Print This Post Print This Post

Seems someone at MD Web Hosting is reading here and removed the offending code on instrumentsolutions.com.au or possibly Brad did it either way its been removed. So I did a little research on the actual server and found the following compromised websites. I wonder what the rate of compromised websites is on other Hosting companies is? Out of the 40 odd websites I checked (I did not check all websites) on MD Web Hosting server the following websites were found.  14 out of 40 or so must make you wonder. I am sure once they read this they willremove the offending code. There was three main infections that I found. Luckily archive.org and google have long memories soif they shout I am lying I have the proof to backit up.

  • How do they allow so many sites to exist on their servers compromised?
  • How did these sites get compromised in the first place?
  • If you are considering MD Web Hosting as a HOST maybe ask for the IP first and do a check to see how many infected websites are on the same server.

I would suggest that unless you know what your doing you don’t visit these websites as your system could be infected with various malicious scripts and programs.

http://www.pfsgroup.com.au/

http://exactelectrical.com/

http://equinoxsolar.com.au/

http://fentez.com/

http://gold-corporate.com/

http://generia.com/

http://greenamenities.com/

http://ita.vic.edu.au/

http://nkinjectionmoulding.com/

http://mtcfvic.org/

http://naaschoice.com/

http://teamvisualvision.com/

http://vitalhealthgenics.com/ hacked not 1 but 2

http://www.annalisapansini.com/ several injections


RANDOM THOUGHTS, QUOTES & JOKES

Hmm - i’m lucky to have two webhosts. All sites on my MDWebhosting account are down, displaying hacked by root-x. It’s 2 days of downtime now - no email or ftp. No response from tech support via email, and the phone-support numbers don’t work. One of them is constantly engaged, while the other one just doesn’t work.
http://akaracquel.com/archives/235

11 Comments to “More Hacked sites on the same server”

  1. Charlie | June 6th, 2009 at 4:37 am

    Whilst I am also not happy with the service mdwebhosting is providing, I do not appreciate you listing my client’s site as somewhere to avoid. There are no files at this site that should cause anyone concern.

  2. grynge | June 12th, 2009 at 10:43 am

    Hi Charlie, I have no ill will against your clients site but I hate to tell you that your site is still infected. Not sure if you are the owner or the web builder but either way you should clean up your site. If you don’t know how I am more than willing to let you know.

  3. Dean | June 12th, 2009 at 11:06 am

    Charlie…
    You say
    “There are no files at this site that should cause anyone concern.”
    How can YOU possibly know what is being hosted on a server with how many sites ? unless you are the host provider themselves.. ?

    I think what you say is very possibly right, however VERY OPTIMISTIC and unrealistic as there ARE so many infections out there these days.
    Sorry Charlie but man you need to smell what your shovelling mate.

    MD have a lot to answer for both to the owners of sites and to the public for passing some of the stuff on and around.

    Of course we all have opinions and they do vary from one to another for sure.

    MD SUCK BIG TIME would be a gross understatement !!!

  4. Karla de Oliveira | August 31st, 2009 at 8:46 am

    Hello, I would like to introduce myself as the new Business Operations Manager for MDWebHosting.

    You’re welcome to contact me directly any time you
    need help.

    As you might have heard, MD WebHosting is now part of Online Growth Solutions Ltd group of companies, alongside Netregistry, PlanetDomain, NETT Magazine and Hostess.

    You can read more about it here:
    http://www.mdwebhosting.com.au/mediarelease010809.html

    I am just passing by to drop a quick note and say that I am reading every single comment that is being posted on this website, and that we are adressing every single issue we encounter on the way. This is just the beginning.

    I am sorry if you do not want to hear from us, but here we are, ready to hear from you. I am glad to inform I will be here on a daily basis.

    Of course, server/website security is a major concern for all involved in hosting a website – specially the website owners; as it can affect their sales, business/personal reputation/passion, depending on the website content.

    However, we should also be aware that there are websites hacked due to server related issues and that are websites hacked due to incorrect file permission set by the user. In the first case, we should not only remove the offending code, but also investigate how that code was inserted there and address this vulnerability immediately. Secondly, we sould be contacting the website owner informing their website was vulnerable (due to poor coding, incorrect file permissions) and also direct them on how to address the issue as quickly as they can to avoid any further damage to their website. These procedures are being implemented as of NOW and you will see considerable and hopefully satisfactory results from now on. We will strive to achieve it.

    Whilst we see there are gaps when it comes to server security, I would like to inform these are being trated by our ICT department, (which is now much larger then you imagine) as high priority. I know it is impossible to make everyone happy 100% of the time. I respect every one of you for your choices and I also thank you, for sharing your experiences with MD with the world, this way we can see them, evaluate them and address them as we move forward improving MD overall services.

    Follow us on twitter get the latest news to find out what we are up to:

    http://twitter.com/mdwebhosting

    Any questions, just email me.

  5. grynge | September 8th, 2009 at 11:51 am

    Hi Karla, thanks for leaving a comment. I am watching with great interest the goings on at the new MD Web Hosting. Having never had anything to do with Netregistry I don’t feel like I can comment. I do have an account with MDWeb and am monitoring the situation. From what I have seen over the last few weeks it does seem that netregistry has changed the method of operation for MDWeb. I do know though in the past it has been the lack of server security knowledge at MDWeb hosting that allowed so many sites to be hacked. I am not blaming the new regime. I am starting to suspect that the need for this site might no longer have value but again I will monitor my account with MDWeb for a little while longer. I had in the past contacted MDWeb about their customers sites being hacked as well the server mine where on was hacked when I was with them. They tended to blame anyone and everyone for their problems apart from them. I still have all emails/live chat transcripts. I do wish you and the team at Online Growth Solutions Ltd all the best.

  6. Sal | October 5th, 2009 at 9:53 pm

    Nothing has changed at MD for the past 4 months we had nothing but warnings for google that our site was distributing Malware. As am not very good with computers so I was really at a loss, I would contact MD tell them the problems and ASK for advice as to how to prevent this from happening in the future all I got from them was a message saying we have fixed the problem and to blame me for what had happened and 2 days later I would be back in the same position and back to contacting MD who would fix it at their end, then blame me & not answer any of my questions on how to prevent this! I ended up changing hosts and it has been a little of a week and I have not had any problems. Karla I don’t think MD has implmented any changes in the way you handle things and I got the impression that when I cancelled the hosting that MD was glad to see me go, as no one at MD addressed any of the issues I listed as the reason for me cancelling my service and no effort was made at all to try and retain my business.

  7. Sal | November 4th, 2009 at 10:37 pm

    They still can’t get it right at MD webhosting, a month after cancelling my service, they have now sent me an email telling me they have suspended my hosting as I have not paid my account,I wonder how they suspended a service that does not exist? Lets hope for their sakes that non payment of a non existing web hosting account does not effect my credit rating!

  8. grynge | November 4th, 2009 at 11:50 pm

    Hi Sal, I warned them ages ago about their lack of security and even showed them several servers that were hacked. I am sorry for you problems I hope you have been able to get google to remove the malware report. I have a test account with them that I am doing a report on and yes I have seen that they may have been taken over but they obviously still have the same incompetent individuals running the servers. I hope your new host is a better operator.

  9. Sal | November 8th, 2009 at 8:09 am

    Thanks have been able to get google to remove the warnings and have no trouble since being with the new host. I have threatened legal action to MD twice in the past 10 days both times they have danced around the real issues and have made out they were fixing my problems. Unfortunately on a personal level I am not computer savvy, but fortunately I have access to a very good legal team.

  10. Jackie | December 4th, 2009 at 10:54 pm

    Luckily I did a google search on md webhosting as I was considering using them for a basic website. I take was has been written here very seriously, as you have gone to a lot of trouble to warn others.
    Anyone else you can recommend would be great, I was only going to use one of their sites builders so something similar (& not too expensive) would be great.

  11. Marc | January 28th, 2010 at 11:51 pm

    I also use mdwebhosting and would have to say they are the worst hosting provider in Melbourne.

    They have extremely poor customer service and my server goes down all the time and it takes them days to fix.

    I recommend everyone avoiding using them and everyone should be warned against their company.

Leave a Comment