Mass Attack JavaScript injection - hundreds of thousands affected
This mass injection is remarkably similar to the attack we saw earlier this month. When a user browses to a compromised site, the injected JavaScript loads a file named 1.js which is hosted on http://www.nihao[removed].com The JavaScript code then redirects the user to 1.htm (also hosted on the same server). Once loaded, the file attempts 8 different exploits (the attack last April utilised 12). The exploits target Microsoft applications, specifically browsers not patched against the VML exploit MS07-004 as well as other applications. Ominously files named McAfee.htm and Yahoo.php are also called by 1.htm but are no longer active at the time of writing.
There are further similarities too between the two mass attacks. Resident on the latest malicious domain is a tool used in the execution of the attack. An analysis of that tool can be found in the ISC diary entry here. Mentioned in that diary entry is http://www.2117[removed].net. Our blog on that attack can be found here. It appears that same tool was used to orchestrate this attack too.
SEATTLE - Microsoft Corp.’s operating systems run most personal computers around the globe and are a cash cow for the world’s largest software maker. But you’d never confuse a Windows user with the passionate fans of Mac OS X or even the free Linux operating system. Unless it’s someone running Windows XP, a version Microsoft wants to retire.
Fans of the six-year-old operating system set to be pulled off store shelves in June have papered the Internet with blog posts, cartoons and petitions recently. They trumpet its superiority to Windows Vista, Microsoft’s latest PC operating system, whose consumer launch last January was greeted with lukewarm reviews.
Posted by Seven on Friday, April 18 @ 00:44:42 CDT (198 reads) | (Read More... | 5920 bytes more | comments? | Score: 0)
story
3 New Themes Released From Clan Themes
xgstq writes "Clan Themes is please to announce 3 new Clan Templates they are
Posted by Seven on Friday, April 18 @ 00:40:27 CDT (85 reads) | (comments? | Score: 0)
story
nCo Modified PHP-Nuke Ultra Patched 7.6.0.3.2 Patched Has Arrived
Yes we know, it's long overdue, but it has finally arrived. 3 versions later then expected. A lot of personal issues, but thats another story for a much later time. The important thing is, IT'S HERE. With quite a few significant changes. There will be two flavors, one that removes QShoutbox and replaces it with Shoutbox 8.52. And yet another version that has no Shoutbox at all. The version released here replaces the shoutbox.
You can download or read more about nCo Ultra Patched here
Posted by NukeCode on Wednesday, April 09 @ 00:45:13 CDT (265 reads) | (Read More... | 641 bytes more | comments? | Score: 0)
story
Nukequiz 3.0.0 Released
Anonymous writes "The module has loads of functions including, multiple answer, multiple choice and single answer questions, that may include either images or sound files. You can export and import questions direct for Nukequiz and back quiz's up on your server to download when you need to, so if the server crashes you won't lose all those questions.
For more information and to download, please visit us @ kissoftware , registration is required to download but is free!"
Posted by NukeCode on Thursday, March 27 @ 19:37:07 CDT (234 reads) | (comments? | Score: 0)
story
BBToNuke Mods Archive
Anonymous writes "With more and more phpnuke support websites shutting down in the last time it is hard till impossible to find the good old bbtonuke mods and even the new ones. Over the past few months we have collected over 160 bbtonuke mods which will be available on our website. At the moment we have all ready 60 mods online and the rest will follow over the next days as we upload them. Besides we will place hand picked and only usefully modules, block and hacks onto our download section which will massively help to kick start every website based on phpnuke.
Posted by NukeCode on Wednesday, March 26 @ 21:30:02 CDT (225 reads) | (comments? | Score: 0)
story
Watch Your Fingers
If you type a post in the forums, news article or any place else on nukecode.com and use foul language, you will be banned, No questions asked. We do not care who you are or where you come from there is no need to use that kind of language here. This is the only warning your posts, will be deleted or locked the the moderator or admins disgression and you will be banned.
Thank you,
Seven
Posted by NukeCode on Sunday, March 23 @ 21:31:23 CDT (247 reads) | (comments? | Score: 0)
These themes include forums templates, multilingual and validated for:
About M2-Medias.deNuke Themes:
M2-Medias.de converted updated and optimized for the most common themes Nuke versions. (Raven Nuke, PHPNuke, Nuke Platinum, CiroxX)
In the download area is an archive of more than 800 themes for PHPNuke been created.
M2 Medias.de Nuke Themes in German and English language supports.
There is a theme demo site with over 800 themes. Sucbscriber find another 16 themes for Raven Nuke optimized!
"
Posted by NukeCode on Saturday, March 22 @ 19:31:41 CDT (292 reads) | (comments? | Score: 0)
story
Request A Theme Released !!
xgstq writes "PHPNuke Clan Themes has released our new theme voting system, you can now ask for us to design a new theme and vote on it !
How it works:
If your desired theme is not in the block, then submit a request and we will add it
Once your preferred theme is in the block you can vote on it, every 24hrs
When I'm ready to start making a new theme, and if your theme is at the top of the voting system it will be chosen.
You can then see what theme is in the design stage from looking at the top of the block !
We hope you use the system to its full potential, it will hopefully save you lots of cash on that one of a kind theme experience !
The block can be found on our home page and the module page can be found here