Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2896415 times)

0 Members and 3 Guests are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3825 on: June 28, 2015, 01:54:04 AM »
Did you read this: http://dontbubble.us/?kad=en_US
When you visit the page and you see what my fingerprinting detection extension has to report;
 CanvasFingerprintBlock
Blocked 800 potential HTML canvas fingerprinting attempts on this page
Prevented a script on http://dontbubble.us from capturing the point (1, 8) on the following 35px × 35px canvas:
Prevented a script on http://dontbubble.us from capturing the point (2, 8) on the following 35px × 35px canvas:
Prevented a script on http://dontbubble.us from capturing the point (3, 8) on the following 35px × 35px canvas:

Why the fingerprinting there?

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3826 on: June 28, 2015, 09:56:37 PM »
Already asked attention for this on many occasions in the past, but many, many websites are insecure because of outdated and unpatched CMS like Word Press )plug-ins and themes, especially free versions). The situation for JQuery scripts might even be worse, many online website versions have not been altered or updated from the word go = instalation date. Here we see sheer incompetence of web admins and hosters alike and this is putting the average user at risk. How long polonus will still be a voice crying in the wilderness?

Example: https://forum.avast.com/index.php?topic=172901.0

polonus (volunteer website security analyst and website error-hunter)
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline ehmen

  • Poster
  • *
  • Posts: 498
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3827 on: June 29, 2015, 02:34:34 AM »
New Exploitkit "Sundown" aims at user that has not updated Adobe Flash Player!
Adobe "the new Java" of our time!
Read: http://malware.dontneedcoffee.com/2015/06/fast-look-at-sundown-ek.html
Analysis: https://www.virusbtn.com/virusbulletin/archive/2015/06/vb201506-Beta-BEP
Info credits go to:  Aditya Sood en Rohit Bansal

polonus
When I clicked on the "Don't need coffee" website, my Avast piped up that it blocked a infection on that page.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3828 on: June 29, 2015, 07:24:51 AM »
Maybe the page exposed some of that code and Avast alerted that. There is no payload, so you are safe.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline mchain

  • Avast Evangelist
  • Ultra Poster
  • ***
  • Posts: 5633
  • Spartan Warrior
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3829 on: June 29, 2015, 09:07:39 AM »
I'm suspecting code get exposed because a user like myself, does not run NoScript in their browser.  Correct?
Windows 10 Home 64-bit 22H2 Avast Premier Security version 24.1.6099 (build 24.1.88821.762)  UI version 1.0.797
 UI version 1.0.788.  Windows 11 Home 23H2 - Windows 11 Pro 23H2 Avast Premier Security version 24.2.6105 (build 24.1.8918.827) UI version 1.0.801

Offline Staticguy

  • Super Poster
  • ***
  • Posts: 1427
« Last Edit: June 29, 2015, 12:35:21 PM by Staticguy »
DELL Inspiron 15" 7000 Gaming, Windows 10 Home Version 21H1 (OS Build 19043.1237), Trend Micro Maximum Security 2021 (17.0.1333), Avast SecureLine VPN (5.12.5655), Windows Firewall, Unchecky 1.2

Offline SpeedyPC

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3398
  • Avast shall conquer the whole world
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3831 on: June 29, 2015, 01:32:22 PM »
Arguably the best Anti-Virus for Windows is giving pirates a chance to turn into legit users for free

http://betanews.com/2015/06/28/arguably-the-best-anti-virus-for-windows-is-giving-pirates-a-chance-to-turn-into-legit-users-for-free/

http://venturebeat.com/2015/06/28/malwarebytes-offers-pirates-and-duped-customers-12-months-of-its-premium-antimalware-product-for-free/

So this link post by Charyb is a bloody scam >:( :o https://forum.avast.com/index.php?topic=172326.0

Which I've already bought 1 license via PayPal for my father laptop which I've kept every record of my order, MAN! I'm bloody PI$$ED OFF and real MAD!

CHARYB Please EXPLAIN WHY!
« Last Edit: June 29, 2015, 01:34:49 PM by SpeedyPC »
Gigabyte 670 LGA1200 Full ATX MB | Intel Core i9-13900 CPU/LGA 1700 | GeForce Nvidia RTX-4070/12GB | 32GB DDR4 | 2 x 1TB Samsung SSD | W11 Home 64bit | Avast Premium v24.3.6108 | Avast SecureLine VPN | Avast Secure Browser | Avast Driver Updater | Avast BreachGuard | Firefox 64bit | MalwareBytes Premium | Adguard Premium | CCleaner Portable | Macrium Reflect | 7-Zip

Offline Staticguy

  • Super Poster
  • ***
  • Posts: 1427
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3832 on: June 29, 2015, 01:39:33 PM »
Arguably the best Anti-Virus for Windows is giving pirates a chance to turn into legit users for free

http://betanews.com/2015/06/28/arguably-the-best-anti-virus-for-windows-is-giving-pirates-a-chance-to-turn-into-legit-users-for-free/

http://venturebeat.com/2015/06/28/malwarebytes-offers-pirates-and-duped-customers-12-months-of-its-premium-antimalware-product-for-free/

So this link post by Charyb is a bloody scam >:( :o https://forum.avast.com/index.php?topic=172326.0

Which I've already bought 1 license via PayPal for my father laptop which I've kept every record of my order, MAN! I'm bloody PI$$ED OFF and real MAD!

CHARYB Please EXPLAIN WHY!

Oh shit sorry about your loss. Sorry mate, I have no idea about that link you posted. What I can do for you is that I can go to Malwarebytes antimalware forum and mention that link that you have posted along with the 2 links that I have mentioned in my previous post and will check with them which ones is true and false.
DELL Inspiron 15" 7000 Gaming, Windows 10 Home Version 21H1 (OS Build 19043.1237), Trend Micro Maximum Security 2021 (17.0.1333), Avast SecureLine VPN (5.12.5655), Windows Firewall, Unchecky 1.2

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48568
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3833 on: June 29, 2015, 04:08:05 PM »
@ Staticguy
You don't have to do anything. Malware Bytes is ware of this.
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v22H2 64bit, 16 Gig Ram, 1TB SSD, Avast Free 23.5.6066, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline SpeedyPC

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 3398
  • Avast shall conquer the whole world
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3834 on: June 29, 2015, 04:14:56 PM »
@ Staticguy
You don't have to do anything. Malware Bytes is ware of this.

@ Staticguy thanks I'm dealing with these issue at MBAM forum as I have to sit tight and wait until they fully investigate, this is my very first mistake for nearly 20 years behind a computer and I am totally a shame :-[
« Last Edit: June 29, 2015, 04:17:44 PM by SpeedyPC »
Gigabyte 670 LGA1200 Full ATX MB | Intel Core i9-13900 CPU/LGA 1700 | GeForce Nvidia RTX-4070/12GB | 32GB DDR4 | 2 x 1TB Samsung SSD | W11 Home 64bit | Avast Premium v24.3.6108 | Avast SecureLine VPN | Avast Secure Browser | Avast Driver Updater | Avast BreachGuard | Firefox 64bit | MalwareBytes Premium | Adguard Premium | CCleaner Portable | Macrium Reflect | 7-Zip

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3835 on: June 29, 2015, 07:39:18 PM »
SSLv3 now dead: http://www.theregister.co.uk/2015/06/26/that_shot_you_heard_sslv3_is_now_dead/
link article author =  Richard Chirgwin

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6700
  • Trust only what you test yourself!
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.

Offline ehmen

  • Poster
  • *
  • Posts: 498
SSLv3
« Reply #3837 on: June 30, 2015, 02:39:42 AM »
SSLv3 now dead: http://www.theregister.co.uk/2015/06/26/that_shot_you_heard_sslv3_is_now_dead/
link article author =  Richard Chirgwin

polonus
Good thing SSL doesn't exist in Chrome.
« Last Edit: June 30, 2015, 02:41:57 AM by ehmen »

Offline Staticguy

  • Super Poster
  • ***
  • Posts: 1427
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3838 on: June 30, 2015, 12:22:10 PM »
@ Staticguy
You don't have to do anything. Malware Bytes is ware of this.

@ Staticguy thanks I'm dealing with these issue at MBAM forum as I have to sit tight and wait until they fully investigate, this is my very first mistake for nearly 20 years behind a computer and I am totally a shame :-[

Your welcome for helping you point to the right direction  :). Everyone make mistakes mate even though they are a beginner or expert. Nobody is perfect. I too been there done that and lessons are learned. Hope now everything is ok at your end?
« Last Edit: June 30, 2015, 12:24:03 PM by Staticguy »
DELL Inspiron 15" 7000 Gaming, Windows 10 Home Version 21H1 (OS Build 19043.1237), Trend Micro Maximum Security 2021 (17.0.1333), Avast SecureLine VPN (5.12.5655), Windows Firewall, Unchecky 1.2

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3839 on: June 30, 2015, 01:32:24 PM »
Hacked routers are spreading Dyre aka Dyreza banker trojan  malware:
http://www.brycampbell.co.uk/new-blog/2015/6/24/compromised-airos-routers-being-used-by-dyre
link alert by author Bryan campbell.
An in-depth analysis of this malcode: http://christophe.rieunier.name/securite/Dridex/20150608_dropper/Dridex_dropper_analysis.php
link article author = christophe rieunier

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!