Important Notifications Archive

NetspaceIndia awarded as Best Web Hosting Provider by Web Hosting Search

Email Attachmenttop-pick-web-host-2011

NetspaceIndia has been recognized by WebHostingSearch as one of the Best Web Hosting Providers for 2011. Founded in India, NetspaceIndia is a trusted privately held Hosting Service Provider (HSP). NetSpace India was able to reach their customers located around the world. IN order to satisfy their customers, they give importance to provide the Best Customer Service, they even have CRM (Customer Relationship Management) as their software. Aside from their well known and trusted hosting services they also provide Domain Name Registration, Wholesale Server Rentals to E-Business and Application Providers.

Since 2004, NetSpaceIndia aims to provide the best hosting services for their customers around the world. A vision that has proven by their satisfied clients around the world and positive feedbacks every time NetSpaceIndia is mentioned. This is something that made Webhosting Search give an award to NetSpaceIndia.
—————————————————–
WebHostingSearch.com is an online guide that provides in depth reviews of various web hosting providers.

Get Discounted Price For Domain Renewal – Up to 15%

Get Discounted Price For Domain Renewal – Up to 15%

Dear Customers,

On high demand from our customers we have  added a new feature in our renewal system of domain name service. Now you can avail discounted cost for renewal of your domain name and save up-to 15% when you renew your domain name for more then 1 year.

For  detail login into your panel at www.netspaceindia.com >> click on service name >> renew >> select years.

we will be soon be coming with similar facility for our other services.

Regards,
NetSpaceIndia – Billing

Cpanel Over SSL

Cpanel Over SSL

Dear All,

                For added security we have made compulsory for account to access there Linux server over secure connection. Details are bellow: (replace yourdomainname with your fulldomain name )

WHM : https://yourdomainname:2087/

Cpanel : https://yourdomainname:2083/

WebMail : https://yourdomainname:2096/

This feature is added to provide you with more security over secure SSL to avoid any kind of password theft.

 

Regards,
NetSpaceIndia – Support

Linux Server Migration Notice – Update 1

Linux Server Migration Notice – Update 1

Dear Customer,

In the process of migration from old server (delhi.netspaceindia.com ) to new server (newdelhi.netspaceindia.com) reference to our previous quote here.
We will like to inform  you that new server is live and in the event you are facing issue sending – receiving mails from your email account, follow this step to see if your account is migrated or not :

Step 1 : go to http://dnstool.in/index.php?domain=#my_domain_name#&cmd=ping
 (NOTE:  replace #my_domain_name#  with your actual domain name )

Step 2: if you see your  IP as 64.46.38.106 this mean your domain is moved to new server
(NOTE:  if you see your IP as 64.46.38.106 then make sure that you use your incoming and outgoing IP as 64.46.38.106)
if your IP is 64.46.38.106 and you are still facing issue then please contact support from http://www.netspaceindia.com/login_now.php?page=post

 

In the event your domain is not pointing to the above IP then you should wait until your account is migrated and new IP is reflected. However your site should be live in old server but the performance may be slow.
Again keep a track of what is happening in server from http://twitter.com/NetSpaceIndia

Regards,
NetSpaceIndia – Support

Linux Server Migration Notice

Linux Server Migration Notice

Dear Customer,

Due to a hard disk issue with current linux server (Detail Given Bellow) we have to add new upgraded version of server.  Due to which we have to migrate all account from old server to new server. Details are as mentioned :

Effected Server :
Server Name : delhi.netspaceindia.com
Name Server : ns7.netspaceindia.com and ns8.netspaceindia.com
IP ‘s :  69.10.137.200 , 209.97.214.174, 209.97.214.175, 69.10.142.94, 10.32.224.171, 69.10.135.15, 209.97.214.176, 209.97.214.177

Please note : If you are using private name server for this IP’s then we request you to please contact our support from http://www.netspaceindia.com/dedicated_support.php

We are following listed processes, to migrate accounts from old server to new server:
Step 1 :We will backup all account using IBM Tivoli Storage Manager system  (In case of any emergency)
Step 2: Install new server
Step 3: Move All Account from old server use backup if required.

What Action is required from customer?
We will be using old name server for new server so that no action is required from domain which are registered outside our network.

Migration Time :
The new server should be live by 21st Jan 2010 and we will start the migration.

Please note we will try to keep down time to minimum however the hard disk of old server is behaving vary unstable there could be some hiccups in this process.

We will keep on updating this post for latest update also you can follow us on twitter at http://twitter.com/NetSpaceIndia for latest happening on this issue.

Regards,
NetSpaceIndia – Support

New Firewall and AntiVirus Installed

New Firewall and AntiVirus Installed

Dear All,

 

We have just finished installing several security features to our linux box which will provide more security to our shared customers, bellow is the list of features and services that are installed in the server :

  1.  ConfigServer Security & Firewall  :
  • Straight-forward SPI iptables firewall script
  • Daemon process that checks for login authentication failures for:
    • Courier imap, Dovecot, uw-imap, Kerio
    • openSSH
    • cPanel, WHM, Webmail (cPanel servers only)
    • Pure-pftd, vsftpd, Proftpd
    • Password protected web pages (htpasswd)
    • Mod_security failures (v1 and v2)
    • Suhosin failures
    • Exim SMTP AUTH
    • Custom login failures with separate log file and regular expression matching
  • POP3/IMAP login tracking to enforce logins per hour
  • SSH login notification
  • SU login notification
  • Excessive connection blocking Block traffic on unused server IP addresses – helps reduce the risk to your server
  • Alert when end-user scripts sending excessive emails per hour – for identifying spamming scripts
  • Suspicious process reporting – reports potential exploits running on the server
  • Excessive user processes reporting
  • Excessive user process usage reporting and optional termination
  • Suspicious file reporting – reports potential exploit files in /tmp and similar directories
  • Directory and file watching – reports if a watched directory or a file changes
  • IDS (Intrusion Detection System) – the last line of detection alerts you to changes to system and application binaries
  • SYN Flood protection
  • Ping of death protection
  • Port Scan tracking and blocking
  • Permanent and Temporary (with TTL) IP blocking
  • Exploit checks
  • Account modification tracking – sends alerts if an account entry is modified, e.g. if the password is changed or the login shell
  • Shared syslog aware
  • New in v4: Messenger Service – Allows you to redirect connection requests from blocked IP addresses to preconfigured text and html pages to inform the visitor that they have been blocked in the firewall. This can be particularly useful for those with a large user base and help process support requests more efficiently
  • New in v4: Country Code blocking – Allows you to deny or allow access by ISO Country Code
  • New in v4: Port Flooding Detection – Per IP, per Port connection flooding detection and mitigation to help block DOS attacks

 

 

  1. ClamAV Scanner
  1.  
    1. advanced database updater with support for scripted updates and digital signatures
    2. virus scanner C library
    3. on-access scanning (Linux® and FreeBSD®)
    4. virus database updated multiple times per day (see home page for total number of signatures)
    5. built-in support for various archive formats, including Zip, RAR, Tar, Gzip, Bzip2, OLE2, Cabinet, CHM, BinHex, SIS and others
    6. built-in support for almost all mail file formats
    7. built-in support for ELF executables and Portable Executable files compressed with UPX, FSG, Petite, NsPack, wwpack32, MEW, Upack and obfuscated with SUE, Y0da Cryptor and others

 

At netspaceindia we take all security steps to keep our customer in safe list however we still recommend taking regular backup of your files and database as second line of safety.

Regards,
NetSpaceIndia – Support Team

Change in .IN Renew Grace Period Policy

Change in .IN Renew Grace Period Policy

We would like to inform you that the Renew Grace Period for second and third level .IN Domain Names has been changed to 15 days.

Please note that this new policy of 15 days applies only to .IN Domain Names expiring on or after the 14th of January, 2010. All .IN Domain Names that have expired before this date will continue to have a Renew Grace Period of 40 days.

As always, if you have any questions, feel free to contact your Account Manager

Plesk Panel Upgraded for Windows Server.

Plesk Panel Upgraded for Windows Server.

Dear Customers,

We have recently upgraded Plesk Verion to 9.2.0 for windows server having name server ns5.netspaceindia.com and ns6.netspaceindia.com.
There was no down time in this process and all customer can enjoy more stable tom cat and mail server in this version of plesk.

Please feel free to contact us if you have any other query.

- NetSpaceIndia Support

Safeguarding your website from Gumblar Attacks

worm_eat_google

Over the past few weeks, several websites hosted on our Linux Servers and windows threw up virus alerts. Further investigation revealed that these alerts were triggered by an injection attack on packages hosted on our servers, commonly known as Gumblar Attacks. FTP logs of these infected packages indicated that machines of the customers who own those domains were compromised and had been used to upload malicious content to their respective Hosting Packages. A few pointers for your benefit:

 

What is a Gumblar Attack?

Gumblar appears to be a combination of exploit scripts and malware. The scripts are embedded in .html, .js and .php files using obfuscated Javascript. They load malware content from Third Party sites without the user’s knowledge, while also stealing FTP credentials from the victim’s computer, which then allows it to spread and infect additional sites. Therefore, when someone visits such an infected site they get infected; if they have FTP credentials for a website on their machine then those sites get infected too. This explains the exponential growth of the exploit in such a short space of time.

What makes it different from other Malware exploits?
There are a number of aspects to this exploit that not just help it spread, but also make it difficult to remove. Firstly, it infects users browsing legitimate websites; if these users are webmasters then it infects their websites by using their FTP credentials to inject the script into their site. The obfuscated malicious code being dynamically generated, makes it difficult to detect and difficult to automatically remove. Not only does the script vary from site to site, it can also vary from page to page on that the one site.

For a more detailed read, you can check out the following news article

  • As a precautionary measure, we have blocked FTP services on our Linux Hosting Servers. This will prevent infection of any other Hosting Package. We are in the process of removing malicious content from all those packages that was infected as a result of this. However if we re-establish FTP connections, your clients will re-infect their respective Hosting Packages since their machines are likely to be compromised. 
  • We will be shifting to a Secure FTP connection and resetting everyone’s FTP passwords across all Linux Hosting packages. You can modify these passwords from your respective Control Panel at a later date. We strongly urge you warn your Customers about this worm and ask them to scan their machines given its exponential spread so far.
  • We have also installed Antivirus in our server which will delete any infected files which is uploaded by user.

 

Over the past few days, we have been investigating these attacks, and working on methods to mitigate the damage caused by them; our findings and recommendations are as follows:

  • Through our investigations, it was confirmed that the infection was not due to any server vulnerability. We enforce stringent security measures to safeguard your data.
  • The attack is perpetrated through stolen FTP login credentials. It transmits FTP information to an IP address from an infected machine.
  • This FTP information is then used to log on to the web server and infect the hosted website.
  • The attack is not limited to NetSpaceIndia’s hosting services – so far, thousands of websites across a large number of hosting providers have been infected through this attack.

Given the nature and scope of this attack, it is important that proper security measures to be taken at all levels to prevent it. We would like to suggest a few steps that would reduce the vulnerability of your computer and remove existing threats.

Recommendations:

  • Install an antivirus program with the latest updates and ensure removal of any malware, trojans or key loggers on any machine that you use to manage your website’s content via FTP. Several free antivirus software like AVG, AntiVir, Malwarebytes are available for this purpose. Regular virus scans will minimize such threats to a great extent.
  • Once you are confident of a clean machine, you should change all FTP passwords.
  • Avoid storing the new FTP passwords directly on the FTP clients. Variants of this virus have the potential to grab stored passwords from there.

What you need to do at your end to stay in tandem with the steps that we’ve taken:

  All websites that were determined to be infected have now been cleared. If you find any discrepancy with the content of your website, please inform our support team immediately.

  We have reset the passwords for all FTP users across all Linux and windows Hosting Packages.

  • You need to login to your Control Panel and set new passwords for all FTP users.
  • It is advisable that you set complex, alphanumeric passwords and frequently change them for additional security.
  •  NetSpaceIndia Hosting support FTP access via Secure FTP (SFTP) also. SFTP will encrypt both commands and data, preventing passwords and sensitive information to be sniffed over the network.
  • You may also use the File Manager within your control panel to manage your content.

For any doubts/further issues that you may face, please feel free to contact us.

 

NetSpaceIndia – Support