trojan/malware warning (merged threads)

Discussion in 'Website discussion' started by 92se-r, Jun 20, 2010.

  1. Rockinthecasbah

    Rockinthecasbah A.D.D. Unleased

    Joined:
    Jun 1, 2007
    Messages:
    7,036
    Likes Received:
    1
    Trophy Points:
    36
    Location:
    Lake Elsinore
    macafee, sucks, malware bytes picked up two trojans but im not sure if they will reappear since this particular bug seems to replicate itself under different randomly generated names constantly

    new update in the legit windows update, windows malicious software remover
     
  2. JoeTruth

    JoeTruth Active Member

    Joined:
    May 29, 2007
    Messages:
    4,084
    Likes Received:
    1
    Trophy Points:
    36
    Location:
    Sierra Madre, CA
    Case and Point about System Restore and worms working their way into them. The gift that keeps on giving...

    [​IMG]
     
  3. gooseaholic

    gooseaholic Active Member

    Joined:
    Oct 21, 2007
    Messages:
    8,901
    Likes Received:
    14
    Trophy Points:
    38
    Occupation:
    Auto inspection
    Location:
    Orange,ca Via Seattle, WA
    No problems here yet. I have kapersky, use the Ad block stuff as well. Also current on all the windows and Java updates.
     
  4. Fewinhibitions

    Fewinhibitions Always be a moving target

    Joined:
    Feb 27, 2009
    Messages:
    3,957
    Likes Received:
    0
    Trophy Points:
    36
    Occupation:
    Creative Arts, Community Service, Politics
    Location:
    Da 808

    Same here on my wife's PC laptop.
     
  5. thomaswildchild

    thomaswildchild Active Member

    Joined:
    Feb 13, 2010
    Messages:
    2,389
    Likes Received:
    5
    Trophy Points:
    38
    Occupation:
    I am a Machinist
    Location:
    Fullerton CA
    Home Page:
    yep running my full system scan tonight. Also malwarebytes worked well too!
     
  6. moka

    moka Moka Was Here!

    Joined:
    Dec 3, 2009
    Messages:
    901
    Likes Received:
    1
    Trophy Points:
    18
    Location:
    Los Angeles
    the trojan or malware could be a post, attachment or a infected vbulletin file. Someone needs to take a look at it and deal with this situation, had a small talk with the group after the turnbull ride and did not realize it was that bad until then. So far i have been getting it most under the Ride Report forum.

    1. Check Vbulletin AdminCP - run the suspected file versions under diagnostics.
    2. Run scan on server side, should be able to show infected files if its up to date.
    3. Check the plugins and anything that uses (global_start)
    4. Update forum software

    -----
    What is the current listing status for socaltrailriders.org/forum/ride-reports?
    Site is listed as suspicious - visiting this web site may harm your computer.

    What happened when Google visited this site?
    Of the 8 pages we tested on the site over the past 90 days, 2 page(s) resulted in malicious software being downloaded and installed without user consent. The last time Google visited this site was on 2010-06-23, and the last time suspicious content was found on this site was on 2010-06-23.
    Malicious software includes 2 exploit(s), 1 trojan(s). Successful infection resulted in an average of 3 new process(es) on the target machine.

    Malicious software is hosted on 2 domain(s), including dubuli.in/, bugedi.in/.

    1 domain(s) appear to be functioning as intermediaries for distributing malware to visitors of this site, including creabec.co.cc/.

    This site was hosted on 1 network(s) including AS30496 (COLO4).

    Has this site acted as an intermediary resulting in further distribution of malware?
    Over the past 90 days, socaltrailriders.org/forum/ride-reports did not appear to function as an intermediary for the infection of any sites.

    Has this site hosted malware?
    No, this site has not hosted malicious software over the past 90 days.

    How did this happen?
    In some cases, third parties can add malicious code to legitimate sites, which would cause us to show the warning message.
     
  7. MohammedInABearSuit

    MohammedInABearSuit Sticks and Stones...

    Joined:
    Feb 15, 2008
    Messages:
    2,566
    Likes Received:
    0
    Trophy Points:
    36
  8. Abui

    Abui Active Member

    Joined:
    Mar 10, 2006
    Messages:
    5,378
    Likes Received:
    0
    Trophy Points:
    36
    Occupation:
    Bike beta tester
    Location:
    Thousand Oaks
  9. genusmtbkr5

    genusmtbkr5 STR Moderator

    Joined:
    Mar 5, 2007
    Messages:
    8,618
    Likes Received:
    3
    Trophy Points:
    38
    Gender:
    Male
    Occupation:
    Lead Aircraft Mechanic for Major Airline at LAX
    Location:
    South Bay/Pedro
  10. Bryguy17

    Bryguy17 A little Shaggy

    Joined:
    Dec 5, 2007
    Messages:
    5,420
    Likes Received:
    2
    Trophy Points:
    38
    Location:
    Fullerton, CA
    mines giving it to me for the whole ride report forum...
     
  11. Marshall Willanholly

    Marshall Willanholly Active Member

    Joined:
    Apr 5, 2006
    Messages:
    1,151
    Likes Received:
    0
    Trophy Points:
    36
    Location:
    Portland, OR
    Home Page:
  12. JoeTruth

    JoeTruth Active Member

    Joined:
    May 29, 2007
    Messages:
    4,084
    Likes Received:
    1
    Trophy Points:
    36
    Location:
    Sierra Madre, CA
    This is all so interesting. I haven't had a single incident with any of these mentioned issues. I am using FF (v 3.6.4), Win7 64 (all current) & Norton 360 (v. 4.2.0), which has come a long ways, uses very low overhead & is very effective.
     
  13. Revalimage

    Revalimage Active Member

    Joined:
    Feb 12, 2008
    Messages:
    4,548
    Likes Received:
    9
    Trophy Points:
    38
    Occupation:
    Entertainment Production
    Location:
    Mission Viejo
    I can't click on the RR forum or any threads from the main page that tied to the RR forum. I can chose to go around it and continue, each click gives me a new warning.

    (safari Version 5.0 (6533.16) on a mac - this is a virus issue not a platform war - thanks for killing the bs thread Craig)

    I'm sure you guys have enough info now to get patches started...time to get back to work. :wave:
     
  14. dstepper

    dstepper (R.I.P.) Over the hill

    Joined:
    Feb 2, 2005
    Messages:
    12,683
    Likes Received:
    34
    Trophy Points:
    48
    Occupation:
    www.themostprogram.com owner
    Location:
    Laguna Beach
    Home Page:
    This is what Nod32 does when going to the Ride Report forum. Win 7, safari browser.

    Dean
     

    Attached Files:

    Last edited by a moderator: Jun 24, 2010
  15. IMALLSLO

    IMALLSLO S G V

    Joined:
    Oct 9, 2007
    Messages:
    366
    Likes Received:
    0
    Trophy Points:
    0
    Location:
    Covina, 6two6
    Same here with Win.7. Using AVG and id expect to be alerted if anything was suspect. Strange
     
  16. denmother

    denmother Gone riding....

    Joined:
    Mar 8, 2007
    Messages:
    11,235
    Likes Received:
    6
    Trophy Points:
    38
    Gender:
    Female
    Location:
    Riverside
    I'm running Trend Micro OfficeScan on IE 7, no problems here.
     
  17. pitmang1

    pitmang1 Member

    Joined:
    May 21, 2007
    Messages:
    375
    Likes Received:
    0
    Trophy Points:
    16
    Same setup here. I even ran Malwarebytes and MSE and Ad Aware and no trojans here.
     
  18. CalEpic

    CalEpic member

    Joined:
    Feb 3, 2005
    Messages:
    7,719
    Likes Received:
    17
    Trophy Points:
    38
    Location:
    Laguna Niguel
    For those that are having problems, are you current with Windows and Java updates?
     
  19. dstepper

    dstepper (R.I.P.) Over the hill

    Joined:
    Feb 2, 2005
    Messages:
    12,683
    Likes Received:
    34
    Trophy Points:
    48
    Occupation:
    www.themostprogram.com owner
    Location:
    Laguna Beach
    Home Page:
    Yes brand new windows 7 install 4 days ago with all new updates. The bug is there maybe George needs to turn off all advertisements until the offending 3rd party ad is identified.

    Dean
     
  20. MohammedInABearSuit

    MohammedInABearSuit Sticks and Stones...

    Joined:
    Feb 15, 2008
    Messages:
    2,566
    Likes Received:
    0
    Trophy Points:
    36
    I'm running a completely up to date Mac OSX machine.
    Firefox 3.6.3
    Block Reported Attack sites is on
    Adblock plus 1.2
    Flashblock 1.5.13
    Noscropt 1.9.9.87

    Seems that Google is reporting the issue and my security settings throw the warning.

    Safari 5.0 does not complain with default settings.
     

Share This Page

Help keep STR alive, please click the donation button below