Author Topic: Constant Threat Detection  (Read 5821 times)

0 Members and 2 Guests are viewing this topic.

REDACTED

  • Guest
Constant Threat Detection
« on: June 18, 2014, 09:59:38 AM »
I first started dealing with this problem today. Whenever I go to websites that I've regularly visited in the past I am receiving constant threat detection notices. The infection says HTML:Bankfraud-TQ[Trj]. I've ran a scan with Avast, a scan with Malwarebytes, and even with Combofix. None detected anything that has stopped these constant threat detections that I just started getting today. Does anyone know what is going on? Running scans with those three programs is the limit of my antivirus knowledge. Any help would be appreciated. These constant notices are more annoying than anything else.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Constant Threat Detection
« Reply #1 on: June 18, 2014, 10:03:05 AM »
Quote
Whenever I go to websites that I've regularly visited in the past I am receiving constant threat detection notices.
the website is probably infected......

what is the url ?

is it just one site ?
does it happen when not surfing also ?



« Last Edit: June 18, 2014, 10:08:56 AM by Pondus »

REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #2 on: June 18, 2014, 10:10:50 AM »
Quote
Whenever I go to websites that I've regularly visited in the past I am receiving constant threat detection notices.
the website is probably infected......

what is the url ?

I'm getting it from multiple sites I've visited for several years without any problems like this. I will list a few just for reference. http://www.billburr.com/podcast http://www.bestfightodds.com/ http://theafterdisaster.com/ http://mmajunkie.com/

REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #3 on: June 18, 2014, 10:15:47 AM »
Quote
Whenever I go to websites that I've regularly visited in the past I am receiving constant threat detection notices.
the website is probably infected......

what is the url ?

is it just one site ?
does it happen when not surfing also ?

I've noticed it only when surfing sites like those that are the least secure of the ones I visit. I don't get it on the Google homepage, my private torrent site, Chase Bank or Yahoo. It does go off when I open uTorrent. Just seems like it got sensitive to less secure sites all of a sudden today.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Constant Threat Detection
« Reply #4 on: June 18, 2014, 10:18:59 AM »
if you right click avast tray icon, and select...show last popup.... click the pin in top right corner to make it stay on screen
then take a screenshot of it and attach here

then follow instructions here and attach OTL diagnostic log    https://forum.avast.com/index.php?topic=53253.0

also attach  Combofix log from your scan

when done the malware experts will be notified and help you








REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #5 on: June 18, 2014, 10:20:43 AM »
Sometimes there's as many as 30 objects detected just from going to one of those pages, but the infection is always the same bankfraud thing. I get different amount of objects detected with each refresh.

REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #6 on: June 18, 2014, 10:27:55 AM »
Here is the threat notice.

REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #7 on: June 18, 2014, 10:44:28 AM »
Hold on messed that up
« Last Edit: June 18, 2014, 12:00:39 PM by dawhitesoxkid »

REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #8 on: June 18, 2014, 10:54:06 AM »
Here's a screenshot because I'm not sure if that link is showing up with the right info.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Constant Threat Detection
« Reply #9 on: June 18, 2014, 10:55:13 AM »
thats OK ..... important log is OTL


REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #10 on: June 18, 2014, 11:13:59 AM »
thats OK ..... important log is OTL
« Last Edit: June 18, 2014, 11:15:45 AM by dawhitesoxkid »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Constant Threat Detection
« Reply #11 on: June 18, 2014, 11:49:25 AM »
you have saved the log as Unicode so it looks like chinese ..... you have to save it as ANSI


REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #12 on: June 18, 2014, 11:59:33 AM »
you have saved the log as Unicode so it looks like chinese ..... you have to save it as ANSI

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Constant Threat Detection
« Reply #13 on: June 18, 2014, 12:02:19 PM »
that looks fine

malware experts are notified. it may take some hours before they are online....


REDACTED

  • Guest
Re: Constant Threat Detection
« Reply #14 on: June 18, 2014, 12:18:19 PM »
Thanks.