Talk of The Villages Florida

Talk of The Villages Florida (https://www.talkofthevillages.com/forums/)
-   Computer questions (https://www.talkofthevillages.com/forums/computer-questions-92/)
-   -   Malware Attack Again (https://www.talkofthevillages.com/forums/computer-questions-92/malware-attack-again-46374/)

Jakel 12-19-2011 10:27 PM

Coincidence??
 
My computer went down on 12/16, and TOTV is one of the few sites that I frequent. Staples charged $127 to bring it back to life, including a year of Norton. Coincidence??

Barefoot 12-19-2011 11:57 PM

I keep seeing an ad on TV for mycleanpc.com. Does anyone use it?

villages07 12-20-2011 06:55 AM

Quote:

Originally Posted by Barefoot (Post 430901)
I keep seeing an ad on TV for mycleanpc.com. Does anyone use it?

Bare... A quick google search produced a lot of negative reviews and "beware" so I would say stay away from it.

graciegirl 12-20-2011 07:02 AM

I have had malware ride in on some very innocent applications over time. But haven't had the problem that you are all discussing from this site...yet.

And heavens knows I am on here a LOT.:evil6:

skyguy79 12-20-2011 08:32 AM

http://i409.photobucket.com/albums/p...cons/Ditto.gif

Barefoot 12-20-2011 01:46 PM

Quote:

Originally Posted by villages07 (Post 430932)
Bare... A quick google search produced a lot of negative reviews and "beware" so I would say stay away from it.

Thanks, Seven. I should have googled it myself. Except I've grown lazy and I rely on comments from TOTV! I'm a sucker for TV ads, except I don't order vegetable peelers and foot washers from the Shoppping Channel.

Number 6 12-20-2011 02:48 PM

I had a malware attack (Microsoft XP Securtiy) while on this site yesterday, so it hasn't gone away.

schotzyb 12-20-2011 04:00 PM

I too had another attack yesterday while visting TOTV. I have Vista as my operating system and my browser is Internet Explorer. This one was harder to clean. Could not even run Malwarebytes in Safe Mode. Had to right click mouse and Run as Administrator. Between running it and Avast Anti Virus and SuperAnti Spyware, I am back up and clean but for how long;who knows?

Virtual Geezer 12-20-2011 05:56 PM

Quote:

Originally Posted by schotzyb (Post 431083)
I too had another attack yesterday while visting TOTV. I have Vista as my operating system and my browser is Internet Explorer. This one was harder to clean. Could not even run Malwarebytes in Safe Mode. Had to right click mouse and Run as Administrator. Between running it and Avast Anti Virus and SuperAnti Spyware, I am back up and clean but for how long;who knows?

Running the programs as administator is a function of the operating system and NOT the malware.

VG

schotzyb 12-20-2011 06:18 PM

Quote:

Originally Posted by Virtual Geezer (Post 431128)
Running the programs as administator is a function of the operating system and NOT the malware.

VG

That me be true but left clicking only brought up the virus notification. No actual programs would open left clicking.

graciegirl 12-20-2011 08:43 PM

How does this act? Does a red sign stop every windows change?

Does it take forever to shift?

kathy and al 12-21-2011 08:16 AM

Just experienced my 8th "high level" security attack in the past 10 days while on TOTV. This one represents the 8th different originating attacking site and the problem goes on without anyone taking any corrective action. Easy to say that the TOTV site is not the problem (as quoted by the Adminstrator) but I can assure you that this problem is embedded somewhere within this site.

schotzyb 12-21-2011 08:26 AM

I have changed browsers from Internet Explorer to Firefox to see if it helps. was using Internet Explorer exclusively during the 4 or 5 attacks I have experienced.

kathy and al 12-21-2011 09:40 AM

schotzb---please let us know if switching from Internet Explorer to Firefox helps this security attack problem. May take a couple of days in order to evaluate but it would be interesting to see if this resolves the problem for you. Thanks.

zcaveman 12-21-2011 11:26 AM

Quote:

Originally Posted by kathy and al (Post 431348)
schotzb---please let us know if switching from Internet Explorer to Firefox helps this security attack problem. May take a couple of days in order to evaluate but it would be interesting to see if this resolves the problem for you. Thanks.

Unfortunately switching browsers is not an option for me (and probably many others). I have tried Firefox and Chrome and neither of them have the features that keeps me with IE9.

This is my personal opinion and I am sticking to it. Please do not start posting the positives of Firefox or Chrome sand the negatives of IE9 in this thread.

BTW: I have had three attacks on TOTV and Norton NIS caught all of them so I am just as concerned as the rest of you.

Z

schotzyb 12-21-2011 12:33 PM

Quote:

Originally Posted by zcaveman (Post 431377)
Unfortunately switching browsers is not an option for me (and probably many others). I have tried Firefox and Chrome and neither of them have the features that keeps me with IE9.

This is my personal opinion and I am sticking to it. Please do not start posting the positives of Firefox or Chrome sand the negatives of IE9 in this thread.

BTW: I have had three attacks on TOTV and Norton NIS caught all of them so I am just as concerned as the rest of you.

Z

I'm not a huge fan of Firefox or Chrome either but just thought I would make the switch as a test to see what happens. I still use Firefox as my primary browser and I basically am only using Firefox for TOTV.

schotzyb 12-21-2011 12:35 PM

Quote:

Originally Posted by kathy and al (Post 431348)
schotzb---please let us know if switching from Internet Explorer to Firefox helps this security attack problem. May take a couple of days in order to evaluate but it would be interesting to see if this resolves the problem for you. Thanks.

I will let you know. Only switched for about 4 hours now.

kathy and al 12-21-2011 01:11 PM

Thanks, shotzyb. I'll be real interested in your test results. Thanks again.

Mudder 12-21-2011 02:45 PM

I'm still getting attacks also when on this site......maybe it's something I said????

CaptJohn 12-21-2011 04:03 PM

Quote:

Originally Posted by schotzyb (Post 431298)
I have changed browsers from Internet Explorer to Firefox to see if it helps. was using Internet Explorer exclusively during the 4 or 5 attacks I have experienced.

Don't count on Firefox to save you. That's what I was using when attacked 2 weeks ago. I always use Firefox and am real happy with it. I've only had two attacks that malware had to shut down the computer. Here and the AARP site about 6 months ago. I'm probably going to buy Malwarebytes Pro. That seems to work best. It might not be in the TOTV site but it's certainly coming THROUGH it. I haven't had this problem anywhere else on the internet except AARP and I no longer accept their emails or go to their site.

CaptJohn 12-21-2011 04:19 PM

Quote:

Originally Posted by graciegirl (Post 431190)
How does this act? Does a red sign stop every windows change?

Does it take forever to shift?

On mine as I recall, about 3 screens popped up saying I have a virus or something and wanted me to click a button to download a fix for it. Then it started listing the viruses and things it found. You might want to read the other 2 threads on this as someone made a better description than I'm doing from a 2 week old memory and they posted an image of the page. I took a photo of one screen and I'll try to remember to post the image when I get home.

On my Dell at work (a university with good security network) where I am now I have noticed sometimes the computer locks up and won't change pages and I have to shut it down to get it going again when on the TOTV site.

schotzyb 12-21-2011 04:22 PM

Quote:

Originally Posted by CaptJohn (Post 431459)
Don't count on Firefox to save you. That's what I was using when attacked 2 weeks ago. I always use Firefox and am real happy with it. I've only had two attacks that malware had to shut down the computer. Here and the AARP site about 6 months ago. I'm probably going to buy Malwarebytes Pro. That seems to work best. It might not be in the TOTV site but it's certainly coming THROUGH it. I haven't had this problem anywhere else on the internet except AARP.

That is good to know. You are the first person I recollect stating they were using Firefox when attacked. It took me three hours last night to get "cleaned' and back up and running. Just as another trial , after I got back up , I did a system restore to a month ago. Just something else I thought might help.

philnpat 12-21-2011 04:30 PM

Yesterday I got a message from Norton informing me of a problem. It was while I was on TOTV. It blocked "malicious tool kit website 9" Source address: 178.17.163.115.80
I'm using IE.
Googled "malicious tool kit website 9" and found that it affects several other browsers.

Mikeod 12-21-2011 05:01 PM

OK. Another thought. I am running Firefox with Adblocker Pro. I've had none of the problems listed when on this site and others. Norton scan shows no attacks and Malwarebytes full scan also shows nothing. Could this be coming in a pop-up ad from outside of TOTV?

CaptJohn 12-21-2011 05:22 PM

Quote:

Originally Posted by mikeod (Post 431492)
Could this be coming in a pop-up ad from outside of TOTV?

I've said this before that it may be a link or ad on TOTV. I'm interested in your adblocker program. Does it block all popups?

ajbrown 12-21-2011 07:16 PM

back again..... no harm no foul
 
I got the same malware hit again just now. It is really hard to determine what I was doing. It was the same signature I saw on 12/15 the last time it happened. Sandboxie prevented it from infecting my computer. I was definitely on TOTV, but that may not mean anything as far as the root cause. Working in computers most of my life, the root cause is always hard to find. In a strange way I find it very interesting and fun to be part of the community to try to provide enough information to try and to solve this puzzle...

renielarson 12-21-2011 08:25 PM

I just posted a new thread about Costco and was hit hard with malware warnings! I had multiple threats.

I'll tell you this for sure. If after this post I get those warnings again I'm outta here and not posting again until this problem is fixed. I read that the administrators said all checked out fine and nothing was amiss. Well, there IS something definitely wrong!

I like reading TOTV but not to the point of compromising my computer security. BTW, I use AVG and trust it totally. It has never let me down.

Xavier 12-21-2011 09:05 PM

I just have a simple question. For all of you who are getting attacked, where are you getting your Internet Service. I'm looking for commonality. I have spent quite a bit of time at TOTV and I haven't gotten anything, not even a pop up whimper, from anything. The Administrator says everything is clean on his end. Just saying ... the commonality may be the Internet Provider. My Internet comes from Verizon Wireless 4G Broadband.

Xavier

renielarson 12-21-2011 09:15 PM

Quote:

Originally Posted by Xavier (Post 431580)
I just have a simple question. For all of you who are getting attacked, where are you getting your Internet Service. I'm looking for commonality. I have spent quite a bit of time at TOTV and I haven't gotten anything, not even a pop up whimper, from anything. The Administrator says everything is clean on his end. Just saying ... the commonality may be the Internet Provider. My Internet comes from Verizon Wireless 4G Broadband.

Xavier

I'm Comcast.

schotzyb 12-21-2011 09:18 PM

Comcast.

VillagesFlorida 12-21-2011 09:19 PM

Quote:

Originally Posted by flipflopz (Post 431562)
I just posted a new thread about Costco and was hit hard with malware warnings! I had multiple threats.

I'll tell you this for sure. If after this post I get those warnings again I'm outta here and not posting again until this problem is fixed. I read that the administrators said all checked out fine and nothing was amiss. Well, there IS something definitely wrong!

I like reading TOTV but not to the point of compromising my computer security. BTW, I use AVG and trust it totally. It has never let me down.

This is getting scary......several intrusion attempts on my computer, all blocked by Norton Internet Security. Here is the info on the one that just happened around 9:08 p.m.

Web attack: Oracle Java Rhino Script Engine CVE-2011-3544 3

Intrusion attempt blocked www.hoxtrand.com/lampore/0877677567

Attacking computer 212.95.55.24, 80

swimdawg 12-21-2011 09:26 PM

Quote:

Originally Posted by Xavier (Post 431580)
I just have a simple question. For all of you who are getting attacked, where are you getting your Internet Service. I'm looking for commonality. I have spent quite a bit of time at TOTV and I haven't gotten anything, not even a pop up whimper, from anything. The Administrator says everything is clean on his end. Just saying ... the commonality may be the Internet Provider. My Internet comes from Verizon Wireless 4G Broadband.

Xavier

The last time it happened to me (a few days ago), I was on my laptop writing a TOTV post. I'm using my iPad now.

I'm up north now and my Internet Provider is Time-Warner.

Mudder 12-21-2011 09:31 PM

Comcast on my laptop, no trouble with pc. Strange, very strange. And annoying too.

Mikeod 12-21-2011 09:42 PM

Quote:

Originally Posted by CaptJohn (Post 431498)
I've said this before that it may be a link or ad on TOTV. I'm interested in your adblocker program. Does it block all popups?

It's an add-on to Firefox, called Adblock Plus. I don't know if it's available for IE or other browsers. I haven't used IE in many years. Yes, I don't get any pop-ups. If a site uses pop-ups, I get a window asking if I want to allow pop-ups on that site for that visit and I can always add an exception to allow pop-ups for a site all the time. But I don't get advertising pop-ups at all.

I also use another add-on called NoScript which prevents any site from running a script. It is a bit more intrusive in that a lot of sites won't function normally unless you allow certain scripts to be run. But the program will show a list of scripts and allow you to allow one or more to be run.

Larry Wilson 12-21-2011 09:59 PM

Quote:

Originally Posted by philnpat (Post 431474)
Yesterday I got a message from Norton informing me of a problem. It was while I was on TOTV. It blocked "malicious tool kit website 9" Source address: 178.17.163.115.80

The same just happened to me. I use Century Link.

VillagesFlorida 12-21-2011 10:07 PM

I use Comcast. I use IE8 and sometimes Google Chrome. I'll keep track of which browser I am using if I get anymore intrusion attempts.

CaptJohn 12-21-2011 10:44 PM

Quote:

Originally Posted by Xavier (Post 431580)
I just have a simple question. For all of you who are getting attacked, where are you getting your Internet Service. I'm looking for commonality.

Good question. I'm on AT&T (old Bellsouth) in Alabama, direct wire, no wireless, Firefox browser. Dell computer at time of attack.
I'm starting to notice several have said they were posting at the time. The same is true for me. That may be a commonality but not everyone has said that.

The great thing is we're all able to communicate to try and find the problem. Think of all the people who don't communicate like we do and will probably never know what happened. I'll bet there are a lot of computers in the shops with people not knowing the source of their problems. We may not know yet but we're getting there. PS. I'm on my ibook and have been using it solely at home since it happened.

CaptJohn 12-21-2011 10:50 PM

Quote:

Originally Posted by mikeod (Post 431606)
It's an add-on to Firefox, called Adblock Plus. I don't know if it's available for IE or other browsers. I haven't used IE in many years. Yes, I don't get any pop-ups. If a site uses pop-ups, I get a window asking if I want to allow pop-ups on that site for that visit and I can always add an exception to allow pop-ups for a site all the time. But I don't get advertising pop-ups at all.

I also use another add-on called NoScript which prevents any site from running a script. It is a bit more intrusive in that a lot of sites won't function normally unless you allow certain scripts to be run. But the program will show a list of scripts and allow you to allow one or more to be run.

Thanks for the info. Sounds like what I've been looking for. I hate popups and ads but other programs have slowed my computer so I dropped them. I always use Firefox, so no problem. Do you download the program from Firefox?

TOTV Team 12-21-2011 11:00 PM

We are continuing to monitor all feedback. With over 1,000 users a day this feedback is obviously isolated to a small number of users. We are getting daily confirmation that the TOTV server is clean and nothing is originating from the site. We recommend running your anti virus and clearing your cookies and cache after this is ran to see if your problems persist.

KayakerNC 12-21-2011 11:33 PM

A possible explanation.:Screen_of_Death:
"Security Monitor 2012 is a rogue anti-virus program that mimics genuine security software and gives false warnings about viruses. What's the aim of this malware? To make you think that your computer is infected with spyware and other bad stuff and to trick you into paying for bogus software. In other words, to make tons of money for cyber criminals. It's a clone of Security Solution 2011, so it's not a new rogue anti-virus but just a slightly modified old one.
Security Monitor 2012 pretends to scan your computer for viruses, spyware and Trojans. Of course, it finds numerous critical infections."

http://deletemalware.blogspot.com/


All times are GMT -5. The time now is 10:05 PM.

Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, vBulletin Solutions Inc.
Search Engine Optimisation provided by DragonByte SEO v2.0.32 (Pro) - vBulletin Mods & Addons Copyright © 2025 DragonByte Technologies Ltd.