Forum Articles
  Welcome back Join CF
You are here You are here: Home | Forum | Webhost hit by cPanel exploit

You are currently viewing our boards as a guest which gives you limited access to view most of the discussions, articles and other free features. By joining our Virgin Media community you will have full access to all discussions, be able to view and post threads, communicate privately with other members (PM), respond to polls, upload your own images/photos, and access many other special features. Registration is fast, simple and absolutely free so please join our community today.


Welcome to Cable Forum
Go Back   Cable Forum > Computers & IT > Security & Virus Discussion
Register FAQ Community Calendar

Webhost hit by cPanel exploit
Reply
 
Thread Tools
Old 27-09-2006, 17:54   #16
pedantic
Inactive
 
Join Date: Mar 2004
Location: Swinton
Services: O2 standard
Posts: 2,499
pedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronze
pedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronze
Send a message via Yahoo to pedantic
Re: Webhost hit by cPanel exploit

I thought the latest patch from MS has sorted that out.

http://secunia.com/advisories/21989/
pedantic is offline   Reply With Quote
Advertisement
Old 27-09-2006, 17:55   #17
Druchii
cf.mega poster
 
Druchii's Avatar
 
Join Date: Mar 2006
Location: Oslo, Norway.
Age: 36
Services: Canal Digital: 50/10
Posts: 7,577
Druchii has a nice shiny star
Druchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny star
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by pedantic View Post
I thought the latest patch from MS has sorted that out.

http://secunia.com/advisories/21989/
It did, i'm thinking that was before the patch was released 2 days ago was it?
Druchii is offline   Reply With Quote
Old 27-09-2006, 18:00   #18
Halcyon
Hello !
 
Halcyon's Avatar
 
Join Date: Mar 2004
Location: Somewhere
Services: Sky, AppleTV, Netflix
Posts: 16,789
Halcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered stars
Halcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered stars
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by bopdude View Post
But why then would my AV flash up that warning ???
My Nod32 came up with the same thing too.
Anyone know if we are at risk or why it came up ?
__________________
.
-

Halcyon is offline   Reply With Quote
Old 27-09-2006, 18:01   #19
pedantic
Inactive
 
Join Date: Mar 2004
Location: Swinton
Services: O2 standard
Posts: 2,499
pedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronze
pedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronzepedantic is cast in bronze
Send a message via Yahoo to pedantic
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by Druchii View Post
It did, i'm thinking that was before the patch was released 2 days ago was it?
Dunno lol

I just used the link supplied by KP and got this.....

Quote:
VML test case, CVE-2006-4868

This is a test page to determine whether your browser is vulnerable to the VML vulnerability specified in CVE-2006-4868.

Since your browser is not Internet Explorer 5 or higher it does not support the vulnerable VML module, and you are therefor not vulnerable.

If you would like to know more about the Zeroday Emergency Response Team, please visit http://isotf.org/zert/
Which does point to that exploit in my previous post. No big deal though.
pedantic is offline   Reply With Quote
Old 27-09-2006, 19:41   #20
Paul
Dr Pepper Addict
Cable Forum Admin
 
Paul's Avatar
 
Join Date: Oct 2003
Location: Nottingham
Age: 63
Services: IDNet FTTP (1000M), Sky Q TV, Sky Mobile, Flextel SIP
Posts: 30,315
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by KingPhoenix View Post
How do i know if i have been affected? : Apparently this site should crash if you are affected http://www.isotf.org/zert/testvml.htm
That site tests if your IE is vulnerable to the VML security hole.

Mine was, so I installed the MS patch available here ;

http://www.microsoft.com/technet/sec.../MS06-055.mspx

Now IE passes the test ok.
__________________

Baby, I was born this way.
Paul is offline   Reply With Quote
Old 27-09-2006, 20:58   #21
Halcyon
Hello !
 
Halcyon's Avatar
 
Join Date: Mar 2004
Location: Somewhere
Services: Sky, AppleTV, Netflix
Posts: 16,789
Halcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered stars
Halcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered starsHalcyon is seeing silvered stars
Re: Webhost hit by cPanel exploit

So is that why Nod32 thinks it is a virus then when I click on that link ?
I never use IE, just Firefox.
__________________
.
-

Halcyon is offline   Reply With Quote
Old 27-09-2006, 21:01   #22
Graham M
-
 
Graham M's Avatar
 
Join Date: Jul 2003
Location: Poole, Dorset
Age: 40
Services: FreeSat+ Tivo V-Box VM 60MBit
Posts: 13,365
Graham M has a pair of shiny starsGraham M has a pair of shiny stars
Graham M has a pair of shiny starsGraham M has a pair of shiny starsGraham M has a pair of shiny starsGraham M has a pair of shiny starsGraham M has a pair of shiny starsGraham M has a pair of shiny starsGraham M has a pair of shiny starsGraham M has a pair of shiny stars
Send a message via MSN to Graham M Send a message via Yahoo to Graham M
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by Paul View Post
KP said in his post that I-web have patched their servers already so a patch must be out there for the problem.
OK well I'll run a CPanel update and see what happens.

---------- Post added at 20:01 ---------- Previous post was at 20:00 ----------

Yeah there was a news item at the top of my WHM Admin Page telling me there was an update to fix the vulnerability. Running the update now
Graham M is offline   Reply With Quote
Old 27-09-2006, 21:05   #23
Paul K
Inactive
 
Paul K's Avatar
 
Join Date: Jun 2003
Location: Essex innit
Age: 52
Services: Sky HD + 16Mb ADSL BT Telephone
Posts: 15,735
Paul K is seeing silvered starsPaul K is seeing silvered starsPaul K is seeing silvered starsPaul K is seeing silvered starsPaul K is seeing silvered starsPaul K is seeing silvered starsPaul K is seeing silvered stars
Paul K is seeing silvered starsPaul K is seeing silvered starsPaul K is seeing silvered stars
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by Zeph View Post
OK well I'll run a CPanel update and see what happens.

---------- Post added at 20:01 ---------- Previous post was at 20:00 ----------

Yeah there was a news item at the top of my WHM Admin Page telling me there was an update to fix the vulnerability. Running the update now
Cool. Thought you may have missed KPs post
Paul K is offline   Reply With Quote
Old 27-09-2006, 21:07   #24
marky
Inactive
 
marky's Avatar
 
Join Date: Mar 2005
Location: bolton
Age: 56
Services: non wife took control
Posts: 5,425
marky has a nice shiny starmarky has a nice shiny starmarky has a nice shiny starmarky has a nice shiny star
marky has a nice shiny starmarky has a nice shiny starmarky has a nice shiny starmarky has a nice shiny starmarky has a nice shiny starmarky has a nice shiny star
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by Paul M View Post
That site tests if your IE is vulnerable to the VML security hole.

Mine was, so I installed the MS patch available here ;

http://www.microsoft.com/technet/sec.../MS06-055.mspx

Now IE passes the test ok.
All fixed, i feel better now
marky is offline   Reply With Quote
Old 27-09-2006, 22:53   #25
Gareth
cf.mega poster
 
Gareth's Avatar
 
Join Date: Dec 2003
Age: 50
Posts: 7,101
Gareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny stars
Gareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny stars
Re: Webhost hit by cPanel exploit

What, that site is knowingly hosting a trojan and asking people to click the link?!? How irresponsible of them.
Gareth is offline   Reply With Quote
Old 27-09-2006, 23:00   #26
Druchii
cf.mega poster
 
Druchii's Avatar
 
Join Date: Mar 2006
Location: Oslo, Norway.
Age: 36
Services: Canal Digital: 50/10
Posts: 7,577
Druchii has a nice shiny star
Druchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny starDruchii has a nice shiny star
Re: Webhost hit by cPanel exploit

Quote:
Originally Posted by Gareth View Post
What, that site is knowingly hosting a trojan and asking people to click the link?!? How irresponsible of them.
No, they are knowingly osting the exploit, then seeing if you're immune to it or not. No malicious code. Just the exploit. If you get my drift.
Druchii is offline   Reply With Quote
Old 28-09-2006, 00:01   #27
SnoopZ
CF Resident Dog
 
SnoopZ's Avatar
 
Join Date: Mar 2005
Posts: 15,376
SnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny stars
SnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny starsSnoopZ has a pair of shiny stars
Re: Webhost hit by cPanel exploit

My IE crashed when i went to http://www.isotf.org/zert/testvml.htm. Installing all the patches from MS update sorted that though. Glad i only use Opera to log into sites!
SnoopZ is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +1. The time now is 13:24.


Server: osmium.zmnt.uk
Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
All Posts and Content are © Cable Forum