Guardian Backup by XeonBD
We are very glad to introduce our latest backup service which have been LIVE for you already. In the following para you will be shortly briefed about our Guardian backup solution.
Guardian backup is a fully managed robust backup solution that provides continuous data protection and off-site disaster recovery for your own hosting. Guardian backup uses replication and synchronization, with point-in-time snap shots, to provide up to the minute data protection of your complete server configuration. Guardian directly reads your hard disk volumes at the sector level, bypassing the file system for the ultimate in performance and recovery. Our disk sector synchronization is performed while the server is online and causes no interruption to I/O requests, even on a busy hour. By reading the disk at the lowest possible level, Guardian captures incremental recovery images containing your files and all the required information for complete disaster recovery.
Guardian Backup Features
- Continuous Backups During normal host operation, the Guardian agent keeps a journal of disk changes. Incremental backups know what sectors on the disk have changed before the backup operation even starts. Guardian's method is less resource intensive than tradition file-by-file or block-by-block backup methods.
- Incremental Snapshots Our technology provides consistent point-in-time system-wide backup images.
- Bare-Metal Disaster Recovery Restore servers directly from disk-based backup. Unlike traditional backup software, there is NO need to first partition your drive and install the operating system. Bare-Metal-Recovery greatly increases the speed of complete system recovery from a catastrophic failure.
- High Performance, Low System Impact Sector based backups increase throughput and reduce overhead. Servers can be fully operational with minimal performance impact during backups. Backups can usually be performed at anytime, even on busy hour.
For your more clarification like to include that at a point each day a full backup is taken, that backup is updated each hour after that until the same time the next day, at which point it is archived as the final daily backup for that day, there are seven days retained. The daily service also includes 4 weekly backups and 3 monthly backups being archived. So if you want to restore your site in a previous point to recover any disaster you can submit a ticket to us. Currently Guardian backup only supporting all the Linux shared hosting account.
If you still have any confusion regarding this service please open a ticket from your client area under sales department and our representative will get back to you to meet your thirst.
Web Hosting Offer 2011 | XeonBD
Hello!
It's long since you haven't heard from XeonBD about this OFFER and DISCOUNT thing! No need to be frustrated because we XeonBD team has warmly opened our web hosting offer of 2011 to satisfy our customers' web hosting need in very low rate.
XeonBD has brought THREE promotional offers in it's TWO web hosting categories which are Start-Up and Enterprise. You will find the detail offer description and related terms in the following...
Start-Up Hosting offer
- Purchase TWO year and get ONE year absolutely FREE! [Coupon Code: EXTRA]
- Purchase any of Start-Up plan with a DOMAIN and get 20% discount on the plan! [Coupon Code: EASY]
Enterprise Hosting offer
- Purchase any of our Enterprise hosting plan at 25% discount today! [Coupon code: AFFORDABLE]
Offer Validation: Limited time offer and stocks are limited.
Offer Terms:
- For having this discount clients/partners must have to use the promotional code while placing order, without the promotional code discount will not be applicable.
- All the payment is in prepaid basis by using any payment method supported by XeonBD.
- 20% OFF at start-up hosting only available with at least one domain registration at the time of purchase.
- This offer is not valid for the existing plan renewal, this offer is for new sign up only.
- Discount price and % is for ONE TIME and will not be available for renewal.
If you need any kind of clarification or have query please write to our SALES by clicking here or talk to us at 88-01977-XEONBD (936623). You can find detail of our bank information by clicking here and our contact information by clicking here.
How to inject javascript, iframe and malicious code in to index page and it’s solution!
Hello,
I hope the following information will be helpful for you.
Normally, The virus attacks following files on your server:
1. index.php
2. index.html
3. main.php
4. header.php
5. footer.php
At the start or end of these files it will insert the <IFRAME>, javascript php or malicious encoded code:
What it does?
----------------
I can only guess. The code is calling a script on online-channels.info site. It can be sending traffic information. Maybe it is a first case of Internet marketing espionage? Or it can be trying to run some malicious code.
What it does?
-----------------------
He save your FTP password, acces you account, and instal in your index files, (Index from all directory) an <IFRAME> code that will open a virus page in your index of the forum.
How it's done ?
-------------------
This is a sophisticated operation, and the infection cycle is involved, but basically, the hacker(s) are setting up innocent looking sites (or using previously hacked sites where the owner is usually unaware of being compromised) and loading them with expensive hacking tools like Mpack. When someone visits that site, their browser is detected and attacked (browsers affected are IE, firefox and opera). The visitor is unaware that they may have a keylogger that sends the persons passwords ect to the hacker(s) and moves on. If the innocent visitor has an ftp or root password for any internet sites, the hackers use a program that goes to the persons site(s) and instantly adds the hidden iframe to every index type page. This is why there seems to be no indication that the site has been compromised, as the hackers already have the ftp or root passwords to login. And since they have at least your account ftp pass, whatever permissions your folders and files are set to make no difference.
After they put the iframe code into that person's pages, anyone visiting that site will be redirected to the hackers infection site, where the person's computer will be injected and infected. The hackers are depending on site owners not knowing their sites have been hacked so that the number of hacked sites will grow (as they have starting in Italy) into the tens of thousands... Please don't think you can depend solely on your antivirus software to protect your computer. It more than likely won't help you. For $1000 dollars, the russian hacking bulletin boards are offering Mpack with 1 year support and a GUARANTEE that virus programs will not catch the keyloggers. SO, keep your virus program updated, but don't depend on it completely!
This way this hack is spreading fastly from one computer to another broadcasting the passwords to hackers.During my research in this, I even found some of the password files collected by the hack on some of the hacked server, where they pass this password file to thier tool to add the code. In some cases Google bots picks this files and you can even find the login details of FTP accounts and Server root login details in google.
How Do I got attacked ??
---------------------------
1. Your computer or a computer you use to administrate your website gets infected with a virus or trojan.
2. That virus or trojan runs a process on the computer searching FTP applications and their databases for username and password combinations or just looking for username and passwords in files on the computer.
3. When a username and password is found, that information is e-mailed, or somehow sent to an individual or a group of individuals.
4. That individual or group of individuals then have access to your account login information. They proceed to connect to your account via FTP using the hostname, username, and password that the trojan/virus provided for them.
5. Once connected to FTP on your account, they download your index page, edit that index page, place a malicious piece of javascript code or iframe code into the index page, then reupload it to your account.
6. Your website is now infected with malicious javascript or iframe code, which can then be used to infect or track other visitors of your website.
Your computer being infected with a virus is not a direct result of your website being infected with a virus, or vice-versa. It is because of the type of virus or trojan that is installed on your computer, that your login information was compromised. This compromised data is what led to your website being infected.
How you got infected (Step 1) is completely up in the air. Perhaps you downloaded a program that was infected. Perhaps you received an e-mail that caused the infection. Perhaps you visited a website that caused the infection. There's really no way to be absolutely certain of how this infection initially took place. The best thing you can do is preventive measures. Keep your anti-virus software up-to-date. Make sure the memory resident of the virus scanner stays running. Do routine virus scans on your computer just to be sure. Use anti-spyware software to keep tabs on possible trojans or key loggers that might be installed on your computer. Practice overall safe web-browsing. I recommend using only Firefox for your web browser and installing the NoScript Firefox addon to help prevent any malicious javascript from running in your browser.
All of this assumes that your account credentials were compromised due to a local virus or trojan. That may not be the case. I would bet that your credentials have been compromised in some way, but even that is not a given. Other ways for your credentials to be compromised is if you leave your username and password written down near your desk at work or at a coffee shop, if you leave it in plain view, someone else may be able to read that information and then your information is compromised. There's really no way to know exactly how the information was compromised.
It's also possible that there was no credential compromise at all. You may have an outdated script installed on your account or on your web server that allowed malicious users to gain access to your account and inject material into your website. You should always make sure that you are running the latest version of any scripts or applications you have on your website to prevent something like this from happening.
===============================================
What is solution now ?
===============================================
If you are facing this problem and your administrator says its only your account, just change the FTP password and it will stop
You must have removed the code as soon as it attack and change the file permission to READ ONLY or CHMODE 444 to make sure it never got attack again. Please Change the FTP Password immediately. Just changing password is not complete solution but is the first step.
Whats next, your password is leaked that means your computer is sending out the passwords, so I would suggest you to do a clean format first and then install any antivirus of spyware which you think could block it. But the best solution is to clean format the computer.
Just do the three things:
1) Change the FTP or root password of server.
2) Clean format the PC.
3) Forum cleaning.
You can download file_check.php . Put it in your root of the forum and run it from the adress http://yourforumadress.com/file_check.php .
It usually add that IFRAME code after the "?>" of the PHP code. You`ll get some pages that you need to delete the IFRAME.
Now go to the index.template.php from Themes/your theme directory. Search where the <body> code start, and there you`ll find another IFRAME. Delete it (WARNING! Without '; from after the </IFRAME>.).
Now the forum is "clean".
In some case, this "virus" make some modification in your database system. Make sure you checked you database and removed any suspicious code and take care in future, you dont visit any of the virus links made by this hack.
Hope it will work for you and if won't please let us know where you found difficulty or failure. Thank you...
99.85% Uptime During March 2011
The best uptime record of the best web hosting company of bangladesh is illustrated below which shows that from the very beginning of 2011 we have started hitting the best performance all the bits of second.
shared linux server uptime record
XeonBD Web Media Server
XeonBD's Video Distribution Service is available with our shared Linux, VPS, Managed and Dedicated server product lines to offer customers a complete solution to upload, manage and broadcast high quality web video and audio to their account/customers. XeonBD's video distribution service is a complete server solution that is capable of recording, converting and streaming audio and video content in virtually any file format.
Below is a list of its supported file formats which currently supported by our shared Linux server:
- MPEG audio
- MPEG-1 systems (muxed audio and video)
- MPEG-2 PS (also known as VOB file )
- MPEG-2 TS (also known as DVB Transport Stream )
- ASF
- AVI
- WAV
- Macromedia Flash (Only embedded audio is decoded.)
- FLV (Macromedia Flash video files )
- Real Audio and Video
- Raw AC3
- Raw MJPEG
- Raw MPEG video
- Raw PCM8/16 bits, mulaw/Alaw
- Raw CRI ADX audio
- Raw Shorten audio
- SUN AU format
- NUT (NUT Open Container Format)
- QuickTime
- MPEG-4 (MPEG-4 is a variant of QuickTime. )
- Raw MPEG4 video
- DV
- 4xm (4X Technologies format, used in some games. )
- Playstation STR
- Id RoQ (Used in Quake III, Jedi Knight 2, other computer games. )
- Interplay MVE (Format used in various Interplay computer games. )
- WC3 Movie (Multimedia format used in Origin's Wing Commander III computer game. )
- Sega FILM/CPK (Used in many Sega Saturn console games. )
- Westwood Studios VQA/AUD (Multimedia formats used in Westwood Studios games. )
- Id Cinematic (.cin) (Used in Quake II. )
- FLIC format (.fli/.flc files )
- Sierra VMD (Used in Sierra CD-ROM games. )
- Sierra Online (.sol files used in Sierra Online games. )
- Matroska
- Electronic Arts Multimedia (Used in various EA games; files have extensions like WVE and UV2)
- Nullsoft Video (NSV) format
- ADTS AAC audio
- Creative VOC (Created for the Sound Blaster Pro.)
- American Laser Games MM (Multimedia format used in games like Mad Dog McCree )
- AVS (Multimedia format used by the Creature Shock game. )
- Smacker (Multimedia format used by many games. )
- GXF (General eXchange Format SMPTE 360M, used by Thomson Grass Valley playout servers.)
- CIN (Multimedia format used by Delphine Software games. )
- MXF (Material eXchange Format SMPTE 377M, used by D-Cinema, broadcast industry. )
- SEQ ( Tiertex .seq files used in the DOS CDROM version of the game Flashback. )
If you ever run into a problem you know that someone is standing by 24x7 at our support desk to give you a hand.