Author Topic: Fake virus notification removal  (Read 10193 times)

0 Members and 1 Guest are viewing this topic.

giankar

  • Guest
Re: Fake virus notification removal
« Reply #15 on: September 18, 2011, 10:35:39 PM »
Sorry about that :/

gbaliotis

  • Guest
Re: Fake virus notification removal
« Reply #16 on: October 31, 2011, 12:50:02 PM »
Good morning.

We still have the same problem in Nethall.gr. In http://sitecheck.sucuri.net/scanner, we found that our site is verified clean and not blacklisted.

Nevertheless, we got the following error from avast:

avast! blocked you from visiting an infected webpage
Infection Details
URL:   http://separate-buffet.25u.com/showthrea...
Process:   file://C:\Program Files (x86)\Internet E...
Infection:   js:Downloader-gen@bhv [Expl]

Warn your friends to avoid this website Twitter
Threat stats for last 30 days

Blocked infected sites: 41 840 160
Infected domains: 288 237

Can you please help us. Unfortunately, we lose visits with this problem.

Best regards,

George Baliotis
e-mail: gbaliotis@gmail.com

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: Fake virus notification removal
« Reply #17 on: October 31, 2011, 01:08:47 PM »
Report    2011-10-31 12:15:56 (GMT 1)
Website    separate-buffet.25u.com
Domain Hash    acd1a5fbaa103c24d1e8c6205bd83930
IP Address    95.163.66.209 [SCAN]
IP Hostname    -
IP Country    RU (Russian Federation)
AS Number    12695
AS Name    DINET-AS Digital Network JSC
Detections    2 / 23 (9 %)
Status    SUSPICIOUS

Report    2011-10-27 13:23:01 (GMT 1)
IP Address    95.163.66.209
IP Hostname    -
IP Country    RU
AS Number    N/A
AS Name    N/A
Detections    2 / 26 (8 %)
Status    SUSPICIOUS

http://www.google.com/safebrowsing/diagnostic?site=separate-buffet.25u.com
http://global.sitesafety.trendmicro.com/
http://www.malwaredomainlist.com/mdl.php?search=95.163.66.209
http://www.mywot.com/en/scorecard/95.163.66.209
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

gbaliotis

  • Guest
Re: Fake virus notification removal
« Reply #18 on: October 31, 2011, 02:50:35 PM »
Hello Asyn.

Thank you very much for your quick response!

Can you help us find the infected file? Where did you find this Russian site? Where is it placed in Nethall.gr?

Thanks for your help in advance.

George Baliotis

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: Fake virus notification removal
« Reply #19 on: October 31, 2011, 03:08:28 PM »
Thank you very much for your quick response!

You're welcome..!
Sorry, no time to investigate further, atm.
Hopefully someone else can help you.
Good luck..!
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0