<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Blocks the Annoying goooogleadsence.biz Iframe</title>
	<atom:link href="http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/feed" rel="self" type="application/rss+xml" />
	<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe</link>
	<description>where a truth just becomes a dream</description>
	<lastBuildDate>Mon, 21 May 2012 06:47:18 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: computer</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-4648</link>
		<dc:creator>computer</dc:creator>
		<pubDate>Wed, 24 Feb 2010 07:20:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-4648</guid>
		<description>themenya bagus mas sampe sya sedikit bingung diawal-awal:D
makasih pluginnya juga. ditunggu kreasi selanjutnya..</description>
		<content:encoded><![CDATA[<p>themenya bagus mas sampe sya sedikit bingung diawal-awal:D<br />
makasih pluginnya juga. ditunggu kreasi selanjutnya..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: agus</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3827</link>
		<dc:creator>agus</dc:creator>
		<pubDate>Fri, 28 Aug 2009 12:50:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3827</guid>
		<description>thanks for plugins</description>
		<content:encoded><![CDATA[<p>thanks for plugins</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ini dan itu</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3727</link>
		<dc:creator>ini dan itu</dc:creator>
		<pubDate>Sun, 09 Aug 2009 00:46:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3727</guid>
		<description>wah :) telat neh kita tau nya
kita sampe pindah hosting lho , gara gara iframe beginian
btw , comment nya kasih notify me dong biar tetep bisa folllow
thanks for the nice info &amp; tools</description>
		<content:encoded><![CDATA[<p>wah <img src='http://nazieb.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  telat neh kita tau nya<br />
kita sampe pindah hosting lho , gara gara iframe beginian<br />
btw , comment nya kasih notify me dong biar tetep bisa folllow<br />
thanks for the nice info &amp; tools</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rumahuang</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3615</link>
		<dc:creator>rumahuang</dc:creator>
		<pubDate>Sat, 25 Jul 2009 21:20:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3615</guid>
		<description>thank you for the information and waiting for a better version</description>
		<content:encoded><![CDATA[<p>thank you for the information and waiting for a better version</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rajesh</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3400</link>
		<dc:creator>Rajesh</dc:creator>
		<pubDate>Tue, 09 Jun 2009 10:46:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3400</guid>
		<description>It do not return if you have taken care to use FTP only from clean system. Before you use FTP, change your webhost and FTP passwords. To ensure that I use FTP again from clean system, I use live CD of linux and download FTP program and then do any upload download.

This virus attack happens only if you have used FTP from infected system. The webhost system admin sent me log of FTP activity from others uploading files to my host account. 

After I take this care, no infection is taking place.</description>
		<content:encoded><![CDATA[<p>It do not return if you have taken care to use FTP only from clean system. Before you use FTP, change your webhost and FTP passwords. To ensure that I use FTP again from clean system, I use live CD of linux and download FTP program and then do any upload download.</p>
<p>This virus attack happens only if you have used FTP from infected system. The webhost system admin sent me log of FTP activity from others uploading files to my host account. </p>
<p>After I take this care, no infection is taking place.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ka!Tok</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3221</link>
		<dc:creator>Ka!Tok</dc:creator>
		<pubDate>Mon, 04 May 2009 09:06:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3221</guid>
		<description>mas yang di wp theme direktori apakah sudah diupdate? ato aku masih perlu plugins yang sampeyan buat untuk mengatasi masalah?</description>
		<content:encoded><![CDATA[<p>mas yang di wp theme direktori apakah sudah diupdate? ato aku masih perlu plugins yang sampeyan buat untuk mengatasi masalah?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: targetseo</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3188</link>
		<dc:creator>targetseo</dc:creator>
		<pubDate>Sat, 25 Apr 2009 05:49:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3188</guid>
		<description>i have tried to remove but again that script was automatically generated, what should we do?</description>
		<content:encoded><![CDATA[<p>i have tried to remove but again that script was automatically generated, what should we do?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Akash Callikan</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3179</link>
		<dc:creator>Akash Callikan</dc:creator>
		<pubDate>Wed, 22 Apr 2009 11:04:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3179</guid>
		<description>I’ve had the same problem on my test server these last few weeks. Thankfully I have nightly backups. Anyway, after some research I thought it might be related to PHP’s register_globals setting. Turns out I was right. The damn setting was on.

Now that I’ve cleared it, attacks have stopped. So you all might wanna check if your host has left it on in php.ini. If you can’t edit your php.ini file, just add “php_flag register_globals off” at the top of your root .htaccess file.

Cheers :)

Akash</description>
		<content:encoded><![CDATA[<p>I’ve had the same problem on my test server these last few weeks. Thankfully I have nightly backups. Anyway, after some research I thought it might be related to PHP’s register_globals setting. Turns out I was right. The damn setting was on.</p>
<p>Now that I’ve cleared it, attacks have stopped. So you all might wanna check if your host has left it on in php.ini. If you can’t edit your php.ini file, just add “php_flag register_globals off” at the top of your root .htaccess file.</p>
<p>Cheers <img src='http://nazieb.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Akash</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Daniel</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3151</link>
		<dc:creator>Daniel</dc:creator>
		<pubDate>Mon, 06 Apr 2009 19:55:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3151</guid>
		<description>The method they spread the exploit isn&#039;t entirely your fault. The reality is that the server gets rooted, which establishes the exploit. Once someone has access to a server via root, they can scour the remainder of the hosting server and infect any site residing on that server. This is a massive hole with many hosting providers, Dreamhost seeming to be the only one that&#039;s been open about the problem and offering suggestions and solutions.

Once the exploit is placed, this has potential to propagate to client-side machines through any insecure browser (IE, Opera, and now Firefox from what we&#039;ve been seeing).

Chrome appears to be the only browser capable of mitigating the issue for client-side machines at this time, as it shuts the session down immediately upon detecting the malicious code.

The best article regarding this issue is here:
http://www.softpanorama.org/Malware/Malicious_web/malicious_iframe_attack.shtml

A good solution to consider, if you have access to your server (though the server itself needs to have the rootkits removed) is here:
http://www.gotroot.com/tiki-read_article.php?articleId=278

If you&#039;re on Windows hosting, or with a provider that&#039;s not willing to admit to their servers becoming compromised (regardless of how it happened) -- good luck trying to get any host to 1) own up and 2) take action.

So for now, regard filter as only a band-aid precaution to prevent other machines from becoming infected.</description>
		<content:encoded><![CDATA[<p>The method they spread the exploit isn&#8217;t entirely your fault. The reality is that the server gets rooted, which establishes the exploit. Once someone has access to a server via root, they can scour the remainder of the hosting server and infect any site residing on that server. This is a massive hole with many hosting providers, Dreamhost seeming to be the only one that&#8217;s been open about the problem and offering suggestions and solutions.</p>
<p>Once the exploit is placed, this has potential to propagate to client-side machines through any insecure browser (IE, Opera, and now Firefox from what we&#8217;ve been seeing).</p>
<p>Chrome appears to be the only browser capable of mitigating the issue for client-side machines at this time, as it shuts the session down immediately upon detecting the malicious code.</p>
<p>The best article regarding this issue is here:<br />
<a href="http://www.softpanorama.org/Malware/Malicious_web/malicious_iframe_attack.shtml" >http://www.softpanorama.org/Malware/Malicious_web/malicious_iframe_attack.shtml</a></p>
<p>A good solution to consider, if you have access to your server (though the server itself needs to have the rootkits removed) is here:<br />
<a href="http://www.gotroot.com/tiki-read_article.php?articleId=278" >http://www.gotroot.com/tiki-read_article.php?articleId=278</a></p>
<p>If you&#8217;re on Windows hosting, or with a provider that&#8217;s not willing to admit to their servers becoming compromised (regardless of how it happened) &#8212; good luck trying to get any host to 1) own up and 2) take action.</p>
<p>So for now, regard filter as only a band-aid precaution to prevent other machines from becoming infected.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mbelGedez™</title>
		<link>http://nazieb.com/466/blocks-the-annoying-goooogleadsencebiz-iframe/comment-page-1#comment-3148</link>
		<dc:creator>mbelGedez™</dc:creator>
		<pubDate>Mon, 06 Apr 2009 06:29:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.nazieb.com/?p=466#comment-3148</guid>
		<description>Woooogh,...
Nice post, Jib...

But I&#039;m still waiting for  &quot;Smile Like Facebook&quot; theme....</description>
		<content:encoded><![CDATA[<p>Woooogh,&#8230;<br />
Nice post, Jib&#8230;</p>
<p>But I&#8217;m still waiting for  &#8220;Smile Like Facebook&#8221; theme&#8230;.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

