UK WEB HOSTING FORUM FOR DISCUSSION ON WEB HOSTING SERVICE AND SUPPORT
LINUX HOSTING WINDOWS HOSTING PACKAGES SHOPPING CART OSCOMMERCE ZEN CART AGORA
ECOMMERCE HOSTING ASP MSSQL FRONTPAGE HOSTING PHP MYSQL HOSTING DISCUSSION FORUM
CPANEL RESELLER HOSTING DEDICATED SERVER VPS HOSTING PLESK VIRTUOZZO
Quick Search
Your forum announcement here!

  eUKhost's Official Web Hosting Forum > Technical Support > cPanel Shared Hosting

Reply
 
Thread Tools Display Modes
  #1 (permalink)  
Old 26-01-2010, 16:35
Member
 
Join Date: Apr 2009
Posts: 58
Default OT - Forum problem?

Every time I access any forum page, Avast reports a malware issue with the following details

File Name: http://www.eukhost.com/forums/external.php?type=RSS2

Malware Name: HTML:Iframe-inf

Aborting the connection makes Avast happy, and the page appears complete. Anybody else seeing this, or is it a false positive?

It looks like it has issues with the RSS feed in some way. As I'm aborting the connection, I don't see an RSS feed anywhere, so I have no idea what it might be. I can't imagine iFrame being used?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 26-01-2010, 16:52
eUK-Victor's Avatar
Linux Support Team(eUKhost.com)
 
Join Date: Aug 2007
Posts: 178
Default

Hello,

Its not possible. There is no such IFrame injection or any Malware in our forum. Your avast might be giving you a false positive may be any URL included in our forum posts.
__________________
Regards,
Victor,
Support Team.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 26-01-2010, 18:08
Member
 
Join Date: Apr 2009
Posts: 58
Default

I suspected it was a false positive.

It happens on the front forum page too, so it's not an issue when reading urls in posts.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #4 (permalink)  
Old 26-01-2010, 20:02
Rock's Avatar
Technical Support (eUKhost.com)
 
Join Date: Oct 2006
Location: localhost
Posts: 3,356
Send a message via MSN to Rock Send a message via Skype™ to Rock
Smile

Quote:
Originally Posted by migster View Post
I suspected it was a false positive.

It happens on the front forum page too, so it's not an issue when reading urls in posts.
Hi,

This should be sorted out now. There is a thread on our forum [ http://www.eukhost.com/forums/f29/security-issue-10073 ] which actually contains the exact IFrame code posted by one of the forum members, which was injected into his web pages, which was further more parsed when loading through the RSS in your browser & reported by Avast.

I've now commented the IP addressed within those posts & none are active at the moment. It'd take time for the changes to reflect though the RSS feeds, but if you still notice the problems/warnings/alerts, please get back to us.
__________________

Rock _a.k.a._ Jack
Windows Hosting || Windows Reseller Hosting
Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
Follow eUKhost on Twitter || Join eUKhost Community on Facebook

For complaints, grievances or suggestions kindly email our FeedBack Dept.
Proper action will be taken accordingly & instantaneously!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #5 (permalink)  
Old 26-01-2010, 20:11
Member
 
Join Date: Apr 2009
Posts: 58
Default

Yep, all gone away now.

I owe Avast an apology
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #6 (permalink)  
Old 26-01-2010, 20:50
Rock's Avatar
Technical Support (eUKhost.com)
 
Join Date: Oct 2006
Location: localhost
Posts: 3,356
Send a message via MSN to Rock Send a message via Skype™ to Rock
Smile

Quote:
Originally Posted by migster View Post
Yep, all gone away now.

I owe Avast an apology
Glad to know that
__________________

Rock _a.k.a._ Jack
Windows Hosting || Windows Reseller Hosting
Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
Follow eUKhost on Twitter || Join eUKhost Community on Facebook

For complaints, grievances or suggestions kindly email our FeedBack Dept.
Proper action will be taken accordingly & instantaneously!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #7 (permalink)  
Old 28-01-2010, 12:31
DPS Computing's Avatar
Moderator
 
Join Date: Apr 2007
Location: Manchester, United Kingdom
Posts: 7,504
Send a message via ICQ to DPS Computing Send a message via AIM to DPS Computing Send a message via MSN to DPS Computing Send a message via Yahoo to DPS Computing Send a message via Skype™ to DPS Computing
Default

Glad to see the problem sorted. You did well to find that one Rock! .
__________________
David Smith
DPS Computing
http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #8 (permalink)  
Old 28-01-2010, 12:49
Rock's Avatar
Technical Support (eUKhost.com)
 
Join Date: Oct 2006
Location: localhost
Posts: 3,356
Send a message via MSN to Rock Send a message via Skype™ to Rock
Cool

Quote:
Originally Posted by DPS Computing View Post
Glad to see the problem sorted. You did well to find that one Rock! .
Thanks David

Yeah, I was shocked to see this thread in the first case & started to thoroughly investigate the causes of the warnings on top priority

I'll see that none of such incidents recur in the future which might harm/infect any of our clients' systems.
__________________

Rock _a.k.a._ Jack
Windows Hosting || Windows Reseller Hosting
Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
Follow eUKhost on Twitter || Join eUKhost Community on Facebook

For complaints, grievances or suggestions kindly email our FeedBack Dept.
Proper action will be taken accordingly & instantaneously!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #9 (permalink)  
Old 29-01-2010, 11:38
DPS Computing's Avatar
Moderator
 
Join Date: Apr 2007
Location: Manchester, United Kingdom
Posts: 7,504
Send a message via ICQ to DPS Computing Send a message via AIM to DPS Computing Send a message via MSN to DPS Computing Send a message via Yahoo to DPS Computing Send a message via Skype™ to DPS Computing
Default

Quote:
Originally Posted by Rock View Post
Thanks David

Yeah, I was shocked to see this thread in the first case & started to thoroughly investigate the causes of the warnings on top priority

I'll see that none of such incidents recur in the future which might harm/infect any of our clients' systems.
Thats good to know. I think in another life you are probably a detective .
__________________
David Smith
DPS Computing
http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #10 (permalink)  
Old 30-01-2010, 09:59
Rock's Avatar
Technical Support (eUKhost.com)
 
Join Date: Oct 2006
Location: localhost
Posts: 3,356
Send a message via MSN to Rock Send a message via Skype™ to Rock
Cool

Quote:
Originally Posted by DPS Computing View Post
Thats good to know. I think in another life you are probably a detective .
Haha nice guess David I've been a fan of Hercule Poirot & Sherlock Holmes for life
__________________

Rock _a.k.a._ Jack
Windows Hosting || Windows Reseller Hosting
Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
Follow eUKhost on Twitter || Join eUKhost Community on Facebook

For complaints, grievances or suggestions kindly email our FeedBack Dept.
Proper action will be taken accordingly & instantaneously!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #11 (permalink)  
Old 30-01-2010, 12:42
DPS Computing's Avatar
Moderator
 
Join Date: Apr 2007
Location: Manchester, United Kingdom
Posts: 7,504
Send a message via ICQ to DPS Computing Send a message via AIM to DPS Computing Send a message via MSN to DPS Computing Send a message via Yahoo to DPS Computing Send a message via Skype™ to DPS Computing
Default

Quote:
Originally Posted by Rock View Post
Haha nice guess David I've been a fan of Hercule Poirot & Sherlock Holmes for life
You've obviously learned well from them .
__________________
David Smith
DPS Computing
http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #12 (permalink)  
Old 31-01-2010, 11:04
Member
 
Join Date: Apr 2009
Posts: 58
Default

Really, anybody who is running even a basic website should know more than enough to be protected sufficiently, even during regular internet use. If not, then they'll find themeslves in trouble sooner, rather than later.

Thanks for dealing with it so promptly
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #13 (permalink)  
Old 31-01-2010, 14:06
DPS Computing's Avatar
Moderator
 
Join Date: Apr 2007
Location: Manchester, United Kingdom
Posts: 7,504
Send a message via ICQ to DPS Computing Send a message via AIM to DPS Computing Send a message via MSN to DPS Computing Send a message via Yahoo to DPS Computing Send a message via Skype™ to DPS Computing
Default

Quote:
Originally Posted by migster View Post
Really, anybody who is running even a basic website should know more than enough to be protected sufficiently, even during regular internet use. If not, then they'll find themeslves in trouble sooner, rather than later.

Thanks for dealing with it so promptly
Sadly as we know this is not nearly always the case .
__________________
David Smith
DPS Computing
http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #14 (permalink)  
Old 31-01-2010, 22:11
Member
 
Join Date: Apr 2009
Posts: 58
Default

Quote:
Originally Posted by DPS Computing View Post
Sadly as we know this is not nearly always the case .
Alas, you are right.

I've broken many, many things through incompetence, but never through insufficient security
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #15 (permalink)  
Old 01-02-2010, 15:27
DPS Computing's Avatar
Moderator
 
Join Date: Apr 2007
Location: Manchester, United Kingdom
Posts: 7,504
Send a message via ICQ to DPS Computing Send a message via AIM to DPS Computing Send a message via MSN to DPS Computing Send a message via Yahoo to DPS Computing Send a message via Skype™ to DPS Computing
Default

Quote:
Originally Posted by migster View Post
Alas, you are right.

I've broken many, many things through incompetence, but never through insufficient security
Lol .

Some of my friends are so oblivious to things like attachments in emails and spyware on the net.

Its like "Yes I know your watching a lovely woman who has particularly nice surgically enchanced breasts **BUT** there is a crap load of spyware being dumped on your computer in the process".

I downloaded a backup of one of my sites (DPS Computing) on the 30th last month. I virus scanned it - 476 viruses in around 3000 e-mails. And thats why I don't look at the "purchasing order" I supposedly made or the cheap viagra ".doc" file which is really ".doc.exe" or open the attachment coming with the e-mail that my long lost grandfather twice removed has met his untimely death in a freak accident with a snow plow and left me 20 gazillion Ugandan dollars!
__________________
David Smith
DPS Computing
http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT. The time now is 22:44.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
UK Web Hosting by eUKHosting 3.1.0
UK Web Hosting by eUKHosting 3.1.0
Copyright © 2001-2012, eUKhost LTD. All rights reserved.

 


UK VPS Hosting
VPS Hosting plans

Dedicated Server Hosting
Dedicated Server plans

VoIP Dedicated Servers
Asterisk, Trixbox Dedicated Servers

Business Web Hosting
100% uptime Hosting

UK Cpanel Hosting
cPanel Shared Hosting

Domain Hosting
Cheap Domains & Hosting Plans

UK Reseller Hosting
Reseller Web Hosting

Windows Hosting
Windows Shared Hosting

Windows VPS

Windows VPS Hosting

Semi Dedicated Servers
Semi-Dedicated Hosting

Dedicated Server Mirroring
Dedicated Server Mirroring

Webhosting Knowledgebase
Frequently asked Questions

Web Hosting Blog
eUKhost Blog

Web Hosting Support
Support Helpdesk

UK Data Center
eUKhost Datacenter

Web Hosting Forum
eUKhost Forum

Support Tutorials
Online Flash Tutorials

Offsite Back-up Plans
Remote Backup Service

ColdFusion Hosting
ColdFusion Web Hosting
 
 

Android and Apple App


knowledgebase articles
eUKhost.com Services

Pre-Sales Questions
Pre-sales FAQ's

Domain Names
Domain registration FAQ's

cPanel Hosting
cPanel Hosting FAQ's

Windows Web Hosting
Plesk Control Panel

Reseller Hosting
Reseller Hosting FAQ's

VPS Hosting
Virtual Private Server

Semi-Dedicated Servers
Semi-Dedicated FAQ's

Dedicated Servers
Dedicated Server Hosting

Joomla Hosting
Joomla Web Hosting

Mambo Hosting
Mambo Web Hosting

Magento Hosting
Magento Web Hosting

Wordpress Hosting
Wordpress Web Hosting

 

Web Hosting Affiliate Program
 

popular blog categories

UK Web Hosting
UK Hosting articles

Dedicated Server Hosting
Dedicated Server guidelines

VPS Hosting
VPS hosting articles

cPanel Hosting
cPanel Hosting articles

Linux Operating System
Linux Operating techniques

Windows Web Hosting
Windows plesk articles