Author Topic: MY safe zone browser hijacked! goes to fake google  (Read 62610 times)

0 Members and 1 Guest are viewing this topic.

Offline Nesivos

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1352
  • Artists Rendering of New Pauley Pavilion @ UCLA
Re: MY safe zone browser hijacked! goes to fake google
« Reply #165 on: April 14, 2011, 09:39:34 PM »
I'm glad Vlk posted and I'm sure avast will do what they can to keep users safe.  It serves them only if things like this do not happen, so I imagine they are as hot about this as us users who were at risk.  We may have had personal info stolen and they may lose market share and credibility over this kind of thing (though it was a 3rd party that was the actual source).  

I'd like to hear from Mailshell on this.  Do they know if personal info has been taken or was it just a redirection with not much else involved.  I think we all should hear from mailshell on this.  Maybe we should email them directly, I don't know.  

I still have great confidence in the avast team and the program (but likely won't be using SZ for a while--a sandboxed FF and Trusteer for me).  It's clearly in there best interest to get good answers to this as the perception of protection is also important in seeking to grow security company.

Nevertheless, I'm glad I have LifeLock!

Your statement about possibly having personal info stolen is true.  To greatly mitigate this risk my suggestion is with respect to websites where you log in for any reason like this one you log in at the HTTPS URL.   This should prevent login information from being stolen during the login process.  In addition it is wise not to use the same username and password for multiple websites where you do any kind of financial activity.

Avast is great but it doesn't hurt to have simple additional safety nets to help prevent identity theft.

Some people use LastPass Password Manager to aid in preventing ID theft.  I don't use it because I am not comfortable with storing any data out in the cloud.  Just me :)



« Last Edit: April 14, 2011, 09:50:07 PM by Nesivos »
OS: W7-SP1, Security: AIS 7, SAS Pro, WinPatrol Plus Network:2 Dell 570MT x64 1 Dell 660 Desktop with 8GB RAM Default Browser & Email: Firefox & Thunderbird latest Betas

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 46009
  • 61 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: MY safe zone browser hijacked! goes to fake google
« Reply #166 on: April 14, 2011, 10:16:10 PM »
My suggestion is to always store a strong master password on a
sticky note pasted on your refrigerator.
Cyber criminals may steal information from your computer however they are not likely
to raid your refrigerator.

Free avast! Security Seminar: http://bit.ly/2N1eaR2  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v21H2 64bit, 16 Gig Ram, 1TB SSD, AvastOmni 21.6, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq

Offline Zyndstoff (aka Steven Gail)

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 2610
  • I can resist anything except temptation.
    • tex62
Re: MY safe zone browser hijacked! goes to fake google
« Reply #167 on: April 14, 2011, 10:21:13 PM »
My suggestion is to always store a strong master password on a
sticky note pasted on your refrigerator.
Cyber criminals may steal information from your computer however they are not likely
to raid your refrigerator.


+1 wise words from a wise man. I back that.
7 x64 SP1, FF 8a Aurora, TB6, 6.0.1203 Free
Free MBAM Clear

Offline Vlk

  • Avast CEO
  • Serious Graphoman
  • *
  • Posts: 11664
  • Please don't send me IM's. Email only. Thx.
    • ALWIL Software
Re: MY safe zone browser hijacked! goes to fake google
« Reply #168 on: April 15, 2011, 12:45:49 AM »
OK, a few more details on this case:

- the incorrect data was there for 14 hours and 21 minutes (during the day of April, 13)
- it affected just a fairly limited number of domains
- it affected only one server
- no https sites were affected
- no password and/or personal information stealing, malware or any other dangerous/malicious redirections were involved

Once we confirmed the problem, the server was brought offline. The other servers in the cluster (as well as the one that was affected) were thoroughly checked and precautions have been taken to prevent this, or similar incidents from happening in the future.


I fully understand that this is actually a second time this week our backend systems were having a problem, and that this may threaten your confidence in our products. Please note that we take these incidents very seriously and are working hard on making absolutely sure you, our users, stay safe.


Thanks
Vlk
If at first you don't succeed, then skydiving's not for you.

Offline Charyb

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 2424
Re: MY safe zone browser hijacked! goes to fake google
« Reply #169 on: April 15, 2011, 01:05:45 AM »
Thanks for the info. No confidence lost here. Just some disappointment with the x2 thing. Makes me wonder how people handled their banking before safezone was developed? My only question would be how did the incorrect data get there in the first place?

Offline Vlk

  • Avast CEO
  • Serious Graphoman
  • *
  • Posts: 11664
  • Please don't send me IM's. Email only. Thx.
    • ALWIL Software
Re: MY safe zone browser hijacked! goes to fake google
« Reply #170 on: April 15, 2011, 01:07:02 AM »
Thanks for the info. No confidence lost here. Just some disappointment with the x2 thing. Makes me wonder how people handled their banking before safezone was developed? My only question would be how did the incorrect data get there in the first place?

It was replicated from some other (external) server that had the problem.
If at first you don't succeed, then skydiving's not for you.

Offline logos

  • Avast Überevangelist
  • Serious Graphoman
  • *****
  • Posts: 9441
Re: MY safe zone browser hijacked! goes to fake google
« Reply #171 on: April 15, 2011, 01:08:05 AM »
@vlk okay thanks, so:

1 I'd still like to know how the incorrect data landed on the server
2 this doesn't change anything concerning the trust I have in Avast
>>> 1st issue happens (VPS error)
>>> second issue was likely caused by a lack of good maintenance and security checks on the server side (mailshell)...you're not the owner and the issue was probably unpredictable for you. Not sure how you'll be able to monitor that in the future to prevent a similar issue in real time...let me repeat again, even if I'm very unlikely to use the SZ again, I still do consider Avast as a very serious company. I guess you're bringing the details about the incident as you get them, and that's appreciated.
w7 - ais7

Offline logos

  • Avast Überevangelist
  • Serious Graphoman
  • *****
  • Posts: 9441
Re: MY safe zone browser hijacked! goes to fake google
« Reply #172 on: April 15, 2011, 01:10:36 AM »
Thanks for the info. No confidence lost here. Just some disappointment with the x2 thing. Makes me wonder how people handled their banking before safezone was developed? My only question would be how did the incorrect data get there in the first place?

It was replicated from some other (external) server that had the problem.

okay... that's already the beginning of an answer
w7 - ais7

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 46009
  • 61 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: MY safe zone browser hijacked! goes to fake google
« Reply #173 on: April 15, 2011, 01:30:14 AM »
@ Vlk,
It was never a question of trust but rather a need for an explanation that I
would be able to pass on to those that will be questioning me about what happened
and what's being done to prevent a re-occurrence.  :)
Free avast! Security Seminar: http://bit.ly/2N1eaR2  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v21H2 64bit, 16 Gig Ram, 1TB SSD, AvastOmni 21.6, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq

Offline DraKuL

  • Sr. Member
  • ****
  • Posts: 394
Re: MY safe zone browser hijacked! goes to fake google
« Reply #174 on: April 15, 2011, 02:02:14 AM »
1. Being a security conscience person it makes me speculate if the update servers were compromised as well.
2. My hat is off to the senior members here who volunteer their time to support users.

1. Not in any way related to this issue...! ;)
2. Big +1 from me, especially to Drakul..!! :)
asyn


Thanks :) Glad I could help  :)
ASUS ROG Mobo - AMD Ryzen 7 3700X| RAM 32.00GB | 4TB HDD +1TB SSD | ATI Radeon RX 5700 XT 8GB
Windows 10 Pro 64bit |Avast One Individual | MBAM PRO - RealTime | SUPERAntiSpyware PRO |CC Cleaner | Chrome | Firefox |(The Latest Release of all the Software)

Offline DraKuL

  • Sr. Member
  • ****
  • Posts: 394
Re: MY safe zone browser hijacked! goes to fake google
« Reply #175 on: April 15, 2011, 02:04:27 AM »
@ Vlk,
It was never a question of trust but rather a need for an explanation that I
would be able to pass on to those that will be questioning me about what happened
and what's being done to prevent a re-occurrence.  :)


Eagerly waiting for this reply :) but again, I think its what MailShell is doing to prevent this, not Avast.. right? Since its upto them to keep their servers safe?
ASUS ROG Mobo - AMD Ryzen 7 3700X| RAM 32.00GB | 4TB HDD +1TB SSD | ATI Radeon RX 5700 XT 8GB
Windows 10 Pro 64bit |Avast One Individual | MBAM PRO - RealTime | SUPERAntiSpyware PRO |CC Cleaner | Chrome | Firefox |(The Latest Release of all the Software)

Offline zeeks

  • Newbie
  • *
  • Posts: 16
Re: MY safe zone browser hijacked! goes to fake google
« Reply #176 on: April 15, 2011, 03:19:49 AM »
So I finally got a response from the ticket I opened up last night, About browser being hijacked...
Senoir tech xxxxxx in support writes "open avast and run scan.... your computer should now be virus free!! Thank you for opening a ticket" Yes those are quotes and I Did write Senoir
Glad they jumped right on that

Offline Charyb

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 2424
Re: MY safe zone browser hijacked! goes to fake google
« Reply #177 on: April 15, 2011, 03:22:31 AM »
So I finally got a response from the ticket I opened up last night, About browser being hijacked...
Senoir tech xxxxxx in support writes "open avast and run scan.... your computer should now be virus free!! Thank you for opening a ticket" Yes those are quotes and I Did write Senoir
Glad they jumped right on that
I am a firm believer that you get better and quicker help on this forum.  :)
« Last Edit: April 15, 2011, 03:24:34 AM by Charyb »

Offline dagrev

  • Poster
  • *
  • Posts: 424
Re: MY safe zone browser hijacked! goes to fake google
« Reply #178 on: April 15, 2011, 03:27:53 AM »
I had the issue but my confidence in avast is not diminished.  Unfortunately such things happen and all that can be done is seek to minimize them and the damage as much as possible.  If it were a perfect world we humans simply wouldn't fit it.

I appreciate the answers and the sincerity in which they are given.  I'm a paying user and have every intention to purchase another years license when the current one is up.  (I believe in supporting good companies and their products.  In fact I wish more people would financially support avast as this can only help to provide capital for better products in the future and reward those who create those products.  I guess that's another topic though.)  I said all that to say I'm still a satisfied paying avast user.
Toshiba P870 Intel i7 2.30 GHz, 8GB Ram / Win7 (x64) SP1 | AIS 8 | MBAM Pro | AX64 Time Machine | Acronis TI | iDrive (free) | Pale Moon Browser
Naturalism postulates a non-rational source for man’s rationality. (K.Samples)
Would any one trust in the convictions of a monkey’s mind...? (Darwin)

Offline zeeks

  • Newbie
  • *
  • Posts: 16
Re: MY safe zone browser hijacked! goes to fake google
« Reply #179 on: April 15, 2011, 03:30:42 AM »
You guys are pimps yes, I was a little setback by the response from official tech support, almost sounds like generated response. Whereas here you have 150 replies. Maybe this is normal with ticket? I'm a newb here