Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 04-13-2005, 10:01 AM   #1
Greg B
So Fucking Banned
 
Join Date: Jul 2001
Location: EARTH (for the time being)
Posts: 7,014
Drudgereport Putting Trojans out???

Yo, I went to www.drudgereport.com and a trojan warning popped up!

WTF? Here's a screencap.

This happen to anybody else?
Greg B is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 10:02 AM   #2
Harmon
( ͡ʘ╭͜ʖ╮͡ʘ)
 
Harmon's Avatar
 
Industry Role:
Join Date: Mar 2004
Posts: 20,010
Gertting nothing in IE. May want to dump the AOL browser sparky
__________________
[email protected]
Harmon is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 10:04 AM   #3
bringer
i have man boobies
 
bringer's Avatar
 
Join Date: Jul 2003
Location: van down by the river
Posts: 13,082
nothing here either on both comps
norton on 1 and mcafee on the other
__________________
333-765-551
bringer is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 10:06 AM   #4
AlienQ - BANNED FOR LIFE
best designer on GFY
 
AlienQ - BANNED FOR LIFE's Avatar
 
Join Date: Mar 2003
Location: IALIEN.COM - High Definition Video and Photographic Productions -ICQ 78943384
Posts: 30,307
Ironic photo caption and headline.
AlienQ - BANNED FOR LIFE is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 10:07 AM   #5
Twe Russ
Confirmed User
 
Join Date: Jan 2003
Location: NYC
Posts: 3,493
Prolly spyware. ;)
__________________

Contact information - ICQ: 7.9.0.3.0.0 · AIM: no roach · E-Mail: roachito || @ || gmail || . || com
[Friend Finder - Geo Targeting & Incredible Site Ratio] - [Credit Card Traffic - Make $65 Per Join]
Twe Russ is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 10:08 AM   #6
Harmon
( ͡ʘ╭͜ʖ╮͡ʘ)
 
Harmon's Avatar
 
Industry Role:
Join Date: Mar 2004
Posts: 20,010
Quote:
Originally Posted by AlienQ
Ironic photo caption and headline.
Hahahah! I didn't notice that! Classic...
__________________
[email protected]
Harmon is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 10:30 AM   #7
Greg B
So Fucking Banned
 
Join Date: Jul 2001
Location: EARTH (for the time being)
Posts: 7,014
Yep it's AOL but what gets me is AOL has all this spyware, anti-virus bs they tout. They caught it though.

Don't know if it gets through the standard IE browser. If AOL caught it, I'll stick with AOL.

Drudge has too many pop ups. He doesn't need them. His site is so damned popular he can charge through the roof.
Greg B is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 10:55 AM   #8
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Upon execution, this Trojan checks for the system?s Internet connection. It then creates new registry entries in order to lower the Internet security settings of the user?s default browser.

This Trojan downloads files from the following URLs:


http://static.topconverting.com/acti...nningsgame.exe
http://static.topconverting.com/activex/tcupdater.exe
http://static.topconverting.com/activex/180ax.exe
http://static.topconverting.com/activex/optimize.exe
http://static.topconverting.com/activex/games.exe
It adds the following registry keys and entries:

HKEY_CLASSES_ROOT\LOADER2.Loader2Ctrl.1


HKEY_CLASSES_ROOT\LOADER2.Loader2Ctrl.1
@ = "Loader2 Control"

HKEY_CLASSES_ROOT\LOADER2.Loader2PropPage.1

HKEY_CLASSES_ROOT\LOADER2.Loader2PropPage.1
@ = "Loader2 Control"

HKEY_CLASSES_ROOT\LOADER2.Loader2Ctrl.1\CLSID

HKEY_CLASSES_ROOT\LOADER2.Loader2Ctrl.1\CLSID
@ = "{79849612-A98F-45B8-95E9-4D13C7B6B35C}"

HKEY_CLASSES_ROOT\CLSID\{38601801-2FF5-4A62-95DA-D2007161C1B4}

HKEY_CLASSES_ROOT\CLSID\{38601801-2FF5-4A62-95DA-D2007161C1B4}
@ = "Loader2 Property Page"

HKEY_LOCAL_MACHINE\Software\Classes\LOADER2.Loader 2Ctrl.1
@ = "Loader2 Control"

HKEY_LOCAL_MACHINE\Software\Classes\LOADER2.Loader 2Ctrl.1\CLSID


HKEY_LOCAL_MACHINE\Software\Classes\LOADER2.Loader 2Ctrl.1\CLSID
@ = "{79849612-A98F-45B8-95E9-4D13C7B6B35C}"

HKEY_LOCAL_MACHINE\Software\Classes\CLSID\
{38601801-2FF5-4A62-95DA-D2007161C1B4}

HKEY_LOCAL_MACHINE\Software\Classes\CLSID\
{38601801-2FF5-4A62-95DA-D2007161C1B4}
@ = "Loader2 Property Page"





Analysis By: Carlo Panganiban

Revision History:
First pattern file version: 2.364.06
First pattern file release date: Jan 21, 2005
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 04-13-2005, 12:15 PM   #9
Greg B
So Fucking Banned
 
Join Date: Jul 2001
Location: EARTH (for the time being)
Posts: 7,014
Smokey, one of my guys said the same thing.

It don't happen on IE only AOL browser which says to me that either AOL's security is better and catching it or that something else is going on. Why it would pop up during a Drudge load is unknown.

People have called into his show bitching about his popups and trojans or something but I thought they were joking.
Greg B is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.