Go Back   Customers Suck! > The Heart of the Site > Unsupportable > Tech help

Closed Thread
 
Thread Tools Display Modes

I think I survived a virus attack.
  #1  
Old 02-08-2010, 08:06 PM
Ironclad Alibi's Avatar
Ironclad Alibi Ironclad Alibi is online now
Area Manager
 
Join Date: Dec 2007
Location: Inside the Beltway.
Posts: 1,710
Default I think I survived a virus attack.

I had the Vista permission screen pop up and ask if I wanted to run the program 0.06256622085957053.exe. I declined and a second popup asked to run 0.45394908390448696.exe which was also declined. Then Norton popped up and said suspecious programs were trying to run, me being the first instance of the 0.0625... program in their records. After reboot per Norton's request, I found a third program 0.6840672844941504.exe had also tried to run.

Looking at Norton's log of these events, it said that less than 10 users had encountered these programs. I also found out they came from the website www. hoploawq.com. Looking it up on Google revealed it is a known malware producing web site.

Does anyone have any insights into these?

Update: Since posting this I've had 5 more attacks. Norton identifies these are "Trojn. FakeAV".

The program is further identified as www. hoploawq.com/exe.php?spl=java0

Another update: Hmmm... It seems to happen when I visit this web comic http://nodwick.humor.gamespy.com/index.htm
__________________
"I don't have to be petty. The Universe does that for me."

Last edited by Ironclad Alibi; 02-09-2010 at 01:43 AM. Reason: Update

  #2  
Old 02-09-2010, 05:42 PM
technical.angel's Avatar
technical.angel technical.angel is offline
Cute Lil Technical Angel
 
Join Date: Jul 2006
Location: Missouri
Posts: 1,721
Default

It looks like you're getting them blocked in time, but I still would do a run of Malwarebytes, just in case.
__________________
"Planning. Its the reason why I don't say 'Oh, Sh*t!' as often as you do." Geek King on one of his snarkier days
SC: “Yeah, Bob’s Company. I'm Bob. It's my company.” - GK

  #3  
Old 02-12-2010, 03:43 AM
KabeRinnaul's Avatar
KabeRinnaul KabeRinnaul is offline
Front End Supervisor
 
Join Date: Jun 2008
Location: Charleston, WV
Posts: 229
Default

I wonder if some viruses might be targeting webcomics. Like I mentioned in the Off Topic thread, Kheldarson and I both picked up a trojan and the "Internet Security 2010" rogue/spyware after checking Do You Work Here.

  #4  
Old 02-12-2010, 06:37 AM
Eric the Grey's Avatar
Eric the Grey Eric the Grey is offline
Cranky Ol' Operator
 
Join Date: Dec 2007
Location: Denver, CO
Posts: 676
Default

Quote:
Quoth KabeRinnaul View Post
I wonder if some viruses might be targeting webcomics. Like I mentioned in the Off Topic thread, Kheldarson and I both picked up a trojan and the "Internet Security 2010" rogue/spyware after checking Do You Work Here.
My AV (Avast) is picking this up every time I visit the site as well. Personally, I believe it is coming from one of the banner ads on the site, but I cannot be certain.



Eric the Grey
__________________
In memory of Dena - Don't Drink and Drive

  #5  
Old 02-12-2010, 11:30 AM
Darkforge Darkforge is offline
Customer dis-service Rep
 
Join Date: Dec 2007
Location: England
Posts: 286
Default

An idea might be to use firefox with flashblock and adblocker addons, visit the site and see if there are any problems.

If there are no problems then it will be the adverts, so contact the site, or use their forums (if available) and mention it, the owner of the site shoudl be able to track down which adverts it is and see if he can prevent them from showing

oh, and Kabe, i picked up something similar when visiting the Customerssuck livejournal group
__________________
"You can only try so hard to look like you are working before actually doing your work seems easy in comparison" -My Boss

CW: So what exactly do you do in retentions?
Me: ummm, I ....retent stuff?

  #6  
Old 02-12-2010, 01:02 PM
Gonzo Gonzo is offline
Bagger
 
Join Date: Jul 2006
Posts: 39
Default

I second the idea of using Fire Fox. The main reason why I like it is because of how easy it is to turn java and java scripting on and off. I only turn on Java when I need to and then only on sites that I trust.
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump



All times are GMT. The time now is 02:20 AM.


vBulletin skins developed by: eXtremepixels
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.


| Home | Register | FAQ | Calendar | Today's Posts | Search | New Posts |