Site infected?

General Discussion Area
Post Reply
User avatar
Alanthus
Updater Extraordinaire
Posts: 334
Joined: Tue Aug 23, 2005 11:38 am

Site infected?

Post by Alanthus »

Getting "Remote Data Services Data Control" activeX message on front page of warcraftrealms, in my experience this suggests malicious content.
Image Image

zekzor
Posts: 2
Joined: Wed Sep 03, 2008 7:41 pm

Post by zekzor »

I too am getting that. Becoming very worried about visiting here any more :(

User avatar
Rollie
Site Admin
Posts: 4783
Joined: Sun Nov 28, 2004 11:52 am
Location: Austin, TX
Contact:

Post by Rollie »

It's the forums. I located the offender, looking into how it happened now.
phpbb:phpinfo()

User avatar
xpolockx
Superior Census Taker
Posts: 779
Joined: Wed Aug 10, 2005 8:31 pm
Location: Lynchburg, VA
Contact:

Post by xpolockx »

Rollie to the rescue!
US-Whisperwind:
Kayni, Resto Shaman
Scenario, MW Monk

User avatar
Rollie
Site Admin
Posts: 4783
Joined: Sun Nov 28, 2004 11:52 am
Location: Austin, TX
Contact:

Post by Rollie »

I eliminated the problem, went ahead and changed all passwords. I can't help but wonder if it's not a phpbb security hole. I went through all my log files and did not find any suspicious activity.

Unfortunately it is impossible to know exactly how it happened without intensive SQL logging, which just isn't feasible. I can rack up a 1gig log file in less than 24 hours =x
phpbb:phpinfo()

User avatar
DM.
Census Taker
Posts: 1130
Joined: Mon Oct 03, 2005 12:27 pm
Location: Toronto, Canada

Post by DM. »

zekzor wrote:I too am getting that. Becoming very worried about visiting here any more :(
Popular sites just like warcraftrealms.com can be targets for attacks, we've seen it many times with keyloggers in ads at Thottbot and other Zam.com sites, and even the popular Wowace Updater program had keyloggers in their ads at sometime. Rollie is always on top of things and does his best to make it very secure and safe for everyone who visits.
Image
Click my sig

Post Reply