longshooter Report post Posted December 26, 2012 I don't know what antivirus everyone is using but I am using Kaspersky AV 2013. It blocks the download but it happens everytime I click on anything on this website. I have the same antivirus and experiencing the same issues as well Share this post Link to post Share on other sites
Coach Report post Posted December 26, 2012 Yep, I get redirected to a random page on my first visit, and when I do get here, my browser (IE 9) locks up when viewing posts. I switched over to Firefox to see if the issues continue. Share this post Link to post Share on other sites
Coach Report post Posted December 26, 2012 FWIW, I hit the site with Chrome and could tell it was trying to download something. So far, Firefox has been the best at rejecting the malicious code. Share this post Link to post Share on other sites
elkaholic Report post Posted December 26, 2012 yep still showing up- a pop up from comp security - maliacios threats are being treated ven when going from page tp page on this thread- popup from security detected threats are being cleaned - no action needed - Share this post Link to post Share on other sites
Perkele! Report post Posted December 26, 2012 Hi Amanda, Same here. There is an ActiveX piggybacking to cgi.bin and trying to dump a Trojan. If you are logging in as admin from the control page you won't see it because it seems to be starting postcript, after the initial index page. Who ever is trying to hack (may very well be a Bot) is not very advanced. Please have the hosting company do an indepth scan, the malware may very well be attached to a picture or video that was uploaded by a member. If they can locate the source and you can contact the member to have his system scanned it would help us all. I can't get to the main page. So I have to navigate from sub menus and topics. Share this post Link to post Share on other sites
Perkele! Report post Posted December 26, 2012 Wait a tick, Forum is not infected. Whatever it is, it is attached to CWT home page. Only when I type the home page address the Trojan tries to open. Hmmmmmmmm. Amanda, did you add anything to the home page or put a new banner add ? Share this post Link to post Share on other sites
izquik72 Report post Posted December 26, 2012 I have been getting an Trojan everytime I click the site as well. Microsoft Forefront Endpoint catches it everytime. Trojan:JS/Iframe.AQ Share this post Link to post Share on other sites
CouesWhitetail Report post Posted December 26, 2012 Thanks for all the additional info. I submitted a request to tech support early yesterday, but haven't heard back. Usually they are pretty quick, but right now it seems they are backed up from christmas. I will get this fixed as soon as I can. In the meantime, if you posted any hunt stories or photos since Christmas, you might want to copy and paste the story into a word document so that you have a copy of it. It's possible that if they can't find the malicious code, that we will just have to reload a backed up version of the forum from before Christmas, which means any posts made after that might be lost. So if it's important to you, you might save your stories. Share this post Link to post Share on other sites
Elkaddict Report post Posted December 26, 2012 Wait a tick, Forum is not infected. Whatever it is, it is attached to CWT home page. Only when I type the home page address the Trojan tries to open. Hmmmmmmmm. Amanda, did you add anything to the home page or put a new banner add ? I think you're on to something. I never have a problem but my bookmark takes me directly to the forum. Just my .02. Share this post Link to post Share on other sites
Willyhunts2 Report post Posted December 27, 2012 Mine is bookmarked on my phone. Takes me straight to the forum, can get to everything just really really slow the last few days. Share this post Link to post Share on other sites
PRDATR Report post Posted December 27, 2012 I also bookmark straight to the Forum. Everything is working fine for me. Please post what Anti Virus you are using in your post and if you are going straight to the Home Page or not. Share this post Link to post Share on other sites
lonne Report post Posted December 27, 2012 Yesterday I viewed this forum post and had no issues when others reported having. Then suddenly today, I had the exact same issue everyone described and could not pull up CWT. I was using Internet Explorer. I switched over to Google Chrome and everything worked fine. Lonne Share this post Link to post Share on other sites
Perkele! Report post Posted December 27, 2012 Unfortunately I didn't think about taking a screen shot of the goofy site it redirected me to. I was too wrapped up in dumping countermeasures and making sure that nothing got through. If anybody took a screen shot (just the screen shot) you may wanna send it to Amanda. Share this post Link to post Share on other sites
Coach Report post Posted December 27, 2012 In Firefox, you can see the activity in the lower left portion of the screen, it flashes about redirecting and sending info to a number of ad "bot" sites. Ad Yieldmanager, adnx, many others too fast to catch them all. Bummer, It's now crashing IE and Firefox. Share this post Link to post Share on other sites
mattys281 Report post Posted December 27, 2012 I go directly to the forum through my favorites & couldn't get on at all yesterday. Seems to be working this morning though. Did they fix something last night? Share this post Link to post Share on other sites