Blog Search
Like Box
Comments
- Database Injection on Joomla Websites – yourstatscounter dot cz dot cc | Sucuri on LizaMoon Mass SQL injection (ur.php) – Updates
- How to do bulk Find and Replace in files using PHP | Nadeesha Cabral Blogs on Timthumb.php Security Vulnerability – Just the Tip of the Iceberg
- wordpress multiple blog themes on Information Leakage on multiple WordPress themes by WooThemes
- WordPressのテーマが改竄され不正なコードが挿入されたことの報告 | knowledge tree – ナレッジツリー on WP-phpmyadmin WordPress plugin – Delete it now
- Victim Of Malware Attack, Pharma Hack on Cleaning up an infected website – Part I: WordPress and the Pharma Hack
Tags
alexa apache ask awareness backdoors blacklist blacklisted bluehost dns fox georgia godaddy google guides hacked history honeypot htaccess iis joomla logs malware malware_updates netsol openx oscommerce ossec passwords pharma phishing plugin review sbn scan security spam stats sucuri twitter vbulletin virus vulnerability walmart whois wordpressArchives
- February 2012 (3)
- January 2012 (6)
- December 2011 (4)
- November 2011 (4)
- October 2011 (7)
- September 2011 (8)
- August 2011 (16)
- July 2011 (5)
- June 2011 (10)
- May 2011 (10)
- April 2011 (15)
- March 2011 (18)
- February 2011 (13)
- January 2011 (7)
- December 2010 (7)
- November 2010 (9)
- October 2010 (12)
- September 2010 (10)
- August 2010 (7)
- July 2010 (10)
- June 2010 (15)
- May 2010 (19)
- April 2010 (16)
- March 2010 (15)
- February 2010 (8)
- January 2010 (7)
- December 2009 (4)
- November 2009 (1)
- October 2009 (2)
- September 2009 (1)
- August 2009 (6)
- July 2009 (11)
- June 2009 (7)
- May 2009 (4)
- April 2009 (1)
Category Archives: htaccess
Malware Redirecting To Enormousw1illa.com
We are seeing a large number of sites compromised with a conditional redirection to the domain http://enormousw1illa.com/ (194.28.114.102). On all the sites we analyzed, the .htaccess file was modified so that if anyone visited the site from Google, Bing, Yahoo, … Read more
Posted in htaccess, malware, malware_updates
Tagged htaccess, malware, malware_updates
Leave a comment
DreamHost Security Issue Prompts FTP Password Resets
Yesterday on the DreamHost Status Blog, it was announced that all shell/FTP passwords would be reset due to what looks to be a security breach that was discovered on one of the DreamHost database servers. DreamHost looks to have done … Read more
The New (and Old) .htaccess Attacks – Now Using .in Domains
We have been talking about .htaccess redirections for a while. A site gets compromised and the attackers modify the .htaccess file(s) to redirect any search engine traffic to a different (malicious) page that attempts to compromise the browser / computer … Read more
Posted in hacked, htaccess, malware, malware_updates, wordpress
Tagged hacked, htaccess, malware, malware_updates, vulnerability, wordpress
Leave a comment
Htaccess Redirection to Sweepstakesandcontestsinfo dot com
Last week we started to see a large increase in the number of sites compromised with a .htaccess redirection to http://sweepstakesandcontestsinfo.com/nl-in.php?nnn=555. This domain has been used to distribute malware for a while (generally through javascript injections), but only in the … Read more
Posted in hacked, htaccess, malware, malware_updates, vulnerability
Tagged hacked, htaccess, malware, malware_updates, vulnerability
1 Comment
GoDaddy shared servers compromised – .htaccess redirection to sokoloperkovuskeci.com
We are seeing many sites hosted on GoDaddy shared servers getting compromised today (and for the last few days) with a conditional redirection to sokoloperkovuskeci.com. This is what it looks like on our scanner: Suspicious conditional redirect. Details: http://sucuri.net/malware/entry/MW:HTA:7 Redirects … Read more
Posted in blacklisted, godaddy, hacked, htaccess, malware, malware_updates
Tagged blacklisted, godaddy, hacked, htaccess, malware, malware_updates, vulnerability
12 Comments
WordPress sites with .htaccess hacked
The TimThumb.php vulnerability is causing a lot of WordPress sites to get compromised with the superpuperdomain.com and superpuperdomain2.com remote JavaScript injection. However, that’s not all that it is doing. On many of the sites we are analyzing, the .htaccess file … Read more
Understanding .htaccess attacks – Part 1
Attackers have been using the .htaccess file for a while. They use this file to hide malware, to redirect search engines to their own sites (think blackhat SEO), and for many other purposes (hide backdoors, inject content, to modify the … Read more
Posted in htaccess, malware, malware_updates, vulnerability
Tagged hacked, htaccess, malware, malware_updates
2 Comments