Unknown phishing from my mail/web server
My mail/ web server is running on RHEL 4 with sendmail and apache . I generally access it from web interface of squirellmail.
A few days back I revceived a mail and a call from some security agency looking after a financial site telling me there is a folder called redirect.to in my web server's virtual directory , and to stop this phising I need to delete the folder. I deleted the folder immediately.
I changed the root passwords and stop all the unnecessary services. After this also the folder reapears and started phising all over again.
Urgent help is required .
|