The International Simutrans Forum

Community => Community Discussion => Web & Wiki => Topic started by: greenling on March 10, 2014, 06:14:56 PM

Title: I have fund Maleware in Forum.Simutrans.com!
Post by: greenling on March 10, 2014, 06:14:56 PM
Hello Isaac.Eiland-Hall
I Have fund here in The Forum.Simutrans.com maleware They it in the the thread
http://forum.simutrans.com/index.php?topic=1002 with the Address http://planetsmillies.net .
That have my Alternate Browser google chrome detect.

Title: Re: I have fund Maleware in Forum.Simutrans.com!
Post by: An_dz on March 10, 2014, 08:24:16 PM
Fixed, was a smiley vilvoh posted, the site probably became a virus site and had a request that tried to inject an iframe, the forum software treated the request as an image so it could not attack. The problems here was probably that browser precache tried to download the request itself.
Title: Re: I have fund Maleware in Forum.Simutrans.com!
Post by: Ters on March 10, 2014, 08:27:18 PM
That's one of the dangers of allowing embedding of external content.
Title: Re: I have fund Maleware in Forum.Simutrans.com!
Post by: IgorEliezer on March 10, 2014, 08:27:37 PM
Fixed, was a smiley vilvoh posted, the site probably became a virus site and had a request that tried to inject an iframe
Good catch.

(if the other admins received my report, disregard it)
Title: Re: I have fund Maleware in Forum.Simutrans.com!
Post by: greenling on March 10, 2014, 08:29:35 PM
Hello An_Dz & IgorEliezer
Can you Both check the another websites of the Forum.simutrans.com after those Maleware too?
I Have the warning get by a second website too.
Title: Re: I have fund Maleware in Forum.Simutrans.com!
Post by: Isaac.Eiland-Hall on March 10, 2014, 11:39:26 PM
Knowing the URL of the page that caused an alert would definitely be quicker than manually trying to find them.
Title: Re: I have fund Maleware in Forum.Simutrans.com!
Post by: prissi on March 11, 2014, 03:07:13 PM
I would ignore greenling. Maybe he saw the generic google chrome warning page when a site is blacklisted (even if it has been an ad).