PDA

View Full Version : Malware warning at Ausfish?



PixieAU
15-05-2015, 09:03 PM
Is this something we need to be concerned about?

Not trying to be alarming but I get a malware warning from this site.


http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=http%3A%2F%2Fwww.ausfish.com.au%2F&client=googlechrome&hl=en-US


Safe BrowsingDiagnostic page for www.ausfish.com.au
What is the current listing status for www.ausfish.com.au?

This site is not currently listed as suspicious.
What happened when Google visited this site?

Of the 4863 pages we tested on the site over the past 90 days, 15 page(s) resulted in malicious software being downloaded and installed without user consent. The last time Google visited this site was on 2015-05-14, and the last time suspicious content was found on this site was on 2015-05-14.Malicious software includes 13 exploit(s), 10 trojan(s). Successful infection resulted in an average of 1 new process(es) on the target machine.
Malicious software is hosted on 11 domain(s), including powerporn.pw/ (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=powerporn.pw/&client=googlechrome&hl=en-US), danburykawasaki.com/ (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=danburykawasaki.com/&client=googlechrome&hl=en-US), realty411.co/ (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=realty411.co/&client=googlechrome&hl=en-US).
1 domain(s) appear to be functioning as intermediaries for distributing malware to visitors of this site, including powerporn.pw/ (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=powerporn.pw/&client=googlechrome&hl=en-US).
This site was hosted on 2 network(s) including AS22611 (IMH-WEST) (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=AS:22611&client=googlechrome&hl=en-US), AS15169 (GOOGLE) (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=AS:15169&client=googlechrome&hl=en-US).
Has this site acted as an intermediary resulting in further distribution of malware?

Over the past 90 days, www.ausfish.com.au did not appear to function as an intermediary for the infection of any sites.
Has this site hosted malware?

Yes, this site has hosted malicious software over the past 90 days. It infected 0 domain(s), including .

phantomphisher
15-05-2015, 10:05 PM
I'm getting the same thing.

Triple
15-05-2015, 10:55 PM
Same here.

Mike Delisser
15-05-2015, 11:06 PM
And here also

Gon Fishun
15-05-2015, 11:10 PM
Ditto.....

Ausfish
16-05-2015, 01:46 AM
Will look into it, but at this stage does not appear to be anything to be worried about.

leave it with me.

Probably something to do with google ads, most likely a false positive, but will check it out

Ausfish
16-05-2015, 02:02 AM
Looks like google or google ads is in there somewhere

Over the past 90 days, we found 30 site(s) on this network, including, for example, adk2x.com/ (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=adk2x.com/&client=googlechrome&hl=en-US), adcash.com/ (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=adcash.com/&client=googlechrome&hl=en-US), google.com/ (http://safebrowsing.clients.google.com/safebrowsing/diagnostic?site=google.com/&client=googlechrome&hl=en-US), that appeared to function as intermediaries for the infection of 124 other site(s) including......

Still working on it though

Mike Delisser
16-05-2015, 06:07 AM
Sounds like it could be the Flux Capacitor Steve

astro66
16-05-2015, 06:20 AM
everyone ignored the warning ??? lol

Crunchy
16-05-2015, 07:19 AM
Only using iPad to access site until fixed, PC's too vulnerable. My anti virus was talking about a Trojan one AF?

Aussie123
16-05-2015, 10:06 AM
http://www.ausfish.com.au/vforum/attachment.php?attachmentid=108754&stc=1

TheRealAndy
16-05-2015, 10:33 AM
Its one of the adds. I was going to track it down last night but lost the link.

In the short term, just refresh the link and google will most likely serve up a different add that does not link to the suspicious sites.

Ausfish
16-05-2015, 11:29 AM
It is one of the sites that have a google ad. Have reported it to google and blocked some of the ads.

It is not on Ausfish, it is on the site that has an ad, or a site that that site links to.

Ausfish
16-05-2015, 11:43 AM
For those that are not aware, if you do not want to see any ads you can elect for Premium membership

see http://www.ausfish.com.au/vforum/showthread.php/131906-Ausfish-Premium-Membership-option

JulianDeMarchi
19-05-2015, 08:06 AM
For those that are not aware, if you do not want to see any ads you can elect for Premium membership

see http://www.ausfish.com.au/vforum/showthread.php/131906-Ausfish-Premium-Membership-option

Or u can use adblock plus which does a great job and u cant beat the price...

Peter4
19-05-2015, 08:10 AM
Have adblock plus but still getting the malware warning every day...

JulianDeMarchi
19-05-2015, 08:25 AM
Have adblock plus but still getting the malware warning every day...

Very interesting. Are you still seeing ads though? If you're not, just ignore the warnings.

Chong
19-05-2015, 05:39 PM
Have adblock plus but still getting the malware warning every day...

same, each time i log on...

PixieAU
19-05-2015, 07:41 PM
F5 (refresh) can fix it as it runs off to get a different ad to display

shaungonemad
19-05-2015, 07:58 PM
Same thing but what happens when that ad comes around once you're logged on.

Ausfish
19-05-2015, 11:40 PM
Same thing but what happens when that ad comes around once you're logged on.

Nothing, as long as you do not visit their website. We are still waiting on Google to fix it.

shaungonemad
20-05-2015, 09:35 AM
Nothing, as long as you do not visit their website. We are still waiting on Google to fix it.


Ok that's good to know

TheRealAndy
20-05-2015, 11:30 AM
Have adblock plus but still getting the malware warning every day...


Addblock plus will still receive the web address of the add, it just does not load the content. The error is because there is a suspicious web address, hence the reason you still see the warning.

If you use chrome as your web browser, you will also get the typical chrome warning.

Like steve said, as long as you dont click on the add, you wont have a problem. IF you are using addblock, you wont see the add anyway, so no need to worry.

Crunchy
20-05-2015, 11:46 AM
Which ad is it?

TheRealAndy
20-05-2015, 12:41 PM
Which ad is it?

I have no idea. I tried chasing it up the other night, but I refreshed the browser by accident and lost the link. I have not seen it since.

Chong
20-05-2015, 05:00 PM
Gone now :)

Ausfish
20-05-2015, 07:06 PM
Should be all good soon. Have had a response from google. It appears to be a mix of things. Script injected into code, outdated users browsers injecting the code due to a security issue and link in google ads being reported as suspect.

suggest you make sure your browser is up to date and antivirus software is updated.