<?xml version="1.0" encoding="iso-8859-1"?>
<rss version="2.0" 
  xmlns:atom="http://www.w3.org/2005/Atom "
  xmlns:dc="http://purl.org/dc/elements/1.1/"
  xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
  xmlns:admin="http://webns.net/mvcb/"
  xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">

<channel>
<atom:link href="http://ravenphpscripts.com/backend.php" rel="self" type="application/rss+xml" /><title>Ravens PHP Scripts And Web Hosting</title>
<link>http://www.ravenphpscripts.com</link>
<description>Quality PHP Web Hosting and Scripts</description>
<dc:language>en-us</dc:language>
<dc:creator>raven@ravenphpscripts.com</dc:creator>
<ttl>60</ttl>

<image>
<title>Ravens PHP Scripts And Web Hosting</title>
<url>http://www.ravenphpscripts.com/images/powered/powerd_by_raven.gif</url>
<link>http://www.ravenphpscripts.com</link>
<width>94</width>
<height>15</height>
</image>

<dc:date>2009-07-03T15:46:26-04:00</dc:date>

<sy:updatePeriod>hourly</sy:updatePeriod>
<sy:updateFrequency>1</sy:updateFrequency>
<sy:updateBase>2009-07-03T15:46:26-04:00</sy:updateBase>

<item>
<title>Torrentreactor Website Compromised </title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3632</link>
<description><![CDATA[&#160;</font><p><strong>Threat Type: Malicious Web Site / Malicious Code </strong></p>
                    <p>
                        Websense Security Labs™ ThreatSeeker™ Network has detected that Torrentreactor, one of the oldest and most reliable torrent search engines on the Web, has been compromised and injected with malicious code. The site has been injected with an IFrame leading to a site laden with exploits. The exploits on the payload site include <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0003" target="_blank">Internet Explorer (MDAC)</a> and <a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2463" target="_blank">Microsoft Office Snapshot Viewer</a>, as well as Adobe Acrobat Reader and Adobe Shockwave.<br /><br />If the user's browser is successfully exploited, a malicious file is downloaded and run from the exploit site. The malicious file has an extremely <a href="http://www.virustotal.com/analisis/0df0d26cbb793ba612236b9750309b3e545fa5339e4da159062abfe6f326b2b7-1246425266" target="_blank">low AV detection rate</a>. The file (MD5: 24bd24f8673e3985fc82edb00b24ba73) is a Trojan Downloader and connects to a Bot C&#38;C server at IP <i>78.109.29.116</i>. After connecting to the IP, the file downloads a Rootkit installer from the same IP.</p><font>&#160;]]></description>
<guid isPermaLink="false">3632@http://www.ravenphpscripts.com</guid>
<dc:subject>Security: Websense</dc:subject>
<dc:date>2009-07-01T15:23:37-04:00</dc:date>
<dc:creator>Posted by Raven</dc:creator>
</item>

<item>
<title>Firefox 3.5 is Out - Download it Now!</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3631</link>
<description><![CDATA[It’s official: Firefox 3.5 has been released! Grab it from the <a href="http://www.mozilla.com/products/download.html?product=firefox-3.5&#38;os=win&#38;lang=en-US"><strong>Mozilla website</strong></a> before it becomes overloaded by eager Firefox aficionados! 
<br /><br />
Firefox 3.5 is the best performing browser Mozilla has ever released and delivers radically improved JavaScript performance, a new Private Browsing mode, native support for open video and audio, and Location Aware Browsing. The newest version of Firefox is more than two times faster than Firefox 3 and ten times faster than Firefox 2 on complex websites. With extensive under-the-hood work to support new technologies, Firefox 3.5 is the most powerful and complete modern browser and helps upgrade the Web experience.
<br /><br />
<a href="http://www.mozilla.com/en-US/press/mozilla-2009-06-30.html" target="_blank"><strong>Read the entire Press Release</strong></a>]]></description>
<guid isPermaLink="false">3631@http://www.ravenphpscripts.com</guid>
<dc:subject>FF</dc:subject>
<dc:date>2009-06-30T18:52:07-04:00</dc:date>
<dc:creator>Posted by Raven</dc:creator>
</item>

<item>
<title>NukePrizes(tm) now free</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3630</link>
<description><![CDATA[&#160;</font><div title="NukePrizes(tm) now free">From <a href="http://www.ravenphpscripts.com/userinfo-bobmarion.html"><strong>Bob Marion</strong></a>:
<p>As of 26-Jun-2009 <a href="http://www.nukescripts.net/modules.php?name=Downloads&#38;op=getit&#38;lid=1102"><strong>NukePrize(tm)</strong></a> has gone into public downloads. No fee is required anymore, use to your hearts content.</p></div><font>&#160;]]></description>
<guid isPermaLink="false">3630@http://www.ravenphpscripts.com</guid>
<dc:subject>Community</dc:subject>
<dc:date>2009-06-28T13:16:00-04:00</dc:date>
<dc:creator>Posted by Raven</dc:creator>
</item>

<item>
<title>Theme PMC-Crash For RavenNuke(tm) Released</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3629</link>
<description><![CDATA[<span title="Theme PMC-Crash For RavenNuke(tm) Released">I released PMC-Crash today. It is a dark theme with emphasis on high gloss graphics. Comes with a matching theme, matching download and web link graphics, custom graphics in the Your Account area and DHTML mouseover main buttons. This is a premium quality theme which members can download for free.<br />
<br />
As always you can:<br />
Preview it live <a href="http://www.papamikecreations.org">HERE</a><br />
Download it: <a href="http://www.papamikecreations.net">HERE</a></span>]]></description>
<guid isPermaLink="false">3629@http://www.ravenphpscripts.com</guid>
<dc:subject>RNThemes</dc:subject>
<dc:date>2009-06-28T00:41:52-04:00</dc:date>
<dc:creator>Posted by papamike</dc:creator>
</item>

<item>
<title>nukeWYSIWYG™ 2.6.4 released by nukeSEO.com</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3628</link>
<description><![CDATA[</i></font><div title="nukeWYSIWYG™ 2.6.4 released by nukeSEO.com">
<p>
nukeSEO.com released nukeWYSIWYG™ 2.6.4 featuring FCKeditor.  This update includes several important new and improved features:
</p>
<ul>
	<li class="content"><strong>File manager requires Nuke admin authentication (identified by S Electric)</strong></li>
	<li class="content"><strong>FCKeditor 2.6.4 with new web-based spell checker</strong></li>
	<li class="content"><strong>Browser-specific and compliance fixes</strong></li>
</ul>
<p>
Please note that the file manager has always validated uploads to prevent files that can be used to cause harm to a site (e.g. executable files like .js and .php, as well as scripts renamed to be images).
</p>
<p>
<strong>RavenNuke™ users</strong>: The admin authentication change is already implemented in RavenNuke™ 2.30.02 available on this site.  We are considering FCKeditor 2.6.4, <a href="http://ckeditor.com/"><strong>CKeditor</strong></a> and other editors for future releases of RavenNuke™</p></div><font><i>]]></description>
<guid isPermaLink="false">3628@http://www.ravenphpscripts.com</guid>
<dc:subject>Add-Ons</dc:subject>
<dc:date>2009-06-27T10:46:32-04:00</dc:date>
<dc:creator>Posted by kguske</dc:creator>
</item>

<item>
<title>Michael Jackson Death Prompts Malicious Spam</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3627</link>
<description><![CDATA[:: </font><div title="Michael Jackson Death Prompts Malicious Spam">
<p><strong><em>From</em></strong> <a href="http://securitylabs.websense.com/content/Alerts/3426.aspx"><strong><em>WebSense Security Labs</em></strong></a></p>
<p class="text1">Michael Jackson Death Prompts Malicious Spam </p>
                    <p class="text1">Date:06.26.2009 </p>
                    <p class="text1"> Threat Type: Malicious Web Site / Malicious Code </p>
                    <p class="text2">
                        Websense Security Labs(tm) ThreatSeeker(tm) Network has discovered spam emails offering recipients links to unpublished videos and pictures of singer Michael Jackson. According to <a href="http://edition.cnn.com/2009/SHOWBIZ/Music/06/25/michael.jackson/index.html">news reports</a> Michael Jackson's death was confirmed yesterday.
</p><p>The spam email appears to offer a link to a YouTube video, but instead sends the recipient to a Trojan Downloader hosted on a compromised Web site. The file offered is called <i>Michael.Jackson.videos.scr</i> (MD5: 664cb28ef710e35dc5b7539eb633abca). This file is located on a legitimate Web site hosted in Australia belonging to a radio broadcasting station. Upon executing the file, a legitimate Web site at http://musica.uol.com.br/ultnot/2009/06/25/michael-jackson.jhtm is opened by the default browser in order to distract the user by presenting a news article for them to read.</p>
<p>In the background, three further information-stealing components are downloaded and installed by the malware. One of the downloaded files is called <i>michael.gif</i>, which has low AV detection rates - see VT results <a href="http://www.virustotal.com/analisis/67cba7b9d91e1cbcac0f22b5f4bcf12f4b07a1a62d7d3018e28ccd5ee93e0ce4-1246012313">here</a>. The malware then installs a malicious BHO that is registered with this file <i>%windir%Dynamic.dll</i> and this GUID {FCADDC14-BD46-408A-9842-CDBE1C6D37EB}. Another component is bound to startup at <i>%windir%system32kproces.exe</i>. Another malicious file installed by the malware is <i>%windir%system32fotos.exe</i>.</p>Translation of the email is as follows:  </div><font> ::]]></description>
<guid isPermaLink="false">3627@http://www.ravenphpscripts.com</guid>
<dc:subject>Security: Websense</dc:subject>
<dc:date>2009-06-26T09:33:44-04:00</dc:date>
<dc:creator>Posted by Raven</dc:creator>
</item>

<item>
<title>RavenNuke(tm) v2.30.02 Security Fixpack has been released</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3626</link>
<description><![CDATA[A minor security Fixpack has been released.  Please read the forum post <a href="http://www.ravenphpscripts.com/postt17830.html"><strong>RavenNuke(tm) v2.30.02 Security Fixpack has been released</strong></a> for the details.
<br /><br />
<strong>Note that this upgrade is for RavenNuke(tm) v2.30.01 <u>only</u>.  If you are not using RavenNuke(tm) v2.30.01 then you need to FIRST upgrade to v2.30.01 and then apply this fix.</strong>
<br /><br />
The FULL release downloads for v2.30.02 (v2.30.01 with the Fixpack already applied) are also available for downloading.]]></description>
<guid isPermaLink="false">3626@http://www.ravenphpscripts.com</guid>
<dc:subject>RavenNuke</dc:subject>
<dc:date>2009-06-25T18:33:57-04:00</dc:date>
<dc:creator>Posted by Raven</dc:creator>
</item>

<item>
<title>Zen Cart Administration Security Bypass Vulnerability</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3625</link>
<description><![CDATA[<span title="Zen Cart Administration Security Bypass Vulnerability">
SECUNIA ADVISORY ID: SA35550
<br /><br />
VERIFY ADVISORY: http://secunia.com/advisories/35550/
<br /><br />
<span style="color:red;font-weight:bold">CRITICAL: Moderately Critical</span>
<br /><br />
DESCRIPTION: A vulnerability has been discovered in Zen Cart, which can be exploited by malicious people to bypass certain security restrictions. The vulnerability is confirmed in version 1.3.8a (full fileset 12112007). Other versions may also be affected.
<br /></span>]]></description>
<guid isPermaLink="false">3625@http://www.ravenphpscripts.com</guid>
<dc:subject>Security</dc:subject>
<dc:date>2009-06-24T20:20:50-04:00</dc:date>
<dc:creator>Posted by Raven</dc:creator>
</item>

<item>
<title>Shockwave Player Arbitrary Code Execution Vulnerability</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3624</link>
<description><![CDATA[<span title="Shockwave Player Arbitrary Code Execution Vulnerability">
SECUNIA ADVISORY ID: SA35544
<br /><br />
VERIFY ADVISORY: http://secunia.com/advisories/35544/
<br /><br />
<span style="color:red;background-color:yellow;font-weight:bold">CRITICAL: Highly Critical</span>
<br /><br />
DESCRIPTION: A vulnerability has been reported in Shockwave Player, which can be exploited by malicious people to compromise a user's system. The vulnerability is reported in versions prior to 11.5.0.600. The vulnerability is caused due to an unspecified error when processing Shockwave Player 10 content and can be exploited to execute arbitrary code.
<br /><br />
SOLUTION: Uninstall versions prior to 11.5.0.600, restart the system, and install version 11.5.0.600: http://get.adobe.com/shockwave/
<br /><br />
PROVIDED AND/OR DISCOVERED BY: The vendor credits Paul Kurczaba, reported via ZDI.
<br /><br />
ORIGINAL ADVISORY: http://www.adobe.com/support/security/bulletins/apsb09-08.html</span>]]></description>
<guid isPermaLink="false">3624@http://www.ravenphpscripts.com</guid>
<dc:subject>Security</dc:subject>
<dc:date>2009-06-24T20:12:51-04:00</dc:date>
<dc:creator>Posted by Raven</dc:creator>
</item>

<item>
<title>Phpnuke SEO packages Released</title>
<link>http://www.ravenphpscripts.com/modules.php?name=News&amp;file=article&amp;sid=3623</link>
<description><![CDATA[Outshine Solutions feels proud to announce that they have taken initiative to make php nuke CMS SEO friendly, launches SEO packages for php nuke users.
<br /><br />
Php Nuke is a content management system that lacks certain SEO features. These packages has been launched to make any php nuke based website more search engine friendly so that they can rank well in search engines.<br /><br />

Featres of php nuke SEO packages:
<br />]]></description>
<guid isPermaLink="false">3623@http://www.ravenphpscripts.com</guid>
<dc:subject>Announcements</dc:subject>
<dc:date>2009-06-24T14:09:25-04:00</dc:date>
<dc:creator>Posted by webmidas</dc:creator>
</item>

</channel>
</rss>
