We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!
    • 6182
    • 32 Posts
    Just chatted with SiteLock which we have installed on our sites thru GoDaddy.

    We have two sites hosted on a shared server on GoDaddy. One Modx, one WordPress.

    The guy there said that he believes that most wordpress themes have malware built into it already and could be infecting our other site and suggested that we move our modx site to a seperate server as BobRay said. So i think that will be our next step to isolate the modx site and see if that helps.
      • 6182
      • 32 Posts
      Spoke with GoDaddy:

      They suggested:
      * Get privacy whois for the WordPress site.
      * Get SSL for WordPress site. Modx site we already have. (even though we don't process credit cards, is it necessary? We do have one contact us form though.)
      * Rep suggested their 'Managed WordPress' option for the WordPress site.
      * Move our modx site to a new hosting location.

      Anything else to think about? [ed. note: cwork last edited this post 9 years, 5 months ago.]
        • 6182
        • 32 Posts
        Quote from: BobRay at Apr 29, 2017, 10:54 PM

        If you're on a shared server, it's possible that some other user there (or a hacker of another site there) has gained general access to your server. In that case, it's likely that nothing you do will help, short of starting over at another host.

        We're being hosted now on GoDaddy, do you mean we should leave GoDaddy?
          • 52243
          • 114 Posts
          You use Filezilla FTP client?
            • 6182
            • 32 Posts
            Quote from: modxhelp.ru at Apr 30, 2017, 09:50 AM
            You use Filezilla FTP client?
            have used a while ago. maybe a year ago.
              • 3749
              • 24,544 Posts
              Quote from: cwork at Apr 30, 2017, 04:42 AM
              Quote from: BobRay at Apr 29, 2017, 10:54 PM

              If you're on a shared server, it's possible that some other user there (or a hacker of another site there) has gained general access to your server. In that case, it's likely that nothing you do will help, short of starting over at another host.

              We're being hosted now on GoDaddy, do you mean we should leave GoDaddy?

              From what I've seen, GoDaddy doesn't have the best reputation for hosting MODX sites, and I've seen a number of complaints about their support. If the hacker has penetrated the server you are on at GoDaddy (and they may not have), the hacking will almost certainly continue.

              If you can find and remove all the points of access for the hacker, you may want to stay there, but if another hack occurs after that, I'd move.

              FYI: https://bobsguides.com/modx-friendly-hosts.html

              With respect to SSL, both Firefox and Chrome are pushing people toward SSL by issuing security warnings on any page with a form (e.g., a contact form). Using https no longer slows down sites as it once did (in fact some reports suggest that https sites are now faster than http), so using https site-wide is what I'd recommend (notice that modx.com and all it's sub-sites are now fully secure).
                Did I help you? Buy me a beer
                Get my Book: MODX:The Official Guide
                MODX info for everyone: http://bobsguides.com/modx.html
                My MODX Extras
                Bob's Guides is now hosted at A2 MODX Hosting