<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments for International Open Solutions Centre</title>
	<atom:link href="http://www.iosc.net/blog/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.iosc.net/blog</link>
	<description>Share your experience and knowledge computer hardware / software / programming / design / news</description>
	<pubDate>Sat, 22 Nov 2008 05:22:37 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>Comment on Samsung NC10 Netbook around £299 (RM1600) by boyd</title>
		<link>http://www.iosc.net/blog/2008/10/29/samsung-nc10-netbook-around-299-rm1600/#comment-12</link>
		<dc:creator>boyd</dc:creator>
		<pubDate>Wed, 29 Oct 2008 12:31:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.iosc.net/blog/?p=60#comment-12</guid>
		<description>Nice ;)</description>
		<content:encoded><![CDATA[<p>Nice <img src='http://www.iosc.net/blog/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on is your Web Server hacked to be a SPAM server? by boyd</title>
		<link>http://www.iosc.net/blog/2008/06/16/is-your-web-server-hacked-to-be-a-spam-server/#comment-9</link>
		<dc:creator>boyd</dc:creator>
		<pubDate>Sat, 16 Aug 2008 22:37:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.iosc.net/blog/?p=48#comment-9</guid>
		<description>hi bawd, after my post here last time, I disable the anonymous FTP (by default my webserver cpanel seems enable it) and I have no problem anymore...

I guess this is not that username and password got stolen. You better update and upgrade the server system and software, especially the Apache and PHP version if you have those ;) good luck!!!</description>
		<content:encoded><![CDATA[<p>hi bawd, after my post here last time, I disable the anonymous FTP (by default my webserver cpanel seems enable it) and I have no problem anymore&#8230;</p>
<p>I guess this is not that username and password got stolen. You better update and upgrade the server system and software, especially the Apache and PHP version if you have those <img src='http://www.iosc.net/blog/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> good luck!!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on is your Web Server hacked to be a SPAM server? by bawd</title>
		<link>http://www.iosc.net/blog/2008/06/16/is-your-web-server-hacked-to-be-a-spam-server/#comment-7</link>
		<dc:creator>bawd</dc:creator>
		<pubDate>Wed, 25 Jun 2008 17:32:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.iosc.net/blog/?p=48#comment-7</guid>
		<description>I had exactly the same problem a couple of weeks ago. I first thought it was happening with domains hosted in my account, but then I realised that domains hosted in other servers had been hacked too.

The only thing in common between this accounts is that they were stored with its respective passwords in my Windows CuteFTP.

Previously to this, I had to format my hard drive because of a virus. Maybe it stole the accounts information from CuteFTP and use it to spam. It is possible?

What I did is update every password and obviously delete the data_.php files.

Well, I hope we reach whatever is causing this problem.

Thanks!</description>
		<content:encoded><![CDATA[<p>I had exactly the same problem a couple of weeks ago. I first thought it was happening with domains hosted in my account, but then I realised that domains hosted in other servers had been hacked too.</p>
<p>The only thing in common between this accounts is that they were stored with its respective passwords in my Windows CuteFTP.</p>
<p>Previously to this, I had to format my hard drive because of a virus. Maybe it stole the accounts information from CuteFTP and use it to spam. It is possible?</p>
<p>What I did is update every password and obviously delete the data_.php files.</p>
<p>Well, I hope we reach whatever is causing this problem.</p>
<p>Thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on is your Web Server hacked to be a SPAM server? by boyd</title>
		<link>http://www.iosc.net/blog/2008/06/16/is-your-web-server-hacked-to-be-a-spam-server/#comment-6</link>
		<dc:creator>boyd</dc:creator>
		<pubDate>Wed, 18 Jun 2008 09:45:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.iosc.net/blog/?p=48#comment-6</guid>
		<description>hi Tomsi,

I have not yet found the problem. From the administrator in the datacentre told me that the script was uploaded through "ftp". I wonder is it the anonymous "ftp".

Yesterday we have 4 websites got hacked with this data_.php and we manage to stop it at once, though it already sent 4000+ emails.

I did a system and control panel software update now plus disable the anonymous "ftp" for the whole server and all accounts.

Still checking now, once found any updates will post here ;)</description>
		<content:encoded><![CDATA[<p>hi Tomsi,</p>
<p>I have not yet found the problem. From the administrator in the datacentre told me that the script was uploaded through &#8220;ftp&#8221;. I wonder is it the anonymous &#8220;ftp&#8221;.</p>
<p>Yesterday we have 4 websites got hacked with this data_.php and we manage to stop it at once, though it already sent 4000+ emails.</p>
<p>I did a system and control panel software update now plus disable the anonymous &#8220;ftp&#8221; for the whole server and all accounts.</p>
<p>Still checking now, once found any updates will post here <img src='http://www.iosc.net/blog/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on is your Web Server hacked to be a SPAM server? by Tomsi</title>
		<link>http://www.iosc.net/blog/2008/06/16/is-your-web-server-hacked-to-be-a-spam-server/#comment-5</link>
		<dc:creator>Tomsi</dc:creator>
		<pubDate>Wed, 18 Jun 2008 07:42:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.iosc.net/blog/?p=48#comment-5</guid>
		<description>Hello. 

I recieved an e-mail from our server administrator this morning, that he suspended an account because it was abused by a spammer.  He sent me the names of php scripts which the spammer might used to send e-mails. And one of the files was, belive it or not data_.php. 

I checked the script and quickly noticed that the code wansn't written in my style. And same as in your case, the script was getting POSTS from some whre and then mailed it out using php mail function. 

I was wondering if you found the security hole. Oh and by the way, the site I'm talking about is using Joomla! for it's framework.</description>
		<content:encoded><![CDATA[<p>Hello. </p>
<p>I recieved an e-mail from our server administrator this morning, that he suspended an account because it was abused by a spammer.  He sent me the names of php scripts which the spammer might used to send e-mails. And one of the files was, belive it or not data_.php. </p>
<p>I checked the script and quickly noticed that the code wansn&#8217;t written in my style. And same as in your case, the script was getting POSTS from some whre and then mailed it out using php mail function. </p>
<p>I was wondering if you found the security hole. Oh and by the way, the site I&#8217;m talking about is using Joomla! for it&#8217;s framework.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Internet Explorer 8 Beta 1 by Internet Explorer 8 Beta 1 &#124; Water Blowing 吹水够力</title>
		<link>http://www.iosc.net/blog/2008/06/17/internet-explorer-8-beta-1/#comment-4</link>
		<dc:creator>Internet Explorer 8 Beta 1 &#124; Water Blowing 吹水够力</dc:creator>
		<pubDate>Tue, 17 Jun 2008 12:11:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.iosc.net/blog/?p=49#comment-4</guid>
		<description>[...] Check out what I said about nternet Explorer 8 Beta 1 on my IT Blog  [...]</description>
		<content:encoded><![CDATA[<p>[...] Check out what I said about nternet Explorer 8 Beta 1 on my IT Blog  [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on New iPhone 2.0, It&#8217;s here NOW!!! by New iPhone 2.0, It’s here NOW!!! &#124; Water Blowing 吹水够力</title>
		<link>http://www.iosc.net/blog/2008/06/09/new-iphone-20-its-here-now/#comment-3</link>
		<dc:creator>New iPhone 2.0, It’s here NOW!!! &#124; Water Blowing 吹水够力</dc:creator>
		<pubDate>Mon, 09 Jun 2008 18:46:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.iosc.net/blog/?p=47#comment-3</guid>
		<description>[...] If you're new here, you may want to subscribe to my RSS feed. Thanks for visiting!New iPhone 2.0, It’s here NOW!!! [...]</description>
		<content:encoded><![CDATA[<p>[...] If you&#8217;re new here, you may want to subscribe to my RSS feed. Thanks for visiting!New iPhone 2.0, It’s here NOW!!! [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
