BOF hacked?
Moderators: [nope] cartel, team nopesport
35 posts
• Page 1 of 3 • 1, 2, 3
BOF hacked?
When I just went on the BOF website my computer was attacked by a trojan from p****c.com (edited)
Last edited by Adrian on Thu Jul 07, 2011 10:40 pm, edited 1 time in total.
- Adrian
- blue
- Posts: 468
- Joined: Thu Mar 27, 2008 7:12 pm
- Location: Brum
Re: BOF hacked?
Same here - detection by Avast. Maybe a false positive. Anybody get a result from another AV product?
- guessed
- off string
- Posts: 33
- Joined: Fri Jun 23, 2006 6:11 pm
Re: BOF hacked?
Definite injection of a script right at the top of the home page. DO NOT EVEN LOOK AT BOF SITE unless you really know what you are doing.
Last edited by guessed on Thu Jul 07, 2011 10:37 pm, edited 1 time in total.
- guessed
- off string
- Posts: 33
- Joined: Fri Jun 23, 2006 6:11 pm
Re: BOF hacked?
Also do not try to investigate the web site that Adrian had mentioned. Very bad for your computer's health.
Last edited by guessed on Thu Jul 07, 2011 11:05 pm, edited 1 time in total.
- guessed
- off string
- Posts: 33
- Joined: Fri Jun 23, 2006 6:11 pm
Re: BOF hacked?
Google chrome automatically flagged it...
www. britishorienteering. org. uk contains content from[....], a site known to distribute malware. Your computer might catch a virus if you visit this site.
www. britishorienteering. org. uk contains content from[....], a site known to distribute malware. Your computer might catch a virus if you visit this site.
Last edited by AAH on Thu Jul 07, 2011 11:10 pm, edited 2 times in total.
- AAH
- off string
- Posts: 45
- Joined: Tue Nov 03, 2009 9:32 pm
Re: BOF hacked?
Adrian and myself have deleted from our posts the name of the site connected to this Trojan malware. If your Anti-Virus product reveals its name to you, you should not attempt to visit it.
- guessed
- off string
- Posts: 33
- Joined: Fri Jun 23, 2006 6:11 pm
Re: BOF hacked?
Kaspersky AVS detected malware trojan and won't allow me to download the page. Sounds serious. Wonder how/why and how long it will be before it gets sorted. Not good!!
- RJ
- addict
- Posts: 1021
- Joined: Sat Feb 04, 2006 1:52 pm
- Location: enjoying the Cumbrian outdoors
Re: BOF hacked?
There doesn't seem to be much wrong with the BOF site here. I'm doubly protected. I think you guys should check out your own systems.
(apologies to follow when I'm proved wrong, of course)
AP
(apologies to follow when I'm proved wrong, of course)
AP
-
DeerTick - red
- Posts: 170
- Joined: Sun Apr 26, 2009 11:15 pm
- Location: Argyll
Re: BOF hacked?
Oh well. We might as well put a notice up saying "Dangerous Cliff: Please jump off and see how long before you land".
Unless my attempts to contact BOF at this late hour have succeeded, or the webhosting company has done something, then it is infected. Promise.
Unless my attempts to contact BOF at this late hour have succeeded, or the webhosting company has done something, then it is infected. Promise.
- guessed
- off string
- Posts: 33
- Joined: Fri Jun 23, 2006 6:11 pm
Re: BOF hacked?
Okay so I jumped and it's definitely still infected with that thing Adrian said. I've no idea what protection i have - I leave that to the techicians - perhaps it's a Mac thing 

-
Mrs H - god
- Posts: 2975
- Joined: Tue Jun 28, 2005 3:30 pm
Re: BOF hacked?
It looks like the Blackhole kit. The bad news is that most antivirus software is notoriously bad at picking it up - I suspect the reason that most people are seeing it flagged now may be because p****c.com has been blacklisted, and not because their antivirus has actually detected the trojan(s). It's therefore just about possible that some folk will have caught something nasty from the BOF site before it got onto the blacklist last night, even if they do have antivirus 
The good news is that most of the exploits it normally uses are pretty old, so if you're all patched and up-to-date (in particular, if your Java installation is up-to-date), you're probably fine. But that said, it would probably be a good idea for everyone to download and run one of the free rootkit checkers.

The good news is that most of the exploits it normally uses are pretty old, so if you're all patched and up-to-date (in particular, if your Java installation is up-to-date), you're probably fine. But that said, it would probably be a good idea for everyone to download and run one of the free rootkit checkers.
"If only you were younger and better..."
-
Scott - god
- Posts: 2429
- Joined: Wed Jan 17, 2007 4:43 am
- Location: in the queue for the ice-cream van
Re: BOF hacked?
So the next questions are:
How should we warn people that don't read Nope that the site is infected?
Not everyone has auto-update on for WIndows and the same quality of anti-virus (or any).
Should association and clubs sites etc. put up a news item, send out emails etc.?
How will we know when it's fixed and safe to go back?
It's times like this that I wonder if building/managing websites is worth the agro.
How should we warn people that don't read Nope that the site is infected?
Not everyone has auto-update on for WIndows and the same quality of anti-virus (or any).
Should association and clubs sites etc. put up a news item, send out emails etc.?
How will we know when it's fixed and safe to go back?
It's times like this that I wonder if building/managing websites is worth the agro.
- Paul Frost
- addict
- Posts: 1176
- Joined: Sat Feb 26, 2005 6:25 pm
- Location: Highlands
Re: BOF hacked?
For a moment I thought that the BOF voicemail had been hacked by newspaper reporters looking for a "how many event levels are we going to have" scoop?
The simplist thing would be for BOF to send all BOF members an email saying their site is down, and then another when it's back up, but as I've never seen BOF send emails like this (which is a pity as it could be a good form of publicity) I imagine they don't have a mailing list set up.
I guess this sort of thing happens to websites quite commonly?

The simplist thing would be for BOF to send all BOF members an email saying their site is down, and then another when it's back up, but as I've never seen BOF send emails like this (which is a pity as it could be a good form of publicity) I imagine they don't have a mailing list set up.
I guess this sort of thing happens to websites quite commonly?
- SeanC
- god
- Posts: 2292
- Joined: Wed Mar 16, 2005 6:46 pm
- Location: Kent
Re: BOF hacked?
It happened to a number of our websites (not this one, but PT & nopeindustries) a couple of years back, often comes from a server being hacked rather than a specific site - the malicious code is just inserted into all the web pages/templates found on the server which can be a right pain in the arse to sort out...
“Success is 99% failure� -- Soichiro Honda
-
brooner - [nope] cartel
- Posts: 3931
- Joined: Wed Oct 22, 2003 1:46 pm
- Location: Sydney
35 posts
• Page 1 of 3 • 1, 2, 3
Who is online
Users browsing this forum: No registered users and 39 guests