Re-direct to a Russian site from here.

Pixl

Legit VIP
When I go to FTA set top box discussions>Optibox Raptor HD discussion area I get sent to a Russian web site. I ran a virus scan and a few other checks on my computer, nothing found. Went back to the same area and ended up in Russia again.
 
I tried and did not get redirected. What browser are you using? If you are using Internet Explorer go to "Tools" then "Internet Options" under Browsing history click on settings and then click "View Objects" look for an object with a just a string of numbers and letters, or a name that you don't recognize. Most of the objects that are listed with just a string of letters and numbers are browser hijackers and malware. You can delete those but first you should turn off system restore, otherwise you may not get rid of it. If you haven't already, you should also download and use programs like superantispyware and malwarebytes, again you should turn off your system restore before running your scans.
 
Using firefox and avast, eveytime I go to reciever discussions I get Trojan blocked:
Infection Details
URL: http://www.legitfta.com/forum/images/tec...
Process: C:\Program Files\Mozilla Firefox\firefox...
Infection: JS:Iframe-AHU [Trj]

Avast catches this trojan and blocks the redirect. So there is malware somewhere in the code to get to this sub-forum.

Happy Testing!!!
 
Seems like the same one I've been getting when browsing random locations on the site. I am also using the latest Firefox 20.01. But, like I mentioned earlier, I just let Kaspersky block it and haven't been beamed to Russia or any other site.
 

Attachments

  • JS.Iframe.dcv.webp
    JS.Iframe.dcv.webp
    21.5 KB · Views: 13
Hey guy's, I have scanned the forum and it turns up clean..I believe there is some malware on the server and I have contacted the host to look into this.
They are very good at what they do and I'm sure will clean it up or advise further.
 
Well the host has ran a check on the domain and server and came up clean..It is possible something could be there, what I have done is install Spybot Search & Destroy 2.0. in conjunction with malwarebytes.
I would recommend installing Spybot Search & Destroy 2.0 you might be surprised what it finds and cleans.

Install.
Run the update tool first.
Then immunize the browsers you use.
Then start the scan.
Now apply fixes to what it finds.

Since doing this I have not experienced any re-directs, so please give it a try.

I can always overwrite the forum, but don't want to take measures if at all possible.

Safe link for Spybot Search & Destroy 2.0 download here>> http://www.filehippo.com/download_spybot_search_destroy/
 
I've had these popup warnings for a over a month now, as I mentioned in one of the much earlier posts. I just allowed Kaspersky to block the popups, since it didn't redirect me to another site and lived with it.

Here's the same popup info when I visited Multiple login-moderator-prodigy-vip-and other sections:
it corresponds to the js.iFrame.dcv popup pointing to http://www.legitfta.com/forum/images/techtwo/misc/vbulletin-ajax-threadlist-vbstyles.js?v=420

No damage done, as long as it gets blocked on my end. Maybe that image can be deleted?
 
I just got re directed from here when I was just trying to post a feed. Some big link from vidsguide trying to say I need a flash update. If anyone wants the link let me know.
 
I booted over to Win 7 from Winxp 64 for some other project and while there, I thought I would log in for the latest posts. Just got beamed to Russia. Did a Spybot scan on my system and it came out clean; same thing with Kaspersky.
 

Attachments

Last edited:
When I went to one section of the forum with a list of posts today, after a few seconds of sitting there, some javascript tried to send me to some redirect site, but I had that site in my hosts file pointing to 127.0.0.1, so it didn't work! The page link was:
Code:
http://otnnetwork.net/?epl=jV_ObsNzXrk1Pn8b2uV61mquYjggoXCK5C7-NgZiJ6IwB5I5KtgkhQBKxKypRnrfW3VAD23zQaa7C4uDyjVF3wDyhOARCGK7f-RoO1FabysF5FpP1M9tCQWFCWnI6tCSiJuJBYMFLvVUys9AZaF6jhz3KfedpZ31Xqz1jlLWPWnjNECj0WSQkWlET0wRg5qpfgpPTT16GlE_BTSbKoQAIJDfb78AhAEA8P8DAABAgN8LAAA1VzEcWVMmWUExNmhaQqQAAADw
and the server it was trying to go to was
Code:
b.zeroredirect.com

I highly recommend a good ad/virus blocking hosts file like they have at www.mvps.org and other sites. That and I run Linux...:brows:
 
Back
Top