Lux Aeterna
01-24-09, 08:17 PM
I dont think its directly from the ads. Zshare links are used heavily on this site and I've heard that zshare gives out viruses. There are alternatives like limelinx available. Perhaps a forum wide announcement?
thanks
EDIT: The virus is called Anti Virus 2009
http://answers.yahoo.com/question/index?qid=20080705123414AAVyhjm
http://209.85.173.132/search?q=cache:Sg_Z9BBX76AJ:www.zefron.com/forum/archive/index.php/t-88748.html+http://76.74.154.110+pdf+antivirus&hl=en&ct=clnk&cd=5&gl=us&client=firefox-a
Thats some info on it. Unless you are surfing with Firefox on a Mac OS you may be at risk.
yeah I had that too.
basically it exploits the ad shyt by redirecting to
http://76. 74.154.110/zqpqwioqewoiqa/pdf.php?id=9844&vis=1
or something like that where the second string is randomly generated [DO NOT CLICK THE LINK]]
basically it exploited shyt in the acrobat reader (launching it in the background), run some scripts inside it and put a launcher file (~.exe) on your computer and downloaded a trojan. theres also a GetModule folder in your program files folder along with bogus dlls in the c:\windows\system32 folder and system32\drivers folder
so,
upgrade your adobe acrobat ASAP to 9.0 and run some anti-virus programs like kaspersky, avant or malwarebytes' anti-malware and do a full scan
thanks
EDIT: The virus is called Anti Virus 2009
http://answers.yahoo.com/question/index?qid=20080705123414AAVyhjm
http://209.85.173.132/search?q=cache:Sg_Z9BBX76AJ:www.zefron.com/forum/archive/index.php/t-88748.html+http://76.74.154.110+pdf+antivirus&hl=en&ct=clnk&cd=5&gl=us&client=firefox-a
Thats some info on it. Unless you are surfing with Firefox on a Mac OS you may be at risk.
yeah I had that too.
basically it exploits the ad shyt by redirecting to
http://76. 74.154.110/zqpqwioqewoiqa/pdf.php?id=9844&vis=1
or something like that where the second string is randomly generated [DO NOT CLICK THE LINK]]
basically it exploited shyt in the acrobat reader (launching it in the background), run some scripts inside it and put a launcher file (~.exe) on your computer and downloaded a trojan. theres also a GetModule folder in your program files folder along with bogus dlls in the c:\windows\system32 folder and system32\drivers folder
so,
upgrade your adobe acrobat ASAP to 9.0 and run some anti-virus programs like kaspersky, avant or malwarebytes' anti-malware and do a full scan