<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How Malicious Code Damage a Website and its Visitors?</title>
	<atom:link href="http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/feed/" rel="self" type="application/rss+xml" />
	<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/</link>
	<description>Pakistan&#039;s Telecom &#38; IT News</description>
	<lastBuildDate>Mon, 22 Mar 2010 13:28:38 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Julio Grow</title>
		<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/comment-page-1/#comment-42961</link>
		<dc:creator>Julio Grow</dc:creator>
		<pubDate>Thu, 25 Feb 2010 04:33:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.propakistani.com/?p=4985#comment-42961</guid>
		<description>5 Tips For Every New Website</description>
		<content:encoded><![CDATA[<p>5 Tips For Every New Website</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: IT Consultant</title>
		<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/comment-page-1/#comment-21299</link>
		<dc:creator>IT Consultant</dc:creator>
		<pubDate>Wed, 18 Nov 2009 06:48:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.propakistani.com/?p=4985#comment-21299</guid>
		<description>This problem is particular with our Govt. websites.  As per my information, most of these are hosted by a single ISP (dont want to name) of Pakistan.

They need to ensure that the the hosting company is maintaining the above mentioned standards.  Also the concerned staff/web master should be properly trained &amp; monitored to ensure nothing suspicious is taken place through the website (like we recently saw the case of misusing the educational institute website for getting traffic).</description>
		<content:encoded><![CDATA[<p>This problem is particular with our Govt. websites.  As per my information, most of these are hosted by a single ISP (dont want to name) of Pakistan.</p>
<p>They need to ensure that the the hosting company is maintaining the above mentioned standards.  Also the concerned staff/web master should be properly trained &amp; monitored to ensure nothing suspicious is taken place through the website (like we recently saw the case of misusing the educational institute website for getting traffic).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Junaid</title>
		<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/comment-page-1/#comment-21297</link>
		<dc:creator>Junaid</dc:creator>
		<pubDate>Tue, 30 Jun 2009 19:03:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.propakistani.com/?p=4985#comment-21297</guid>
		<description>Apparently it was a ftp hack which took A LOT of sites down including a couple of mine.

The Hack would steal ftp password from the infected machine and insert an iframe link in index.php and other files. Code looks something like this :-



Solution

Clean your computer and remove any startup items which look shady. I yet have to see a better antivirus than kasperky.

Change you FTP Password.

Remove all malicious iframe codes and look for odd software on the hosting server and remove it.</description>
		<content:encoded><![CDATA[<p>Apparently it was a ftp hack which took A LOT of sites down including a couple of mine.</p>
<p>The Hack would steal ftp password from the infected machine and insert an iframe link in index.php and other files. Code looks something like this :-</p>
<p>Solution</p>
<p>Clean your computer and remove any startup items which look shady. I yet have to see a better antivirus than kasperky.</p>
<p>Change you FTP Password.</p>
<p>Remove all malicious iframe codes and look for odd software on the hosting server and remove it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: maddy</title>
		<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/comment-page-1/#comment-21296</link>
		<dc:creator>maddy</dc:creator>
		<pubDate>Thu, 25 Jun 2009 06:12:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.propakistani.com/?p=4985#comment-21296</guid>
		<description>Dear Mr. Ali Raza,

Many thanks for bringing this into Public knowledge.

I wish to take this opportunity to highlight few more Pakistani sites with similar issue:

**WARNING**: I highly recommend you not to visit the followings until you are confident that your AV will not fail! I, nor the original Author of this Blog Post or the owners of this site shall be held responsible for your losses of any or all kind. Please visit at your own discretion.


1. Karachi Port Trust:(http://www.kpt.gov.pk/)
Link to &quot;Port Tariff&quot; is actually infected.
Threat: JS/TrojanDownloader.Agent.NQB.gen trojan
For More info, google: &quot;Gumblar&quot; and &quot; Martuz&quot;

2. Mushko Electronic (http://www.mushko.com/)
A link within their site was infected with Trojan, I cant seem to find it again. Or maybe they&#039;ve fixed it already.

3. Pakistan Chemical Directory (www.pcdpk.com)
Main site is infected with Malware, Google gives warning and Firefox too!</description>
		<content:encoded><![CDATA[<p>Dear Mr. Ali Raza,</p>
<p>Many thanks for bringing this into Public knowledge.</p>
<p>I wish to take this opportunity to highlight few more Pakistani sites with similar issue:</p>
<p>**WARNING**: I highly recommend you not to visit the followings until you are confident that your AV will not fail! I, nor the original Author of this Blog Post or the owners of this site shall be held responsible for your losses of any or all kind. Please visit at your own discretion.</p>
<p>1. Karachi Port Trust:(http://www.kpt.gov.pk/)<br />
Link to &#8220;Port Tariff&#8221; is actually infected.<br />
Threat: JS/TrojanDownloader.Agent.NQB.gen trojan<br />
For More info, google: &#8220;Gumblar&#8221; and &#8221; Martuz&#8221;</p>
<p>2. Mushko Electronic (<a href="http://www.mushko.com/" rel="nofollow">http://www.mushko.com/</a>)<br />
A link within their site was infected with Trojan, I cant seem to find it again. Or maybe they&#8217;ve fixed it already.</p>
<p>3. Pakistan Chemical Directory (www.pcdpk.com)<br />
Main site is infected with Malware, Google gives warning and Firefox too!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hamayun Khan</title>
		<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/comment-page-1/#comment-21295</link>
		<dc:creator>Hamayun Khan</dc:creator>
		<pubDate>Wed, 24 Jun 2009 14:23:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.propakistani.com/?p=4985#comment-21295</guid>
		<description>Salam

Yaar amir bhai mere saath kaspersky internet security hai.....Din me 3 dafa update karta hun....kia phr bi muje malware se khatra hai?
Plz aap humain bata dain aur aap ke khyal best internet security Ya antivirus kon sa hai?</description>
		<content:encoded><![CDATA[<p>Salam</p>
<p>Yaar amir bhai mere saath kaspersky internet security hai&#8230;..Din me 3 dafa update karta hun&#8230;.kia phr bi muje malware se khatra hai?<br />
Plz aap humain bata dain aur aap ke khyal best internet security Ya antivirus kon sa hai?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mudassar Ijaz</title>
		<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/comment-page-1/#comment-21294</link>
		<dc:creator>Mudassar Ijaz</dc:creator>
		<pubDate>Wed, 24 Jun 2009 13:40:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.propakistani.com/?p=4985#comment-21294</guid>
		<description>hi

and can we have a nice article on steps and measures to avoid these attacks and also steps and measures to get rid of it once it has attacked the site, plz?

Regards</description>
		<content:encoded><![CDATA[<p>hi</p>
<p>and can we have a nice article on steps and measures to avoid these attacks and also steps and measures to get rid of it once it has attacked the site, plz?</p>
<p>Regards</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: miraclesoul</title>
		<link>http://propakistani.pk/2009/06/24/how-malicious-code-damage-a-website-and-its-visitors/comment-page-1/#comment-21293</link>
		<dc:creator>miraclesoul</dc:creator>
		<pubDate>Wed, 24 Jun 2009 08:40:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.propakistani.com/?p=4985#comment-21293</guid>
		<description>True...

Security still hasnt been recognized an an essential part in most of our IT Sectors.

The weaknesses pointed out are to be seriously taken as it may further lead to critical damage.

i agree with the author!</description>
		<content:encoded><![CDATA[<p>True&#8230;</p>
<p>Security still hasnt been recognized an an essential part in most of our IT Sectors.</p>
<p>The weaknesses pointed out are to be seriously taken as it may further lead to critical damage.</p>
<p>i agree with the author!</p>
]]></content:encoded>
	</item>
</channel>
</rss>
