File Manager
Upload
Current Directory: /home/lartcid/public_html/journal.lartc.id
[Back]
..
[Open]
Hapus
Rename
.htaccess
[Edit]
Hapus
Rename
.well-known
[Open]
Hapus
Rename
README.md
[Edit]
Hapus
Rename
api
[Open]
Hapus
Rename
cache
[Open]
Hapus
Rename
cgi-bin
[Open]
Hapus
Rename
classes
[Open]
Hapus
Rename
config.TEMPLATE.inc.php
[Edit]
Hapus
Rename
config.inc.php
[Edit]
Hapus
Rename
controllers
[Open]
Hapus
Rename
cypress.json
[Edit]
Hapus
Rename
dbscripts
[Open]
Hapus
Rename
docs
[Open]
Hapus
Rename
error_log
[Edit]
Hapus
Rename
favicon.ico
[Edit]
Hapus
Rename
index.php
[Edit]
Hapus
Rename
js
[Open]
Hapus
Rename
lib
[Open]
Hapus
Rename
locale
[Open]
Hapus
Rename
mini.php
[Edit]
Hapus
Rename
pages
[Open]
Hapus
Rename
php.ini
[Edit]
Hapus
Rename
plugins
[Open]
Hapus
Rename
public
[Open]
Hapus
Rename
registry
[Open]
Hapus
Rename
scheduledTaskLogs
[Open]
Hapus
Rename
schemas
[Open]
Hapus
Rename
styles
[Open]
Hapus
Rename
templates
[Open]
Hapus
Rename
tools
[Open]
Hapus
Rename
Edit File
# ------------------------------------------------------ # Imunify360 ModSecurity Rules # Copyright (C) 2024 CloudLinux Inc All right reserved # The Imunify360 ModSecurity Rules is distributed under # IMUNIFY360 LICENSE AGREEMENT # ------------------------------------------------------ # Imunify360 ModSecurity Files Scan rules # Check Lua presence SecRule FILES_TMPNAMES "!@rx ^$" "id:33362,chain,pass,nolog,severity:5,t:none" SecRuleScript detectlua.lua "t:none,chain" SecRule FILES_TMPNAMES "!@rx ^$" "t:none" # Python scan time start SecRule &TX:lua_present "@eq 0" "id:77350119,chain,phase:2,pass,nolog,severity:5,setvar:TX.py_scan_start=%{DURATION},tag:'service_i360',tag:'noshow'" SecRule FILES_TMPNAMES "!@rx ^$" "t:none" # Scans uploaded files for malware (no Lua) SecRule &TX:lua_present "@eq 0" "id:33363,nolog,auditLog,block,chain,severity:2,phase:2,t:none,msg:'IM360 WAF: Attempt to upload malware||Scan duration:%{TX.py_scan_duration}||Sizes:%{FILES_SIZES}||Combined size:%{FILES_COMBINED_SIZE}||User:%{SCRIPT_USERNAME}||Filename:%{FILES}||Scanned:%{FILES_TMPNAMES}||SC:%{SCRIPT_FILENAME}||WPU:%{TX.wp_user}||T:APACHE||',tag:'service_i360'" SecRule FILES_TMPNAMES "@inspectFile /opt/alt/python35/share/imunify360/scripts/modsec_scan.py" "t:none,setvar:TX.py_scan_duration=%{DURATION},setvar:TX.py_scan_duration=-%{TX.py_scan_start}" # Python scan time finish SecRule &TX:lua_present "@eq 0" "id:77350120,chain,phase:2,pass,nolog,severity:5,setvar:TX.py_scan_time=%{DURATION},setvar:TX.py_scan_time=-%{TX.py_scan_start},tag:'service_i360',tag:'noshow'" SecRule FILES_TMPNAMES "!@rx ^$" "t:none" # Lua scan time start SecRule &TX:lua_present "@eq 1" "id:77350121,chain,phase:2,pass,nolog,severity:5,setvar:TX.lua_scan_start=%{DURATION},tag:'service_i360',tag:'noshow'" SecRule FILES_TMPNAMES "!@rx ^$" "t:none" # Scans uploaded files for malware (with Lua) SecRule &TX:lua_present "@eq 1" "id:33331,log,block,chain,severity:2,phase:2,t:none,msg:'IM360 WAF: Attempt to upload malware||Scan duration:%{TX.lua_scan_duration}||Sizes:%{FILES_SIZES}||Combined size:%{FILES_COMBINED_SIZE}||User:%{SCRIPT_USERNAME}||WPU:%{TX.wp_user}||Filename:%{FILES}||Scanned:%{FILES_TMPNAMES}||SC:%{SCRIPT_FILENAME}||T:APACHE||',tag:'service_i360'" SecRule FILES_TMPNAMES "@inspectFile inspectfile.lua" "t:none,setvar:TX.lua_scan_duration=%{DURATION},setvar:TX.lua_scan_duration=-%{TX.lua_scan_start}" # Lua scan time finish SecRule &TX:lua_present "@eq 1" "id:77350122,chain,phase:2,pass,nolog,severity:5,setvar:TX.lua_scan_time=%{DURATION},setvar:TX.lua_scan_time=-%{TX.lua_scan_start},tag:'service_i360',tag:'noshow'" SecRule FILES_TMPNAMES "!@rx ^$" "t:none" # Track file upload SecRule FILES "!@rx ^$" "id:77317957,phase:5,pass,nolog,auditlog,severity:5,t:none,ctl:auditLogParts=-CE,msg:'IM360 WAF: File upload||File:%{MATCHED_VAR}||Size:%{FILES_SIZES}||Combined:%{FILES_COMBINED_SIZE}||User:%{SCRIPT_USERNAME}||SC:%{SCRIPT_FILENAME}||WPU:%{TX.wp_user}||Py time:%{TX.py_scan_time}||Lua time:%{TX.lua_scan_time}||T:APACHE||',tag:'service_im360',tag:'noshow'"
Simpan