republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Is this site infected?
Search Topic:
Uniqs:
11209
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
Windows Explorer bypasses router password »
« If You Dislike Microsoft's Windows Antipiracy Checks, Look O  
page: 1 · 2 · 3 · 4 ...6 · 7 · 8
AuthorAll Replies


koolman2
Premium
join:2002-10-01
Anchorage, AK
·GCI.net
·Clearwire Wireless


2 edits
 Is this site infected?

virus.txt 174 bytes  
My uncle got a political flyer the other day, and when he visited their website, AVG caught some form of malware. I want to know if it really is infected and not a false positive, so that we can contact them and let them know. The link is contained inside the text file attached to this post, and a screencap of the virus detected message is above as well. It pops up with both IE and Firefox, and IE requests ActiveX scripts to run, which I denied, of course.

Thanks a bunch.
--
huh?


Cudni
La Merma - Vigilado
Premium,MVM
join:2003-12-20
Someshire
looking at the view source i thinks it is for real and you should let them know

Cudni

Graycode

join:2006-04-17
·net2phone

reply to koolman2
Click for full size
The image shows some of the bad things that site is doing.


reckoner

join:2001-03-24
Fort Collins, CO

reply to koolman2


dadkins
Can you do Blu?
Premium,MVM
join:2003-09-26
Hercules, CA
·Comcast

reply to koolman2
LOL! POOR coding on that page! Opera chokes hard on it for 30 seconds and finally opens.

IE7 just gets stuck in a loop asking for ActiveX.
--
Think outside the Fox... Opera


Owlbet
Night Owl of the Arctic
Premium,MVM
join:2002-09-24
Palmer, AK
clubs:
·MTA Online

reply to koolman2

Norton Warning

ActiveX Warning
Norton went bonkers as well.


Greg_Z
Premium
join:2001-08-08
Springfield, IL
reply to koolman2
The site is hosted by wildwestwestdomains.com


Stem Bolt
Premium
join:2002-11-08
Cleveland, OH


1 edit
reply to koolman2
Dr. Web caught it also.
--
Dr.Web, BOCLEAN, Router/Firewall, Firefox, Acronis True Image


jp0469
JP

join:2000-12-13
Rochester, MA

reply to koolman2

Avast alert
Avast caught it too but only when opened in Internet Explorer. Nothing when opened in Firefox.


Doctor Four
My other vehicle is a TARDIS
Premium
join:2000-09-05
Dallas, TX
·AT&T U-Verse
·RoadRunner Cable
·AT&T Yahoo

reply to koolman2
Visited it using Mozilla 1.7.10. Nothing whatsoever from
Avast when the page was loaded, but scanning my cache came
up with the same warning about Gedza.A.

Since I don't have an ActiveX extension for Mozilla, it
can't be executed.
--
"The trouble with computers, of course, is that they are very sophisticated idiots." - Doctor Who (from Destiny Of The Daleks)


Owlbet
Night Owl of the Arctic
Premium,MVM
join:2002-09-24
Palmer, AK
clubs:
·MTA Online


1 edit
reply to koolman2
I just got off the phone with Fran Gianoutsos and she was shocked (to say the least) that their site is throwing up these warnings. She said she would get in touch with her webmaster.

Elections and candidates are public information. I found their contact information here:

»www.gov.state.ak.us/ltgov/electi···d06g.php


Stem Bolt
Premium
join:2002-11-08
Cleveland, OH

3 edits
reply to koolman2
Looks like they took down the website.
--
Dr.Web, BOCLEAN, Router/Firewall, Firefox, Acronis True Image


NetFixer
Freedom is NOT Free
Premium
join:2004-06-24
Murfreesboro, TN
·Cingular Wireless
·AT&T CallVantage
·AT&T Southeast
·Vonage

reply to koolman2
F-Prot does not like the site either.



eyespy

join:2002-12-09
Canada

reply to Stem Bolt
As of 6:55 PM East, Oct21/06, it's still infectious!!

Regards,
bill


Greg_Z
Premium
join:2001-08-08
Springfield, IL
·Comcast

reply to Stem Bolt
said by Stem Bolt See Profile :

Looks like they took down the website.
Nope, still up. I guess the admins over @ WildWestdomains.com do not know how to kill a server. Most likely there is more then one site infected over there.
--
I threw out the map a long time ago. Now I follow my own direction!


anony101

@bellsouth.net
reply to koolman2
Bitdefender found 16 infections. All .htm files.

Kaspersky finds nothing. Can anyone confirm this?


Vampirefo
Premium,MVM
join:2000-12-11
Huntington, WV
·Comcast

reply to Graycode
Click for full size
Scroll on down.

eyespy

join:2002-12-09
Canada
reply to eyespy
Still infectious as of 7 PM Eastern!

Regards,
bill


Vampirefo
Premium,MVM
join:2000-12-11
Huntington, WV
·Comcast

reply to anony101
Click for full size
Hell even Clam detects it, don't know whats up with KAV.
--
Best RegardsVampirefo


Stem Bolt
Premium
join:2002-11-08
Cleveland, OH


3 edits
reply to koolman2
Funny, I can't open the website anymore in Firefox but I can still get the website in Internet Explorer multiple times. I was able to load the site 1 time in Firefox that's when Dr. Web detected it. I've shut down Firefox and restarted but still can't load the website.
------------
Edit: Dr. Web "locked" objects from this site while in Firefox. That's why I can't reload the website in Firefox.

--
Dr.Web, BOCLEAN, Router/Firewall, Firefox, Acronis True Image
Forums » Up and Running » Security » SecurityWindows Explorer bypasses router password »
« If You Dislike Microsoft's Windows Antipiracy Checks, Look O  
page: 1 · 2 · 3 · 4 ...6 · 7 · 8


Sunday, 05-Jul 09:38:44 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 9.5 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [146] Biden Unveils Broadband Stimulus
· [95] AT&T: 65,000 SMS Sent Per SECOND
· [91] Compuserve Classic Says Goodnight
· [83] Thomas To Appeal Huge RIAA Fines
· [78] Obama Using NSA, AT&T For New Snooping Project
· [78] Fourth Of July Open Thread
· [71] iPhone 3GS Already Jailbroken
· [67] Verizon: Cut Your Landline To Save Money
· [61] Cable Carriers Miss Tru2Way Deadline
· [60] The Pirate Bay Gets Sold
Most people now reading
· TekSavvy Down [TekSavvy]
· 6 firetrucks at 151 [TekSavvy]
· Symantec executive: dangerous to run free antivirus [Security]
· Best free email accounts? [General Questions]
· wasp problemb [Home Repair & Improvement]
· Maximizing Rogue DPS for 3.1 [World of Warcraft]
· [ Professions] Northrend Herbalism and Mining Tracks [World of Warcraft]
· Getting very tired of the run-around from tech support [Verizon Online DSL]
· 25/15 is 25/25?... [Verizon Fiber Optics]