<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Analysis of Gumblar Zombie URLs</title>
	<atom:link href="http://blog.unmaskparasites.com/2010/06/29/analysis-of-gumblar-zombie-urls/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.unmaskparasites.com/2010/06/29/analysis-of-gumblar-zombie-urls/</link>
	<description>Website insecurity by example</description>
	<lastBuildDate>Sun, 05 Feb 2012 10:06:25 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Denis</title>
		<link>http://blog.unmaskparasites.com/2010/06/29/analysis-of-gumblar-zombie-urls/comment-page-1/#comment-8200</link>
		<dc:creator>Denis</dc:creator>
		<pubDate>Sun, 04 Jul 2010 19:08:34 +0000</pubDate>
		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=650#comment-8200</guid>
		<description>Sounds like very ineffective way to infect websites ;-)

The most probable scenario is that programmer&#039;s computer was infected and you FTP credentials were stolen from his computer. 

Anyway, if you have to give FTP access to third-parties, try to provide them with the most restrictive permissions possible. And once the job is done, change the passwords right away.</description>
		<content:encoded><![CDATA[<p>Sounds like very ineffective way to infect websites ;-)</p>
<p>The most probable scenario is that programmer&#8217;s computer was infected and you FTP credentials were stolen from his computer. </p>
<p>Anyway, if you have to give FTP access to third-parties, try to provide them with the most restrictive permissions possible. And once the job is done, change the passwords right away.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jen</title>
		<link>http://blog.unmaskparasites.com/2010/06/29/analysis-of-gumblar-zombie-urls/comment-page-1/#comment-8195</link>
		<dc:creator>jen</dc:creator>
		<pubDate>Sun, 04 Jul 2010 13:49:22 +0000</pubDate>
		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=650#comment-8195</guid>
		<description>I think one way they are getting into websites is acting as programmers for hire via websites like freelancer.com.  They say they cannot do the work without your FTP details.  And there you go, you just paid someone to hack your site and put you out of business.  I hired a freelance programmer from the UK and right away my site had a grumblar.</description>
		<content:encoded><![CDATA[<p>I think one way they are getting into websites is acting as programmers for hire via websites like freelancer.com.  They say they cannot do the work without your FTP details.  And there you go, you just paid someone to hack your site and put you out of business.  I hired a freelance programmer from the UK and right away my site had a grumblar.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tweets that mention Analysis of Gumblar Zombie URLs &#124; Unmask Parasites. Blog. -- Topsy.com</title>
		<link>http://blog.unmaskparasites.com/2010/06/29/analysis-of-gumblar-zombie-urls/comment-page-1/#comment-8117</link>
		<dc:creator>Tweets that mention Analysis of Gumblar Zombie URLs &#124; Unmask Parasites. Blog. -- Topsy.com</dc:creator>
		<pubDate>Tue, 29 Jun 2010 17:09:23 +0000</pubDate>
		<guid isPermaLink="false">http://blog.unmaskparasites.com/?p=650#comment-8117</guid>
		<description>[...] This post was mentioned on Twitter by Rodrigo (Sp0oKeR) and Denis, Gumblar. Gumblar said: Blog: Analysis of Gumblar Zombie URLs &#124; Unmask Parasites. Blog. http://bit.ly/9Iz9qq [...]</description>
		<content:encoded><![CDATA[<p>[...] This post was mentioned on Twitter by Rodrigo (Sp0oKeR) and Denis, Gumblar. Gumblar said: Blog: Analysis of Gumblar Zombie URLs | Unmask Parasites. Blog. <a href="http://bit.ly/9Iz9qq" rel="nofollow">http://bit.ly/9Iz9qq</a> [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

