Hello,
Pass30 was getting a DDOS at approx 7:50 AM EST. We noticed a huge amount inbound packets from a range of ip's. We blocked the attacking ip's at the router but the packets were still causing high latency across the network. We had to null route (block) the main ip of pass30 at one of the edge routers of MCI to isolate the attack.
The ip of pass30 xx.xx.77.48 is now blocked to the whole internet.
please use the following ip 72.29.77.42 from now on instead of 72.29.77.48
same goes for whm
http://72.29.77.42:2086
http://72.29.77.42:2082 cpanel
http://72.29.77.42:2095 webmail
http://72.29.77.42/~CpanelUsername/
all websites should be loading now on .42
If someone can not see a site on pass30 please reboot your pc so it can release the cache load it from the new ip. Many networks will resolve it on the blocked ip for the next few hours. Please allow a few hours for propagation.
There is no need to update anything on your end. Meaning there is no needed changes on your end including but not limited to dns, configs.
We apologize for the inconvenience we have reported the attacking ip's to their network owners. Hopefully they can bring them to justice.