Reply
 
Thread Tools Search this Thread Display Modes
 
Old 11-20-2009, 06:08 AM   #15
Retired Moderator
 
john hd's Avatar
 
1992 29' Excella
madison , Wisconsin
Join Date: Aug 2002
Posts: 4,644
Images: 40
good job guys!

we got hit with "backdoor.bot" over at that site i admin for antique harleys.

the hackers inserted the malicious code in our photo gallery, specifically in the icons we use to run the board.

it took almost 3 weeks to get rid of it because the bug would not run all of the time so alot of scans missed it.

i wish the people who write this stuff could be tied out on a virtual ant hill.

john
__________________

__________________
you call them ferrets, i call them weasels.
john hd is offline   Reply With Quote
Old 11-20-2009, 06:15 AM   #16
Rivet Master
 
1984 31' Excella
Norfolk , Virginia
Join Date: Jan 2005
Posts: 666
Images: 11
Thank You

You guys are Wizards.
__________________

__________________
Beginner is offline   Reply With Quote
Old 11-20-2009, 06:37 AM   #17
Rivet Master
 
sd90mac's Avatar
 
1974 31' Sovereign
Colfax , North Carolina
Join Date: Jul 2003
Posts: 737
Sooooo, How many of our fine posters had withdrawl issues last night?

Thanks, Andy and staff, for your quick responce.

Marie
__________________
When people lie to you, and refuse to honor their word, don't regret trying to follow a dream, new adventures and friends await you.
sd90mac is offline   Reply With Quote
Old 11-20-2009, 06:47 AM   #18
Rivet Master
 
Minno's Avatar

 
1972 31' Sovereign
Lexington , Minnesota
Join Date: Feb 2009
Posts: 3,154
Not only thank-you for finding and fixing the issue, but also for the alternate web page that came up and let all of us know what was going on.

Chris
__________________
Minno is offline   Reply With Quote
Old 11-20-2009, 06:49 AM   #19
Rivet Master
 
RangerJay's Avatar

 
2002 19' Bambi
Northwestern Ontario , - on the backside of the map and just above the big green spot
Join Date: Nov 2003
Posts: 818
Images: 44
The response to this was pretty impressive.

It also validates the need for a good security program in our own PC's - we dropped Norton some time ago in favour of the one that our ISP offered as part of the package - but we have always wondered if this was a wise decision. Seems as though the ISP package came through - the issue was picked up instantly with clear direction on "disinfecting" the computer. Problem solved.


Jay
__________________
Bambi - 2002 (The Toaster)
Pathfinder - 2009 (The Buggy)

"I'm not young enough to know everything ....."
(Oscar Wilde)
RangerJay is offline   Reply With Quote
Old 11-20-2009, 07:09 AM   #20
2 Rivet Member
 
2008 19' International CCD
Spring , Texas
Join Date: Sep 2009
Posts: 58
Quote:
Originally Posted by nti06 View Post
This begs the question:

If a hacker is clubbed in the forest, will anybody care?

Who cares!
__________________
eleighj is offline   Reply With Quote
Old 11-20-2009, 07:19 AM   #21
Rivet Master
 
Mikethefixit's Avatar
 
1977 27' Overlander
Trotwood , Ohio
Join Date: Jul 2007
Posts: 2,153
Send a message via Yahoo to Mikethefixit
AndyR and Janet and Whomever
THANK YOU
I appreciate the little message that came up when I clicked on this site. This explained alot. I kept wondering why I was getting a Notice from my Spyware and Registery software that I had never gotten before and just figured it was some kind of error. IT kept saying"Malicious Site HAS BEEN BLOCKED".I dont think I have any issues because I let it do its job.
Thanks again for your rapid response.
Roger
__________________
Roger & MaryLou
___________________
F350 CREWCAB SW LONG BED
7.3 liter Power Stroke Diesel
1977 27ft OVERLANDER
KA8LMQ
AIR # 22336 TAC- OH-7
May your roads be straight and smooth and may you always have a tailwind!
Mikethefixit is offline   Reply With Quote
Old 11-20-2009, 09:50 AM   #22
2 Rivet Member
 
CAPTNDAVIE's Avatar
 
Join Date: Jun 2005
Posts: 35
Thanks, job well done!
__________________
CAPTNDAVIE is offline   Reply With Quote
Old 11-20-2009, 10:00 AM   #23
_
 
. , .
Join Date: Dec 2004
Posts: 8,812
a totally lay persons view...

Quote:
Originally Posted by 65CV View Post
..What effect, if any, did the security breach have on members who accessed the site during the time the malicious code was in place? Any links?...
my understanding is it depends on WHERE the funky code is inserted...

and IF the member follows any links to other sites OR copies/downloads any files from either site.

(which is ONE of the reasons taking the site OFFLINE 4 awhile protects members from being hooked)

we don't 'share' here in the sense that f/book or other virtual communities do

and HOPEFULLY we don't include truly sensitive material in our user profiles.

some of the info i've scanned on this suggests site passwords might be at risk for SOME members.

as bob notes (l i pets) above this started a while back on community sites.

(((that assumes whatever happened IS related to the earlier link and i do NOT know this is EXACTLY what happened...)))
____________

i'm confident that andyR and the crew is hard at work on this thing.

keep in mind he's got a basket full of communities (cars, royals, boats, rvs, cooks, music fans, retirement/finance)...

that appear to have been taken by this issue.

although the fiberglass rv site and book reader site were apparently not involved (different server perhaps?)
____________

as the use and enrollment of these virtual communities grows, villains will become more common.

so the filters, protections will need to keep pace AND members need to stay alert...

don't leave the keys in your puter and the processor running, some1 will steal it!
___________

i suspect ONCE and AFTER the mess is really cleaned up, we'll get a good explanation from the staff...

cheers
2air'
__________________
all of the true things that i am about to tell you are shameless lies. l.b.j.

we are here on earth to fart around. don't let anybody tell you any different. k.v.
2airishuman is offline   Reply With Quote
Old 11-20-2009, 10:06 AM   #24
Moderator
 
moosetags's Avatar

 
2015 25' FB Flying Cloud
2012 23' FB Flying Cloud
2005 25' Safari
Santa Rosa Beach , Florida
Join Date: Jul 2006
Posts: 10,361
Images: 5
I actually went to bed early last night, not having the AIRFORUMS to entertain me.

Brian
__________________
SuEllyn & Brian McCabe
WBCCI #3628 -- AIR #14872 -- TAC #FL-7
2015 FC 25' FB (Lucy) with HAHA
2005 Suburban 2500 Quadrasteer (Olivia) & 2011 Silverado 3500 (Fred) with Outfitter Truck Camper (Ethel)
moosetags is offline   Reply With Quote
Old 11-20-2009, 10:09 AM   #25
3 Rivet Member
 
1972 29' Ambassador
Harrah , Oklahoma
Join Date: Jan 2008
Posts: 110
Images: 1
No problem! Better to do what you did than get blamed for letting it go on and infect the machines of your end users.

On a side note, was this a result of getting behind in your version of vBulletin, or were you on a current version that all other sites must now patch? Just curious, as I visit a lot of vBulletin based sites and would like to know what versions to be wary of when I'm on there.
__________________
My Brain Project and Tech Notes
airbassador is offline   Reply With Quote
Old 11-20-2009, 10:30 AM   #26
Rivet Master
Commercial Member
 
bredlo's Avatar
 
1954 22' Safari
Deerfield , Illinois
Join Date: May 2003
Posts: 1,404
Images: 23
Send a message via AIM to bredlo
Quote:
Originally Posted by richinny View Post
bravo to the staff. i did get to bed early last night due to the outage, lol.
Hey, maybe you're onto something. We could shut the site down every night at 10! Just base it on whatever time zone your computer is in.

I'm sure we could all use a little more sleep, and that way we'll know we're not missing out on anything!
__________________
Brad
bredlo is offline   Reply With Quote
Old 11-20-2009, 10:31 AM   #27
Rivet Master<br><img src="/ugala/forums/images/5rivet.gif">
 
CanoeStream's Avatar

 
2006 25' Safari FB SE
St. Cloud , Minnesota
Join Date: Aug 2003
Posts: 13,279
Images: 19
Blog Entries: 3
This situation was from a hole in a patch added a few days back. The mentioned Oct 27th update was not a cause in this situation. The vulnerability was in one of the several add-on software packages used to flesh out the site. It was not related to the core vBulletin software.

Thanks to the hardworking tech side of our team! They didn't get many hours of sleep and they're up already and working to restore a few pages.

Most importantly - the malware issue should be eliminated. Please report immediately if anybody is receiving notices from their browser or antivirus software!
__________________
Bob

5 meter Langford Nahanni

CanoeStream is offline   Reply With Quote
Old 11-20-2009, 10:59 AM   #28
Rivet Master
 
warbler5's Avatar
 
2004 30' Classic
Roseville , California
Join Date: Sep 2004
Posts: 679
Send a message via AIM to warbler5
Thanks for acting quickly and keeping us AirForums addicts informed! I never noticed anything.....except the downtime.
__________________

__________________
2004 30' Airstream Classic
2011 GMC 3500HD Duramax
Hensley Arrow hitch


Jackson Rancheria, 10-12 Oct 2014
Pinnacles Nat'l Park, 20-22 Feb 2015
Casini Ranch, 10-12 Apr 2015


AIR #6287
TAC #CA-26
WBCCI #3933/4CU
__________________
warbler5 is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Unexpected opportunity? Hawkeye5 All Argosy Trailers 17 04-06-2008 07:55 PM
AIR is back from unexpected holiday break! Janet H Forum Admin, News and Member Account Info 11 12-26-2007 08:18 PM
Odd back-to-back eBay auctions .... summerkid Trailer Values 5 09-12-2005 12:34 PM
MH Sub-Forums? ViewRVs Airstream Motorhome Forums 10 09-27-2003 08:30 AM
Too many forums?? darkStar Our Community 9 08-17-2003 11:37 AM


Virginia Campgrounds

Reviews provided by



Our Communities

Our communities encompass many different hobbies and interests, but each one is built on friendly, intelligent membership.

» More about our Communities

Automotive Communities

Our Automotive communities encompass many different makes and models. From U.S. domestics to European Saloons.

» More about our Automotive Communities

Marine Communities

Our Marine websites focus on Cruising and Sailing Vessels, including forums and the largest cruising Wiki project on the web today.

» More about our Marine Communities


Copyright 2002-2015 Social Knowledge, LLC All Rights Reserved.

All times are GMT -6. The time now is 06:07 PM.


Powered by vBulletin® Version 3.8.8 Beta 1
Copyright ©2000 - 2016, Jelsoft Enterprises Ltd.

Airstream is a registered trademark of Airstream Inc. All rights reserved. Airstream trademark used under license to Social Knowledge LLC.