View previous topic :: View next topic |
Author |
Message |
Lucky Day
Joined: 10 Oct 2006 Posts: 215 City/Region: Churchton
State or Province: MD
C-Dory Year: 2004
C-Dory Model: 25 Cruiser
Vessel Name: Lucky Day
Photos: Lucky Day
|
Posted: Wed Jul 24, 2013 12:36 pm Post subject: Malware Intrusion |
|
|
FYI -- Norton has been blocking this intrusion when I visit c-brats.com. It happens on first visit each day for the last two or three days. This is the detail report from Norton (I cut out references to my own IP address, etc.):
Category: Intrusion Prevention
Date & Time,Risk,Activity,Status,Recommended Action,IPS Alert Name,Default Action,Action Taken,Attacking Computer,Attacker URL,Destination Address,Source Address,Traffic Description
7/24/2013 12:29:08 PM,High,An intrusion attempt by www.tugnuts.com was blocked.,Blocked,No Action Required,Web Attack : Malvertisement Website Redirect,No Action Required,No Action Required,"www.tugnuts.com (69.73.142.146, 80)",www.c-brats.com/openx/www/delivery/ajs.php?zoneid=2&cb=21586239966&charset=ISO-8859-1&loc=http://www.c-brats.com
TCP, www-http"
Network traffic from <b>www.c-brats.com/openx/www/delivery/ajs.php?zoneid=2&cb=21586239966&charset=ISO-8859-1&loc=http://www.c-brats.com/</b> matches the signature of a known attack. The attack was resulted from \DEVICE\HARDDISKVOLUME2\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE. To stop being notified for this type of traffic, in the <b>Actions</b> panel, click <b>Stop Notifying Me</b>. |
|
Back to top |
|
 |
TyBoo
Joined: 23 Oct 2003 Posts: 5328 City/Region: Warrenton
State or Province: OR
C-Dory Year: 1996
C-Dory Model: 25 Cruise Ship
Vessel Name: TyBoo
Photos: TyBoo
|
Posted: Wed Jul 24, 2013 12:54 pm Post subject: |
|
|
I don't understand everything I know about this stuff, and I am sure Bill will be around with explanations (he is away from home right now).
I do know that tugnuts.com is nothing to fear. It is the Ranger Tug owner's forum and is managed by Bill. It is on the same server as C-Brats.com and is linked from our front page (lower left corner) and we are similarly linked from there. _________________ TyBoo Mike
Sold: 1996 25' Cruise Ship
Sold: 1987 22' Cruiser |
|
Back to top |
|
 |
Lucky Day
Joined: 10 Oct 2006 Posts: 215 City/Region: Churchton
State or Province: MD
C-Dory Year: 2004
C-Dory Model: 25 Cruiser
Vessel Name: Lucky Day
Photos: Lucky Day
|
Posted: Wed Jul 24, 2013 12:58 pm Post subject: |
|
|
Thanks for the reply. I don't really know what it means, either. Just thought it best to let someone know. |
|
Back to top |
|
 |
mailbox101
Joined: 31 Mar 2008 Posts: 227 City/Region: Pacifica
State or Province: CA
C-Dory Year: 2008
C-Dory Model: 26 Venture
Vessel Name: Blue Eagle
Photos: Blue-Eagle
|
Posted: Wed Jul 24, 2013 7:09 pm Post subject: |
|
|
Malware (malicious software) is a type of program, including viruses, worms, trojan horses, etc., that do unwanted things with/to your computer or data. Think of it as someone living in your house without your knowledge or consent, perhaps using your wallet, impersonating you, or holding parties for other like-minded friends.
Scanned this website using Norton's Malware, Google Diagnostics, Wepawet, and a few others; no malware was found.
Regardless, if enough people get that false warning, some will shy away from visiting. Have others who use Norton been getting this error, or was this an isolated incident?
David
PS. This list of links can be helpful.
www.malwarehelp.org/freeware-open-source-commercial-website-security-tools-services-downloads.html |
|
Back to top |
|
 |
T.R. Bauer
Joined: 17 Nov 2007 Posts: 1807 City/Region: Wasilla
State or Province: AK
C-Dory Year: 1993
C-Dory Model: 22 Cruiser
Vessel Name: C-Whisperer
|
Posted: Wed Jul 24, 2013 9:59 pm Post subject: |
|
|
Nope, it isn's isolated as I just got it too........ |
|
Back to top |
|
 |
Pat Anderson
Joined: 02 Nov 2003 Posts: 8556 City/Region: Birch Bay, WA
State or Province: WA
C-Dory Year: 2005
C-Dory Model: 25 Cruiser
Vessel Name: Daydream
Photos: Daydream and Crabby Lou
|
Posted: Thu Jul 25, 2013 12:51 am Post subject: |
|
|
"Intrusion attempt by Tugnuts.com" - Tugnuts is another Da Nag website for Ranger Tugs, not sure what Norton is saying, unlikely "malware." Get a Mac and don't worry about this crap. _________________
DAYDREAM - CD25 Cruiser
CRABBY LOU - CD16 Angler (sold 2020)
Pat & Patty Anderson, C-Brat #62!
http://daydreamsloop.blogspot.com
|
|
Back to top |
|
 |
TyBoo
Joined: 23 Oct 2003 Posts: 5328 City/Region: Warrenton
State or Province: OR
C-Dory Year: 1996
C-Dory Model: 25 Cruise Ship
Vessel Name: TyBoo
Photos: TyBoo
|
Posted: Thu Jul 25, 2013 12:57 am Post subject: |
|
|
Obviously, Peter Norton is a fan of Nordic Tugs. |
|
Back to top |
|
 |
Da Nag
Joined: 24 Oct 2003 Posts: 2832 City/Region: Port Angeles
State or Province: WA
C-Dory Year: 1995
C-Dory Model: 25 Cruise Ship
Vessel Name: Wilbur
Photos: Da Boats
|
Posted: Thu Jul 25, 2013 10:59 am Post subject: |
|
|
As others have alluded to, it's a bogus alert. Nothing we can do to prevent it - it's a bug on Norton's end. Who knows if/when they'll fix it, but were I a Windows/Norton user I'd ignore and/or disable it.
To date, I've yet to see a legitimate web site alert from Norton reported here. Warnings generated by Chrome and Firefox however, have been accurate - here and elsewhere. _________________
Will, C-Brat Nerd  |
|
Back to top |
|
 |
Lucky Day
Joined: 10 Oct 2006 Posts: 215 City/Region: Churchton
State or Province: MD
C-Dory Year: 2004
C-Dory Model: 25 Cruiser
Vessel Name: Lucky Day
Photos: Lucky Day
|
Posted: Thu Jul 25, 2013 12:07 pm Post subject: |
|
|
OK - thanks for confirming - I'll disable the alert. |
|
Back to top |
|
 |
|
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum You cannot attach files in this forum You cannot download files in this forum
|
|