I have a few Magento 1.9 sites running on the same VPS server. I noticed today that the load on the server was unusually high. When I went to investigate, I found out someone was accessing my public_html/downloader/index.php of one of the Magento sites and that was taking up about 35% of my CPU. This is definitely NOT intentional as I am the only one with access to all those Magento sites.
Here are the questions:
- What does downloader/index.php suppose to do? Is that a functionality of Magento Connect?
- Is there a breach of security I need to worry about? (when I suspended that entire account on the server, the same exact thing started happening with another Magento account; when I suspended that one - the load went down to normal)
- Since I never ever plan to use Magento Connect (things have gone down a really bad path every time I tried to use it in the past) - can I disable it and HOW?