Skip to main content

Reply to "Notification of Malware to Auctiva.com"

Yes!...I am going back to the original post in this thread as I still need to get some things off of my chest!
================================================================================================
quote:
Originally posted by DrHopster:
I guess I am going to see how OPEN and TOLERANT Auctiva's Management is to open criticism....
================================================================================================

When I originally posted this thread I asked the above question....I got my answer last night..
I originally posted this thread in the SUGGESTIONS Board. And as I was following the posts yesterday and seeing that I WAS NOT ALONE with the way that I felt Auctiva Mgmt (Calling Mike D.) handled this problem Auctiva's Mgmt CLOSED DOWN THIS THREAD!..I got quite upset at this because I was awaiting an answer from Auctiva's Mgmt (Calling Mike D.) on this thread and when they closed it down I all the sudden had a sense of censorship being cast down on me, sort of like being wiped under the rug if you know what I mean! Then I found out that they just completlely moved the entire thread out of the suggestion board to this the "Everything Else" Community Board. So when I found that out I felt a little better noticed that some people were still posting on the thread and I thought to myself, OK! Great they just moved it over here let me go see if I got my answer from Mgmt and the ELITE Staff.(Calling Mike D.)...Lo and behold when I got to where the new thread is I looked up and down anticipating what was Mike D or Kevin K going to say about the post that I started and that others seemed to identify with and were looking for the same answers as me. What did I find????...ZIP!!.(Calling Mike D.)..Just a moved thread and that same old SWEPT UNDER THE RUG FEELING CAME RIGHT BACK AND BIT ME AGAIN!!....

I have been reading these boards for awhile now and I have seen Mike D answer posts from people that have lost their password. Yet on an issue as SERIOUS as this is in my eyes and the eyes of others. Nothing, just swept away from a "Suggestion Board" to an "Everything Else Board". But then I got another email from Auctiva last night, look below to see what it says (Just in case I left the rest of the original post in here also).


I just got an email notifying me of the malware problems Auctiva.com website is having even though they were apparently aware of this problem since last Thursday.....I am a little upset that it took them 6 days to email us to notify us of this problem...I seen the alerts last Thursday and in the ALERTS there was no mention of a MALWARE problem just a little blurb about having to take some servers down (How many times have we seen that alert) and that the site was running a little bit slow..I think that waiting for 6 days to notify us of MALWARE is quite irresponsible of them and I am not to happy about this.(Calling Mike D.)..This just caused me 2 hours of unecessary work but THANK YOU NORTON FOR SAVING THE DAY FOR ME!!!...As it is I had to delete all form data all password data and now having to put that info back in is a big pain in the U KNOW WHAT!!!!

quote:
So I ask this of Auctiva's Mgmt.(Calling Mike D.)....What do you got to say for yourself????...What precautions are you going to take in the future for your LOYAL users???(Calling Mike D.)


Heres the Email:

UPDATE - Information regarding the Auctiva Site Warning‏
From: Auctiva (donotreply@auctiva.com)
Sent: Tue 2/24/09 11:16 PM
To: drhopster@msn.com


You are receiving this email because you requested Auctiva email updates.
Note: I am signed up to receive all Auctiva Email Updates

SUBJECT: UPDATE - Information regarding Auctivas Site Warning
February 24, 2009
5:30 PM PST

After notable efforts by our IT and Development teams, as well as assistance from eBay, we were able to bring Auctiva.com back online as of 5 am, PST. Our site is safe to navigate, as verified by Google.

===========================================================================================================
Note: The assistance from Ebay and note that Google AGAIN has declared them safe to navigate even though the last time Google did this when the site was brought back up they found more MALWARE
===========================================================================================================


We identified the root issue of the malware and we're moving forward with the necessary protection to prevent this from happening again.

We are on a more segregated network with increased security and are performing on-going virus scans. Additionally, eBay is currently running a vulnerability scan to ensure the integrity of our database. There are still a few minor issues with the live site that we are resolving. These are no longer related to the malware, but rather issues in bringing the site back up on new servers. Our Release Engineering team is working with IT to get things back to complete.

What happened?

The virus malware was injected via a third third-party plug-in. Once in the file directory, the virus malware executed malicious script that gained access to files. Once access was gained, the perpetrators used that access to place low-level malicious script into files that were distributed to some of our users.

========================================================================================================================
Note: Your an E-Commerce Website and NOW your on a "more segregated server with INCREASED SECURITY"....Note: Ebay is still running vulnerability scans to ensure the integrity of their database....Note: The virus MALWARE was injected via a 3rd party plug-in??????????????????....HUH!!!...I'm no Techie but does that sound like sabotage to anyone else but me??????...1st party Auctiva...2nd party Servers....3rd party PLUG-IN Does this mean someone plugged the virus into their Servers......I dont know I am no Techie I just use English as my 1st Language....LOL...(Calling Mike D.)
========================================================================================================================


Sincerely,
Kevin Kinell
VP, Engineering


So in the long and the short of it I don't, we don't have an answer for the simple question that was asked when this whole thread got started. And thanks to the HELP of Ebay and Google everyone in the Auctiva IT Department is running around the office with their ties tied around their forehead slapping each other on the back, and we have no answer to the question that was asked.

Calling Mike D. This is Derrick out here and I lost my password can you help me?????



Am I alone in this thought????....I guess I will find out!!!

PS I still LOVE the Auctiva website and the tools that they provide for ebay sellers just really think this was handled wrong. Smile Confused

Cool
Last edited by drhopster
Copyright © 1999-2018 Auctiva.com. All rights reserved.
×
×
×
×