Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

Beware - Do not use Namecheap or Spaceship for email hosting - Review

2»

Comments

  • GulfGulf Member
    edited July 2024

    @angstrom said:
    What you suggest sounds very plausible

    Earlier, I was going to suggest an analogy with a DDoS attack. It's not quite the same category, but if the 500 spam emails all arrived within a very short interval, they probably had a detrimental effect on the receiving server

    Very strange option. Delay connection open for 45 seconds on the production shared hosting account, where multiple customers host unlimited sites. Why Namecheap enabled this option :/

  • So Spaceship is just another NC brand. Service out of this world :).

  • GulfGulf Member
    edited July 2024

    Here is debug log from own server. Delivery of 1 email to Namecheap took 40 seconds (on average it takes 1-2 seconds or less).
    Some mailservers may timeout and drop delivery.
    May lose mails.

    First delay (20 seconds) started on smtp connection, then, the same delay after 250 OK.

    [
        ['start smtp-->', 0.16785775599999941],
        ['send ->', 'STARTTLS\r\n', 20.2885743],
        ['<--', '220 TLS go ahead\r\n', 20.320340667999996],
        ['--->secure connect--->', 20.320478057],
        ['<--', '250 OK\r\n', 20.421115827],
        ['<--', '250 Accepted\r\n', 40.483864065999995],
        ['on --> end -->', 40.710447811],
        ['on --> close -->', 40.713142512]
    ] 
    
  • GulfGulf Member
    edited July 2024

    Namecheap admins probably misconfigured servers :D

  • @Gulf said:

    @neboysha said:
    So you want to host 150 domains on "professional" shared hosting account. Is this any of these listed here https://www.namecheap.com/hosting/shared/, or it is some other hosting plan in question.

    Yes... these servers are probably oversold. Private Email (their dedicated email hosting) is oversold the same way.

    For sure, wise people said, to use NC for domains only :D
    But now, only Spaceship. Because of price and good UI.
    Other NC / Space products are meh.

    I've heard good feedback regarding NameCheap web hosting.

  • NanjaNanja Member

    I wonder why your account was suspended? My account had 1k emails que'd and no suspension.. This happened on spaceship though.

  • @JosephF said:

    @Gulf said:

    @neboysha said:
    So you want to host 150 domains on "professional" shared hosting account. Is this any of these listed here https://www.namecheap.com/hosting/shared/, or it is some other hosting plan in question.

    Yes... these servers are probably oversold. Private Email (their dedicated email hosting) is oversold the same way.

    For sure, wise people said, to use NC for domains only :D
    But now, only Spaceship. Because of price and good UI.
    Other NC / Space products are meh.

    I've heard good feedback regarding NameCheap web hosting.

    Where? How? Why?

  • @sasslik said:

    @JosephF said:

    @Gulf said:

    @neboysha said:
    So you want to host 150 domains on "professional" shared hosting account. Is this any of these listed here https://www.namecheap.com/hosting/shared/, or it is some other hosting plan in question.

    Yes... these servers are probably oversold. Private Email (their dedicated email hosting) is oversold the same way.

    For sure, wise people said, to use NC for domains only :D
    But now, only Spaceship. Because of price and good UI.
    Other NC / Space products are meh.

    I've heard good feedback regarding NameCheap web hosting.

    Where? How? Why?

    In different forums. That it is reliable.

  • ShamliShamli Member

    @Nanja said:
    I wonder why your account was suspended? My account had 1k emails que'd and no suspension.. This happened on spaceship though.

    Does that mean the email coming from your own script/ cron job...?

  • @Nanja said:
    I wonder why your account was suspended? My account had 1k emails que'd and no suspension.. This happened on spaceship though.

    Looks like your cron is scheduling outbound sending and not inbound? cPanel (and other outbound mail handlers) could reasonably queue your outbound emails with little resources and schedule to send them later, but inbound takes more resources (incoming connections from other servers) and are more time sensitive.

    I am not surprised when the OP do not choose to go to MXRoute, Google Workspace or other providers after the incident with Namecheap, decide to trust Namecheap/spaceship again and failed again...

  • GulfGulf Member
    edited July 2024

    @Nanja said:
    I wonder why your account was suspended? My account had 1k emails que'd and no suspension.. This happened on spaceship though.

    Yes, the same "letter of happiness", the same template. But about 500 spam emails received + complete suspension of account.

    Your hosting package has been suspended, if you want to reactivate you will need to do this very soon. 
    Package Details
    Package Stellar Plus
    Billing Cycle   1 Year  $68.88
    
  • GulfGulf Member
    edited July 2024

    Namecheap explained:

    We would like to inform you that this appears to be an SMTP DDoS attack known as "Email Bombing" or "Mail Bombing". These entries show multiple emails with the same subject line ("I own very sensitive information about your web activities") being sent to different addresses in the same domain. This can overload your mail server and cause a lot of inconvenience.

    Please resolve the issue within the next 12 hours

    So, their anti-spam protection bypasses this attack...


    https://www.namecheap.com/blog/wp-content/uploads/2020/01/Namecheap-account-security-features.pdf

    In this file they state:

    All of our hosting servers have protection against DDoS attacks, and our teams are on hand to help out if your server falls victim to a DDoS attack

    "teams are on hand" means suspension of your entire account.

    It is like if Cloudflare suspended all domains in your account for an attack on one of them.

  • jarjar Patron Provider, Top Host, Veteran
    edited July 2024

    Honestly it sounds like they just don't have a real expert dedicated to the product. Let them know I'll be more than happy to spend an hour a day on it for $300,000/year. It'll be a damn good hour, I promise.

    But really, one good hire can fix this. It would be a shame to see them neglect the most visually attractive UX they've made to date.

    Thanked by 2MikeA Gulf
  • GulfGulf Member

    Moved to a VPS at hetz (new cx3). Spam comes occasionally to spam folder, but the effect on the server is negligible, even during prime time.

    No idea how 500 spam emails impact Namecheap.

    Imap was very slow on Namecheap (oversold servers?), now works instantly.

    --

    It seems like customers of Namecheap/ Spaceship are vulnerable to this kind of attack.

    Anyone can reproduce the attack by sending 500-1000 emails with the same content and suspend the entire account of a person.

    Summary:
    Relying on Namecheap/ Spaceship for anything more than domain registration is a bad idea. But maybe jar could improve it :D

  • FatGrizzlyFatGrizzly Member, Host Rep

    @Gulf said:
    Moved to a VPS at hetz (new cx3). Spam comes occasionally to spam folder, but the effect on the server is negligible, even during prime time.

    No idea how 500 spam emails impact Namecheap.

    Imap was very slow on Namecheap (oversold servers?), now works instantly.

    --

    It seems like customers of Namecheap/ Spaceship are vulnerable to this kind of attack.

    Anyone can reproduce the attack by sending 500-1000 emails with the same content and suspend the entire account of a person.

    Summary:
    Relying on Namecheap/ Spaceship for anything more than domain registration is a bad idea. But maybe jar could improve it :D

    I had a similar issue with a provider whom I would not like to mention, they suggested something like mxguarddog.

    It worked 5 years back, not sure if it works to this date.

    Thanked by 1Gulf
  • GulfGulf Member

    @FatGrizzly said:
    I had a similar issue with a provider whom I would not like to mention, they suggested something like mxguarddog.

    It worked 5 years back, not sure if it works to this date.

    Temporarily moved to VPS with SpamAssassin. Works good. At level 4.5 most spam goes to spam folder.

    Previously, used mail.ru. +/- Worked good for free. Maybe will consider it again.

  • GulfGulf Member

    @jar said:
    Honestly it sounds like they just don't have a real expert dedicated to the product. Let them know I'll be more than happy to spend an hour a day on it for $300,000/year. It'll be a damn good hour, I promise.

    But really, one good hire can fix this. It would be a shame to see them neglect the most visually attractive UX they've made to date.

    I sent them a link to your post.

    Thanked by 1jar
  • varxvarx Member

    @Gulf said: Cloudflare suspended all domains

    They have done it with me, not for attack but a DMCA notice from someone. All domains everything in that account was blocked, no resolution to any domain, Free account. so no way to contact other than forums which is filled with such instances.

    The DMCA was from MS for the name of the founder in a subdomain, which had a blank page without any content.

  • @Gulf said:

    @JosephF said:
    How do you know the same rule applies to all the above services?

    I previously used Namecheap Private Email. And they suspended the same way.
    If you receive 500-1000 spams, they will suspend you.

    How did you get that many spam emails, twice?

  • @SirFoxy said:
    Anything shared isn't unlimited. And nothing is unlimited.

    well.... in theory, when you share "unlimited", each part is "unlimited" too.

  • This is nuts.
    What other email providers are doing the same?

Sign In or Register to comment.