Go Back   vb.org Archive > Community Central > Community Lounge
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #21  
Old 12-23-2004, 12:42 AM
Erwin's Avatar
Erwin Erwin is offline
 
Join Date: Jan 2002
Posts: 7,604
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Doing a search for this - "NeverEverNoSanity WebWorm generation 24"
http://www.google.com/search?hl=en&q...on+24%22&meta=

gives 2 sites that have been infected by Generation 24.

However, no sites come up for "NeverEverNoSanity WebWorm generation 25"
Reply With Quote
  #22  
Old 12-23-2004, 01:41 AM
AWS's Avatar
AWS AWS is offline
 
Join Date: Nov 2001
Location: Joliet, IL
Posts: 235
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Erwin
Doing a search for this - "NeverEverNoSanity WebWorm generation 24"
http://www.google.com/search?hl=en&q...on+24%22&meta=

gives 2 sites that have been infected by Generation 24.

However, no sites come up for "NeverEverNoSanity WebWorm generation 25"
That's because Google blocked it. If they didn't we'd probably see many more generations.

I run a phpbb forum on a private site and I removed it when a forum I visit was hacked. I don't think it could be found in Google, but, I took no chances and removed it.
Reply With Quote
  #23  
Old 12-23-2004, 03:26 AM
Erwin's Avatar
Erwin Erwin is offline
 
Join Date: Jan 2002
Posts: 7,604
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Ahhh... makes sense.
Reply With Quote
  #24  
Old 12-23-2004, 04:31 AM
nghiasi nghiasi is offline
 
Join Date: Jun 2002
Location: USA
Posts: 29
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

hopefully vbulletin won't get into this problem.
Reply With Quote
  #25  
Old 12-23-2004, 04:00 PM
Link14716's Avatar
Link14716 Link14716 is offline
 
Join Date: Jun 2002
Location: Georgia, USA
Posts: 2,519
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

The problem doesn't affect vBulletin.

Anyways, http://www.google.com/search?hl=en&l...22&btnG=Search shows some results now.

EDIT: Seems to go all the way to generation 29 now. Eeek.
Reply With Quote
  #26  
Old 12-23-2004, 05:07 PM
AN-net's Avatar
AN-net AN-net is offline
 
Join Date: Dec 2003
Location: AnimationTalk.com
Posts: 2,367
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

was gaia online attacked cause there is a critical error on their site saying it cant connect to database?
Reply With Quote
  #27  
Old 12-24-2004, 08:06 AM
Michael Morris's Avatar
Michael Morris Michael Morris is offline
 
Join Date: Nov 2003
Location: Knoxville TN
Posts: 774
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

This particular exploit can't hit vbulletin, but you can guarantee there are - for lack of a better word - +++++++s - who are trying to find such an exploit in the vbulletin code. It's how they get their rocks off because finding a girlfriend is completely beyond them.
Reply With Quote
  #28  
Old 12-24-2004, 01:32 PM
Floris Floris is offline
 
Join Date: Jan 2002
Posts: 1,898
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Michael Morris
This particular exploit can't hit vbulletin, but you can guarantee there are - for lack of a better word - +++++++s - who are trying to find such an exploit in the vbulletin code. It's how they get their rocks off because finding a girlfriend is completely beyond them.
Here are some official reads about the PHP issue pointed out in this thread and the more ontopic issue: phpBB worm.

PHP Vulnerabilities in <= 4.3.9 and <= 5.0.2
http://www.vbulletin.com/forum/showthread.php?t=123531

How to avoid being damaged by the phpBB worm
http://www.vbulletin.com/forum/showthread.php?t=124008
Reply With Quote
  #29  
Old 12-24-2004, 10:50 PM
Michael Morris's Avatar
Michael Morris Michael Morris is offline
 
Join Date: Nov 2003
Location: Knoxville TN
Posts: 774
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

That's for the links Floris.

My comment still stands though - while all known vulnerabilities are patched, that doesn't mean that tomorrow the script-kiddies won't find a hole. It is sad though that some people waste their time destroying other folks work.

One of the regulars at EN World lost his entire campaign site to this worm. Say what you will about the failure to keep backups, it's still sad to see this happen so needlessly.
Reply With Quote
  #30  
Old 12-25-2004, 05:53 AM
Erwin's Avatar
Erwin Erwin is offline
 
Join Date: Jan 2002
Posts: 7,604
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Michael Morris
That's for the links Floris.

My comment still stands though - while all known vulnerabilities are patched, that doesn't mean that tomorrow the script-kiddies won't find a hole. It is sad though that some people waste their time destroying other folks work.

One of the regulars at EN World lost his entire campaign site to this worm. Say what you will about the failure to keep backups, it's still sad to see this happen so needlessly.
Always have backups.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 02:45 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.04466 seconds
  • Memory Usage 2,254KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (3)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (3)pagenav_pagelink
  • (10)post_thanks_box
  • (10)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (10)post_thanks_postbit_info
  • (10)postbit
  • (10)postbit_onlinestatus
  • (10)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete