|
|
Our support staff has important information regarding your account, details of which are described below:
Discussion Notes
Support Staff Response
Dear Sir/Madam,
Regarding your hosting account asktxt.com:
Investigation of outbound flooding detected with Peakflow SP 24APR2011 revealed that your hosting account system contained malicious outbound flooding scripts. Your Server is running a vulnerable version of DEDECMS (dedecms.com). On multiple occaisions, e.g. 21MAR2011 a non-customer IP exploited an Arbitrary File Upload Vulnerability in DEDECMS to upload scripts that provided malicious access uploads and malicious outbound flooding.
We disabled access to the vulnerable & malicious scripts. We recommend that since the site has clearly been completely compromised, you should delete all site content and restore from CLEAN backups if available or at least review your content to insure that it does not contain malicious code or
compromised content, and should reinstall the latest, secure versions of all software. You must changes all passwords (including account,
web, database, ftp, etc).
It is recommended to also limit types of files that can be uploaded, i.e. not .htaccess, .exe, .asp, .php, .zip, .tgz etc.
and verify the file types, scan for viruses with current antivirus software, limit access to trusted users, and authenticate FTP & web users using
strong password practices.
If you have questions about this matter, you may contact us by replying to this email or by calling 480-505-8871.
We appreciate your cooperation in this matter.
Hosting Support Team |
|