vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   Community Lounge (https://vborg.vbsupport.ru/forumdisplay.php?f=13)
-   -   phpBB virus... look at this.. (https://vborg.vbsupport.ru/showthread.php?t=73196)

Erwin 12-23-2004 12:42 AM

Doing a search for this - "NeverEverNoSanity WebWorm generation 24"
http://www.google.com/search?hl=en&q...on+24%22&meta=

gives 2 sites that have been infected by Generation 24.

However, no sites come up for "NeverEverNoSanity WebWorm generation 25"

AWS 12-23-2004 01:41 AM

Quote:

Originally Posted by Erwin
Doing a search for this - "NeverEverNoSanity WebWorm generation 24"
http://www.google.com/search?hl=en&q...on+24%22&meta=

gives 2 sites that have been infected by Generation 24.

However, no sites come up for "NeverEverNoSanity WebWorm generation 25"

That's because Google blocked it. If they didn't we'd probably see many more generations.

I run a phpbb forum on a private site and I removed it when a forum I visit was hacked. I don't think it could be found in Google, but, I took no chances and removed it.

Erwin 12-23-2004 03:26 AM

Ahhh... makes sense.

nghiasi 12-23-2004 04:31 AM

hopefully vbulletin won't get into this problem. ;)

Link14716 12-23-2004 04:00 PM

The problem doesn't affect vBulletin. ;)

Anyways, http://www.google.com/search?hl=en&l...22&btnG=Search shows some results now.

EDIT: Seems to go all the way to generation 29 now. Eeek.

AN-net 12-23-2004 05:07 PM

was gaia online attacked cause there is a critical error on their site saying it cant connect to database?

Michael Morris 12-24-2004 08:06 AM

This particular exploit can't hit vbulletin, but you can guarantee there are - for lack of a better word - +++++++s - who are trying to find such an exploit in the vbulletin code. It's how they get their rocks off because finding a girlfriend is completely beyond them.

Floris 12-24-2004 01:32 PM

Quote:

Originally Posted by Michael Morris
This particular exploit can't hit vbulletin, but you can guarantee there are - for lack of a better word - +++++++s - who are trying to find such an exploit in the vbulletin code. It's how they get their rocks off because finding a girlfriend is completely beyond them.

Here are some official reads about the PHP issue pointed out in this thread and the more ontopic issue: phpBB worm.

PHP Vulnerabilities in <= 4.3.9 and <= 5.0.2
http://www.vbulletin.com/forum/showthread.php?t=123531

How to avoid being damaged by the phpBB worm
http://www.vbulletin.com/forum/showthread.php?t=124008

Michael Morris 12-24-2004 10:50 PM

That's for the links Floris.

My comment still stands though - while all known vulnerabilities are patched, that doesn't mean that tomorrow the script-kiddies won't find a hole. It is sad though that some people waste their time destroying other folks work.

One of the regulars at EN World lost his entire campaign site to this worm. Say what you will about the failure to keep backups, it's still sad to see this happen so needlessly.

Erwin 12-25-2004 05:53 AM

Quote:

Originally Posted by Michael Morris
That's for the links Floris.

My comment still stands though - while all known vulnerabilities are patched, that doesn't mean that tomorrow the script-kiddies won't find a hole. It is sad though that some people waste their time destroying other folks work.

One of the regulars at EN World lost his entire campaign site to this worm. Say what you will about the failure to keep backups, it's still sad to see this happen so needlessly.

Always have backups. :)


All times are GMT. The time now is 01:46 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01003 seconds
  • Memory Usage 1,739KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (3)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (3)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete