RSS Feed
Knowledgebase : Security & Abuse
To report any abusive site or activity, please email abuse@pacifichost.com [1] and our security team will investigate the site or activity accordingly. Please note that we may not be able to provide you with specific updates regarding your report due to privacy reasons. Reporting copyright infringement? Please file a valid DMCA complaint or else we will not process your request. NOTICE: PLEASE DO NOT REPORT ABUSE HERE, IN THE COMMENTS. ALL REPORTS MUST BE EMAILED DIRECTLY TO ABUSE@PACIFICHOST....
When you see the dreaded Google attack site warning, you should IMMEDIATELY EMAIL ABUSE@PACIFICHOST.COM. Be sure to include your domain name because we will need to locate the virus that caused the issue and take steps to secure your account. NOTE: THIS WILL ONLY HAPPEN IN FIREFOX BECAUSE MOZILLA HAS A RELATIONSHIP WITH GOOGLE. GOOGLE CANNOT ACTUALLY CHANGE YOUR WEBSITE. Once the account has been cleaned and secured, please request a delisting through your Google Webmaster account. This is...
We employ a strict firewall configuration across all of our servers to ensure the servers are well protected against all forms of attack. We do our best to ensure a balance between security and and usability however sometimes the firewall still mistakes legitimate traffic as an attack. To ease the hassle of getting unblocked we have added the ability to unblock yourself from the server in such a scenario. The process is relatively simple and easy. To assist we have put together hte following ...
The offending site will be suspended and the owner will be given an opportunity to fix the problem or move to a Dedicated server. It is possible that sometimes we suspend a problem directory, but not an entire account. All issues are taken on a case by case basis. HOW WILL I KNOW IF I USE TOO MANY RESOURCES? There is no way for us to predict how much server resources your site will use. If your site is causing the problems, your account will be temporarily suspended and we will notify you imm...
TO PREVENT EXECUTION OF PHP CODE INSIDE YOUR IMAGE DIRECTORIES, WHICH IS MOSTLY WHERE HACKERS WILL UPLOAD THEIR PHISHING SCRIPTS, SIMPLY PASTE THIS CODE INTO A .HTACCESS FILE INSIDE YOUR IMAGE DIRECTORIES: order allow,deny deny from all php_flag engine off Options -ExecCGI order deny,allow deny from all IF YOU ARE ON A SERVER THAT USES SUPHP, YOU WILL NEED TO USE THIS .HTACCESS CODE INSTEAD: suPHP_ConfigPath /home/USERNAME/public_html/img SetEnv /home/USERNAME/public_html/img/php.ini or...
If you require hosting to have SecFilterEngine Off or SecFilterScanPOST Off, do not worry. Those rules apply to Apache 1.x, but PacificHost uses Apache 2.x. We can't completely disable mod_sec, but we can find the rules blocking your scripts (403 error) and disable those rules. Thus, we can meet these requirements. Simply contact PacificHost via phone or live chat to report mod security blockage.
We do not allow IRC, even on a dedicated server. The reason is because IRC attracts server attacks. (People join the chat, insult eachother, and the attacks start.) Also, our datacenter prohibits IRC.
Please go to HTTP://WWW.PACIFICHOST.COM/TOS.SHTML. If you have questions or need clarification on the rules, feel welcome to call us or join our live chat.
We are protected from hackers and DDoS attack (UDP flood). We have an extensive custom firewall rule and large mod_security rulesets protecting our servers. If we do experience heavy flooding, we have our datacenter enable network level flood protection. Our datacenters are all highly secure facilities with restricted access. Our other security methods and precautions are confidential.
The traceroute, whois, ping, and dig tools are very informative. There are many ways to run the commands, but here are the easiest. STEP 1: Goto nwtools.com [1] STEP 2: Choose Express STEP 3: Put the domain or IP in the search field and hit "Submit" This will run a series of tests. Give the tools a moment to run and check your results. \N\NWHAT YOU ARE LOOKING FOR: THE TRACEROUTE SHOULD HAVE THE LAST HOP AT A PACIFICHOST SERVER. WHAT YOU SHOULD LOOK FOR ON WHOIS IS THAT THE NAME SERVERS ARE...
SQL injection is an attack where malicious code is passed to an SQL Server for execution. The attack can result in unauthorized access to confidential data, or destruction of critical data. Before you try to read the methods below, realize that this should only be a concern for PHP developers and the like. If you are using a database driven program (e.g. WordPress, Joomla, OSCommerce), then all you need to do is upgrade your programs to the latest version available. \N\NMETHODS TO PREVENT ...
The full policy can be viewed at HTTP://WWW.PACIFICHOST.COM/PRIVACY-POLICY.SHTML Basically, we promise to not share our customers' personal information with any third-parties, unless a law enforcement agency properly request the information (such as with a subpoena).
There is a 500 hourly email limit per domain on all shared servers. This limit is also applied towards mailing lists. If you send over this amount in any hour, the e-mails will fail and may bounce back with a undeliverable error. Shared servers limit each connecting IP to 30 POP checks per hour. If you go over this, you will likely get a password error indicating your login is incorrect. To fix this, just wait an hour and it will automatically unlock. To prevent this from happening, disabl...
* Email addresses on a SINGLE OPT-IN LIST are not confirmed. Anybody can submit anybody's address to the list, and it will be there until it is unsubscribed. This will be treated as spam. * On a DOUBLE OPT-IN LIST, all email address must be confirmed before they are added. A request for confirmation is sent to the submitted address and the address owner must take some action to confirm that * she is the owner of the email address, * the address is working and * she indeed wants to ...
If you are the victim of a hacker, immediately submit a ticket to our Support Department and our team will investigate this hack correctly. NOTE: If your website gets hacked 99% of the time it is not because of our server, most of the time it is related to running outdated or insecure scripts. If we have a backup we will offer to restore it for you. Only security administrators can help you with an abuse issues and hackers; please reply to the security email for updates.
The Mod_ssl 2.8.x issue which is affecting your PCI compliance is a false positive as far as our servers are concerned. We run Apache 2.2.x on our servers which has inbuilt mod_ssl support and the version of mod_ssl is same as what we have for Apache due to this. The mod_ssl official site is http://www.modssl.org/ [1] and you can see that there is no mod_ssl version available for Apache 2.x or 2.2.x at this time. The mod_ssl 2.8.xx versions are all available for a much older version of Apa...
STEP 1: The most important thing to do is keep your passwords a secret. If you must give a password to someone, be sure to change it when they are done using the access. Don't write your passwords down or share them with too many people. Periodically change your passwords. You can find more by searching "How can I make a stronger password?" STEP 2: Along the same idea, you need to make sure your personal computer does not have viruses, trojans, keyloggers, etc. STEP 3: Keep your scripts...
\N\NIT IS IMPORTANT TO HAVE A PASSWORD THAT IS EASY TO REMEMBER, BUT HARD TO GUESS.\N\N Hackers can guess your password if it is a name or word from the dictionary. The best password will contain the following: * At least two CAPITAL LETTERS * At least one LOWER-CASE LETTER * At least one NUMBER * At least two SYMBOLS Writing down your password is the most common security risk. But imagining and then remembering such a password can be difficult. Ok, here is how to make great pa...
Shared Servers PacificHost allows a maximum of 25% CPU usage limit. You may exceed this limit for no longer than 90 seconds. It is unlikely that you hit the 25% CPU usage. Unless your site is script intensive and requires more processing. Here are some valuable tricks to lessen your CPU usage. * Reduce your number of banners and ads from other sites. * Avoid using too many scripts, and do not force html to handle server-side code (like php and shtml). * Avoid using https protoco...
How much would you like to earn? You can either be a casual affiliate and let your links and banner ads naturally trickle in business, or you can actively pursue sales and commission targets and rake in your earnings. Earn $35 per signup or up to $65 for each customer that registers; it is all up to you! For more information on commission rates, please visit our Affiliates [1] page. Links: ------ [1] http://www.pacifichost.com/affiliates.shtml