|
|
Support Staff Response
Dear Sir/Madam,
Regarding your hosting account yaohow.com:
Theyaohow.comweb site has been found to becompromisedwhich is a violation of section 3 "Your Obligations" of Go Daddy's Web Hosting and Virtual Dedicated Hosting Service Agreement.
The relevant passage of this agreement has been provided below:
"You may not use Go Daddy's servers and Your web site as a source, intermediary, reply to address, or destination address for mail bombs, Internet packet flooding, packet corruption, denial of service, or other abusive activities. Server hacking or other perpetration of security breaches is prohibited and Go Daddy reserves the right to remove sites containing information about hacking or links to such information."
Go Daddy's "Web Hosting and Virtual Dedicated Hosting Service Agreement" is located at the following URL:https://www.godaddy.com/agreements/showdoc.aspx?pageid=HOSTING_SA
This situation has resulted in a potential security threat to Go Daddy's network and the security we provide to other customers. It appears that this abusive action may have been the result of your server becoming compromised and ultimately exploited by a third party. Upon detection of this problem Go Daddy's Security Operations Center requested that Go Daddy's Advanced Hosting Team alert you of this action in the hope that you can resolve the issue.
*** IMPORTANT ***
Due to the serious nature of this situation, your site is scheduled to be suspended if you do not take immediate action. Your site is eligible for suspension onApril 17, 2012. To avoid this suspension, not only must you prevent a repeat occurrence of this problem, you must also reply to this notice with an email message containing the statements outlined below.
****************
These statements are as follows:
1. A statement that you have reviewed and agree to abide by the terms of the "Web Hosting and Virtual Dedicated Hosting Service Agreement," and
2. A statement that you have removed any malicious content residing on your web site, and
3. A statement that you agree to secure your web site in such a way as to ensure that there is not a re-occurrence of this issue in the future.
After providing the above statements in your reply, you must immediately follow through on your commitments. (We reserve the right to suspend the site if a repeat occurrence of this security violation is discovered.)
Go Daddy's security team has collected the following information to assist you in troubleshooting this issue:
Your website has an upload script which was used to upload malicious files to the hosting plan on or before April 10, 2012. Anti-virus has detected and removed 1 malicious file from the hosting plan. Manual virus scan revealed no further infected content. Our security team recommends that you review all site content and database content for signs of malicious modifications as well as update all database, FTP, and application passwords that are in use and ensure that all applications in use are up to date. To prevent further uploads of malicious content, anonymous access to the following files has been disabled:
\html\subweb
tcfu\api\manyou\my.php
-----
If you require clarification in regards to this notice, Go Daddy's Network Violations team, can be reached via telephone at 480-505-8871 or via email at networkviolations@godaddy.com .
If you have questions about this matter, you may contact us by replying to this email or by calling 480-505-8871.
We appreciate your cooperation in this matter.
Hosting Support Team
用翻译看了下,是不是说网站被攻击了?文件是\html\subweb\tcfu\api\manyou\my.php |
|