Tuesday, October 20, 2009

halal.upm.edu.my Hacked and Possibly Serving Malwares

Due to the vulnerability in the Joomla component(s) that has been used, halal.upm.edu.my has been compromised.

Somehow it is not hosting any malware, but most of the links are pointing to a .CN website and gonna return you malware as the reward for clicking it
  • Filename: crack.45155.exe
  • SHA256: d1aba4ba4afe3153985c9a5515d9f3d8c6220152a427972b3e78f6ab74aa8ae1
  • Anubis Task ID: 17ef11e831070b784e5fb135f75072c57
  • Virustotal Analysis ID: d1aba4ba4afe3153985c9a5515d9f3d8c6220152a427972b3e78f6ab74aa8ae1-1256053002
Ethically, for geng of Mamak Style, this incident should be informed to the following contact person(s):
  • azhar[+at+]upm{dot}edu{dot}my
  • mycert[+at+]cybersecurity{dot}my
Here are some screenshots:


The "anti-malware" page when you visit http://www.halal.upm.edu.my/index.php?option=crack&name=abc&net=1


The Google search query "site:halal.upm.edu.my crack" yields the the following results:


This website belongs to Institut Penyelidikan Produk Halal (Halal Product Research Institute), which is under Universiti Putra Malaysia, Malaysia's Leading Research University.

[The Mamak Style: HERE]

No comments:

Post a Comment