Those listed below are our PROUD SatelliteGuys GOLD Sponsors!
Applied Instruments DishStore.NET Home Theater Cruise glorystar.tv satelliteavgs tele-satellite.com

Welcome HOME to SatelliteGuys!


  •  » Looking for help picking a television provider?
  •  » Need Help with your Satellite System?
  •  » Need Advice on your Home Theater Setup?
  •  » Looking for the latest industry news and rumors?

...then you have come to the right place!

DIRECTV, DISH Network, FTA Satellite, Cable TV, HDTV even 3DTV!

We Can Help! We are known as America's Satellite Information Source!
YES! I want to register an account for FREE right now!

YOU ARE AT THE PLACE WHERE INDUSTRY EXPERTS HANG OUT!

p.s.: Registered members see a lot less ads! REGISTER TODAY!

Page 1 of 8 1 2 3 ... LastLast
Results 1 to 10 of 78
Like Tree22Likes

Thread: Virus from this site or very rare coincidence?

  1. #1
    Doppy is offline SatelliteGuys Regular
    Join Date
    Aug 23rd, 2006
    Posts
    213

    Virus from this site or very rare coincidence?

    ADVERTS 1
    So, two days ago I only had this site open and facebook open for about two minutes. Then suddenly spyware popped up titled XP internet security 2012 and was one of those types of spyware that blocka you from opening programs and wants your credit card info. I removed the spyware using methods found online. Then yesterday i went back to sarelliteguys with about 4 other sites opened at the same time, but all trusted sites i visit on a daily basis and have not had any trouble with since the following incident. This time i got a weird error from adobe reader which wasnt even open, and had to click ok 3 times for 3 dialog boxes. Never seen that error before and havent made any chabges to adobe reader. Could it have been malware trying to get into my pc through adobe?
    So it seems rather odd that satguys was open both times when i received the spyware and the weird adobe occurence. So whats the deal? Has anyone else experiencex this lately? Maybe its from one of those ztupid rotating ads since it took a minite or two to happen each time. Please tell me what is happening becauze i refuse to visit thte site on my pc until i hear if it is the cause of the malware. Right now im on my phone so please excuse all the typos.
    Last edited by Doppy; 12-11-2011 at 05:52 AM.

  2. # ADS
    Register Today & This Ad Goes Away! Circuit advertisement
    Join Date
    Always
    Posts
    Many
     
  3. #2

    Help Keep SatelliteGuys For All, Click a Star and Become a Supporter! This Member did! Help Support The Site And Get Rid of the Syndicated Ads, This Member did! If you enjoy the site consider supporting it, this member did! Click a Star and become a Supporting Pub Member today!
    Join Date
    Oct 12th, 2010
    Location
    46°51'20.67"N 114°01'50.57"W Montana
    Posts
    1,062
    It's coincidence. If it were a problem you wouldn't be the only one after it. Those anti-virus/malware gotchas can be unbeleivably difficult to remove. They appear to be gone after removal processes and reappear a week later. To be sure , wipe the drive.

    From what you said so far, I'd say you been "FaceBooked" Now there's a nasty site full of e-mines.
    Last edited by Magic Static; 12-11-2011 at 07:08 AM.
    10'Winegard.Pinnacle.perforated, AJAK 180 H-H, GBox, BullsEyeII, Norsat 8115, 4106a
    on AZBox Ultra 1gDVR
    10'LaserC/KU mesh, PMA24 mover V-Box10, BullsEyeII+asst LNBs
    30" Winegard 2076, SG9120b, Invacom QPH-031 LNB
    SkyWalker 1, Hauppauge Nova HD S2, Hauppauge HVR 1250 ATSC
    Using MyTheatre on 4 displays

    2 NEC LT30 DLP projectors, 52" Samsung, 25.5"ASUS

  4. #3
    Ilya's Avatar
    Ilya is online now Proud Staff Member
    Proud SatelliteGuys Staff Member

    Proud Staff Member
    Join Date
    Feb 16th, 2004
    Location
    NE OH
    Posts
    11,120
    Do you have an antivirus running on your computer? In addition to running antivirus, make sure you are up-to-date on all patches and updates. It is critical these days, not only to run Windows update, but also to update any browser plug-ins/add-ons. Particularly, Java, Adobe Flash, Adobe Reader, etc. A lot of viruses are getting through security holes that are being found in those plug-ins all the time. Adobe has been releasing patches and updates almost monthly. Go to Adobe.com and install the latest versions directly from there.

    Once your computer is compromised you will start getting strange pop-up ads no matter what site you visit. Don't assume that it's coming from the sites you have open at the moment. Most likely it has nothing to do with them.

    Sent from my iPhone using SatelliteGuys
    Ilya @ SatelliteGuys.us

  5. #4
    radio's Avatar
    radio is offline "On the Air" in MI
    Pub Member / Supporter

    Help Keep SatelliteGuys For All, Click a Star and Become a Supporter! This Member did! Help Support The Site And Get Rid of the Syndicated Ads, This Member did! If you enjoy the site consider supporting it, this member did! Click a Star and become a Supporting Pub Member today!
    Join Date
    Oct 13th, 2007
    Location
    West Central Michigan
    Posts
    1,138
    You're on one of the most carefully monitored and maintained (quality, content, safety, not necessarily in that order) and may actually find being here may be the best HELP you could get for your problem! Don't be afraid to ask as you work your way through it! There are members here for most every "tech" need and interest.
    whatchel1 likes this.
    Dish 1: Birdview white solid, motor active for FTA using V-box VII (system modified by user "nicknjen")
    Dish 2: Birdview white solid, motor not activated, used for W-5 programming on DSR-410
    Receiver 1: Openbox S-10. Now working well with August 30, 2011 software after a long time with quirks!

  6. #5
    Scott Greczkowski's Avatar
    Scott Greczkowski is online now Here to Help YOU! FisherMan Sam Champion
    Proud SatelliteGuys Staff Member

    Proud Staff Member
    Join Date
    Sep 7th, 2003
    Location
    Central Connecticut
    Posts
    70,654
    Gamer IDs

    PSN ID: scottct1
    All syndicated ads that run here are screened and deamed to be safe by the ad agencies who serve them.

    We actually have fired ad agencies for letting crap get through.

    With that said my wife got hit last week while her browser was left open on Facebook. Looks like it got in through a rouge flash ad on Facebook. She. Would have got it if she kept her flash player up to date.

    Now she knows.
    Scott

  7. #6
    sergei's Avatar
    sergei is online now Pub Member / Supporter
    Pub Member / Supporter

    Help Keep SatelliteGuys For All, Click a Star and Become a Supporter! This Member did! Help Support The Site And Get Rid of the Syndicated Ads, This Member did! If you enjoy the site consider supporting it, this member did! Click a Star and become a Supporting Pub Member today!
    Join Date
    Aug 29th, 2007
    Location
    iowa
    Posts
    1,106
    Another site that I like to read (
    Right of Middle


    ) has reported again a problem with the web site Download.com which is part of CNET. If you've downloaded from them lately you might have gotten something from them. Some might find the site interesting and the article he posts.


    Download.com Problems




    Many years ago, when the Internet was still a fraction of what it is today, download.com was the place to go to find interesting or useful freeware and shareware. I haven’t visited it much lately because I prefer to go directly to the website of the developer, or perhaps use Sourceforge when possible/necessary. After C|Net purchased Download.com, it just didn’t have the same “feeling” and frankly, I was skeptical of the process.
    One of my most favorite tools in my toolbox is
    Nmap


    . Anyone who knows anything about the art of digital security knows what Nmap is and what it can do. I’ve been an Nmap user for… well, a long time. But again, I go directly to Fyodor’s website so I know that I’m getting the most up to date release, and to avoid any potential shenanigans from middleman sites like Download.com.
    As it turns out, I was right to be suspicious of Download.com. If you use them, you should be wary of them too. They profess to be free of malware and adware, but as Fyodor recently discovered, that is absolutely not the case. It turns out C|Net installs (or tries to install) a number of other “goodies” on your system when you use them to get software. This sent Fyodor over the edge yesterday, and the word has spread across the Internet like wildfire. He has a
    great write-up on his site


    about the situation, which is far from over.
    C|Net should be ashamed of themselves. Professing to be free of malware might be true if you’re only referring to things like the latest virus, Trojan, or worm. But I’m willing to bet that none of you reading this would unknowingly permit your Internet search settings to be changed. Nor would any of you be willing to have other ad-related software, toolbars, or add-ons put on your system simply because you chose to get your software from Download.com.
    For my part, I will no longer visit anything related to C|Net until they clean up their act. There are many people out there who are simply not aware of what happens when you blindly click “Yes” to the boxes that pop up during an installation routine, and the very last thing that any company should do is prey on that. Especially a company that is as old and (used to be trusted) like C|Net.
    Stay away from Download.com, folks. Your PC and your favorite PC repair technician will thank you.







    Raydx 10.5': Dual C ( H2H Programming ) (1) DSR-920: (2) DSR-920: (3) DSR-920
    Raydx 8.5': Mover DSR-920: DMX242, Traxis DBS3800, Pansat 2700A
    Unimesh 7.5': BSC421, Mover GI 450i, Pansat3500, GeoSat100c
    Channel Master 7.5': Mover GI 350i: DMX241, DSR-R100b, Openbox S10, CS5000, MRX-1200
    Channel Master 8': BSC421, Openbox S10: New Receivers: Traxis DBS2800 X 3ea.
    Prodelin 1.2M: Dual KU: Prodelin 1.2M:
    OTA: Tower 35', Ham II Rotor: (UHF) CM4251 & CM7775, (VHF) CM3617B & CM7776
    Blonder Tongue MUVB-56 Distribution Amp: Channel Plus Modulators Qty 9 : FS1 Meter
    Dish Network 322/ Family Package: Prodelin 1.2M


  8. #7
    Polarys425 is offline SatelliteGuys Freshman
    Join Date
    Dec 2nd, 2011
    Location
    Grottoes, VA.
    Posts
    14
    I have on two occasions had my antivirus software inform me of a blocked intrusion attempt while on this site. This time, just a few minutes ago it happened for the second time and is why I found this thread. The only other site I had open this time was the Dtv firmware watcher site. I have a suspicion it invloves an ad stream hack.

    The attacking ip was 72.51.44.40 I've pasted the info below that i found on this ip. ***** I have not clicked on the three domains listed as being hosted on this ip, caution advised******

    IP Location


    IP Address:72.51.44.40City:Los AngelesState/Region:CaliforniaCountry:United StatesZIP Code:90001Latitude/Longitude:34.052°, -118.244°Time Zone:America/Los AngelesCurrent Time:8:48 PM on Dec. 11, 2011


    Host Details


    IP Address:72.51.44.40IP Block Start:72.51.32.0IP Block End:72.51.47.255Reverse DNS:miscomma4.specialweboffer.infoHost/ISP:Peer 1 Network Inc.
    Domains Hosted on IP 72.51.44.40 (3)
    goldenmile (dot) net
    hospitalityonthepark (dot) net
    rowntreeenterprises (dot) net




    Host Analysis:

    IP address 72.51.44.40 is located within an IP block ranging from 72.51.32.0 to 72.51.47.255 with CIDR 72.51.32.0/20 and netmask 255.255.240.0. According to a DNS lookup, the host name attributable to this IP is miscomma4.specialweboffer.info. Other information about this IP block suggests that users of 72.51.44.40 are in the vicinity of Los Angeles, CA, USA, located at 34.05223° latitude, -118.24368° longitude (indicated on the map to the right), and are users of an ISP called Peer 1 Network Inc.. The ZIP code from this locale is 90001, and the time zone is America/Los Angeles.
    We have further analyzed this IP address and found that several domains name are currently mapped to it, such as hospitalityonthepark (dot) net, goldenmile (dot) net, and rowntreeenterprises (dot) net. This suggests that the IP address is being used by a server (rather than an end user) to vend web pages or other on-line content.
    Last edited by Ilya; 01-08-2012 at 12:08 PM. Reason: Suspect links edited

  9. #8
    sergei's Avatar
    sergei is online now Pub Member / Supporter
    Pub Member / Supporter

    Help Keep SatelliteGuys For All, Click a Star and Become a Supporter! This Member did! Help Support The Site And Get Rid of the Syndicated Ads, This Member did! If you enjoy the site consider supporting it, this member did! Click a Star and become a Supporting Pub Member today!
    Join Date
    Aug 29th, 2007
    Location
    iowa
    Posts
    1,106
    I would say that your system has already been infected as I come to this site everyday and never has my antivirus software detected anything nor has my firewall send me a alarm and I get alarms that sites from Japan to Russia have done a port scan. So I'd say you need to recheck you software or your system for traces of that web site, because it wasn't from here.
    whatchel1 likes this.
    Raydx 10.5': Dual C ( H2H Programming ) (1) DSR-920: (2) DSR-920: (3) DSR-920
    Raydx 8.5': Mover DSR-920: DMX242, Traxis DBS3800, Pansat 2700A
    Unimesh 7.5': BSC421, Mover GI 450i, Pansat3500, GeoSat100c
    Channel Master 7.5': Mover GI 350i: DMX241, DSR-R100b, Openbox S10, CS5000, MRX-1200
    Channel Master 8': BSC421, Openbox S10: New Receivers: Traxis DBS2800 X 3ea.
    Prodelin 1.2M: Dual KU: Prodelin 1.2M:
    OTA: Tower 35', Ham II Rotor: (UHF) CM4251 & CM7775, (VHF) CM3617B & CM7776
    Blonder Tongue MUVB-56 Distribution Amp: Channel Plus Modulators Qty 9 : FS1 Meter
    Dish Network 322/ Family Package: Prodelin 1.2M


  10. #9
    Polarys425 is offline SatelliteGuys Freshman
    Join Date
    Dec 2nd, 2011
    Location
    Grottoes, VA.
    Posts
    14
    Yeah well, being in computers and in the biz for 15+ years, I can say it's not originating from my computer. Its either tied to this site or the firmware tracker site. Both times its happened, I've had those two sites open. Do what you want. I provided the info for anyone who wants to look into it, but it sounds like i wasted my time.

  11. #10
    Scott Greczkowski's Avatar
    Scott Greczkowski is online now Here to Help YOU! FisherMan Sam Champion
    Proud SatelliteGuys Staff Member

    Proud Staff Member
    Join Date
    Sep 7th, 2003
    Location
    Central Connecticut
    Posts
    70,654
    Gamer IDs

    PSN ID: scottct1
    Just to be on the safe site I have submitted the info you posted to our 3 ad agencies.
    Scott

Page 1 of 8 1 2 3 ... LastLast

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SatelliteGuys.US | 46 Miami Avenue | Newington, Connecticut 06111
Links monetized by VigLink