amuck-landowner

Search results

  1. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    The slices that are back up use whatever password *solusvm* has for you (nothing restored - they reinstalled over my chicago slice that was back down). So the password is whatever the hacked file says it is, ironically. IE if you changed your password using "passwd" they don't have it, so they...
  2. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    I haven't gotten any new root passwords, but I agree they really should be resetting root passwords. Edit: they have to bring back up a control panel sometime. Given their resources it seems to me it would be easier to just fix solus and the containers and use the labor of the customers to...
  3. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    Of 4 (Atlanta, Chicago, Buffalo, LA), Atlanta came back up first, was totally wiped, and there was some kind of issue so I just changed the password and shut it down. Chicago came back up yesterday and appeared to be intact (although I had hardly anything in there as it wasn't in use yet- just...
  4. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    They dropped their prices significantly - did they ever sell 1yr/2GB RAM/50-100GB disk for $40 before ? They had a *hugely* popular thread on slickdeals.net which is an enormous board and where I found them - although I knew about LowEndBox and VPSBoard before that.
  5. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    apt-get was throwing errors that it couldn't resolve the hostnames of the mirrors. Could be a DNS issue with whatever DNS they have setup by default, or it could be an issue with the setup in the restored slice. Normally it works out of the box in a reimage. I could have spent time trying to...
  6. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    Clearly they don't, or it isn't setup right, or they have no backups.  Else we'd be restored by now, 36 hours later, wouldn't we ?
  7. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    Got the same "we don't really have any backups, or least any automated restore". The only one of my 4 nodes back up at all today was atlanta, and that was up, I changed the password, and shut it down because apt-get update failed. Atlanta was back up again, with the *old* password later, so they...
  8. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    The server that started emailing me, presumably in mid deletion, happened at 3:25AM EDT. DB could have been hacked well before that though, and possibly some targeted attacks performed before the dump ever got posted.
  9. J

    ChicagoVPS / CVPS Hacked. New SolusVM exploit? (Content Restored) [PT. 1/2]

    I've got 4 nodes on ChicagoVPS, all down, one each in Atlanta, Los Angeles, Chicago, and Buffalo. Buffalo node sent me some emails from a cron job before it went down saying that the drupal directory was gone, so I assume at least the buffalo server was attempted to be deleted. I hope they...
Top
amuck-landowner