LeNgHoSt的小窝

I did it my way, ‘Cause it’s my life!

2009年06月09日

FsckVPS主站被黑,VPS服务器全线停机

昨天收到SiteUptime的警报邮件:

Dear user,

This is an automated message from SiteUptime.
Alert Type: Site Not Available
Result: Failed
Time: June 7, 2009 19:44:10
HostName/URL: www.lenghost.cn
Monitor Name: lenghost.cn
Service: http

显示我的网站停机了,我随即ping了一下,果然不通,用putty登录ssh失败,ftp无法访问,后台管理页面也无法打开,到idcspy一看,好多用FsckVPS的用户都报告网站无法访问,就连FsckVPS官网都无法显示。

几个小时后收到FsckVPS发来的邮件:

At approx 10pm GMT last night a hacker gained access to our HyperVM install via what we believe was an unpatched exploit even though our HyperVM install was totally up to date. As part of this the hacker deleted b//ot on all of our VPS nodes as well as some VPS user data. Currently we are working to restore access as quickly as possible and are aiming to have everyone up within 48 hours. Please do bear with us at this difficult time

确认是被黑了,他们正在抓紧时间在48小时内恢复访问。

今天凌晨收到的邮件:

Dear customers,

We are pleased to announce that BlueSquare who are our primary collocation provider within the UK have offered to help us out in this
difficult time. They have kindly offered to to provide both man power and hardware assistance to allow users to get back online ASAP and also to help migrate to a new stronger, more secure, non LXLabs/HyperVM environment within the next few weeks. Whilst we understand that customers will be looking for another provider, and we
can not blame them, we would like to give you this opportunity to see what a leading collocation provider + our large real world VPS experience can deliver to all customers.

On another note if customers would like to be setup on the new servers and have their own backups please tell us and we can get you set up!

好像是说VPS系统更新了,控制面板可能不再使用LXLabs/HyperVM。

官方为此次事件发布了一个恢复进度查询页面:
http://www.vaserv.com/
这里可以看到FsckVPS恢复的实时进展。
我的VPS在server27上,今天下午看到一条不幸的消息:
05:08 FsckVPS server26, server27, server52, server54 all 100% data lost.
server27的数据全部丢失。。。汗,我上面有14G的内容,不过还好我前几天备份过一次,博客前天也单独备份过,现在已经将本博客暂时恢复到Lunarpages空间上,其他几个站只有等FsckVPS完全恢复后才能访问了。看到之前的邮件,说VPS更换了控制面板,以前的备份还不知道能不能完全恢复。。。继续耐心等待中,已经过去了近40小时了。。。

标签:

相关日志

发表评论