<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: September/October Content Gone Forever</title>
	<atom:link href="http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/feed/" rel="self" type="application/rss+xml" />
	<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/</link>
	<description>Big Teeth. Huge Ass. Surprisingly Reasonable.</description>
	<lastBuildDate>Sun, 22 Nov 2009 17:39:23 -0800</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: unbegrenztes frei spiel</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-383312</link>
		<dc:creator>unbegrenztes frei spiel</dc:creator>
		<pubDate>Thu, 15 Nov 2007 14:25:32 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-383312</guid>
		<description>&lt;strong&gt;cash loan payday...&lt;/strong&gt;

Vor realisitisches kasino unbegrenztes frei spiel...</description>
		<content:encoded><![CDATA[<p><strong>cash loan payday&#8230;</strong></p>
<p>Vor realisitisches kasino unbegrenztes frei spiel&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jeremy</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382166</link>
		<dc:creator>Jeremy</dc:creator>
		<pubDate>Wed, 24 Oct 2007 02:00:08 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382166</guid>
		<description>Now that I think about it, they didn&#039;t hack Justin&#039;s computer, they hacked his blog&#039;s host site, so that company would have to contact the Internet Crime Complaint Center. 

The ICCC isn&#039;t likely to do anything about your blog being hacked but if it occurs repeatedly they might. I don&#039;t know, I&#039;m not a network guru but I did stay at a Holiday Inn last night.</description>
		<content:encoded><![CDATA[<p>Now that I think about it, they didn&#8217;t hack Justin&#8217;s computer, they hacked his blog&#8217;s host site, so that company would have to contact the Internet Crime Complaint Center. </p>
<p>The ICCC isn&#8217;t likely to do anything about your blog being hacked but if it occurs repeatedly they might. I don&#8217;t know, I&#8217;m not a network guru but I did stay at a Holiday Inn last night.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jeremy</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382160</link>
		<dc:creator>Jeremy</dc:creator>
		<pubDate>Tue, 23 Oct 2007 22:47:01 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382160</guid>
		<description>Justin, did you contact your ISP about this incident? I would, and I would also mention that this has happened before and you would like it documented. 

Concerning the possible viral activity going on at the site, it&#039;s probably not a good idea to openly discuss what viruses/trojans we are encountering, although, it is a little fact the fact now. The person that &quot;hacked&quot; their way into the site in undoubtedly listening and taking notes as to what worked and what didn&#039;t. They will glean any information that is discussed publicly and use that information for the next takeover. 

Jimmy, have you updated all of your AV and Maliciousware programs? If so, have you ran a thorough anti-virus scan/malware scan in safe mode? Sometimes viruses and trojans are memory resident and the only way to catch them in in safe mode. 

Perhaps it would be wiser to contact Justin via e-mail with any unusual behavior or security breaches, since that communication avenue is private so the &quot;haxors&quot; do not benefit from the pleasure of being LaM3Rs.</description>
		<content:encoded><![CDATA[<p>Justin, did you contact your ISP about this incident? I would, and I would also mention that this has happened before and you would like it documented. </p>
<p>Concerning the possible viral activity going on at the site, it&#8217;s probably not a good idea to openly discuss what viruses/trojans we are encountering, although, it is a little fact the fact now. The person that &#8220;hacked&#8221; their way into the site in undoubtedly listening and taking notes as to what worked and what didn&#8217;t. They will glean any information that is discussed publicly and use that information for the next takeover. </p>
<p>Jimmy, have you updated all of your AV and Maliciousware programs? If so, have you ran a thorough anti-virus scan/malware scan in safe mode? Sometimes viruses and trojans are memory resident and the only way to catch them in in safe mode. </p>
<p>Perhaps it would be wiser to contact Justin via e-mail with any unusual behavior or security breaches, since that communication avenue is private so the &#8220;haxors&#8221; do not benefit from the pleasure of being LaM3Rs.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: probligo</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382110</link>
		<dc:creator>probligo</dc:creator>
		<pubDate>Tue, 23 Oct 2007 17:16:01 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382110</guid>
		<description>FOr once I am on Jimmy&#039;s side.  I posted just before the last crash and again last night that Norton AV was picking up crap from this site.

And believe me I have all of the Windows updates,  AdAware,  AV in abundance.  That is why I get the warning and action from NAV.  

It seems to load,  at least I have noticed it most frequently, on the add comments page.</description>
		<content:encoded><![CDATA[<p>FOr once I am on Jimmy&#8217;s side.  I posted just before the last crash and again last night that Norton AV was picking up crap from this site.</p>
<p>And believe me I have all of the Windows updates,  AdAware,  AV in abundance.  That is why I get the warning and action from NAV.  </p>
<p>It seems to load,  at least I have noticed it most frequently, on the add comments page.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gerryf</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382084</link>
		<dc:creator>gerryf</dc:creator>
		<pubDate>Tue, 23 Oct 2007 12:50:54 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382084</guid>
		<description>probably mcafee

Justin, you may want to see if someone left a little something behind after the hack. â€œJS/Downloader-AUDâ€ is most often seen on websites where a php script attempts to download a trojan onto viewers computers. Since wordpress is php-based, whoever hacked your site might have dropped the download script into your public_html directory somewhere, which is attempting to infect unprotected machines.

Jimmy, you need to update your computer with the various windows updates. the script takes advantage of a known exploit that microsoft patched some time ago

Also, check for a file
C:\Sys{4 random alphabets}.exe in your root</description>
		<content:encoded><![CDATA[<p>probably mcafee</p>
<p>Justin, you may want to see if someone left a little something behind after the hack. â€œJS/Downloader-AUDâ€ is most often seen on websites where a php script attempts to download a trojan onto viewers computers. Since wordpress is php-based, whoever hacked your site might have dropped the download script into your public_html directory somewhere, which is attempting to infect unprotected machines.</p>
<p>Jimmy, you need to update your computer with the various windows updates. the script takes advantage of a known exploit that microsoft patched some time ago</p>
<p>Also, check for a file<br />
C:\Sys{4 random alphabets}.exe in your root</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jimmy the Dhimmi</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382083</link>
		<dc:creator>Jimmy the Dhimmi</dc:creator>
		<pubDate>Tue, 23 Oct 2007 12:49:31 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382083</guid>
		<description>I&#039;m getting it at my work computer too, but this time it says &quot;JS-PSYME.ANT&quot;  I have something called &quot;trend office scan&quot; there, and Macafee at home.  I think it has something to do with loading the images at the bottom of this page, because it keeps popping up as they are loading.</description>
		<content:encoded><![CDATA[<p>I&#8217;m getting it at my work computer too, but this time it says &#8220;JS-PSYME.ANT&#8221;  I have something called &#8220;trend office scan&#8221; there, and Macafee at home.  I think it has something to do with loading the images at the bottom of this page, because it keeps popping up as they are loading.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mw</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382080</link>
		<dc:creator>mw</dc:creator>
		<pubDate>Tue, 23 Oct 2007 04:53:00 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382080</guid>
		<description>Jimmy - what firewall are you using?</description>
		<content:encoded><![CDATA[<p>Jimmy &#8211; what firewall are you using?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joshua</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382079</link>
		<dc:creator>Joshua</dc:creator>
		<pubDate>Tue, 23 Oct 2007 03:25:45 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382079</guid>
		<description>In a strange way, this incident is kind of flattering. You know your blog&#039;s moving up in the &#039;sphere when someone figures they can get their proverbial 15 minutes of fame by hacking it.

I&#039;ve not visited/commented here lately as often as I used to (due to time constraints, not the blog quality) so I&#039;ve not noticed much of the loss. In any case though, hang in there - we still love ya. :)</description>
		<content:encoded><![CDATA[<p>In a strange way, this incident is kind of flattering. You know your blog&#8217;s moving up in the &#8217;sphere when someone figures they can get their proverbial 15 minutes of fame by hacking it.</p>
<p>I&#8217;ve not visited/commented here lately as often as I used to (due to time constraints, not the blog quality) so I&#8217;ve not noticed much of the loss. In any case though, hang in there &#8211; we still love ya. :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Britt Treece</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382078</link>
		<dc:creator>Britt Treece</dc:creator>
		<pubDate>Tue, 23 Oct 2007 02:55:20 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382078</guid>
		<description>Google Reader has all the posts from the time period which is missing.  I would think you could do an OPML export from GR and import the missing posts into WP.  Comments would still be missing, but it&#039;s better than nothing.</description>
		<content:encoded><![CDATA[<p>Google Reader has all the posts from the time period which is missing.  I would think you could do an OPML export from GR and import the missing posts into WP.  Comments would still be missing, but it&#8217;s better than nothing.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dyre42</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382077</link>
		<dc:creator>Dyre42</dc:creator>
		<pubDate>Tue, 23 Oct 2007 02:12:04 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382077</guid>
		<description>I&#039;m getting no such message either.</description>
		<content:encoded><![CDATA[<p>I&#8217;m getting no such message either.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Justin Gardner</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382076</link>
		<dc:creator>Justin Gardner</dc:creator>
		<pubDate>Tue, 23 Oct 2007 01:30:35 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382076</guid>
		<description>I&#039;m sorry Jimmy, but I&#039;m not recreating that either. There&#039;s no audio file, and I can&#039;t think of what JD is. If you continue to get it, tell me again and I&#039;ll post about it and see if anybody else is getting it.</description>
		<content:encoded><![CDATA[<p>I&#8217;m sorry Jimmy, but I&#8217;m not recreating that either. There&#8217;s no audio file, and I can&#8217;t think of what JD is. If you continue to get it, tell me again and I&#8217;ll post about it and see if anybody else is getting it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: sadcox</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382074</link>
		<dc:creator>sadcox</dc:creator>
		<pubDate>Mon, 22 Oct 2007 23:56:02 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382074</guid>
		<description>Too bad Justin...although I&#039;d read most of it already, but that sucks for you.  There was some good stuff there.  At least you learned the backup lesson fairly early though.  It&#039;s a tough one when it happens.</description>
		<content:encoded><![CDATA[<p>Too bad Justin&#8230;although I&#8217;d read most of it already, but that sucks for you.  There was some good stuff there.  At least you learned the backup lesson fairly early though.  It&#8217;s a tough one when it happens.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jeremy</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382071</link>
		<dc:creator>Jeremy</dc:creator>
		<pubDate>Mon, 22 Oct 2007 23:32:48 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382071</guid>
		<description>Jimmy, my system is fine--no firewall warnings. Justin, sorry that all your hard work got trashed. I don&#039;t really access the older content so it&#039;s no different for me. Thanks for sticking in there,</description>
		<content:encoded><![CDATA[<p>Jimmy, my system is fine&#8211;no firewall warnings. Justin, sorry that all your hard work got trashed. I don&#8217;t really access the older content so it&#8217;s no different for me. Thanks for sticking in there,</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jimmy the Dhimmi</title>
		<link>http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/comment-page-1/#comment-382070</link>
		<dc:creator>Jimmy the Dhimmi</dc:creator>
		<pubDate>Mon, 22 Oct 2007 22:17:50 +0000</pubDate>
		<guid isPermaLink="false">http://donklephant.com/2007/10/22/septemberoctober-content-gone-forever/#comment-382070</guid>
		<description>My firewall keeps popping up when I come here about some Trojan file being blocked.  Anyone else getting this problem? It says &quot;JS/Downloader-AUD&quot;</description>
		<content:encoded><![CDATA[<p>My firewall keeps popping up when I come here about some Trojan file being blocked.  Anyone else getting this problem? It says &#8220;JS/Downloader-AUD&#8221;</p>
]]></content:encoded>
	</item>
</channel>
</rss>
