分享

写回答

发帖

[提问] 刚收到2封GD发来的英文邮件,求指点!

GoDaddy GoDaddy 1352 人阅读 | 3 人回复

发表于 2010-11-23 16:53:29 | 显示全部楼层 |阅读模式

刚才邮箱收到2封英文邮件,好像是我的主机除了什么问题,英文不好,用翻译软件看了一下,也没看太明白,请高人指点。

Dear Sir/Madam,


Regarding your server vtx.co.in:


It has come to our attention that your dedicated server has become compromised.

Although PROFtpd has been updated since the compromise, it appears that the server was running a vulnerable version of PROFtpd which the attacker used to obtain root access on November 10, 2010. Tracks covering code has been run since that time.

On November 16 and November 22, 2010, the attacker uploaded malicious files which were observed running malicious processes on November 23, 2010. Our investigation revealed that an attack scanning tool was actively scanning external IP addresses.

At this time, we have removed the malicious content, but can no longer guarantee the integrity of the server. We require that you perform a full server re-provision within 48 hours. A re-provision will erase all data on the server, so we urge you to make any backups prior to re-provisioning.

You can re-provision your server using the Dedicated Hosting Manager.

1. Log in to your Account Manager.
2. In the My Products section, select Dedicated/Virtual Dedicated Servers.
3. Click Launch Manager next to the dedicated or virtual dedicated server you want to upgrade. The Dedicated Hosting Manager opens.
4. In the Account Summary section, click Re-provision Server. The Re-provision Server page opens.
5. If you choose to, enter a new hostname and username. These values are defaulted to the current hostname and username for this account.
6. Enter and confirm a new password and then click Submit.

You will receive a confirmation notice once you server is re-provisioned and ready to go.

NOTE:Typically, your server will be ready in less than five hours. However, if you have a RAID card or hardware firewall, it may take up to 24 hours before your server is ready.

After reprovisioning, you will need to:

limit types of files that can be uploaded, (i.e. not .htaccess, .exe, .asp, .php etc.) and verify the file types
scan for viruses with current anti-virus software
limit access to trusted users, and to authenticate FTP & web users using strong password practices
install the current secure versions of software in use
Also, during our investigation it was noted that the server seems to be under constant SSH, FTP & Plesk attacks. You should consider runnning a tool that scans log files and bans IP's that issue too many inaccurate passwords responses (e.g. Fail2ban, see http:fail2ban.org).

第二封:
Discussion Notes
Support Staff Response
Dear Sir/Madam,


Regarding your hosting account 94feizhuliu.com:


It has come to our attention that your 94feizhuliu.com hosting account currently has an improper directory structure. More specifically, the following directories have greater than 1,024 files:


141832, xihaonline/html/tao/Apicache/taobao.item.get
4252, xihaonline/html/tao/Apicache/taobao.itemcats.get
98503, xihaonline/html/tao/Apicache/taobao.shop.get
31884, xihaonline/html/tao/Apicache/taobao.taobaoke.items.convert
150153, xihaonline/html/tao/Apicache/taobao.taobaoke.items.get
109660, xihaonline/html/tao/Apicache/taobao.taobaoke.shops.convert
56707, xihaonline/html/tao/Apicache/taobao.user.get
183521, xihaonline/html/tao/Apicache/taobao.users.get


The amount of files in this directory is causing an issue with backing up your account, as well as maintenance operations on the shared server. Each directory should have a maximum of 1,024 files. Any more than this can cause file system latency and slowness when accessing FTP and hosting from the Web.


We respectfully request that by December 7, 2010 you reduce your directories to have no more than 1024 files.

If this is not completed by then, we will have to bring the directories into compliance on your behalf. Additionally, we ask that any scripts that automatically create these files be optimized to not create more than this amount. Please note, further excessive directory structures could be subject to an account suspension.


高手帮忙看下,多谢!

回答|共 3 个

ziyuxue

发表于 2010-11-23 18:29:47 | 显示全部楼层

大概意思
第一封是说你的主机貌似是被攻击了 GD已经删除了恶意内容,但不能再保证服务器的完整性。要求你重新执行一个完整的服务器在48小时内提供,一个重新规定将删除服务器上的所有数据,因此敦促你重新配置备份
第二封是说你有文件夹里文件数量超过了1024个 而GD的限制是同一文件夹下文件不能超过1024个 要求你在2010年12月7日前使你超标的目录文件数不超过1024 否则他们将为你做这些事(不过结果会是什么样 楼主应该懂的)

[ 本帖最后由 ziyuxue 于 2010-11-23 06:35 PM 编辑 ]

xihaonline

发表于 2010-11-24 09:58:17 | 显示全部楼层

1. Log in to your Account Manager.
2. In the My Products section, select Dedicated/Virtual Dedicated Servers.
3. Click Launch Manager next to the dedicated or virtual dedicated server you want to upgrade. The Dedicated Hosting Manager opens.
4. In the Account Summary section, click Re-provision Server. The Re-provision Server page opens.
5. If you choose to, enter a new hostname and username. These values are defaulted to the current hostname and username for this account.
6. Enter and confirm a new password and then click Submit.

看意思是要我进主机控制面板,然后打开一个 click Re-provision Server 这个,但是主机控制面板里面根本找不到这个按钮啊。现在主机已经访问不了了,郁闷啊。。。

8231759

发表于 2010-11-24 10:45:06 | 显示全部楼层

郁闷啊 www.zxrjjf.info 打不开i
您需要登录后才可以回帖 登录 | 注册

本版积分规则