easy to use professional templates.
Play Video - Demo
Quick Shopping Cart
Build and run your own successful online store in minutes. You're just five easy steps away!
Shopping Cart works with Google® and eBay®
Play Video
Website Hosting
Everything needed to give your website the high-performance home it deserves.  Protect transactions and secure your customer's data with
a SSL Certificate