Discuss all about Unexpected downtime this weekend

Discuss Unexpected downtime this weekend at Bulletin Board News, All the latest information from vBulletin, Invision Power Board and phpBB, all put together in some forum for your joy and pleasure. Up to the minute news about the from The Staff Lounge, Your vBulletin Resource. We'.





Post New Thread  Reply
 
LinkBack Thread Tools Thread Tools Feed Icon
  #1  
Old 10-09-2007, 11:03 AM
phpBB News
TSL Fixated
 
Post Count Posts: 102

Up to the minute news about the from The Staff Lounge, Your vBulletin Resource. We'll find the latest news so you can chat about here.
Quote:
Unfortunately phpBB.com experienced unexpected downtime which led to the maintenance that many of you noticed.

The cause of this downtime is injected code pointing to a malicious website, that would cause users to download malware. A secondary incident was also discovered during the course of the investigation that showed that phishing and spam related files were uploaded to the server at one point, and were active.

This injected code contained no fewer than 5 different exploits to serve up malware for both Internet Explorer and Firefox/Netscape. While this did not appear to actually infect people, we highly recommend users run anti-virus software as a precaution. The downside to this is that the malware is poorly detected by anti-virus products, so be sure to update your anti-virus definitions prior to running the scan on your computer. The exploits span 3-4 years of vulnerabilities, so if you have not already, we encourage you to run updates on your operating system. If you wish to be sure that you were not affected by this malware, you can easily check manually. A list of files involved with this malware (though not a complete list) are below:

  • C:\popupkiller\popupKiller.exe
  • C:\WINDOWS\system32\winavxx.exe

Symptoms of an infection with this malware will include being unable to launch task manager, modified Internet Explorer security settings, modified homepage on Internet Explorer, and unable to launch control panel. These are not the only symptoms, but do give a guide to go by. If you are infected, we recommend finding a computer repair shop. This is most unfortunate, but again, we do not know of any infections as a result of this compromise.

We also encourage users to change their passwords, because of the potential for compromised passwords in incidents like these, or any incident.

We cannot impress on the community enough that this does not appear to be fault of the phpBB software in any way, shape, or form. With thanks to those involved in the incident investigation process, the entry point appears to be due to a third-party product. We are taking steps to ensure this does not happen again, and we thank the community for being understanding during this unexpected outage.

the phpBB Team

dhn
Tue, 02 Oct 2007 18:02:31 +0000
Post your comments about this story, and other news here.

Reply With Quote
Post New Thread  Reply
The Staff Lounge Navigation - TSL Community Forums Navigation - TSL Bulletin Board News
Thread Tools

Similar Threads
Thread Thread Starter Forum Replies Last Post
Scheduled Server Downtime Tomorrow vBulletin News Bulletin Board News 0 02-07-2008 07:29 AM
IPS Downtime Notice IPB News Bulletin Board News 0 07-31-2007 10:45 PM
Unexpected downtime and errors on the site phpBB News Bulletin Board News 0 07-31-2007 10:45 PM
vBulletin-Chinese Downtime vBulletin News Bulletin Board News 0 11-22-2006 06:17 PM
vBulletin Server Downtime vBulletin News Bulletin Board News 0 06-28-2006 05:19 PM


Links of Interest
The Staff Lounge - Links of Interest The Staff Lounge - Links of Interest