Club Cobra

Club Cobra (http://www.clubcobra.com/forums/)
-   Lounge (http://www.clubcobra.com/forums/lounge/)
-   -   Virus Detected (http://www.clubcobra.com/forums/lounge/98678-virus-detected.html)

55312 08-01-2009 06:38 AM

Virus Detected
 
Ron, Jamo et al

My Kaspersky anti virus is flagging a virus on Keith Kraft's .jpg that comes up on the new post home page. It says it's the HEUR virus and embedded in or tagged onto the .jpg. Probably ought to check it out.

Tim

computerworks 08-01-2009 06:45 AM

Thanks for pointing that out...but it's a little confusing.

The KC banner graphics are all GIFs and NOT JPGs.

May be a Kasper false positive?

Next time you see the suspect graphic, right-click on it and select Properties...then copy and paste the "Image Properties - Location" to this thread

computerworks 08-01-2009 06:49 AM

Quote:

Any detections by Kaspersky which begin with "Heur" are Heuristic detections.
Heuristics are a way to detect unknown/undetected threats... so basically, Kaspersky doesnt have any information about the file.
That means that it may contain a pattern that may be a threat, but it is not quite sure.

Still, would like to get thar URL of the particular image

trularin 08-01-2009 07:09 AM

I have heard of a computer doctors fixing a computer virus.

So do you all recommend we get a Heuristic healer for this Heuristic virus???

:LOL: :LOL: :LOL:

computerworks 08-01-2009 07:12 AM

I would just sit on a mat with your legs crossed...and just hum-m-m-m-m.

55312 08-01-2009 08:50 PM

Here's the whole enchilada according to Kaspersky:

Firefox: Loading object http://www.keithcraft.com/images/home_01.jpg,containing virus HEUR: Exploit.Script.Generic.Detected


Greek to me but worth forwarding to you guys.

Tim

ps: Kaspersky wouldn't let me copy and paste so I wrote it down verbatim.

computerworks 08-01-2009 09:37 PM

Thanks...that's enough of a clue to figure it out.

Plain english explanation....something has changed on the landing page at KC's site...such that if you click on the banner, it would get an error from the KC site, but redirect to their (new) home page.
The pointer expects a graphic, but the landing page has a script... which could be interpreted as a trick link to something viral. That's what Kasper is finding when the link path is examined.

It's just some messy code, but, rest easy, it's not a viral problem.

It is something that needs a fix on this end...I'll get with Brent on this.

Thanks for pointing it out.

Tom Cimino 08-02-2009 05:06 AM

I went directly to Keith's website and my AVG showed a virus threat called "JS/downloader.agent". It would not allow the website to open.

55312 08-02-2009 07:33 AM

Hmmmm

I'm thinking that given the fact we have flagged a very serious problem there in Arkadelphia, a freshening of my old 1963 center oiler (including a new pair of aluminum heads) might be a just reward.......:LOL:

Tim

bomelia 08-02-2009 08:00 AM

There is most def a problem at keith's website. My Kaspersky gave the same alert... won't even let me open the site!

Kaspersky rocks! (no financial interest)

Mike


All times are GMT -7. The time now is 04:54 AM.

Powered by vBulletin® Version 3.8.0
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.6.0
The representations expressed are the representations and opinions of the clubcobra.com forum members and do not necessarily reflect the opinions and viewpoints of the site owners, moderators, Shelby American, any other replica manufacturer, Ford Motor Company. This website has been planned and developed by clubcobra.com and its forum members and should not be construed as being endorsed by Ford Motor Company, or Shelby American or any other manufacturer unless expressly noted by that entity. "Cobra" and the Cobra logo are registered trademarks for Ford Motor Co., Inc. clubcobra.com forum members agree not to post any copyrighted material unless the copyrighted material is owned by you. Although we do not and cannot review the messages posted and are not responsible for the content of any of these messages, we reserve the right to delete any message for any reason whatsoever. You remain solely responsible for the content of your messages, and you agree to indemnify and hold us harmless with respect to any claim based upon transmission of your message(s). Thank you for visiting clubcobra.com. For full policy documentation refer to the following link: