Home
Site Tools
Help
Most recent posts
Memberlist
Advanced Search
My Bookmarks
Meet the Staff
Terms of Use
Support the Forum
GoogleSearch
Goodies
Calendar
Gallery
Link Library
Community Cookbook
More About Music
The Marketplace
Login
Register
Welcome,
Guest
. Please
login
or
register
.
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
Advanced search
882304
Posts in
58078
Topics- by
12983
Members
- Latest Member:
Stu B.
Jump to:
Please select a destination:
Home
-----------------------------
Town Hall
-----------------------------
=> Announcements
=> House Rules
=> Comments and Suggestions
=> Notices from TTF Members
-----------------------------
Teaching & Learning
-----------------------------
=> Beginners and Returning Trombonists
=> Practice Room
=> Pedagogy
=> Composition, Arranging and Theory
=> History of the Trombone
=> Schools, Colleges and Conservatories
-----------------------------
Creation and Performance
-----------------------------
=> Trombonists
===> Ask the Pros
=> Other Musicians and Ensembles
=> Music, Concerts and Recordings
=> Performance
=> The Business of Music
=> The Healthy Trombonist
=> Musical Miscellany
-----------------------------
Horns, Gear, and Equipment
-----------------------------
=> Instruments
=> Mouthpieces
=> Accessories
=> Repairs, Modifications and Maintenance
=> Technology
===> The Doctor's Tech Tips
-----------------------------
Practice Break
-----------------------------
=> Chit-Chat
===> Purely Politics
===> Puzzles and Games
=> Cool Web Sites
=> Food and Drink
=> Found on the 'Net
=> Polls
-----------------------------
Classified Advertisements
-----------------------------
=> Classified Advertisements
The Trombone Forum
Town Hall
Comments and Suggestions
(Moderators:
rlb
,
blast
,
BFW
) Classifieds server compromised
« previous
next »
Pages: [
1
]
2
All
Go Down
Author
Topic: Classifieds server compromised (Read 3979 times)
0 Members and 1 Guest are viewing this topic.
Todd Jonz
Department of Redundancy Department
Offline
Location: Vermont
Joined: Sep 14, 2003
Posts: 3444
"Do not taunt Happy Fun Ball."
Classifieds server compromised
«
on:
Sep 10, 2011, 02:36PM »
I'm replying here to
a thread in the Announcements forum
since only the staff can post replies in that forum. Information about the malware that has infected the physical server on which TTF runs can be found at:
>
http://www.securelist.com/en/descriptions/old188613
This malware has been detected on the the host named "classifieds.tromboneforum.org", which probably runs in a separate virtual server from the host named "tromboneforum.org", i.e. the Forum itself. Both of these virtual hosts run on the same physical server at the IP address 216.139.89.3, however, so depending on how Mr. Byrd has configured these hosts and what resources they share, it's entirely possible that the individual who planted this malware also has access to some of the software on which the Forum itself runs.
It's worth noting that this malware has been around since 2007, and patches have been available since soon after it was first detected. I'd hazard to guess this explains Mr. Byrd's recent announcement that he plans to upgrade the version of PHP that's running on the server. It's a shame he hasn't also decided to update the version of the SMF forum software on which TTF runs, which is a beta test version released in 2006 that was already out of date when TTF first went online and is known to exhibit quite a number of security vulnerabilities.
Chris asks:
> What does this virus do to your computer?
As the SecureList page referenced above explains, this malware installs a backdoor on the server that provides the perpetrator with full administrative access to the server (presumably this means the virtual server in the case of the TTF Classifieds.) It does not, in and of itself, do anything to users' systems; that depends on what kind of payload(s) the perpetrator chooses to deliver from the infected server.
> Does it affect Macs?
Again, this depends on the payload, although as is usually the case it's most likely that it will be used to deliver payloads that target Windows systems.
«
Last Edit: Sep 12, 2011, 05:40PM by rlb
»
Logged
What would the
Flying Spaghetti Monster
do?
JSBassTrb
Offline
Location: Orlando and Columbia SC
Joined: Apr 25, 2010
Posts: 1501
Re: TTF server compromised
«
Reply #1 on:
Sep 10, 2011, 02:40PM »
Can it get my credit card info and things like that?
Logged
arynearson
Offline
Location:
Joined: Mar 1, 2011
Posts: 79
Re: TTF server compromised
«
Reply #2 on:
Sep 10, 2011, 03:54PM »
Looking at the description, probably not, unless your credit card info is somehow stored on TTF Classifieds.
Logged
JSBassTrb
Offline
Location: Orlando and Columbia SC
Joined: Apr 25, 2010
Posts: 1501
Re: TTF server compromised
«
Reply #3 on:
Sep 10, 2011, 06:03PM »
Ok good thanks.
Logged
blast
Offline
Location: scotland
Joined: Jul 27, 2001
Posts: 5514
"Bass/Contrabass trombone, Scottish Opera."
Re: TTF server compromised
«
Reply #4 on:
Sep 10, 2011, 06:53PM »
Thanks Todd for that expert assessment. We have to hope that RLB is aware of the problem and can fix it.
Chris Stearn
Logged
Still cannot think of anything better to do. LB116,L,L8
rlb
Demiurge
Offline
Location: Inferno, level 7
Joined: Apr 16, 2000
Posts: 8031
"Hails of derisive laughter, Bruce!"
Re: TTF server compromised
«
Reply #5 on:
Sep 12, 2011, 05:39PM »
The poor, beleaguered classifieds area has needed a deeply profound upgrade for over 2 years. It would appear the time is now.
Logged
Dr. Richard L. Byrd, Forum Director
Every man, wherever he goes, is encompassed by a cloud of comforting convictions, which move with him like flies on a summer day.
--Bertrand Russell, 1950
rlb
Demiurge
Offline
Location: Inferno, level 7
Joined: Apr 16, 2000
Posts: 8031
"Hails of derisive laughter, Bruce!"
Re: Classifieds server compromised
«
Reply #6 on:
Sep 12, 2011, 05:44PM »
And FYI, "Mr. Byrd" has been hospitalized as many months as not in the last two years, with 8 major surgeries literally under my belt now, so I haven't had the time to execute the needed upgrades. Thanks for asking.
Logged
Dr. Richard L. Byrd, Forum Director
Every man, wherever he goes, is encompassed by a cloud of comforting convictions, which move with him like flies on a summer day.
--Bertrand Russell, 1950
Thomas Matta
Offline
Location: Chicago
Joined: Feb 12, 2005
Posts: 6393
Re: Classifieds server compromised
«
Reply #7 on:
Sep 12, 2011, 05:52PM »
Quote from: rlb on Sep 12, 2011, 05:44PM
And FYI, "Mr. Byrd" has been hospitalized as many months as not in the last two years, with 8 major surgeries literally under my belt now, so I haven't had the time to execute the needed upgrades. Thanks for asking.
Yikes - hope you are on the mend, sir!
Logged
Thomas Matta
Associate Professor of Jazz Studies, DePaul University
www.thomasmatta.com
sly fox
love old trombones' engravings
Offline
Location: here, there, anywhere but mostly Topeka KS
Joined: Oct 25, 2008
Posts: 15292
"trombone enthusiast, photos of trombones - gallery"
Re: Classifieds server compromised
«
Reply #8 on:
Sep 12, 2011, 05:54PM »
I join in the feeling and hopes you are getting better.
Logged
Allen
First and foremost I'm a proud Dad & lucky Husband. They say great minds can differ (not that I claim to have a great mind). Remember that $ and my opinion buys coffee at the diner.
bhcordova
Vorpal Sword Wielder
Offline
Location: Nacogdoches, TX, USA
Joined: May 19, 2000
Posts: 5580
"Carpe Felix"
Re: Classifieds server compromised
«
Reply #9 on:
Sep 12, 2011, 09:00PM »
Good to see you back on the forum! Hope things go better for you.
Logged
Billy Cordova, MBA
Forum Administrator
bcordova@tromboneforum.org
Beware the Jabberwock, my son! - Lewis Carroll
St. Cecilia, pray for us.
Euphanasia
Offline
Location: Moses Lake, WA
Joined: Jan 20, 2005
Posts: 4734
Re: Classifieds server compromised
«
Reply #10 on:
Sep 12, 2011, 09:38PM »
Good to hear from you Richard. I hope things start looking up soon!
For the rest of you, there's some pretty nasty code on the classifieds page. I have AVG and a good firewall and I still ended up locked out of my system restore and my internet connection. I had to reboot in safe mode and do system restore from there, and performance is still kind of glitchy.
Logged
dj kennedy
Offline
Location: chester illinois usa
Joined: Dec 18, 2000
Posts: 10863
R
«
Reply #11 on:
Sep 14, 2011, 10:31AM »
did they find anything in there ???????????????????
mXXXXXXXXXXXXXXXXXXnes ---
well it
with others at this time
the forum has continued to grow and is a wonderful resource
for all
==========
the classifieds
are minimal
============
the u
=============
XXXXXXXXXXXXXXXXXXXXew and old
many XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXmbone festival
where sliders can slide
===============
pbone !!!!!!!!!! yeah !!!!!!!
bach number 6 discovered at flea market
lotsa great trombone news EVERYDAY !!!!
-------
PLEASE GET WELL!!!!!!!!!!!!!!
Quote from: rlb on Sep 12, 2011, 05:44PM
And FYI, "Mr. Byrd" has been hospitalized as many months as not in the last two years, with 8 major surgeries literally under my belt now, so I haven't had the time to execute the needed upgrades. Thanks for asking.
«
Last Edit: Sep 16, 2011, 08:59AM by dj kennedy
»
Logged
XXXXooOOOOOXXXXXXXXX
LUCKY LUCKY LUCKY !!!!!!!!!!
RedHotMama
She Who Must Be Obeyed
Offline
Location: Luton, UK
Joined: Aug 23, 2000
Posts: 32259
"Forum Administrator"
Re: Classifieds server compromised
«
Reply #12 on:
Sep 22, 2011, 01:19AM »
It's been suggested before, but is there some reason why the Classifieds can't be added as just another section on the main board? As usual, those of us having no interest could "ignore" it. Adding sections to the board is quick and easy, but repairing and/or debugging the original Classifieds (which is a separate entity from TTF) may not be. In fact, we used to have an Advertisement Child Board which could swiftly be resurrected whilst work on the Classifieds takes place.
Hope you're feeling better, Richard.
Logged
Christine (red hot - that's what!)
christine.woodcock@gmail.com
In vodka veritas
Euphanasia
Offline
Location: Moses Lake, WA
Joined: Jan 20, 2005
Posts: 4734
Re: Classifieds server compromised
«
Reply #13 on:
Sep 22, 2011, 09:47AM »
Quote from: RedHotMama on Sep 22, 2011, 01:19AM
It's been suggested before, but is there some reason why the Classifieds can't be added as just another section on the main board?
Welcome back Christine!!
I think the problem with this suggestion is that some of us like to browse the classifieds occasionally, but most don't want the advertisements showing in our "unread posts" list. If I block the classifieds, I'd have to log out and log in again as a guest to browse them. If I don't, everything that comes up for sale ends up on my unread posts. I guess I could live with that, but it seems like the commercial aspect of the forum would overshadow the informative aspects.
Logged
BFW
Pun Gent
Offline
Location: Alabamor
Joined: Aug 25, 2002
Posts: 21978
"Paronomasiacs Homonymous"
Re: Classifieds server compromised
«
Reply #14 on:
Sep 22, 2011, 11:48AM »
Quote from: Euphanasia on Sep 22, 2011, 09:47AM
If I block the classifieds, I'd have to log out and log in again as a guest to browse them.
Or you could unblock the section for a while.
Logged
Brian
Our supreme responsibility is the moral obligation to be intelligent.
-- Oliver L. Reiser
Euphanasia
Offline
Location: Moses Lake, WA
Joined: Jan 20, 2005
Posts: 4734
Re: Classifieds server compromised
«
Reply #15 on:
Sep 22, 2011, 12:08PM »
Quote from: BFW on Sep 22, 2011, 11:48AM
Or you could unblock the section for a while.
True, but that's still far more complicated than just clicking on a pull-down and having it pop right up. I browsed classifieds around once a week in their previous incarnation. I doubt I'd browse them that often if the process to get into them became more complicated.
Logged
actikid
Offline
Location: Indianapolis
Joined: Dec 31, 2001
Posts: 10562
Re: Classifieds server compromised
«
Reply #16 on:
Sep 22, 2011, 01:30PM »
Quote from: RedHotMama on Sep 22, 2011, 01:19AM
We used to have an Advertisement Child Board
Are you sure that is legal?
Logged
Where was Blackwater on the morning of September 11, 2001?
RedHotMama
She Who Must Be Obeyed
Offline
Location: Luton, UK
Joined: Aug 23, 2000
Posts: 32259
"Forum Administrator"
Re: Classifieds server compromised
«
Reply #17 on:
Sep 22, 2011, 02:23PM »
I'm not suggesting this should be a permanent fixture, but it could certainly fill a gap whilst the Classifieds section is being fixed.
Logged
Christine (red hot - that's what!)
christine.woodcock@gmail.com
In vodka veritas
BGuttman
Mad Chemist
Offline
Location: Londonderry, NH, USA
Joined: Dec 13, 2000
Posts: 38263
"Almost Professional"
Re: Classifieds server compromised
«
Reply #18 on:
Sep 22, 2011, 04:21PM »
The way Richard talked when he suddenly reappeared, I thought the Classifieds was going to be one of the first things he fixed and that it would be back in business shortly. Thus I felt we should just hold off a little.
If we could get an estimate of whether fixing the Classifieds is going to be fast or not, we could decide if an advertising sub-board is a good idea. I'd hate to set one up and as soon as we open the doors to it the Classifieds are back. If it's going to be a while, an advertising sub-board is a good idea.
Logged
Bruce Guttman
Solo Trombone, Hollis Town Band
Section Ldr, Merrimack Valley Philharmonic Orch.
TromboneMonkey
Offline
Location: Los Angeles, CA
Joined: Aug 16, 2009
Posts: 1269
Re: Classifieds server compromised
«
Reply #19 on:
Sep 22, 2011, 04:31PM »
I tend to agree with Euph on this one; I feel as though I'd only rarely look at an Ads section, and that I would probably end up blocking it so as to avoid the recurring threads in my "unread posts" feed.
That said, I think it might be a good way to keep ads out of other threads, much in the same way that PP is a good way to keep politics out of other threads. And keeping ads out of other threads IS something that I'd really enjoy...
All of this, of course, constituting MY personal opinion; I will continue to enjoy the forum no matter what happens and I'm sincerely thankful to everyone who devotes time to keeping this wonderful and very helpful forum up-and-running.
Logged
-John
Pages: [
1
]
2
All
Go Up
« previous
next »
Jump to:
Please select a destination:
Home
-----------------------------
Town Hall
-----------------------------
=> Announcements
=> House Rules
=> Comments and Suggestions
=> Notices from TTF Members
-----------------------------
Teaching & Learning
-----------------------------
=> Beginners and Returning Trombonists
=> Practice Room
=> Pedagogy
=> Composition, Arranging and Theory
=> History of the Trombone
=> Schools, Colleges and Conservatories
-----------------------------
Creation and Performance
-----------------------------
=> Trombonists
===> Ask the Pros
=> Other Musicians and Ensembles
=> Music, Concerts and Recordings
=> Performance
=> The Business of Music
=> The Healthy Trombonist
=> Musical Miscellany
-----------------------------
Horns, Gear, and Equipment
-----------------------------
=> Instruments
=> Mouthpieces
=> Accessories
=> Repairs, Modifications and Maintenance
=> Technology
===> The Doctor's Tech Tips
-----------------------------
Practice Break
-----------------------------
=> Chit-Chat
===> Purely Politics
===> Puzzles and Games
=> Cool Web Sites
=> Food and Drink
=> Found on the 'Net
=> Polls
-----------------------------
Classified Advertisements
-----------------------------
=> Classified Advertisements