Auctiva Update!

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • kloccwork419
    Banned
    • Sep 2008
    • 6800

    #1

    Auctiva Update!

    SUBJECT: Information regarding Auctiva’s Site Warning
    February 23, 2009
    7:30 PM PST On Thursday, February 19 we discovered the presence of malware on the Auctiva servers. This caused Google to flag Auctiva as a dangerous site. Our Systems Engineers identified the malware through our monitoring system and they immediately began working to isolate the infected servers and take them offline. During this process the site was running on fewer servers and you may have experienced some delays.
    The infected servers were wiped clean and by Saturday morning, most servers were put back online. As of Sunday night, Google rescanned Auctiva.com and determined we were safe to navigate. However, upon continued monitoring today, additional malware was detected and we decided to temporarily take Auctiva.com offline to eliminate the possibility of further infection. We take the security of our site very seriously. We have identified the source of the problem and we are working 24/7 to resolve the issue. We will bring Auctiva.com back online once we are confident we can provide the level of safety and security for our customers that we have for the past 10 years.
    What can you do now?
    If you visited www.auctiva.com between Thursday evening and Saturday afternoon at about 2 PM PST, as a precautionary measure we recommend taking the following actions to ensure that your computers are not infected:
    1. Clear your browser cache, delete ALL temporary internet files, and restart your browser. For instructions specific about your browser: http://community.auctiva.com/eve/forums/a/tpc/f/1081020411/m/11910151?r=31410571#31410571
    2. If using a Windows machine, make sure you are updated with all the current Microsoft updates and patches.
    3. Make sure you are running reputable antivirus software.
    4. Use the Firefox browser if possible, as it has been shown to be less susceptible to this sort of malware than Internet Explorer.
    During this time your Auctiva Checkout, scheduled listings, and images, templates and scrolling gallery in listings on eBay will remain available.
    As we work through this issue we will post regular updates on our Community Forums http://community.auctiva.com/eve/forums/a/frm/f/1081020411.



    Sincerely,
    Kevin Kinell
    VP, Engineering

    This email has been sent to you as a courtesy by Auctiva.
    Set email preferences on Auctiva.
    360 E 6th St., Chico, CA 95928
  • 1gtsfan
    Member
    • Jul 2008
    • 518

    #2
    thanks jason. keep us posted.

    Comment

    • kloccwork419
      Banned
      • Sep 2008
      • 6800

      #3
      You are receiving this email because you requested Auctiva email updates.



      SUBJECT: UPDATE - Information regarding Auctivas Site Warning
      February 24, 2009
      5:30 PM PST

      After notable efforts by our IT and Development teams, as well as assistance from eBay, we were able to bring Auctiva.com back online as of 5 am, PST. Our site is safe to navigate, as verified by Google.

      We identified the root issue of the malware and we're moving forward with the necessary protection to prevent this from happening again.

      We are on a more segregated network with increased security and are performing on-going virus scans. Additionally, eBay is currently running a vulnerability scan to ensure the integrity of our database. There are still a few minor issues with the live site that we are resolving. These are no longer related to the malware, but rather issues in bringing the site back up on new servers. Our Release Engineering team is working with IT to get things back to complete.

      What happened?

      The virus malware was injected via a third third-party plug-in. Once in the file directory, the virus malware executed malicious script that gained access to files. Once access was gained, the perpetrators used that access to place low-level malicious script into files that were distributed to some of our users.

      What can you do now?
      • As a matter of good practice everyone should be regularly scanning their computer with antivirus software. If you already have antivirus software then you should check to be sure you have the latest virus definitions update for the software and run routine scans of your computer.
      • If you don't already have antivirus software eBay recommended that users try Microsoft's OneCare antivirus scanner for home users. http://onecare.live.com/standa.../install/install.htm.
      • If you are using a Windows machine, make sure you are updated with all the current Microsoft updates and patches.
      Thanks are due to so many people, our customers, our IT staff and eBay for working with us on this issue. I know we're all looking forward to moving past this and getting back to business as usual. We will continue to post regular updates on our Community Forums http://community.auctiva.com/eve/forums/a/frm/f/1081020411.


      Sincerely,
      Kevin Kinell
      VP, Engineering

      This email has been sent to you as a courtesy by Auctiva.
      Set email preferences on Auctiva.
      360 E 6th St., Chico, CA 95928

      Comment

      • D.J.

        #4
        Is is possible it cause this?

        A few days ago I was up late searching some rolls, and as always had this site and coppercoins open in seperate tabs (I'm still new and use both for reference a lot). Well all of a sudden while trying to reload the page i got cut off coppercoins, then this site. Next day internet sill not working. Called my provider and they informed me that my pc had been reported 3 times as sending "spam e-mail" automatially. Was really confused and mad why they would say this, especially since they refused to reactivate my service until I removed the "malicious software" is exactly how they put it.

        I ran a complete scan of both my antivirus and anti-maleware tool. Both reported no infections found. Still though, Qwest told me I had succeeded in the removal and restored my service. Could it have been because I got infected with what you're talking about? Qwest is persisting on me helping find out how I got the malicious software since I demanded to know who reported me to them for automatically generating spam-emails.

        Please let me know if it sounds like what you were talking about might have been the culprite. I don't know if you are familiar with "Qwest" who is my provider, but they are one of the two largest providers in my area and not only would the information be helpful to them, but I'm sure they would also take action against the cause of this problem as a reputable ISP should.

        Btw, I do use Firefox, but had windows messenger open, and did not open any e-mail you described.
        Last edited by Guest; 02-26-2009, 10:50 PM. Reason: oh, btw

        Comment

        • kloccwork419
          Banned
          • Sep 2008
          • 6800

          #5
          All I heard is that your comp would freeze up and then you would get alot of pop ups with that antivirus program thing that im pretty sure is a virus itself.

          Comment

          • RWBILLER
            Member
            • Jul 2008
            • 6870

            #6
            Jason:
            thx for the info.
            roger
            Roger
            ""Time and Tide wait for no man"

            Comment

            Working...