chazzy2501 Posted February 12, 2010 Posted February 12, 2010 Hey guys, I was just browsing this thread and a virus popup popped up. http://www.edugeek.net/forums/windows-vista/49203-vista-has-ground-halt.html http://img442.yfrog.com/img442/7610/edugeekvirusad.png is it my machine as I only had this page open. (for a change)
mossj Posted February 12, 2010 Posted February 12, 2010 (edited) Fake! don't click it. It's a similar method to the AV2010, jobbie. Note the obvious in browser AV scan... Did you access edugeek through a proxy site? p.s I'd scan you computer just to be sure.. Edited February 12, 2010 by mossj
mossj Posted February 12, 2010 Posted February 12, 2010 (edited) Just happened to me.... Edugeek has something dodgy! Will use contact form to report this, but.. No proxy, IE7, Sophos updated.. only other Leicester Uni tabs open (and have been for sometime). Clicked a thread and got almost instantly redirected (page loaded for a split second). If anyone else get's it be sure to note down the details... Edited February 12, 2010 by mossj
mossj Posted February 12, 2010 Posted February 12, 2010 (edited) Ohhh just noticed the Affilite id.. Edited February 12, 2010 by ZeroHour
Martin Posted February 12, 2010 Posted February 12, 2010 From Network-Tools.com - 109.232.225.23 is from Aruba(AW) in region Caribbean and West Indies! mb
FN-GM Posted February 12, 2010 Posted February 12, 2010 The Ip might be worth adding to peoples blacklist
chazzy2501 Posted February 12, 2010 Author Posted February 12, 2010 "I was just looking at the technical vista fourm and this pooped up" It may be a typo but I think it's better than the original intention. "fourm" -- I have no excuse.
dwhyte85 Posted February 12, 2010 Posted February 12, 2010 Just got it now... Some dodgy ad script on the site?
trekmad Posted February 12, 2010 Posted February 12, 2010 Just had it while looking at the thread regarding giving admin password access to ICT co-ordinator.
SC-UK Posted February 12, 2010 Posted February 12, 2010 I had it earlier, and am using OSX - so it's almost certainly something to do with the site unfortunately.
ZeroHour Posted February 12, 2010 Posted February 12, 2010 I have just had this reported to me. I have pulled all the adverts just in case and reported it upstream. I have not personally had any popups as of yet.
Michael Posted February 12, 2010 Posted February 12, 2010 You've got to love these fake virus alerts. They look more and more convincing every revision the writers create. If and when you choose to run Malwarebytes, always choose Safe Mode with Networking at Windows startup, as it'll remove the offending files a lot more effectively than in normal mode.
sonofsanta Posted February 12, 2010 Posted February 12, 2010 Securus caught a couple of students that got caught by this a couple of weeks ago - it left viruses on the machines as picked up by Symantec Endpoint. I wasn't impressed! *mypremiumantyspywarepill* may be worth adding to your filters, as this was the site that popped up for them (and yes, the misspelling is correct)
Popular Post ZeroHour Posted February 12, 2010 Popular Post Posted February 12, 2010 (edited) I am scanning the server right now to confirm its nothing hosted at our end. Thanks for reporting the issue. Once we have found the source I will post asap. Things like this can happen with ad networks but the networks we use have this issue very very rarely and if they do there are steps in place to prevent the problem. I pulled all adverts for this reason as we will do anything we can to ensure nothing happens like this with edugeek but sometimes bizzare things can happen. Once we find the source we shall revisit their procedures and even change providers if their explaination is not satisfactury. We need adverts to pay for edugeek but we would never use crap like that to make money and we do everything in our power to ensure your not affected by our adverts. I have the adverts enabled for me and Dos right now and neither have had the issue yet so far but I suspect it may have been pulled. Our ad partner will inform us asap. Appologies anyway all, we never would knowingly do this. Edited February 12, 2010 by ZeroHour 7
ZeroHour Posted February 12, 2010 Posted February 12, 2010 Please can those that recieved the popup post what browser they were using and approx time.
mac_shinobi Posted February 12, 2010 Posted February 12, 2010 I have just had this reported to me. I have pulled all the adverts just in case and reported it upstream. I have not personally had any popups as of yet. I had that one before this post on my mac and ignored it and ran a scan using clamxav ( all virus defs up to date ) and found nothing so its obviously coming from that ip address ( on 10.6.2 all up to date with security updates when I had it happen ) and behind my mac firewall, router firewall. Not to say thats 100% but better then nothin P.S and FYI - I never had anything poopup lol Just saw above post Firefox 3.6 - about 3 or 4 days ago between 7:30 and 8:10am in the morning
mac_shinobi Posted February 12, 2010 Posted February 12, 2010 I had it earlier, and am using OSX - so it's almost certainly something to do with the site unfortunately. aye makes at least 2 of us
Guest richard_s Posted February 12, 2010 Posted February 12, 2010 Dolphin on Android about 12.45 today
Dos_Box Posted February 12, 2010 Posted February 12, 2010 Thanks all. Please state system (O\S) and browser type being used if at all possible please.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now