Has the server been down this evening?

as above .or is it my end playing up

yes

most of the day

Here is the ticket that I started.

[quote]Our server is not responding 2010-12-19 16:25:44
GTO UK Dealing
Not sure how long it has been down, but I can’t connect to our server.

I have tried a remote reboot via the portal and it fails to reboot?

Mark

Serverstream (Admin) 2010-12-19 16:51:59
Hi,

We are investigating this for you.

Thanks,
Serverstream Support Team

GTO UK 2010-12-19 20:24:25
Any more news on this, even if it is just the cause of the problem, so I have some information to give the hundreds of people ringing me.

Mark

Serverstream (Admin) 2010-12-19 20:45:39
Hi,

We’re continueing to work on this and have traced the issue to a substantial number of servers which appear to have been hacked at the same time and are ddosing out. We are turning this off as we identify them and the network is returning to normal.

Thanks,
Serverstream Support Team[/quote]

Something went wrong with BT broadband too at my end…just dropped off

[quote]Dear Client

Following an incident yesterday that affected approximately 10% of our clients, we are writing to provide a report of the cause, the action taken, and the preventative measures put in place.

Within a close timeframe 24 Dedicated Servers running a well-known third party server management control panel were compromised in such a way that the attacker didn’t take full root control, but was able to remotely execute arbitrary code under the APACHE Webserver user account.

The attacker used this access to download Distributed Denial of Service (DDoS) tools to a temporary non privileged filesystem on the server and then execute a Full port (100mbit or 1Gigabit) out-bound DDoS from the affected servers.

This resulted in a very large multi-Gigabit internal traffic surge which caused problems both for a part of the internal switch network and the internal distributed firewall network that the affected servers were on.

Due to the distributed nature of the traffic volume, it resulted in some packet loss to a small number of customers.

We took action to identify and isolate all infected machines, whilst simultaneously upgrading the affected firewalls.

We quickly identified an accurate demographic of the infected machines and began to isolate all machines running the compromised third party control panel allowing affected network segments to return to normal.

Our system engineers undertook an extensive analysis of the infected machines and were able to create a repair and protection package which we deployed to all affected machines. This has resulted in no further DDoS activity from any machine and we expect this to be a permanent fix for this incident.

We have updated out internal provisioning documentation to ensure all machines deployed with this Third Party control panel are automatically handed over with our protection package preinstalled.

We regret the inconvenience caused to clients, and would like to confirm that no hardware/device failure or misconfiguration occurred. We would like to remind customers of the increase in malicious activity over the past few weeks.

We keep a large stock of spare devices to protect against hardware related issues as part of our 24x7x365 1 Hour Hardware SLA.

Should you you have any queries please do not hesitate to raise a support ticket via your Customer Portal.

Thanks,
Serverstream Support Team[/quote]