Latest Posts
Forum: Windows Media Center Plugins & Addons
Last Reply: skypilot (May 23 2013 11:17 PM)
Forum: Pay TV Configuration - Foxtel : Optus : Austar
Last Reply: Kazdalk (May 23 2013 02:28 AM)
Forum: Windows Media Center Plugins & Addons
Last Reply: corylee20121970 (May 23 2013 01:46 AM)
Forum: Windows 7: Media Center & OS
Last Reply: aanda6 (May 22 2013 09:51 PM)
Recent Topics
-
Simple process for retuning?antman68 - May 22 2013 08:46 PM
-
My Channel Logos XL!makryger - May 22 2013 03:58 PM
-
Credit Card Fraudlogifuse - May 22 2013 01:06 AM
-
Live TV on the Xbox Oneipguy - May 21 2013 10:33 PM
-
Xbox One and TVipguy - May 21 2013 03:17 PM
Site Downtime
#1
Posted 17 September 2011 - 02:30 PM
Because this site runs on a dedicated server, I'm responsible for all maintenance so to be sure I'd fixed the problem I had to employ a third party to run scans and identify where the "security hole" was, identify which part of the system or file structure had allowed the exploit to occur - and of course be 100% sure it was fixed. It turns out that it was the old xpmediacentre site which appears to have been the target and not this one.
Back in January when I switched over to Invision form software, I had to leave the old site in place on the server to enable individual thread and post redirects to send visitors who followed the all the old backlinks out there to find the corresponding content here. Even though I had believed that nobody could access the old site, it seems under certain circumstances it was still possible, and because I hadn't upgraded it in over 8 months it was a soft target.
The first job was to completely remove the old site to avoid any possibility of a repeat incident, after that new server software was installed and new scans run which all came up clean. I finally got it sorted out late yesterday afternoon, then it was off to Google and others to lodge a request for a security review to be able to get rid of those horrible red warning screens - and here we are.
I'm still scratching my head about why the wankers that do this stuff even bother with a small, under-the-radar website like this one, and according to the security experts I hired, there was nothing to be concerned about anyhow, no virus or malicious script was found - they believe it was an uploaded image file which had triggered the warning - so at least we can all feel good that our browsers are working well and taking care of us.
My apologies for any inconvenience or alarm this incident may have caused.
Mike
#2
Posted 17 September 2011 - 05:55 PM
#3
Posted 17 September 2011 - 06:25 PM
#4
Posted 17 September 2011 - 06:25 PM
Sent from my Galaxy S
#5
Posted 17 September 2011 - 08:33 PM
#6
Posted 17 September 2011 - 08:57 PM
Thanks Bill but I'd rather not advertise bogus login information from BugMeNot - I'm sure you understand why.
As for what they have over there - it was wrong anyway however I've now banned the account and submitted a block request to BugMeNot.
Thanks for the heads up but perhaps a PM might be a better idea in future.
#7
Posted 17 September 2011 - 09:07 PM
As for the warning appearing again, I haven't seen it so it's a bit difficult to know where to look. As part of my housekeeping yesterday I removed lots and lots of files & old directories and 5 scans since that clean-out have produced nothing.
I'm not sure how Google runs its checks but as I write, it's showing as clear in all my browsers and MSSE is quiet as well. Hopefully it was just something in the cache showing up - if not I'm in trouble since I wouldn't know where to start looking next.
Fingers crossed...
#9
Posted 18 September 2011 - 06:10 PM
#10
Posted 18 September 2011 - 07:23 PM
At least it's forced me to update my bookmark to the pcmediacentre site, my old favourite was still pointed at the xpmediacentre site that's still getting a warning screen.
#11
Posted 18 September 2011 - 09:14 PM
my old favourite was still pointed at the xpmediacentre site that's still getting a warning screen.
You gotta love the internet cache.
I completely removed that account & DNS from my server yesterday and still it shows a warning!














