My Farsi Blog Hacked Again
My Farsi blog was hacked once by someone who called himself Aljera7, Saudi hacker but this time it is worse. I don't know what is going wrong with the host and my blog. The only thing i have access is the domain kabuli.org which is registered with aplus.net but my blog which was hosted with Hostiran.net, since five days i don't have access to it nor i have the info login.
Just a few days before this happen, i was receiving the below message periodically but i ignored because i was thinking that they want to steal my password. But when i saw my account was suspended and the host gave me this reason which they received similar e-mail that i did.
I don't know who should feel responsible, the host instead to solve the problem and feel responsible to provide security, they blocked my account. Please let me know if you can help me with this i am getting mad. Read the below message which caused to block my account.
HIS IS AN URGENT MATTER
Hello,
I work for and represent Westpac Banking Corporation.
Please be advised that we have received reports of Phishing website(s) at
the following URL(s) being used to illegally obtain the login details of
Westpac Internet Banking customers:
http://kabuli.org/UserFiles/Image/secure.htm
As at 06:50 29/11/2008 (AEST) these URLs resolved to the IP address(es) of
208.64.230.251
for which you are listed as an abuse/support contact. We would greatly
appreciate your prompt assistance in:
1. Zipping any relevant files from the folders below and forwarding these
to cdar@westpac.com.au for investigation
http://kabuli.org/UserFiles/Image/
2. Immediately shutting these sites down or removing the phishing related
material
3. Checking for other compromised web accounts on your servers which may
also contain the same files
4. Checking for and fixing any security vulnerabilities which may have
contributed to the creation of these phishing pages
We believe the purpose of this webpage is solely to commit fraud against
Internet Banking customers and in the absence of any response we reserve
the right to take this matter further. In case of the need for further
investigation the Australian Federal Police and AusCERT have also been
notified.
Please contact me as soon as possible via the email address
cdar@westpac.com.au to let me know when this site has been removed.
If you are not the correct person(s) to deal with this incident, please
forward this request to the appropriate person(s).
For tracking purposes please include "[CDAR #9580]" in the subject line of
any correspondence.