Security HUD
System Watchdog
×
Threads Scanned
-- / --
SYS. LOAD --%
AI SHIELD ACTIVE
DMCA Policy
×

📋 DMCA Compliance

This platform and community fully complies with the Digital Millennium Copyright Act (DMCA) and international copyright laws. We take all copyright protection seriously.

🛡️ Copyright Protection

If you believe a posted item belongs to you or violates your copyright, you may file a DMCA takedown request through our official channels. Upon receiving a valid claim, the infringing content will be removed within 24 hours.

What's new
×
Fiveguard

Zap-Hosting deletes QBCore files marked as "malicious"

ENDERS

Silver Elite
Joined
Aug 27, 2022
Messages
15
Reaction score
9
Points
166
Location
US
Hello,

Recently I became a paying customer for a dedicated server by Zap-Hosting. (around the end of August)

Upon rebooting my Zap-Hosting server (Sept 5th 2022 at 10pm CST) their system automatically deleted files I have been using for weeks on their system. (That they installed)
When I booted the server and tried to sign into the FTP, I found a text document in the resources folder exclaiming that QBCore stock files from the github directly were "malicious" and "contained cipher code for ip-lock attacks."... A number of my edited QBcore resources were removed, they deleted QBCore, and their distributed dependencies, and all of my customization of each plugin there in.

I have not found a way to restore these files they delete through their dashboard (even though I have backups on my local system), and they refuse to help restore them, calling my files "malicious" when I didn't even replace them with anything at all.
I sent tickets letting them know I needed help getting these files back on my server. They responded telling me the resources removed contained malicious code, but we all know QBCore does not.

I have ran video game servers for 20 years and never had this happen, I don't give a shit about escrow or any of that nonsense, they shouldn't be removing files they don't understand.

Hell... they even responded later telling my that my files are all good -_-

This was the log created, that was deposited in my resources folder, on their server upon boot. Every single one of these directories and the files inside them was deleted without chance of recovery, by Zap-Hosting.
Code:
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-atms with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-cityhall with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-radialmenu with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-interior with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-houses with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-weathersync with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-commandbinding with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-streetraces with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-tunerchip with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-drugs with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-scrapyard with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-policejob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-weed with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-vineyard with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-target with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-bankrobbery with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-mechanicjob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-garages with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-newsjob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-apartments with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-adminmenu with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-ambulancejob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-prison with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-scoreboard with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-hotdogjob with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/connectqueue with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/mhacking with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/LegacyFuel with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/progressbar with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/PolyZone with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/ps-hud with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/safecracker with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/interact-sound with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [voice]/qb-radio with cipher-panel
2022-09-05_23:00:13: deleted malicious resource at [voice]/pma-voice with cipher-panel

They don't seem to understand the reason their system did it either, which is... scary as a paying customer to say the least:
(Remember these are all files from their installer packages, that they give paying customers, they are deleting here...)
1662564889581.png



Just wanted to share this bit if facts with anyone considering Zap-Hosting as this is a practice they indulge in.
 

tonystank

Gold Elite
Joined
Mar 6, 2021
Messages
118
Reaction score
214
Points
311
Hello,

Recently I became a paying customer for a dedicated server by Zap-Hosting. (around the end of August)

Upon rebooting my Zap-Hosting server (Sept 5th 2022 at 10pm CST) their system automatically deleted files I have been using for weeks on their system. (That they installed)
When I booted the server and tried to sign into the FTP, I found a text document in the resources folder exclaiming that QBCore stock files from the github directly were "malicious" and "contained cipher code for ip-lock attacks."... A number of my edited QBcore resources were removed, they deleted QBCore, and their distributed dependencies, and all of my customization of each plugin there in.

I have not found a way to restore these files they delete through their dashboard (even though I have backups on my local system), and they refuse to help restore them, calling my files "malicious" when I didn't even replace them with anything at all.
I sent tickets letting them know I needed help getting these files back on my server. They responded telling me the resources removed contained malicious code, but we all know QBCore does not.

I have ran video game servers for 20 years and never had this happen, I don't give a shit about escrow or any of that nonsense, they shouldn't be removing files they don't understand.

Hell... they even responded later telling my that my files are all good -_-

This was the log created, that was deposited in my resources folder, on their server upon boot. Every single one of these directories and the files inside them was deleted without chance of recovery, by Zap-Hosting.
Code:
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-atms with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-cityhall with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-radialmenu with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-interior with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-houses with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-weathersync with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-commandbinding with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-streetraces with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-tunerchip with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-drugs with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-scrapyard with cipher-panel
2022-09-05_23:00:10: deleted malicious resource at [qb]/qb-policejob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-weed with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-vineyard with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-target with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-bankrobbery with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-mechanicjob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-garages with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-newsjob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-apartments with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-adminmenu with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-ambulancejob with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-prison with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-scoreboard with cipher-panel
2022-09-05_23:00:11: deleted malicious resource at [qb]/qb-hotdogjob with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/connectqueue with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/mhacking with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/LegacyFuel with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/progressbar with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/PolyZone with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/ps-hud with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/safecracker with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [standalone]/interact-sound with cipher-panel
2022-09-05_23:00:12: deleted malicious resource at [voice]/qb-radio with cipher-panel
2022-09-05_23:00:13: deleted malicious resource at [voice]/pma-voice with cipher-panel

They don't seem to understand the reason their system did it either, which is... scary as a paying customer to say the least:
(Remember these are all files from their installer packages, that they give paying customers, they are deleting here...)
View attachment 8434


Just wanted to share this bit if facts with anyone considering Zap-Hosting as this is a practice they indulge in.
You have been hacked by cipher-panel there was a leak script u used by which the cipher-panel might have injected itself
 

ENDERS

Silver Elite
Joined
Aug 27, 2022
Messages
15
Reaction score
9
Points
166
Location
US
You have been hacked by cipher-panel there was a leak script u used by which the cipher-panel might have injected itself
If true, you just told me more than 3 support reps for my host who I pay over 100$ a month to.
Be nice if they had articulated that point half as well as you.
 

ENDERS

Silver Elite
Joined
Aug 27, 2022
Messages
15
Reaction score
9
Points
166
Location
US
After having them check my files manually they found zero encryption. But still can't replace a single file.
Not a good practice.
 

Kabarka

Silver Elite
Joined
May 28, 2021
Messages
64
Reaction score
15
Points
156
i had the same problem, in fact, it's just a word" in the script, find and delete the words and it works (for me it was "modfreakz" on a line uncomment) i deleted this and it worked
 

JamedDean

Gold Elite
Joined
Apr 1, 2024
Messages
71
Reaction score
33
Points
176
Location
the MOON
all im saying is THAT ZAP HOSTING for yea .. 99% of the time they dont have a clue on how to fix anything there usless and there services suck ass bro .. i would stay well away from them
 
Top