Blog

3.094 Hacked PLESK servers, more than 15.000 domains and this is just 3%

I wrote again about the infected PLESK systems, Brian Krebs wrote about the topic some time later in the year (http://krebsonsecurity.com/2012/07/plesk-0day-for-sale-as-thousands-of-sites-hacked/) but until now I didn’t see any post on the actual infected servers.
I took some time during the holidays to fix my http-plesk-backdoor.nse script and make a more wide search for infected and still compromised PLESK installations. The work is still in progress and the stats below are rough stats.
There are 256 A class networks , 0.0.0.0/8 …

Continue Reading →
0

Trend Micro hacked!!

Trend Micro, one of the largest antivirus companies in the world was hacked exposing their e-mail database, Inboxes, Sent items etc of millions of users who are using their cloud service!
 
The site was hacked by c0mrade earlier this week with the following message:
 

: c0mrade

: https://www.twitter.com/OfficialComrade

: #FreeTriCk, #FreeMLT, #FreePhantom, #FreeJosh, #FreeJoshua, #FreeAlert, #FreeDillon

Welcome,

Trendmicro & Sykes is a …

Continue Reading →
0

Hostgator.com hacked!!

Just a while ago, the report came out that hostgator.com was hacked by DigitalCorruption, name servers and database information leaked and reported on pastebin.com.
 

[ / S3LF D3STRUCT / BW0MP / SOLAR / 3PIC / ]=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= #[x] hostgator.com : – Site Exposure

############################################

say(“#FreeTriCk #FreeMLT #FreePhantom”);

say(“Knowledge is power!”);

say(“HostGator, are you ready for a little exposure? Yes? Why thank you.”);

############################################

=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=–=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=

Continue Reading →

0

www.ekke.gr, National Centre for Social research hacked and database leaked

The database of the users from www.ekke.gr National Centre for Social research with more than 5000 logins, is currently available at pastebin http://pastebin.com/wJw4j4nY and http://pastebin.com/Ew5Bh5ED sample follows below:
“1421″,”a_vou@otXXXXXXXXXXXXXXXXXXXXXΑ”,”ΜΚΟ”,”ΚΟΙΝΩΝΙΚΗ ΕΠΙΣΤΗΜΩΝ”
“1680″,”konbass@XXXXXXXXXXXXXXXXXXXXXkostas”,”pan. ioannina”,”panepistimiakos iatros”
“2628″,”v.venizeXXXXXXXXXXXXXXXXXXXXX Γαβρίλης”,”NULL”,”Ιστορικός – Συγγραφέας”
“2921″,”andronikXXXXXXXXXXXXXXXXXXXXXΝΙΚΑ ΑΝΔΡΟΝΙΚΗ”,”NULL”,”ΚΟΙΝΩΝΙΟΛΟΓΟΣ ΚΑΘΗΓΗΤΡΙΑ”
“3408″,”asavv@otXXXXXXXXXXXXXXXXXXXXXΙΟΣ”,”ΠΑΝΕΠΙΣΤΗΜΙΟ ΠΕΛΟΠΟΝΝΗΣΟΥ/ ΤΜΗΜΑ ΙΣΤΟΡΙΑΣ, ΑΡΧΑΙΟΛΟΓΙΑΣ & ΔΙΑΧΕΙΡΙΣΗΣ ΠΟΛΙΤΙΣΜΙΚΩΝ ΑΓΑΘΩΝ”,”ΚΑΘΗΓΗΤΗΣ ΜΕΣΑΙΩΝΙΚΗΣ & ΒΥΖΑΝΤΙΝΗΣ ΙΣΤΟΡΙΑΣ”
“1305″,”markat@sXXXXXXXXXXXXXXXXXXXXXou Katerina”,”Panepistimio Kritis”,”Lektoras”
“907″,”pvassil@lXXXXXXXXXXXXXXXXXXXXXΗΣ ΦΙΛΙΠΠΟΣ”,”NULL”,”ΛΕΚΤΟΡΑΣ ΠΑΝΕΠΙΣΤΗΜΙΟΥ ΑΘΗΝΩΝ”
“2423″,”podve@teXXXXXXXXXXXXXXXXXXXXX”,”NULL”,”Αρχιτέκτων-Μηχανικός”
“1036″,”ppantazoXXXXXXXXXXXXXXXXXXXXXΝΤΑΖΟΠΟΥΛΟΣ ΠΕΤΡΟΣ”,”NULL”,”ΔΙΚΗΓΟΡΟΣ”
“4229″,”wolfgangXXXXXXXXXXXXXXXXXXXXXolfgang Lippel”,”NULL”,”Debt Councillor”
“4832″,”marbal@wXXXXXXXXXXXXXXXXXXXXXΕΝΟΥ ΜΑΡΙΑ”,”Ε.Κ.Ψ.&Ψ.Υ. Ν.ΦΩΚΙΔΑΣ”,”ΨΥΧΙΑΤΡΙΚΗ ΝΟΣΗΛΕΥΤΡΙΑ”
“2374″,”panos501XXXXXXXXXXXXXXXXXXXXXπουλος Παναγιώτης”,”NULL”,”τραπεζικός υπάλληλος”
“3630″,”vanikoslXXXXXXXXXXXXXXXXXXXXXu vasiliki”,”NULL”,”psychologist”
“149″,”jmichelogXXXXXXXXXXXXXXXXXXXXXΚΗΣ ΓΙΑΝΝΗΣ”,”ΕΚΚΕ”,”ΕΛΕ Γ’”
“3049″,”jani.turXXXXXXXXXXXXXXXXXXXXXTurunen Jani”,”Stockholm …

Continue Reading →
0

National Bank of Greece phishing e-mail

A new phishing e-mail is on the run, claiming to be from nbg.gr (National Bank of Greece), requesting to click on a link in order to have credit and debit card changed and personal info updated.
Needless to say once again that you should never click on such links, there is no bank in the world that will request personal information through e-mail and not prompt you logging into your web banking account with your credentials and token (if available). …

Continue Reading →
0

HOAX mail mentioning that you will be assassined

A new hoax mail is on the run the last couple of days mentioning that you have been targeted for assassination.
Don’t go hiring police or private investigators, the message is originating from infected and compromised servers.
Below you can see a sample of this hoax mail.
 
 
From: bauer@izinet.ci [mailto:bauer@izinet.ci]
Sent: Monday, May 28, 2012 8:27 PM
To: bauer@izinet.ci
Subject: RE : INFORMATION
Importance: Low
 
RE : INFORMATION
YOU HAVE BEEN TARGETED FOR ASSASSINATION OVER A PAST …

Continue Reading →
0
Page 2 of 19 12345...»