Results 1 to 15 of 15
  1. #1
    migster is offline Member
    Join Date
    Apr 2009
    Posts
    58

    Default OT - Forum problem?

    Every time I access any forum page, Avast reports a malware issue with the following details

    File Name: http://www.eukhost.com/forums/external.php?type=RSS2

    Malware Name: HTML:Iframe-inf

    Aborting the connection makes Avast happy, and the page appears complete. Anybody else seeing this, or is it a false positive?

    It looks like it has issues with the RSS feed in some way. As I'm aborting the connection, I don't see an RSS feed anywhere, so I have no idea what it might be. I can't imagine iFrame being used?

  2. #2
    eUK-Victor's Avatar
    eUK-Victor is offline Linux Support Team(eUKhost.com)
    Join Date
    Aug 2007
    Posts
    186

    Default

    Hello,

    Its not possible. There is no such IFrame injection or any Malware in our forum. Your avast might be giving you a false positive may be any URL included in our forum posts.
    Regards,
    Victor,
    Support Team.

  3. #3
    migster is offline Member
    Join Date
    Apr 2009
    Posts
    58

    Default

    I suspected it was a false positive.

    It happens on the front forum page too, so it's not an issue when reading urls in posts.

  4. #4
    Rock's Avatar
    Rock is offline Technical Support (eUKhost.com)
    Join Date
    Oct 2006
    Location
    localhost
    Posts
    3,375

    Smile

    Quote Originally Posted by migster View Post
    I suspected it was a false positive.

    It happens on the front forum page too, so it's not an issue when reading urls in posts.
    Hi,

    This should be sorted out now. There is a thread on our forum [ http://www.eukhost.com/forums/f29/security-issue-10073 ] which actually contains the exact IFrame code posted by one of the forum members, which was injected into his web pages, which was further more parsed when loading through the RSS in your browser & reported by Avast.

    I've now commented the IP addressed within those posts & none are active at the moment. It'd take time for the changes to reflect though the RSS feeds, but if you still notice the problems/warnings/alerts, please get back to us.

    Rock _a.k.a._ Jack
    Windows Hosting || Windows Reseller Hosting
    Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
    Follow eUKhost on Twitter || Join eUKhost Community on Facebook

    For complaints, grievances or suggestions kindly email our FeedBack Dept.
    Proper action will be taken accordingly & instantaneously!

  5. #5
    migster is offline Member
    Join Date
    Apr 2009
    Posts
    58

    Default

    Yep, all gone away now.

    I owe Avast an apology

  6. #6
    Rock's Avatar
    Rock is offline Technical Support (eUKhost.com)
    Join Date
    Oct 2006
    Location
    localhost
    Posts
    3,375

    Smile

    Quote Originally Posted by migster View Post
    Yep, all gone away now.

    I owe Avast an apology
    Glad to know that

    Rock _a.k.a._ Jack
    Windows Hosting || Windows Reseller Hosting
    Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
    Follow eUKhost on Twitter || Join eUKhost Community on Facebook

    For complaints, grievances or suggestions kindly email our FeedBack Dept.
    Proper action will be taken accordingly & instantaneously!

  7. #7
    DPS Computing's Avatar
    DPS Computing is offline Voluntary Moderator and Customer of eUKhost
    Join Date
    Apr 2007
    Location
    Manchester, United Kingdom
    Posts
    8,440

    Default

    Glad to see the problem sorted. You did well to find that one Rock! .
    David Smith
    DPS Computing
    http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
    http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
    http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)

  8. #8
    Rock's Avatar
    Rock is offline Technical Support (eUKhost.com)
    Join Date
    Oct 2006
    Location
    localhost
    Posts
    3,375

    Cool

    Quote Originally Posted by DPS Computing View Post
    Glad to see the problem sorted. You did well to find that one Rock! .
    Thanks David

    Yeah, I was shocked to see this thread in the first case & started to thoroughly investigate the causes of the warnings on top priority

    I'll see that none of such incidents recur in the future which might harm/infect any of our clients' systems.

    Rock _a.k.a._ Jack
    Windows Hosting || Windows Reseller Hosting
    Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
    Follow eUKhost on Twitter || Join eUKhost Community on Facebook

    For complaints, grievances or suggestions kindly email our FeedBack Dept.
    Proper action will be taken accordingly & instantaneously!

  9. #9
    DPS Computing's Avatar
    DPS Computing is offline Voluntary Moderator and Customer of eUKhost
    Join Date
    Apr 2007
    Location
    Manchester, United Kingdom
    Posts
    8,440

    Default

    Quote Originally Posted by Rock View Post
    Thanks David

    Yeah, I was shocked to see this thread in the first case & started to thoroughly investigate the causes of the warnings on top priority

    I'll see that none of such incidents recur in the future which might harm/infect any of our clients' systems.
    Thats good to know. I think in another life you are probably a detective .
    David Smith
    DPS Computing
    http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
    http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
    http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)

  10. #10
    Rock's Avatar
    Rock is offline Technical Support (eUKhost.com)
    Join Date
    Oct 2006
    Location
    localhost
    Posts
    3,375

    Cool

    Quote Originally Posted by DPS Computing View Post
    Thats good to know. I think in another life you are probably a detective .
    Haha nice guess David I've been a fan of Hercule Poirot & Sherlock Holmes for life

    Rock _a.k.a._ Jack
    Windows Hosting || Windows Reseller Hosting
    Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
    Follow eUKhost on Twitter || Join eUKhost Community on Facebook

    For complaints, grievances or suggestions kindly email our FeedBack Dept.
    Proper action will be taken accordingly & instantaneously!

  11. #11
    DPS Computing's Avatar
    DPS Computing is offline Voluntary Moderator and Customer of eUKhost
    Join Date
    Apr 2007
    Location
    Manchester, United Kingdom
    Posts
    8,440

    Default

    Quote Originally Posted by Rock View Post
    Haha nice guess David I've been a fan of Hercule Poirot & Sherlock Holmes for life
    You've obviously learned well from them .
    David Smith
    DPS Computing
    http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
    http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
    http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)

  12. #12
    migster is offline Member
    Join Date
    Apr 2009
    Posts
    58

    Default

    Really, anybody who is running even a basic website should know more than enough to be protected sufficiently, even during regular internet use. If not, then they'll find themeslves in trouble sooner, rather than later.

    Thanks for dealing with it so promptly

  13. #13
    DPS Computing's Avatar
    DPS Computing is offline Voluntary Moderator and Customer of eUKhost
    Join Date
    Apr 2007
    Location
    Manchester, United Kingdom
    Posts
    8,440

    Default

    Quote Originally Posted by migster View Post
    Really, anybody who is running even a basic website should know more than enough to be protected sufficiently, even during regular internet use. If not, then they'll find themeslves in trouble sooner, rather than later.

    Thanks for dealing with it so promptly
    Sadly as we know this is not nearly always the case .
    David Smith
    DPS Computing
    http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
    http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
    http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)

  14. #14
    migster is offline Member
    Join Date
    Apr 2009
    Posts
    58

    Default

    Quote Originally Posted by DPS Computing View Post
    Sadly as we know this is not nearly always the case .
    Alas, you are right.

    I've broken many, many things through incompetence, but never through insufficient security

  15. #15
    DPS Computing's Avatar
    DPS Computing is offline Voluntary Moderator and Customer of eUKhost
    Join Date
    Apr 2007
    Location
    Manchester, United Kingdom
    Posts
    8,440

    Default

    Quote Originally Posted by migster View Post
    Alas, you are right.

    I've broken many, many things through incompetence, but never through insufficient security
    Lol .

    Some of my friends are so oblivious to things like attachments in emails and spyware on the net.

    Its like "Yes I know your watching a lovely woman who has particularly nice surgically enchanced breasts **BUT** there is a crap load of spyware being dumped on your computer in the process".

    I downloaded a backup of one of my sites (DPS Computing) on the 30th last month. I virus scanned it - 476 viruses in around 3000 e-mails. And thats why I don't look at the "purchasing order" I supposedly made or the cheap viagra ".doc" file which is really ".doc.exe" or open the attachment coming with the e-mail that my long lost grandfather twice removed has met his untimely death in a freak accident with a snow plow and left me 20 gazillion Ugandan dollars!
    David Smith
    DPS Computing
    http://www.dpscomputing.com (Computing, Reviews, News) - We're still plodding on adding new content and features (August 2011)
    http://www.djdavid.co.uk - Massive update! (September 2011) - It's now not neglected!!
    http://davidsmith.dpscomputing.com (My Personal Website) - New Site (10/2009)

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •