• FluTrackers.com Inc. does not provide medical advice. Information on this web site is collected from various internet resources, and the FluTrackers board of directors makes no warranty to the safety, efficacy, correctness or completeness of the information posted on this site by any author or poster. The information collated here is for instructional and/or discussion purposes only and is NOT intended to diagnose or treat any disease, illness, or other medical condition. Every individual reader or poster should seek advice from their personal physician/healthcare practitioner before considering or using any interventions that are discussed on this website. By continuing to access this website you agree to consult your personal physican before using any interventions posted on this website, and you agree to hold harmless FluTrackers.com Inc., the board of directors, the members, and all authors and posters for any effects from use of any medication, supplement, vitamin or other substance, device, intervention, etc. mentioned in posts on this website, or other internet venues referenced in posts on this website.
  • We are not asking for any donations. Do not donate to any entity who says they are raising funds for us.

Continuing Attempts to Thwart FluTrackers

Re: Continuing Attempts to Thwart FluTrackers

I feel that it's all because of these advertisements which you see on webpages.
They added tools so to automatically execute scripts or foreign
programs so to display more flashing and moving advertisements
and more tricks.
Do we really need this ? I want to control my computer,
I don't want to execute other's programs.
Why is that needed ?
Aren't there secure browsers and operating systems where this
won't happen
 
Re: Continuing Attempts to Thwart FluTrackers

the site i posted above has lots of information on this subject they also have people from some of the top software/cyber sercurity people working to address these many issues. they also track on a daily basis major attacks over the internet.

they also have a link to an online univerisity which i have been trying to get my son to enroll into for over two years now. its managed by employees from the top 36 companys working in this field.

I have found two sites sofar with online course neither are the one im looking for.but i will keep diggingfor it.what i found sofar is mainly for maleware/virius.

they have known for years who are behind these types of attacks and track them realtime.


I had to go out to work for a bit, this thread gives some insite as to what your really up against.

http://forums.spybot.info/showthread.php?t=54868

FYI...

Waledac decapitated...
- http://www.theregister.co.uk/2010/02...edac_takedown/
25 February 2010 - "Microsoft has won a court-issued take-down order against scores of domains associated with controlling the spam-spewing Waledac botnet. The software giant's order allows the temporary cut-off of traffic to -277- Internet domains that form command and control nodes for the network of compromised machines. Infected (zombie) machines are programmed to regularly poll these control points for instructions and spam templates. The .com domains, registered in China, will be sin-binned by VeriSign, at least temporarily decapitating the network..."

Waledac Tracker Summary Data
- http://www.sudosecure.net/waledac/index.php

- http://microsoftontheissues.com/cs/b...n-botnets.aspx
24 February 2010

- http://www.shadowserver.org/wiki/pmw...endar/20100324
24 March 2010 - "... while Waledac was not the *worst* or "spammiest" botnet out there, this effort was not in vain. Success is not measured in the percentage of spam reduced over a weeks time. Success in this arena is in the advancement of the 'arsenal' and in breaking new ground in the analysis and disruption of 'notorious' botnets, no matter how they're defined "


__________________
AplusWebMaster
~ Are you up to date or vulnerable to Hackers? ...or both?
Security is only as good as the weakest link.
~ ISC ~

--------------------------------------------------------------------------------
Last edited by AplusWebMaster; 2010-03-25 at 03:31.

I just had this update done yesterday, along with java its really important to have java up to date.

FYI...

Microsoft Security Bulletin MS10-018 - Critical
Cumulative Security Update for Internet Explorer (980182)
- http://www.microsoft.com/technet/sec.../ms10-018.mspx
March 30, 2010
- "This security update resolves nine privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer. The most severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer... The security update addresses these vulnerabilities by modifying the way that Internet Explorer verifies the origin of scripts and handles objects in memory, content using encoding strings, and long URL... This security update also addresses the vulnerability first described in Microsoft Security Advisory 981374..."
Maximum Severity Rating: Critical
Vulnerability Impact: Remote Code Execution
Restart Requirement: Requires restart
Affected Software: Microsoft Windows, Internet Explorer
* http://support.microsoft.com/kb/980182

Aggregate severity on Internet Explorer 6, 7, and 8
Graphic: http://blogs.technet.com/photos/msrc.../original.aspx

- http://isc.sans.org/diary.html?storyid=8533
Last Updated: 2010-03-30 17:19:30 UTC
Uninitialized Memory Corruption Vulnerability - CVE-2010-0267
Post Encoding Information Disclosure Vulnerability - CVE-2010-0488
Race Condition Memory Corruption Vulnerability - CVE-2010-0489
Uninitialized Memory Corruption Vulnerability - CVE-2010-0490
HTML Object Memory Corruption Vulnerability - CVE-2010-0491
HTML Object Memory Corruption Vulnerability - CVE-2010-0492
HTML Element Cross-Domain Vulnerability - CVE-2010-0494
Memory Corruption Vulnerability - CVE-2010-0805
Uninitialized Memory Corruption Vulnerability - CVE-2010-0806
HTML Rendering Memory Corruption Vulnerability - CVE-2010-0807

- http://secunia.com/advisories/38860
Last Update: 2010-03-30
Criticality level: Extremely critical
Impact: Exposure of sensitive information, System access
Where: From remote
Software: MS IE 5.01, 6.x, 7.x, 8.x
Solution: Apply patches.
Advisory: MS10-018 (KB980182):
http://www.microsoft.com/technet/sec.../ms10-018.mspx

Active Exploitation of CVE-2010-0806
- http://blogs.technet.com/blogfiles/m...4A/image_2.png
March 10-28, 2010


__________________
AplusWebMaster
~ Are you up to date or vulnerable to Hackers? ...or both?
Security is only as good as the weakest link.
~ ISC ~

--------------------------------------------------------------------------------
Last edited by AplusWebMaster; Today at 11:17.
 
Re: Continuing Attempts to Thwart FluTrackers

can't find it.
what's the name of the university ?
(so I can find it with search engine)
 
Re: Continuing Attempts to Thwart FluTrackers

We must be under attack again. I can't open forums and am having a difficult time sending this post.
 
Re: Continuing Attempts to Thwart FluTrackers

There is a big difference in the person who is trying to take down FT and the rest of us....(yes, I am a part of "us") :) While we all do what we can for our families, communities and for anyone who finds wisdom in the many posts added each day from around the world, the hacker's only job is to try to stop the good works of the people here trying to help. And if you can keep us down for an hour you have done nothing, for we will be back. The dedication to keeping people informed is bigger than the hate or boredom that moves the hackers. Keep up the good work FluTrackers. We depend on you!! :applause:
 
Re: Continuing Attempts to Thwart FluTrackers

Thanks Cindie.

I do not know if we are under attack now. I will have to call the server company. We have 4 processors on the server working 24/7. It takes a huge amount of requests to the server to overload it and take us down. We usually operate fine during one of these attacks. Last year we did not realize for months that someone had been initiating denial of service attacks.

Someone did try to get the password to the server again, earlier this morning, but they were stopped after only 5 attempts.

Evidently someone does not want us to succeed.

We are more than this site. We are a movement. Information power in the hands of the people.

http://www.youtube.com/watch?v=Imb4tYOk8GE

We will activate one of our other websites and continue on if we are taken offline.

We are starting our own podcasts this week. We have you tube accounts, and blog radio accounts.

So unless we lose all electricity in the world.

We will be online, somewhere, disseminating information.

Thanks to everyone!


:)
 
Re: Continuing Attempts to Thwart FluTrackers

Apparently someone has hacked into the World Health Organization's Twitter account and is putting ads there.

Not so funny since this account is used to alert the world to serious disease issues.

This account has 47,718 followers and is listed by 2,091 groups.


http://twitter.com/whonews

:(
 
Re: Continuing Attempts to Thwart FluTrackers

I emailed WHO and they thank FluTrackers for alerting them to the situation and they are working to resolve it.
 
Re: Continuing Attempts to Thwart FluTrackers

I did a Twitter search on the username that the bogus WHO tweets are attributed to and see someone warning yesterday not to click on links in those WHO tweets. And it looks like it is happening to other accounts from some other confusion I saw.
 
Re: Continuing Attempts to Thwart FluTrackers

I did a Twitter search on the username that the bogus WHO tweets are attributed to and see someone warning yesterday not to click on links in those WHO tweets. And it looks like it is happening to other accounts from some other confusion I saw.

As a matter of fact Effect Measure is off twitter because their account was hacked 2 weeks ago.

:(
 
Re: Continuing Attempts to Thwart FluTrackers

Looks like the WHO twitter account is shut down for now.

Congratulations to the hackers.

Cowards. Pirates of Information.

Too bad for those that depended on that account........

fyi -

We have changed our twitter account password again.

You might wear us down, but we have the resiliency that comes when speaking with the heart.


"First they ignore you, then they laugh at you, then they fight you, then you win." Mohandas Gandhi


Life is a Highway and we turn our backs to the wind.


Bring it on.
 
Re: Continuing Attempts to Thwart FluTrackers

China's links tonight are full of computer threats. My new anti-virus indicates 5 threats for Xinhua (news xihuanet) on all their links (Heuristic viruses), English People Daily 2 threats, Chinaglobal times 2...

It might be a good idea to review your anti-virus and firewall software before attempt China sites.
 
Re: Continuing Attempts to Thwart FluTrackers

Thank you Pathfinder!

I will review mine tomorrow. I did not check China sites today.
 
Re: Continuing Attempts to Thwart FluTrackers

Norton Rating
<TABLE cellSpacing=0 cellPadding=0><TBODY><TR><TD vAlign=top><!--
large-red.png
-->WARNING





</TD><TD vAlign=top>xinhuanet.com
Summary
<TABLE cellSpacing=2 cellPadding=0 width=225><TBODY><TR><TD noWrap>?Computer Threats:</TD><TD>


</TD><TD align=right>5</TD></TR><TR><TD noWrap>?Identity Threats:</TD><TD>


</TD><TD align=right>0</TD></TR><TR><TD noWrap>?Annoyance factors:


</TD><TD>


</TD><TD align=right>0 </TD></TR><TR><TD></TD><TD>


</TD><TD align=right></TD></TR><TR><TD noWrap>Total threats on this site:</TD><TD>


</TD><TD align=right>5</TD></TR><TR><TD></TD><TD>


</TD><TD></TD></TR><TR><TD noWrap>?Community Reviews:


</TD><TD>


</TD><TD align=right>32 </TD></TR></TBODY></TABLE>

The Norton rating is a result of Symantec's automated analysis system. Learn more.
The opinions of our users are reflected separately in the community rating on the right



</TD></TR></TBODY></TABLE>

General Info
Web Site Location
cn.gif
China


Norton Safe Web has analyzed xinhuanet.com for safety and security problems. Below is a sample of the threats that were found.


Threat Report

Total threats found: 5

<TABLE class=shoppingDetail cellSpacing=0 cellPadding=0><TBODY><TR><TD class=detailRating vAlign=top>
small-whitebg-red.png
</TD><TD class=detailReport>Heuristic Viruses <SMALL>(what's this?)</SMALL>
Threats found: 5


/.../

http://safeweb.norton.com/report/sh...english2010/indepth/2010-04/26/c_13267212.htm



</TD></TR></TBODY></TABLE>
 
Re: Continuing Attempts to Thwart FluTrackers

Another unsafe link here:

General Info
Web Site Location
cn.gif
China


Norton Safe Web has analyzed dl.gov.cn for safety and security problems. Below is a sample of the threats that were found.


Threat Report

Total threats found: 64

<TABLE class=shoppingDetail cellSpacing=0 cellPadding=0><TBODY><TR><TD class=detailRating vAlign=top>
small-whitebg-red.png
</TD><TD class=detailReport>Viruses <SMALL>(what's this?) </SMALL>Threats found: 64

</TD></TR></TBODY></TABLE>

http://safeweb.norton.com/report/show?url=http://english.dl.gov.cn/info/157282_604363.htm
 
Re: Continuing Attempts to Thwart FluTrackers

http://csis.org/programs/transnatio...reats-project-past-task-forces/cyber-threats-

Apr 27, 2010

Cyber Threats of the Future

"Task Force Chair: Arnaud de Borchgrave, Frank Cilluffo
Task Force Coordinator: Sharon L. Cardash

The Center for Strategic and International Studies (CSIS) ...
...
Cyber Threats and Information Security: Meeting the 21st Century Challenge ...
Yet security measures against cyber threats are insufficient throughout both government and the private sector.
... encourage the private sector to better protect its own systems.
..."
 
Re: Continuing Attempts to Thwart FluTrackers

Failed attempts to hack into the control panel of our server continue every single day. The server company and we monitor the situation and have installed a series of safe guards.

Very disappointing.


:(
 
Re: Continuing Attempts to Thwart FluTrackers

It might be a good idea to disable the ftp entry to the machine, or allow only a specified host. If you have shell access, this is possible by tcpwrappers in hosts.allow / hosts.deny.
 
Re: Continuing Attempts to Thwart FluTrackers

This is what my email looked like this morning when I opened it after a weekend off. I have redacted the few other emails I received:

<table id="msgListTable" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr class="msgrow" id="tr1450" style="font-weight: bold;"><td title="cpanel@server.flutrackers.com">cpanel@server.flutrackers.com
</td> <td> <table id="subTab1450" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 202.75.215.66
</td> </tr> </tbody></table> </td> <td>Jun 28</td> <td>1 KB</td> </tr> <tr class="msgrow" id="tr1449" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1448" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="Michel Maheu <achak@sympatico.ca>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1447" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="Michel Maheu <achak@sympatico.ca>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1446" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="Michel Maheu <achak@sympatico.ca>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1445" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1445" id="1445" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com"> cpanel@server.flutrackers.com
</td> <td> <table id="subTab1445" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 202.75.215.66
</td> </tr> </tbody></table> </td> <td>Jun 27</td> <td>1 KB</td> </tr> <tr class="msgrow" id="tr1444" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="Michel Maheu <achak@sympatico.ca>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1443" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="Michel Maheu <achak@sympatico.ca>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1442" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="Michel Maheu <achak@sympatico.ca>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1441" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1440" style="font-weight: bold;"><td class="msgListChxBx">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="Sally <annez@paradise.net.nz>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1439" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1439" id="1439" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com">
</td> <td> <table id="subTab1439" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td>
</td> </tr> </tbody></table> </td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1438" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1438" id="1438" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com"> cpanel@server.flutrackers.com
</td> <td> <table id="subTab1438" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 123.146.205.187
</td> </tr> </tbody></table> </td> <td>Jun 26</td> <td>1 KB</td> </tr> <tr class="msgrow" id="tr1437" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1437" id="1437" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com"> cpanel@server.flutrackers.com
</td> <td> <table id="subTab1437" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 125.233.210.26
</td> </tr> </tbody></table> </td> <td>Jun 26</td> <td>1 KB</td> </tr> <tr class="msgrow" id="tr1436" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1436" id="1436" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com"> cpanel@server.flutrackers.com
</td> <td> <table id="subTab1436" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 116.1.115.46
</td> </tr> </tbody></table> </td> <td>Jun 26</td> <td>1 KB</td> </tr> <tr class="msgrow" id="tr1435" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1435" id="1435" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com"> cpanel@server.flutrackers.com
</td> <td> <table id="subTab1435" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 74.53.89.146
</td> </tr> </tbody></table> </td> <td>Jun 26</td> <td>1 KB</td> </tr> <tr class="msgrow" id="tr1434" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1434" id="1434" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1433" style="font-weight: normal;"><td class="msgListChxBx"><input name="m-1433" id="1433" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="JimStreet <jim.street@GeneWurx.com>">
</td> <td>
</td> <td>
</td> <td>
</td> </tr> <tr class="msgrow" id="tr1432" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1432" id="1432" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com"> cpanel@server.flutrackers.com
</td> <td> <table id="subTab1432" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 112.203.186.67
</td> </tr> </tbody></table> </td> <td>Jun 25</td> <td>1 KB</td> </tr> <tr class="msgrow" id="tr1431" style="font-weight: bold;"><td class="msgListChxBx"><input name="m-1431" id="1431" onclick="Toggle(this)" type="checkbox"></td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td class="msgListIcons">
</td> <td title="cpanel@server.flutrackers.com"> cpanel@server.flutrackers.com
</td> <td> <table id="subTab1431" class="msgLoopSubjectTable" style="font-weight: bold;" border="0" cellpadding="0" cellspacing="0" width="100%"> <tbody><tr> <td> Large Number of Failed Login Attempts from IP 218.164.7.51
</td> </tr> </tbody></table> </td> <td>Jun 25</td> <td>1 KB</td></tr></tbody></table>
 
Back
Top