Home

Eskimo North
Internet Hosting

     Google ranks slow sites lower. Websites are hosted on highly optimized modern hardware and software for fast response. We want our customers and yours to be happy and profitable!

     Try our new ownCloud federated cloud services: Web Apps → ownCloud

Reduced Prices on: Virtual Private Servers

     Mosh, a new shell which is specialized for mobile environments, is available on all our Linux servers.  It is also useful for slow or unreliable 56k dial connections.

Web Apps
Web based applications. These are programs that actually run and display in your browser, such as Web Mail, phpMyAdmin, a Java SSH Shell, forums, StatusNet, Traceroute, and Your IP.
Services
Information about the services we offer; Shells with remote desktop and sound, fast Web Hosting, Web Design, PC work, DSL, ISDN, and Dial access and other services.
Support
Setup e-mail and Usenet news clients, customize spam filters, including white listing, black listing. Setup X2Go, OpenNX, NX player, and other remote desktops and configure DSL and 56k dial-up accounts. Help with websites, frequently asked questions, and trouble tickets.
Links
Links to Customer pages as well as many useful resources on the web, including Linux resources, useful information about building websites, and local resources relating to Shoreline and the surrounding Puget Sound area resources.
Information
The Information section contains information about our history, contact information, eskimo news, information and graphics for linking to us (we always appreciate that), payment information and also various customer review sites where you can find independent reviews of our service.
Games
There are three games sections, Eskimo Arcade, games contained within our main website, presently is mostly broken as the result of a switch to https, I’m working on that, and two external sites Y B Bored (ybbored.com), and Defender Games (defender-games.net).
Web Apps
Web based applications. These are programs that actually run and display in your browser, such as Web Mail, phpMyAdmin, a Java SSH Shell, forums, StatusNet, Traceroute, and Your IP.
Services
Information about the services we offer; Shell accounts with remote desktop capability and sound, Web hosting, Web Design, PC work, DSL, ISDN, and Dial access and other services.
Support
Setup e-mail and Usenet news clients, customize spam filters, including white listing, black listing, setting the sensitivity threshold and other tweaks. Setup X2Go, OpenNX, NX player, and other remote desktops and configure DSL and 56k dial-up accounts. Help with websites, frequently asked questions, and trouble tickets.
Links
Links to Customer pages as well as many useful resources on the web, including Linux resources, useful information about building websites, and local resources relating to Shoreline and the surrounding Puget Sound area resources.
Information
The Information section contains information about our history, contact information, eskimo news, information and graphics for linking to us (we always appreciate that), payment information and also various customer review sites where you can find independent reviews of our service.
Games
There are three games sections, Eskimo Arcade, games contained within our main website, presently is mostly broken as the result of a switch to https, I’m working on that, and two external sites Y B Bored (ybbored.com), and Defender Games (defender-games.net).

     Check it out, explore, let me know of anything you think would make it better.

     Try it out on your Smart Phone, it’s all responsive and mobile friendly. Some of the webmail options work on some SmartPhones. If the default webmail doesn’t work well for you, try the RoundCube or RainLoop alternatives.  If neither of those work well, there is a ownCloud mail client that works very well on mobile devices.

2,803,901 visitors, 967 today.

Eskimo North, P.O. Box 55816, Shoreline, WA 98155 Tel: 206-812-0051

Recent Posts

Whack-A-Mole Exploit

     There is an exploit going around known as “Whack-A-Mole” that attempts to compromise JavaScript files to cause them to silently upload advertising Malware to an end-users PC as well as to try to find additional sites to infect.

     There are two levels of infection with this exploit, infection of websites and infection of your PC.

     This exploit prefers WordPress websites to infect because it searches for a number of plugins that upload.  You should make sure that execution is disabled in any directory that you permit uploads to.  If you have a plugin that permits uploads, it should install a .htaccess denying execution in that directory (NoExec) but verify this, don’t count on it.

     This exploit also takes advantage of many shared hosting providers poor choice to execute all user code with the web servers’ user ID by crawling the site looking for other JavaScript (.js) files it can infect and if writable adding it’s code to them.

     Please note that here, we DO NOT execute code with the web servers ID, instead we execute each users code with their own ID.  Thus the cross-site infection that is happening on other shared host providers will not happen here as long as you do not provide public write permissions to files.

     Some plugins or web applications will tell you to set the file mode to 666, NEVER EVER DO THAT HERE, IT IS NOT NECESSARY AND IS A SECURITY RISK.  If instructed to set permissions to 666, instead set them to 644.  Because the web server executes scripts with your user ID ONLY OWNER write permissions are ever required.

     I also recommend setting your public_html directory to mode 711 and not 755 as it will prevent another infected site from being able to crawl your directory.  The web server already knows the name of the file(s) it needs so has no need to list your directory.  If you don’t have a need for your home directory to be publicly searchable, I would also recommend setting it to mode 711.

     We also have code in place that looks for queries to where many of these plugins reside and if one attempts to run a non-existent script, blocks the offending IP address.  We also look for bad web authentication attempts.

     Infection with this Malware is invisible, your site will appear to be operating normally while it infects visitors PCs with Adware.  If your site uses JavaScript, I recommend periodic review of your “.js” JavaScript files.

     If you run a WordPress site here, please install the plugin “WP-Fail2ban”.  What this plugin does is log bad WordPress authentication attempts.  Code on this end will then block offending IPs that make three or more attempts.  This will prevent brute force password guessing of your WordPress site.

     If your PC gets infected, you will notice pop-up advertisements.  In this event, my recommendation is to obtain and run MalwareBytes.  Approximately 95% of all the Malware my Windows box has ever been infected with has been discovered by MalwareBytes. I have no affiliation with MalwareBytes.  I’ve just found it to be a very effective product.

  1. Mail Server Attacks Comments Off on Mail Server Attacks
  2. libvirt-bin Bug Squashed Comments Off on libvirt-bin Bug Squashed
  3. X2Go Comments Off on X2Go
  4. WordPress Hosting Model Comments Off on WordPress Hosting Model
  5. Difficult Blast from the Past Comments Off on Difficult Blast from the Past
  6. A Glitch in the Matrix Comments Off on A Glitch in the Matrix
  7. Frontier and E-mail Comments Off on Frontier and E-mail
  8. Ubuntu 15.10 Libvirt-bin Bug Comments Off on Ubuntu 15.10 Libvirt-bin Bug
  9. Unintended Reboot Comments Off on Unintended Reboot