Security Issue?

Status
Not open for further replies.

Pheary

Senior Member
ECF Veteran
Dec 14, 2009
166
1
Great Britain
I have had the issue for about 3 days now on three different systems (2 different networks). Yes there is the chance that all three systems are infected with a virus but as ECF is the only redirect I get I am sure the issue lies with ECF server(s).

Yeah, the above code I posted looks very suspect. The "eval" part in particular, as I have seen this mentioned in the original thread I linked back to. They mentioned some form of SQL Injection using the eval function to forward people to different pages.
 

Pheary

Senior Member
ECF Veteran
Dec 14, 2009
166
1
Great Britain
Noticed the same issue on Firefox. It's not IE-specific.

Nope, it seems specific to the first time you visit the page. Now clearing your cache/cookies, or rebooting your PC may force it to happen again. Or using a different browser. Hence why I said, try a different browser, and the problem will re-appear even though it appeared as though it had gone in your original browser.

I hope that makes sense, it is not easy to explain hehe
 

whiskey

Moved On
Jan 13, 2010
21,843
36,854
Hehe, I just don't want people to think they have a virus or malware, it is definitely related to just ECF.

I gues that this is the bottom line that we were waiting to hear...At least those of us that can't understand this type of stuff you all are talking about.:2cool: I trust that you guys know what your saying, But thanks Phearfactor for putting it in layman's terms!!LOL
 
Last edited:

the86d

Ultra Member
ECF Veteran
Verified Member
Sep 13, 2009
1,082
8
So. California, USA
My thoughts:
If you are running a legit version of ANY Windows OS, PLEASE DO YOUR WINDOWS UPDATES FREQUENTLY to prevent all the exploits you can...

Windows Updates patch holes that are constantly exploited. Sometimes prevention is the best measure. Be proactive post Micro$oft being reactive to the KNOWN threats. RUN AN ANTI-VIRUS THAT HAS CURRENT VIRUS DEFINITIONS. This means if your Anti-Virus is telling you to re-up, either do so, or get some other protection, and do not ignore this.

KEEP YOUR DAB-NABED KIDS OFF OF YOUR COMPUTER, AND OFF OF LIMEWIRE AND OTHER FILE SHARING P2P APPS! (Unless you want your computer to be remote controlled in the background, bot-nets galore via P2P file sharing, and MALWARE.)

hehee
 

the86d

Ultra Member
ECF Veteran
Verified Member
Sep 13, 2009
1,082
8
So. California, USA
This helps with the cache issue "EVERY TIME":

index.png


I don't use IE if at all avoidable, but most of my users do...
 
Last edited:

rolygate

Vaping Master
Supporting Member
ECF Veteran
Verified Member
Sep 24, 2009
8,354
12,405
ECF Towers
Thanks to all of you who reported this, and did the research on it - it's appreciated.

Turns out the site was hacked, they got some encrypted JavaScript in there by SQL injection, maybe through vbSEO. We found the malware and wiped it, but the exploit is still open so we'll keep an eye on it, and hope vB and/or vbSEO patch it soon.

Thanks again for the reports. And like the man said, DON'T USE INTERNET EXPLORER.
 

Sgood1971

Super Member
ECF Veteran
Feb 23, 2010
366
3
WV
  • Deleted by Timtam

the86d

Ultra Member
ECF Veteran
Verified Member
Sep 13, 2009
1,082
8
So. California, USA
(Just thinking... with all the links at the top, I'm a-wondering how bad navigation would be browsing this site with Links (web browser) - Wikipedia, the free encyclopedia at the cli... Might be tabbing until death. Might be as bad as trying to D/Load Linux drivers from Nvidia the same way. I'll be the safest browser of pages on the planet! hehee)
 
Last edited:
Status
Not open for further replies.

Users who are viewing this thread