My friends at ComputerWorld say that over 70,000 web servers have been infected with a SQL Injection attack. What this means is that a site using a Windows SQL database may have been infected with an attack script that infects a visitor’s computer.
This attack is not just on the archaic sites buried in the dust of the Internet. We are talking some pretty major sites. SANS Internet Storm Center reports that the viral script hosts can be searched for on Google.
One host is uc8010[dot]com. This Google search resulted in sites such as HGTV, netmagazines, virginia.gov, tnstate.edu, livingbeyondbreastcancer.org, cleveland.oh.us, ca.com and several thousand more even after 4 days.
But, there’s more: ucmal[dot]com is another script host spewing this crap. This search resulted in over 90,000 hits, including myspace and many Chinese language sites.
So, my friends, you may want to make sure you are blocking JavaScript from running freely on your browsers or do a search on any site you want to visit before going. Luckily, Truffuls is not a Windows site and a search of "uc8010.com/0.js truffuls" and "ucmal.com/0.js truffuls" resulted in no matches! 