Aaaand we're back

Discussion in 'Announcements' started by mike406, Jul 25, 2013.

  1. mike406

    mike406 Moderator
    Community Moderator Tech Staff Veteran

    Cutie Mark:
    Joined:
    Nov 23, 2011
    Messages:
    4,855
    Bro hoofs Received:
    5
    Location:
    EP's basement
    We had a bit of security situation. Some of you may have noticed a user with the name Rainbow Crasher posted a game he had made in the media section of the forums. This game was bundled with a Trojan Horse virus (thanks to a Java security exploit) that allowed the intruder to hijack and view the victim's PC via remote desktop connection as well as log keystrokes. It seems to me that this individual posted the game to get an admin account, and that's exactly what he did. Tyro's computer was compromised and his account was breached. I had to close the site down to prevent him from doing further damage. He will return as a full admin once he gets his computer issues fixed, which moves me on to my next point. If you clicked on the game you may be infected as well. My recommendations for you are to make sure your antivirus is updated, and as well keeping Java and other programs patched. I would even uninstall Java if you do not actually need it. If you'd like some additional security tools to help Malwarebytes is a good place to start. As always, even though we are a small community we are not immune to these type of people and threats. Never allow any strange program to run on your PC, even if it's claimed to be a pony game.

    As far as I know, no user data was stolen from our forums. It appears the extent of the attack was deleting all staff accounts and modifying admin accounts details. Relatively speaking, we are quite lucky that's all that happened. We also cannot rule out that he may be targeting anyone who has played his game (for general passwords, credit card info, etc).

    The site has been reverted to as it was on July 22nd. Any activity made after that period will be gone. If you made an important thread or post that you would like to recover Ghan can help you recover this. I'm typing this on 3 hours of sleep so if you have any questions on stuff I missed or was not clear on feel free to ask.
     
    #1 mike406, Jul 25, 2013
    Last edited: Jul 25, 2013
  2. Glorious Rex's Apostle

    Joined:
    Sep 25, 2012
    Messages:
    254
    Bro hoofs Received:
    0
    Occupation:
    Bye
    Location:
    Bye
    Oh god it's so funny it hurts.

    So this is how it happened.

    Christ people, virus scan that stuff. Seriously. So...was the game any good?
     
  3. Vincencius

    Vincencius New In Town
    Blank Flank

    Joined:
    May 16, 2013
    Messages:
    22
    Bro hoofs Received:
    0
    Occupation:
    Creative Writer
    Location:
    Wisconsin
    Thanks for the update Mike.
     
  4. mike406

    mike406 Moderator
    Community Moderator Tech Staff Veteran

    Cutie Mark:
    Joined:
    Nov 23, 2011
    Messages:
    4,855
    Bro hoofs Received:
    5
    Location:
    EP's basement
    Didn't play it but from what I heard it was quite bad. :p
     
  5. Vincencius

    Vincencius New In Town
    Blank Flank

    Joined:
    May 16, 2013
    Messages:
    22
    Bro hoofs Received:
    0
    Occupation:
    Creative Writer
    Location:
    Wisconsin
    So a bad game with a bad trojan horse... at least it wasn't trojan man.
     
  6. Glorious Rex's Apostle

    Joined:
    Sep 25, 2012
    Messages:
    254
    Bro hoofs Received:
    0
    Occupation:
    Bye
    Location:
    Bye
    How do I make this my signature? I mean, your entire post, lol.
     
  7. Tempest Wind

    Tempest Wind Princess of the Forum
    Veteran

    Joined:
    Aug 6, 2011
    Messages:
    4,283
    Bro hoofs Received:
    0
    As far as I remember, I never clicked that link. Coincidentally though, my computer has been acting weird for the past 2 days. I'm sure it's not related, but I keep seeing this when I open my files.

    [​IMG]

    Dunno why, but I can't see preview pictures at all. They open just fine though. I'm too stupid to know what this is.
     
  8. Echoax

    Echoax Greed Probably
    Wizard

    Cutie Mark:
    Joined:
    Jul 5, 2011
    Messages:
    20,506
    Bro hoofs Received:
    2
    Location:
    Kenithson
    I'm so glad that I'm one of those people that are just in general paranoid and assume this stuff will happen to me. I saw the thread and all but you know, I obviously didn't click it.

    Thanks for saving the site from the bad man Mike

    [​IMG]
     
  9. mike406

    mike406 Moderator
    Community Moderator Tech Staff Veteran

    Cutie Mark:
    Joined:
    Nov 23, 2011
    Messages:
    4,855
    Bro hoofs Received:
    5
    Location:
    EP's basement
    Hm that's quite strange. Could be something simple like a corrupt thumbnail cache, or something worse. Hard to tell...
     
  10. darkstar64

    darkstar64 Brony and Doomer

    Cutie Mark:
    Joined:
    Dec 9, 2012
    Messages:
    257
    Bro hoofs Received:
    0
    Location:
    Canada
    Damn, I almost played that game. I had it loading but had to do something else. Glad everything is back.
     
  11. Rarit E

    Rarit E *clank*clank*clank*clank*
    Deactivated Banned Blank Flank

    Joined:
    Sep 4, 2011
    Messages:
    0
    Bro hoofs Received:
    0
    If it was already loading you'd better do that virus check just to be safe.
     
  12. Crimson Lionheart

    Crimson Lionheart Professional Sh*tposter
    Veteran

    Cutie Mark:
    Joined:
    Oct 6, 2011
    Messages:
    8,572
    Bro hoofs Received:
    278
    Occupation:
    Looking for Work
    Location:
    South Australia
    And so the site was saved...

    But on a serious note, this virus would have caused serious damage. I feel Paranoid for some reason that another attack by the same person could happen. And with the accessibility of creating a new profile, he could strike the community here. I have heard about the game, but never understood about the virus attached about it until just then.

    Anyway, great job saving the site Mike. Kudos from me :)
     
  13. Rainbow Crasher

    Rainbow Crasher New In Town
    Banned

    Joined:
    Jul 25, 2013
    Messages:
    5
    Bro hoofs Received:
    0
    The trojan isn't java-based, uninstalling Java won't help. Also, it isn't detected my Malwarebytes. It is, however, detected by Avast. So use that.
     
  14. Narrow

    Narrow تمتص أنيمي

    Joined:
    Feb 3, 2013
    Messages:
    6,230
    Bro hoofs Received:
    4
    Occupation:
    yes
    Location:
    ctf_2fort
    Look below you.
     
  15. Rainbow Crasher

    Rainbow Crasher New In Town
    Banned

    Joined:
    Jul 25, 2013
    Messages:
    5
    Bro hoofs Received:
    0
    Haha, I saw that too.
     
  16. Saikyo

    Saikyo That One Dog
    Veteran

    Cutie Mark:
    Joined:
    Aug 12, 2011
    Messages:
    6,119
    Bro hoofs Received:
    40
    Gender:
    Female
    Occupation:
    Fighting Game Player
    Location:
    FurAffinity
  17. Narrow

    Narrow تمتص أنيمي

    Joined:
    Feb 3, 2013
    Messages:
    6,230
    Bro hoofs Received:
    4
    Occupation:
    yes
    Location:
    ctf_2fort
    "Chill dude"?

    I'm sorry, but didn't he just pass out a virus and hijack an admin's account? Or is that just me in my little imaginary world?
     
  18. Rainbow Crasher

    Rainbow Crasher New In Town
    Banned

    Joined:
    Jul 25, 2013
    Messages:
    5
    Bro hoofs Received:
    0
    Must've been a dream.
     
  19. Echoax

    Echoax Greed Probably
    Wizard

    Cutie Mark:
    Joined:
    Jul 5, 2011
    Messages:
    20,506
    Bro hoofs Received:
    2
    Location:
    Kenithson
    Taken from mike's first post

    That would seem to indicate that this is a shared imaginary world.
     
  20. Rainbow Crasher

    Rainbow Crasher New In Town
    Banned

    Joined:
    Jul 25, 2013
    Messages:
    5
    Bro hoofs Received:
    0
    I can't stop watching your avatar.
    I mean, wtf.
     

Share This Page