
03-10-2012, 08:03 AM
|
|
Rocco Alive!
|
|
Join Date: Oct 2004
Location: Here @ WHT
Posts: 1,349
|
|
Client's account hacked! Provider says I need to pay for investigation!
Hello,
One of my clients account got hacked and spam was sent through it. Provider rightly suspended the account and brought it to my notice.
I asked how we can proceed and my reseller host says I need to either convince them (which I see not possible for various reasons/criteria mentioned) or pay up consulting fee for them to investigate and clean the account.
I will only be provided a backup to investigate
I donot possess the advanced knowledge to investigate after a certain point nor do my clients.
I've been a Hosting Provider and have worked with various hosts over the past 10 years. This is the first time I have encountered such a thing.
This thing (charging fee for investigation) I see has started very recently. Is this normal for hosts to charge such fees?
Please let me have your comments.
__________________
One Ring to rule them all, One Ring to find them, One Ring to bring them all and in the darkness bind them
|

03-10-2012, 08:07 AM
|
|
Web Hosting Master
|
|
Join Date: Dec 2010
Location: Good Question
Posts: 565
|
|
Uh, I don't see why not. If it's an unmanaged service, they've every right to demand payment for doing what essentially counts as 'management'
|

03-10-2012, 08:08 AM
|
|
Newbie
|
|
Join Date: Mar 2012
Posts: 22
|
|
|

03-10-2012, 10:17 AM
|
|
Web Hosting Master
|
|
Join Date: Mar 2005
Location: Australia
Posts: 1,186
|
|
What does their TOS say? Did you agree to this when you signed up?
It is not unreasonable as long as it is covered under their TOS.
__________________
No advertising here.... Move along.
CPanel Shared and Reseller Hosting, OpenVZ VPS Hosting
|

03-10-2012, 11:10 AM
|
|
Newbie
|
|
Join Date: Mar 2012
Posts: 25
|
|
^ What RRWH said.
Check with what you agreed.
|

03-10-2012, 03:32 PM
|
|
WHT Content Curator
|
|
Join Date: Mar 2007
Location: USA
Posts: 4,686
|
|
It certainly is normal for a hosting provider to charge for necessary tasks that must be done which are outside the scope of of normal service. Finding, investigating, suspending, and cleaning an account would fall into that.
__________________
Sajan Parikh
Feel free to get in touch with me if I can be of assistance with anything.
PHP Development | Server Management | Linux Administration | Web Consulting
p: (563) 726-0371 e: email@sajanp.com | t: @sajanNOPPIX | w: http://sajanp.com
|

03-10-2012, 04:04 PM
|
|
Will Host for Food
|
|
Join Date: Jul 2002
Location: London, United Kingdom
Posts: 3,679
|
|
Quote:
Originally Posted by Mikey this way!
I donot possess the advanced knowledge to investigate after a certain point nor do my clients.
|
So you have to pay for someone who does have that knowledge.
You can put fuel in your car, you can wash your car, you can drive your car, but if you dont know how to investiagte where that gawd-awful-smell is coming from 5 minutes into your journey, you pay someone to investigate at a garage !
|

03-10-2012, 08:35 PM
|
|
Temporarily Suspended
|
|
Join Date: Mar 2012
Posts: 102
|
|
Ive never really understood why hosting companies become hosting companies if they don't know how to manage a hosting company... even worse.. admit it in public.
Get harder passwords, and scan your site on a regular basis! it helps.
|

03-10-2012, 08:54 PM
|
|
Junior Guru Wannabe
|
|
Join Date: Feb 2012
Posts: 86
|
|
Quote:
Originally Posted by Mikey this way!
Hello,
One of my clients account got hacked and spam was sent through it. Provider rightly suspended the account and brought it to my notice.
I asked how we can proceed and my reseller host says I need to either convince them (which I see not possible for various reasons/criteria mentioned) or pay up consulting fee for them to investigate and clean the account.
I will only be provided a backup to investigate
I donot possess the advanced knowledge to investigate after a certain point nor do my clients.
I've been a Hosting Provider and have worked with various hosts over the past 10 years. This is the first time I have encountered such a thing.
This thing (charging fee for investigation) I see has started very recently. Is this normal for hosts to charge such fees?
Please let me have your comments.
|
lol! y should ur host help u with a hacked site for free? did they advertise that they will help clean up the mess if u got poor security?
for them to even offer u the option is a good thing. Some will just tell u to do it urself!
how much did they want to charge for investigation?
Quote:
Originally Posted by Eggyak
Ive never really understood why hosting companies become hosting companies if they don't know how to manage a hosting company... even worse.. admit it in public.
Get harder passwords, and scan your site on a regular basis! it helps.
|
haha! true. u should always do ur research because people that suffer are ur customers and they dont deserve poor service 
|

03-10-2012, 10:00 PM
|
|
Always Ask...Don't Pretend!
|
|
Join Date: Aug 2010
Location: CPU
Posts: 2,065
|
|
Charging because the website was hacked?
Do you really need to investigate this? Or you can asked them to restore the most recent backup and update the script?
If this is a reseller account, your provider do not investigate the issue. It is your job or the website owners job to ensure that your script are updated and secure. The best and quickest way is ask your provider to restore the website and asked your client to fix the script.
__________________
█ Ask for Server IP & Nameservers IP to check if your reseller provider truly provides 100% white-label.
|

03-11-2012, 03:50 AM
|
|
Corporate Member
|
|
Join Date: Aug 2009
Location: Canada
Posts: 1,219
|
|
They should unsuspend the account and allow you time to clean/secure it yourself. Change all passwords. Then Ensure all scripts/plugins/addons are up to date. If the host offers ClamAV or similar, run it and make sure the account is clean. There could still be malicious code within files, if possible reupload them.
If you or your host takes daily backups, restoring from it would also be a good choice. Once restored, be sure to change passwords and update scripts.
__________________
⌈ CrocWeb :: Fastest, Reliable & Affordable Canadian Hosting
█ cPanel - LiteSpeed - MySQL on SSD - RVSiteBuilder Pro - CloudFlare - Softaculous - and much more!
⌊ www.crocweb.com :: Now hosting over 50,000 domains!
|

03-11-2012, 06:37 AM
|
|
Dependable Web Services
|
|
Join Date: Jun 2010
Location: Modesto, Ca. - USA
Posts: 4,933
|
|
Quote:
Originally Posted by Mikey this way!
Hello,
One of my clients account got hacked and spam was sent through it. Provider rightly suspended the account and brought it to my notice.
I asked how we can proceed and my reseller host says I need to either convince them (which I see not possible for various reasons/criteria mentioned) or pay up consulting fee for them to investigate and clean the account.
I will only be provided a backup to investigate
I donot possess the advanced knowledge to investigate after a certain point nor do my clients.
I've been a Hosting Provider and have worked with various hosts over the past 10 years. This is the first time I have encountered such a thing.
This thing (charging fee for investigation) I see has started very recently. Is this normal for hosts to charge such fees?
Please let me have your comments.
|
Unfortunately this is starting to become a bigger and bigger issue, the number cause I have found for sites being hacked is people going out and downloading free themes from untrusted places and using them for their websites. Often times free themes are either poorly written or contain malicious code from the start.
The second most common reason for a site being hacked (at least in my experience) are webmasters accessing website credentials via FTP from unsecure computers (hackers will hack the computer and harvest web hosting credentials from your computer).
To get to the bottom of this I would A.) find out what type of website your client was running (Wordpress, joomla..ect) and find out if they recently installed a free theme? B.) Make sure the users computer is secure and that they have a active/up to date firewall/virus protection installed on the computer they are using to FTP or access the account from.
Hope that helps!
__________________
██ Fernando Diaz Alfaro - Owner of FernGullyGraphics - Since 2001
██ Shared and Reseller Web Hosting Services - Web Design - Domain Names
██ Cloud Linux - Varnish Cache - WHM/Cpanel - CloudFlare - Softaculous - RVSiteBuilder Pro
██ Learn more about our services at www.FernGullyGraphics.com
|

03-11-2012, 07:39 AM
|
|
Web Hosting Master
|
|
Join Date: Dec 2009
Location: Greece
Posts: 784
|
|
Quote:
Originally Posted by Mikey this way!
Hello,
One of my clients account got hacked and spam was sent through it. Provider rightly suspended the account and brought it to my notice.
I asked how we can proceed and my reseller host says I need to either convince them (which I see not possible for various reasons/criteria mentioned) or pay up consulting fee for them to investigate and clean the account.
I will only be provided a backup to investigate
I donot possess the advanced knowledge to investigate after a certain point nor do my clients.
I've been a Hosting Provider and have worked with various hosts over the past 10 years. This is the first time I have encountered such a thing.
This thing (charging fee for investigation) I see has started very recently. Is this normal for hosts to charge such fees?
Please let me have your comments.
|
How much did they ask to get the job done? I find it logical to ask for a fee to do this,but it all depends on the price they asked.
|

03-12-2012, 01:02 PM
|
|
Rocco Alive!
|
|
Join Date: Oct 2004
Location: Here @ WHT
Posts: 1,349
|
|
Lol! I see a lot of responses which include saying why am I in the hosting business  . The reason I asked coz my current provider never did this and this is the first time they have asked. I see that they do have a point in charging me fee which I initially thought was not justified.
Hence, I request the mods to close this thread... 
__________________
One Ring to rule them all, One Ring to find them, One Ring to bring them all and in the darkness bind them
|
| Thread Tools |
Search this Thread |
|
|
|
| Display Modes |
Linear Mode
|
| Postbit Selector |
|
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
|
|
|
| Login: |
|
|
| Advertisement: |
|
|
| Web Hosting News: |
|
|
|