Weird thing is our site got hit by a DDoS attack (flooded with TIME_WAIT connections) right after we posted in the discussion regarding sz1hosting but it was easy to mitigate. I guess he moved on and targeted LET. I believe he is using the same method of an attack because I saw an "503 Service...