If your hosting company is suspending your account and not temporarily removing the issue then it sounds to me like they are taking the easy route out and not giving you the kind of support you could get elsewhere. What do you pay? As it may be that the hosting package is so cheap that for them to "waste" any support time on it would be costly for them. This is the kind of situation where the term "you pay for what you get" comes into effect (i know there are exceptions etc).
Really the hosting company should be doing the following, although you could check your t&c's. Any less than this is quite lazy of the hosting company (this is what we do for our customers):
- Suspend the account upon detecting spam problem with an account.
- Email the customer immediately
- Get a tech to check over the account quickly, they should already know the script responsible if the server is set up and managed correctly!
- chmod and move that folder/scripts to a location outside the webroot but within the account. chmod/move any other weak/vuln scripts used to exploit.
- Unsuspend the account (problem temporarily fixed)
- Email the customer advising to take course of action.
To do the above is very easy and doesn't take long. If the hosting company isn't looking in to it for you, as per above, its very likely they don't know how to manage the server correctly, as they should be able to identify the script sending out spam immediately. I would be quite worried about the fact that your hosting company doesn't really know how to manage servers properly.
Good luck.
Really the hosting company should be doing the following, although you could check your t&c's. Any less than this is quite lazy of the hosting company (this is what we do for our customers):
- Suspend the account upon detecting spam problem with an account.
- Email the customer immediately
- Get a tech to check over the account quickly, they should already know the script responsible if the server is set up and managed correctly!
- chmod and move that folder/scripts to a location outside the webroot but within the account. chmod/move any other weak/vuln scripts used to exploit.
- Unsuspend the account (problem temporarily fixed)
- Email the customer advising to take course of action.
To do the above is very easy and doesn't take long. If the hosting company isn't looking in to it for you, as per above, its very likely they don't know how to manage the server correctly, as they should be able to identify the script sending out spam immediately. I would be quite worried about the fact that your hosting company doesn't really know how to manage servers properly.
Good luck.