Unconfigured Ad Widget

Collapse

Site security WARNING

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • #16
    ojisan
    Agent 86
    CGN Contributor
    • Apr 2008
    • 11774

    Thank you, Tincon.
    Despite our differences of opinion, we are all in this together.

    Originally posted by Citadelgrad87
    I don't really care, I just like to argue.

    Comment

    • #17
      ILVH8RS
      Member
      • Mar 2013
      • 367

      Originally posted by r31ncarnat3d
      Hope you guys don't mind a newbie commenting on this.

      I checked out his site and I couldn't find malicious code. I checked the source code on both his image repo and the parent site.

      That said, while rievera.bewegundm looks like just a normal image repo, the parent site bewegundm looks extremely suspicious. It looks like some sort of wordpress site. Running the blog posts through a translator shows that it's all advertisement spam. Furthermore, the site is written in German but WHOIS shows the domain is registered to someone in China.

      Disclaimer: I have no background in NetSec so hopefully someone who does work in the field can come in here to explain. If I had to venture a guess though, it looks to me like he's trying to spam hits to his site where he either gets money on clickthroughs or on people buying what he's peddling. Not infecting people with malicious code, but not kosher either.

      Some pics to show examples so y'all don't have to visit his site:



      Aprreciate some one checking this out but I have absolutely no idea wtf your saying here....lost me at the word code. I know absolutely squat about these types of things but whats with the Honeymoon in Thiland post?
      - If you want mine...You better bring yours!!!! Support the fight for 2A rights!!!

      Comment

      • #18
        ILVH8RS
        Member
        • Mar 2013
        • 367

        ^ and yes thats a CGN smiley....
        - If you want mine...You better bring yours!!!! Support the fight for 2A rights!!!

        Comment

        • #19
          12voltguy
          Veteran Member
          • Feb 2006
          • 4003

          Originally posted by Aldemar
          I don't remember ever clicking on a smiley.
          Originally posted by Tincon
          I


          You don't have to, your browser automatically loads them. If this keeps up, it may be worth not allowing external image links (require the image to be uploaded/attached here). But I'm not sure how dangerous this code really is. Something is up for sure though.
          Originally posted by bigcalidave
          Don't click on links you don't know or trust. Simple!
          NOT so simple!

          Comment

          • #20
            r31ncarnat3d
            Member
            • Apr 2012
            • 320

            Originally posted by ILVH8RS
            Aprreciate some one checking this out but I have absolutely no idea wtf your saying here....lost me at the word code. I know absolutely squat about these types of things but whats with the Honeymoon in Thiland post?
            Just spammy stuff trying to sell you things. I don't work in NetSec but my guess is he's a spammer trying to sell stuff, and that linking to his site will get him clickthroughs which means more money for him.

            I think it's just a less annoying (although just as bad) version of people spamming you with Viagra and timeshare emails.

            Comment

            • #21
              jben
              CGN/CGSSA Contributor
              CGN Contributor
              • Oct 2008
              • 2037

              I was wondering why Avast kept telling me there was malicious content on some threads last night.

              Comment

              • #22
                TheBest
                Senior Member
                • Nov 2008
                • 1114

                Here's another one: http://www.calguns.net/calgunforum/s...postcount=7641

                Links from "wissensde.com".

                Comment

                • #23
                  numpty
                  CGN/CGSSA Contributor
                  CGN Contributor
                  • Jul 2012
                  • 2223

                  Originally posted by ILVH8RS
                  Aprreciate some one checking this out but I have absolutely no idea wtf your saying here....lost me at the word code. I know absolutely squat about these types of things but whats with the Honeymoon in Thiland post?
                  Ditto!
                  The thief does not come except to steal, and to kill, and to destroy. I have come that they may have life, and that they may have it more abundantly.
                  John 10:10


                  iTrader: https://www.calguns.net/calgunforum/....php?t=1888351

                  Comment

                  • #24
                    The Gleam
                    I need a LIFE!!
                    • Feb 2011
                    • 13030

                    Originally posted by TheBest
                    Here's another one: http://www.calguns.net/calgunforum/s...postcount=7641

                    Links from "wissensde.com".
                    Wait; your telling me there are pages/post with harmful smileys, then tell me to click on that link to a page/post with a harmful smiley? Ummm.. no.

                    Or does one have to actually click on the smiley for the malware to be ingested? I don't think I've ever clicked on a smiley for any reason. Why would you?

                    -----------------------------------------------
                    Originally posted by Librarian
                    What compelling interest has any level of government in knowing what guns are owned by civilians? (Those owned by government should be inventoried and tracked, for exactly the same reasons computers and desks and chairs are tracked: responsible care of public property.)

                    If some level of government had that information, what would they do with it? How would having that info benefit public safety? How would it benefit law enforcement?

                    Comment

                    • #25
                      TheBest
                      Senior Member
                      • Nov 2008
                      • 1114

                      Originally posted by The Gleam
                      Wait; your telling me there are pages/post with harmful smileys, then tell me to click on that link to a page/post with a harmful smiley? Ummm.. no.

                      Or does one have to actually click on the smiley for the malware to be ingested? I don't think I've ever clicked on a smiley for any reason. Why would you?

                      No, you don't need to click on it at all. Just loading the JPG can launch malware. The malicious code is in the EXIF data that's downloaded and read for every image.

                      Comment

                      • #26
                        The Gleam
                        I need a LIFE!!
                        • Feb 2011
                        • 13030

                        Originally posted by TheBest
                        No, you don't need to click on it at all. Just loading the JPG can launch malware. The malicious code is in the EXIF data that's downloaded and read for every image.
                        Crazy! Never would have thought. So this could happen randomly; this could have ALREADY happened! I can't recall which threads I might have simply clicked, read, and with little interest - vacated.
                        -----------------------------------------------
                        Originally posted by Librarian
                        What compelling interest has any level of government in knowing what guns are owned by civilians? (Those owned by government should be inventoried and tracked, for exactly the same reasons computers and desks and chairs are tracked: responsible care of public property.)

                        If some level of government had that information, what would they do with it? How would having that info benefit public safety? How would it benefit law enforcement?

                        Comment

                        • #27
                          epilepticninja
                          Veteran Member
                          • Aug 2010
                          • 4166

                          Yee?
                          Former political prisoner who escaped on 9-24-23.

                          Comment

                          Working...
                          UA-8071174-1