Log in

View Full Version : userbars.org Hijacked?


krashkart
11-02-10, 12:28 AM
Just caught a virus from userbars.org, using IE. The page loaded up fine but something there was scripted to open Java on my computer (I got the Java splash screen and confirmed both java.exe and javaw.exe running). Then my AV caught something:

http://www.subsim.com/radioroom/picture.php?albumid=179&pictureid=3203

Can anyone safely confirm my suspicions? Also, if you use banners from there in your signature, check your signature just to be safe.

Gerald
11-02-10, 06:36 AM
Just caught a virus from userbars.org, using IE. The page loaded up fine but something there was scripted to open Java on my computer (I got the Java splash screen and confirmed both java.exe and javaw.exe running). Then my AV caught something:

http://www.subsim.com/radioroom/picture.php?albumid=179&pictureid=3203

Can anyone safely confirm my suspicions? Also, if you use banners from there in your signature, check your signature just to be safe. they like Java Clearly, good that your virus protection got it under control, here are some links that point wires ....

http://supportforums.sunbeltsoftware.com/messageview.aspx?catid=219&threadid=4373&enterthread=y

http://stopmalvertising.com/spam-scams/setting-for-your-mailbox-are-changed-pdf-launch-action

http://community.ca.com/blogs/securityadvisor/archive/tags/PDF_2F00_Pidief/default.aspx

http://www.fortiguard.com/encyclopedia/search/pdf/pidief.bv!exploi

Herr-Berbunch
11-02-10, 07:09 AM
Sounds very similar to how this site acted a few weeks ago! :-?

Gerald
11-02-10, 08:33 AM
You are right, there are similarities, :hmm2:

Jimbuna
11-02-10, 09:06 AM
Just caught a virus from userbars.org, using IE. The page loaded up fine but something there was scripted to open Java on my computer (I got the Java splash screen and confirmed both java.exe and javaw.exe running). Then my AV caught something:

http://www.subsim.com/radioroom/picture.php?albumid=179&pictureid=3203

Can anyone safely confirm my suspicions? Also, if you use banners from there in your signature, check your signature just to be safe.

I've refused numerous offers to update my Java since this whole sorry mess first kicked off :nope:

Herr-Berbunch
11-02-10, 09:11 AM
I've refused numerous offers to update my Java since this whole sorry mess first kicked off :nope:

Me too, but when it affects me directly I'll go via Java's website and not leave it for my PC/websites to do it! :smug:

Jimbuna
11-02-10, 11:41 AM
Me too, but when it affects me directly I'll go via Java's website and not leave it for my PC/websites to do it! :smug:

Good idea...never considered that :up: