<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Malaysia&#8217;s GSC website hacked with 2117966.net</title>
	<atom:link href="http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/</link>
	<description>Currently blogging tech and tips on computer security threats.</description>
	<pubDate>Mon, 08 Sep 2008 01:19:39 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>By: i&#8217;m saimatkong &#187; GSC Website Hacked?</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-124</link>
		<dc:creator>i&#8217;m saimatkong &#187; GSC Website Hacked?</dc:creator>
		<pubDate>Fri, 25 Jul 2008 12:51:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-124</guid>
		<description>[...] we found related code entries to load a javascript “fuckjp.js” from 2117966.net.   source : drsafemode.com   addthis_url = [...]</description>
		<content:encoded><![CDATA[<p>[...] we found related code entries to load a javascript “fuckjp.js” from 2117966.net.   source : drsafemode.com   addthis_url = [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: emmiscient</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-70</link>
		<dc:creator>emmiscient</dc:creator>
		<pubDate>Thu, 10 Apr 2008 10:51:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-70</guid>
		<description>thank god, i'm using a more secured operating system  .. =D</description>
		<content:encoded><![CDATA[<p>thank god, i&#8217;m using a more secured operating system  .. =D</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dr. Safemode</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-61</link>
		<dc:creator>Dr. Safemode</dc:creator>
		<pubDate>Wed, 02 Apr 2008 13:44:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-61</guid>
		<description>To check for suspicious files installed in your system in the last 30 days, you can use Deckard System Scanner(dss) which is downloadable at

http://www.geekstogo.com/forum/index.php?autocom=downloads&#038;showfile=19</description>
		<content:encoded><![CDATA[<p>To check for suspicious files installed in your system in the last 30 days, you can use Deckard System Scanner(dss) which is downloadable at</p>
<p><a href="http://www.geekstogo.com/forum/index.php?autocom=downloads&#038;showfile=19">http://www.geekstogo.com/forum/index.php?autocom=downloads&#038;showfile=19</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: winter@mmu</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-60</link>
		<dc:creator>winter@mmu</dc:creator>
		<pubDate>Wed, 02 Apr 2008 13:01:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-60</guid>
		<description>Thx Mr.SafeMode for alerting us :P Juz drop by after seeing ur post appear in Lowyat.net . 
Huhuhu, anything harm coming soon, pls do alert me ^^</description>
		<content:encoded><![CDATA[<p>Thx Mr.SafeMode for alerting us <img src='http://www.drsafemode.com/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /> Juz drop by after seeing ur post appear in Lowyat.net .<br />
Huhuhu, anything harm coming soon, pls do alert me ^^</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: GSC website compromised &#171; ~* ße HÆpy Æ&#124;way§ *~</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-56</link>
		<dc:creator>GSC website compromised &#171; ~* ße HÆpy Æ&#124;way§ *~</dc:creator>
		<pubDate>Tue, 01 Apr 2008 04:28:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-56</guid>
		<description>[...] tipped us off earlier today on a malicious piece of code present on the GSC online website. We did some checking ourselves on his story, and true enough, [...]</description>
		<content:encoded><![CDATA[<p>[...] tipped us off earlier today on a malicious piece of code present on the GSC online website. We did some checking ourselves on his story, and true enough, [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dr. Safemode</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-55</link>
		<dc:creator>Dr. Safemode</dc:creator>
		<pubDate>Mon, 31 Mar 2008 16:53:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-55</guid>
		<description>Because not all anti-virus is gonna be able to detect it.

I guess installing a firewall would help personal data from being stolen.

Firewall could track suspicious programs trying to send data over to the net.</description>
		<content:encoded><![CDATA[<p>Because not all anti-virus is gonna be able to detect it.</p>
<p>I guess installing a firewall would help personal data from being stolen.</p>
<p>Firewall could track suspicious programs trying to send data over to the net.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: GSC website hacked &#171; leejeok</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-54</link>
		<dc:creator>GSC website hacked &#171; leejeok</dc:creator>
		<pubDate>Mon, 31 Mar 2008 07:17:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-54</guid>
		<description>[...] Posted by leejeok on March 31, 2008  One of my colleague just saw this article and shared with me about this link &#8220;GSC website compromised by Lowyat.NET&#8221; and blog from Dr. Safemode [...]</description>
		<content:encoded><![CDATA[<p>[...] Posted by leejeok on March 31, 2008  One of my colleague just saw this article and shared with me about this link &#8220;GSC website compromised by Lowyat.NET&#8221; and blog from Dr. Safemode [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: BlogMalaysia.com</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-53</link>
		<dc:creator>BlogMalaysia.com</dc:creator>
		<pubDate>Mon, 31 Mar 2008 06:47:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-53</guid>
		<description>How to know if a computer is infected or not?</description>
		<content:encoded><![CDATA[<p>How to know if a computer is infected or not?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Blog of Kepongboy &#187; Blog Archive &#187; GSC Website Get Hacked</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-52</link>
		<dc:creator>Blog of Kepongboy &#187; Blog Archive &#187; GSC Website Get Hacked</dc:creator>
		<pubDate>Mon, 31 Mar 2008 04:37:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-52</guid>
		<description>[...] GSC网站被入侵。消息从manutdotcom的文章传来。  据说网站的主要页面被置入javascript代码，代码有能力通过ActiveX安装窃取密码的程式。 [...]</description>
		<content:encoded><![CDATA[<p>[...] GSC网站被入侵。消息从manutdotcom的文章传来。  据说网站的主要页面被置入javascript代码，代码有能力通过ActiveX安装窃取密码的程式。 [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: surfer</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-51</link>
		<dc:creator>surfer</dc:creator>
		<pubDate>Sun, 30 Mar 2008 17:07:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-51</guid>
		<description>good news that it has been removed. but damaged has been done. with the promotion of free tickets for gsc in alamanda, i bet many has visited the site and been infected. perhaps a method to check for infection &#38; ways to remove it would be helpful.</description>
		<content:encoded><![CDATA[<p>good news that it has been removed. but damaged has been done. with the promotion of free tickets for gsc in alamanda, i bet many has visited the site and been infected. perhaps a method to check for infection &amp; ways to remove it would be helpful.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: - Different</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-49</link>
		<dc:creator>- Different</dc:creator>
		<pubDate>Sun, 30 Mar 2008 15:45:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-49</guid>
		<description>[...]   Forumer manutdotcom tipped us off earlier today on a malicious piece of code present on the GSC online website. We did some checking ourselves on his story, and true enough, [...]</description>
		<content:encoded><![CDATA[<p>[...]   Forumer manutdotcom tipped us off earlier today on a malicious piece of code present on the GSC online website. We did some checking ourselves on his story, and true enough, [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dr. Safemode</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-46</link>
		<dc:creator>Dr. Safemode</dc:creator>
		<pubDate>Sun, 30 Mar 2008 15:21:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-46</guid>
		<description>The exploit has been removed from GSC. Yay!</description>
		<content:encoded><![CDATA[<p>The exploit has been removed from GSC. Yay!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dr. Safemode</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-45</link>
		<dc:creator>Dr. Safemode</dc:creator>
		<pubDate>Sun, 30 Mar 2008 15:16:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-45</guid>
		<description>Yea, GSC is a very popular website. Someone without a proper protection could get hurt. &gt;.&lt;

I'm currently using AVG version 8.0 which has a security toolbar installed on my web browser. It is based on the LinkScanner technology which was recently acquired by AVG.

Even though I have turn off the security toolbar plugin for Firefox because the plugin was not supported by Firefox 2.0.0.13, AVG managed to block the infected script with its Web Shield.</description>
		<content:encoded><![CDATA[<p>Yea, GSC is a very popular website. Someone without a proper protection could get hurt. >.<</p>
<p>I&#8217;m currently using AVG version 8.0 which has a security toolbar installed on my web browser. It is based on the LinkScanner technology which was recently acquired by AVG.</p>
<p>Even though I have turn off the security toolbar plugin for Firefox because the plugin was not supported by Firefox 2.0.0.13, AVG managed to block the infected script with its Web Shield.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Shafique</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-44</link>
		<dc:creator>Shafique</dc:creator>
		<pubDate>Sun, 30 Mar 2008 14:44:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-44</guid>
		<description>Hye There! Thanks a lot for the alert. I already alert all my friend. Ermm.. myspace also have been attack with the same method. all using iframe.</description>
		<content:encoded><![CDATA[<p>Hye There! Thanks a lot for the alert. I already alert all my friend. Ermm.. myspace also have been attack with the same method. all using iframe.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Throx</title>
		<link>http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-43</link>
		<dc:creator>Throx</dc:creator>
		<pubDate>Sun, 30 Mar 2008 14:25:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.drsafemode.com/2008/03/30/gsc-website-hacked-2117966net/#comment-43</guid>
		<description>Yeah, this is one nasty iFrame hack. My webhosting provider got whole server infected and causing big lost of customer.</description>
		<content:encoded><![CDATA[<p>Yeah, this is one nasty iFrame hack. My webhosting provider got whole server infected and causing big lost of customer.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
