My Antivirus Swears At The Startup Landing QuickStart Template)) What To Do? - Question | JoomShaper
Black Friday sale is live with flat 50% OFF. Sale ends soon! Grab your deal now!

My Antivirus Swears At The Startup Landing QuickStart Template)) What To Do?

C

CyberM

Template 3 years ago

Hello. I installed the Startup Landing QuickStart template and my antivirus shows it has 2 Warnings and 2 Alerts. I am attaching screenshots. My antivirus does not offer a solution to the problem, but only finds weaknesses on the site. So I want to ask you: are these serious problems or everything is fine and this is a false positive of my antivirus? Can you suggest how to fix these problems?

0
5 Answers
Rashida Rahman
Rashida Rahman
Accepted Answer
Support Agent 3 years ago #77451

Hi there!

Thanks for your query.

You can move forward, they will cause no harm to your system, no worries! Only one of them from an addon of SPPB though.

However, you may check and fulfill all the technical requirements and PHP settings from here:

https://www.joomshaper.com/documentation/joomla-templates/startuplanding/technical-requirements

Best Regards

0
C
CyberM
Accepted Answer
3 years ago #77496

Technical requirements and PHP settings have already been completed, but if these comments of the antivirus do not carry risks, then everything is fine, thanks for the answer)

0
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 3 years ago #77500

Hi CyberM,

Testing quickstart doesn't make sense, why? Because often it may contain an older version of Joomla core. That's why all smart users make Joomla update a few moments after QS installation. It's better to "test" the current version of the Joomla package that will be used (J3.10.10 or J4.1.5), not older! Then as a separate test - sp page builder zip package, and other components that you are going to use there, etc. It will be much more credible. If you will find security problems with files from current version of Joomla always help our community, and create a new topic on forum.joomla.org.


About 1st screenshot (HCYkvsAhFQu6) - those two files are from Joomla core.

About 2nd screenshot (eHvmNU4kfz21) - the second file is also from Joomla core. Tab addon about that part seems to be OK, it has just a basic requests.


BTW

What antivirus you used for those tests?

0
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 3 years ago #77501

I strongly recommend process called: Joomla hardening - to Harden Security of Your Website. It contains changes in .htaccess and using extra security extension and correct settings in CMS (like Set strong passwords etc.). I have written a whole book about it few years back, unfortunately not in English.

Read also our blog posts: https://www.joomshaper.com/blog/search?q=security

In big short that's all. I hope I helped.

0
C
CyberM
Accepted Answer
3 years ago #77517

Hello. Thanks for the advice, I'll take a look.

Perhaps my antivirus also shows all the past found vulnerabilities that it found from the very beginning of the installation, because these messages hang from the very beginning and they are not listed as new.

Initially, of course, there are no updated components in the quickstart package, but I tried to update all the modules and Joomla 4 itself to the current version as soon as possible, I am sure that this must be done by everyone and always.

At first I had problems with the Joomla 4 quickstart installation itself and with updates to pure Joomla 4, I even panicked and thought badly about joomshaper , but I was able to figure out the reasons on my own, although I am not a high-level specialist.

The problem was related to my CDN, the solution turned out to be simple, in a nutshell:

  • before installing and during updates of pure Joomla 4 or quickstart Joomla 4, you need to issue your usual wildcard SSL certificate on the hosting, then:
  • switch CDN to work from hosting IP
  • disable all unnecessary settings in CDN
  • study the documentation on connecting the CDN to the site and find there a special code for "SSL forwarding"
  • add this code to the beginning of the .htaccess file just in case, here it is: <IfModule mod_setenvif.c> SetEnvIf WSR-HTTPS 1 HTTPS=on </IfModule> <IfModule mod_rewrite.c> Rewrite Engine On RewriteCond %{HTTP:WSR-HTTPS} 1 RewriteRule .* - [E=HTTPS:on] </IfModule>

You asked about my antivirus, I can say, but this is only my choice and NOT a recommendation, although I did not find anything better))

I have been looking for this service for a long time and chose it from many other options. For me personally, it is #1 right now, because it includes several very necessary things for my sites:

  • CDN
  • antivirus
  • automatic backup
  • technical support
  • DNS hosting
  • website crash protection
  • hosting reservation and much more useful for developers and regular website owners.

If someone is looking, just like me, and cannot find a cool service, then here it is https://w.tools )))

I will not recommend or praise anything, test it yourself and connect if you like the description. I like everything, except for the prices for additional functions (they are indicated inside my personal account), although I don’t use them much, the basic functionality is enough.

I can give a promotional code "CYBERM", it will give a 20% discount on the first payment)) Good luck!

0