Homepage Garage Wiki Register Social Groups Calendar Search Today's Posts Mark Forums Read
#Camaro6
Go Back   CAMARO6 > Members Area > Site Related Announcements / Suggestions / Feedback / Questions


Bigwormgraphix


Post Reply
 
Thread Tools
Old 09-01-2017, 10:18 PM   #1
PinHead
Banned
 
Drives: Duramax
Join Date: May 2017
Location: West of the Continential Divide
Posts: 878
Trojan Horse Attempt from Camaro6

My Anti-virus is prevented the following Trojan Horse when browsing Camaro6

The attempts happen after logging into Camaro6, then after Refreshing one of the pages.

Here's more info;

HTML/Refresh is a trojan that redirects the browser to a specific URL location with malicious software. The program code of the malware is usually embedded in HTML pages.

HTML/Refresh [Threat Name]

HTML/Refresh.BC [Threat Variant Name]

Category trojan Detection created Aug 21, 2014
PinHead is offline   Reply With Quote
Old 09-01-2017, 10:38 PM   #2
Infern0
Bring It
 
Infern0's Avatar
 
Drives: In Between
Join Date: Sep 2009
Location: San Antonio, TX
Posts: 2,929
Quote:
Originally Posted by PinHead View Post
My Anti-virus is prevented the following Trojan Horse when browsing Camaro6

The attempts happen after logging into Camaro6, then after Refreshing one of the pages.

Here's more info;

HTML/Refresh is a trojan that redirects the browser to a specific URL location with malicious software. The program code of the malware is usually embedded in HTML pages.

HTML/Refresh [Threat Name]

HTML/Refresh.BC [Threat Variant Name]

Category trojan Detection created Aug 21, 2014


Without more info, my guess would be one of the many ads on the site, especially if you accidentally missed on a mouse click and hit one.
__________________

2017 Camaro ZL1 M6 - Everything but the sunroof - Sold

2010 Camaro SS - 650RWHP Daily Driver - Traded
Infern0 is offline   Reply With Quote
Old 09-02-2017, 01:20 AM   #3
PinHead
Banned
 
Drives: Duramax
Join Date: May 2017
Location: West of the Continential Divide
Posts: 878
Quote:
Originally Posted by Infern0 View Post
Without more info, my guess would be one of the many ads on the site, especially if you accidentally missed on a mouse click and hit one.

No it was confirmed that the trigger was only when when I refreshed/reloaded a page.

What additional info do you need? (feel free to PM)

Can any of the Mods chime in?
PinHead is offline   Reply With Quote
Old 09-02-2017, 01:59 AM   #4
ninetres

 
ninetres's Avatar
 
Drives: Crush ZLE M6 | 2000 Corvette FRC
Join Date: Jun 2010
Location: Cencal
Posts: 1,659
Probably a delayed virus from p*rnhub hahahahaha

Jk. Nobody looks at that site. :p
ninetres is offline   Reply With Quote
Old 09-02-2017, 10:19 AM   #5
nighttowl
Sarcasm loading --------
 
nighttowl's Avatar
 
Drives: 2018 ZL1 1LE
Join Date: Dec 2011
Location: TX
Posts: 1,805
Quote:
Originally Posted by ninetres View Post
Probably a delayed virus from p*rnhub hahahahaha

Jk. Nobody looks at that site. :p
lol
__________________
"The salesman actually told me to stop getting it sideways during the test drive"

2018 MBM ZL1 1LE - Stock
2014 CRT ZL1 574 rwhp, 537 rwtq - SOLD
2010 IBM SS Camaro VVT L99 w/ TR6060 swap, 489 rwhp, 444 rwtq - SOLD
nighttowl is offline   Reply With Quote
Old 09-02-2017, 10:34 AM   #6
Joe's_cool_1le

 
Drives: Black 2017 Camaro SS 1LE
Join Date: Dec 2016
Location: Virginia Beach
Posts: 1,319
Quote:
Originally Posted by ninetres View Post
Probably a delayed virus from p*rnhub hahahahaha

Jk. Nobody looks at that site. :p
Sh!t I'm screwed then.
__________________
2017 1LE SS Black - Mods - Forged - lowered compression - BTR custom Cam - Whipple, 3.500 upper and 8.0 lower pulley, Roto-Fab, 1 7/8 Kooks headers, off road pipes, & 3" Kooks full exhaust. LT4 fuel system, with Alky single nozzle running 100% meth. (not installed yet) DSX Tuning flex fuel and DSX tuning Aux pump
Joe's_cool_1le is offline   Reply With Quote
Old 09-02-2017, 12:11 PM   #7
wstaab
 
Drives: 69 Z28, 2018 ZL1 1LE
Join Date: Jul 2017
Location: Georgia
Posts: 79
It's Malware embedded somewhere in the WordPress code that generates the web site.
Manifests as a popup.
IT needs to scrub the website code!!
wstaab is offline   Reply With Quote
Old 09-02-2017, 03:06 PM   #8
Infern0
Bring It
 
Infern0's Avatar
 
Drives: In Between
Join Date: Sep 2009
Location: San Antonio, TX
Posts: 2,929
Quote:
Originally Posted by PinHead View Post
No it was confirmed that the trigger was only when when I refreshed/reloaded a page.

What additional info do you need? (feel free to PM)

Can any of the Mods chime in?

Well when you refresh the page you are also refreshing the ads that show up. Ads are out of the control of the mods here. They simply add the source to the ads and then the ad servers determine which ones show up.

Alternatively, especially given the age of the virus rule, it could be site behavior that is considered normal today, but replicates behavior that was used maliciously sometime in the past.

I wouldn't worry about it.
__________________

2017 Camaro ZL1 M6 - Everything but the sunroof - Sold

2010 Camaro SS - 650RWHP Daily Driver - Traded
Infern0 is offline   Reply With Quote
Old 09-02-2017, 04:30 PM   #9
nicktechla

 
nicktechla's Avatar
 
Drives: 2012 Porsche 911 Turbo S
Join Date: Jan 2017
Location: Los Angeles, CA
Posts: 1,776
Quote:
Originally Posted by ninetres View Post
Probably a delayed virus from p*rnhub hahahahaha

Jk. Nobody looks at that site. :p
100%

you should post the javascript that tried to jack you
__________________
IG: 2fast2nick
-- Current --
2012 Porsche Turbo S - PDK - Basalt Black Metallic
-- Past --
2017 Camaro ZL1 Coupe - Red Hot - A10, PDR - HRE P101
2015 Mustang GT PP - Whipple Supercharger
nicktechla is offline   Reply With Quote
Old 09-02-2017, 07:51 PM   #10
jrpimp00
 
jrpimp00's Avatar
 
Drives: '10 Black/IOM Camaro SS/RS
Join Date: Mar 2010
Location: Fayetteville NC
Posts: 530
I opened this site for the first time on someone elses computer and forgot about all the ads. Ive been running adblock and adblock plus for years and its night and day
__________________
2010 Camaro 2SS/RS Black/IOM //// 1998 Pontiac Trans AM 819 RWHP @ 12 PSI (Turbo)
jrpimp00 is offline   Reply With Quote
Old 09-02-2017, 07:53 PM   #11
Can'tHave2MuchHP
 
Can'tHave2MuchHP's Avatar
 
Drives: Fast
Join Date: Mar 2015
Location: Michigan
Posts: 3,696
Quote:
Originally Posted by jrpimp00 View Post
I opened this site for the first time on someone elses computer and forgot about all the ads. Ive been running adblock and adblock plus for years and its night and day
Can'tHave2MuchHP is offline   Reply With Quote
Old 09-02-2017, 09:12 PM   #12
KyleL
 
Drives: Slow
Join Date: Mar 2016
Location: Baton Rouge
Posts: 669
I clicked on the wantmatures.com ad bc it said i could find a cougar
__________________
2016 Toyota 4Runner
2017 Camaro ZL1
KyleL is offline   Reply With Quote
Old 09-03-2017, 01:51 AM   #13
PinHead
Banned
 
Drives: Duramax
Join Date: May 2017
Location: West of the Continential Divide
Posts: 878
Quote:
Originally Posted by ninetres View Post
Probably a delayed virus from p*rnhub hahahahaha

Jk. Nobody looks at that site. :p
Never....

Why haven't the Mods chimed in???

It would be nice to know they care and are checking their site.
PinHead is offline   Reply With Quote
Old 09-03-2017, 08:30 AM   #14
HDRDTD


 
Drives: 2013 Triple Black ZL1 Vert M6 ECF
Join Date: Mar 2011
Location: Trenton, Michigan
Posts: 7,047
Perhaps it's because I've been on this site for years and have never had any kind of virus/malware/Trojan issue with it, and yours is the first post I've seen indicating anyone else has had a problem ??
HDRDTD is offline   Reply With Quote
 
Post Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 05:30 AM.


Powered by vBulletin® Version 3.8.9 Beta 4
Copyright ©2000 - 2024, vBulletin Solutions, Inc.