-
-
Just after the recent issue on wordpress.com.cn now there is new wordpress imitater. A remote spamware injection by wordpress.net.in
I was reading one of Matt Heaton posted 2 days ago when I found bunch of spamsware link on his wordpress footer.
Matt’s is using default wodpress theme (kubrick) with single javascript for adsense. The only way the spams can get in is probably via php injection or by manual editing. All the spamware is redirect to howardowens.com/?order=XX page
Filed under Bluehost¸ HostMonster & WordPress.
-
- December 1, 2007 at 9:55 am
- February 21, 2008 at 12:27 am
- 0.3
- url
-
-
-
I found this while browsing WordPress support forum, some of these victims update their default_filters.php and upload
Filed under WordPress¸ injection & vulnerability.
- November 30, 2007 at 9:06 am
- June 24, 2008 at 3:55 pm
- 0.3
- url
-
-
-
AcroRd32Info is a another creative pieces of crap from Adobe a package for Acrobat Reader. Embed in Windows Explorer Shell, its main role is to start an initial prefetching for PDF documents in the Memory.To test this program behavior, you will need to open your windows task manager (ctrl+alt+del once) and browse to any folder that contained a PDF documents and stay idle. Within just few seconds AdobeRd32Info will be loaded in the background and stay in memory.That was just for browsing the folder without opening any PDF files yet.
Windows has a standard prefetch modes and its fairly stable for most of the applications out there. Having a another background prefetcher hook on explorer is plain abusive not to mention its running without the owner permissions.
AcroRd32Info stay in your memory so consider it as a pest. So how to disabled it?
Filed under Acrobat Reader¸ Adobe¸ Exploit & Windows.
-
- November 29, 2007 at 1:05 pm
- June 24, 2008 at 4:25 pm
- 0.3
- url
-