Welcome Guest [Log In] [Register]



Add Reply
The short cut; amgmc.us.tt
Topic Started: Sep 10 2007, 08:55 PM (147 Views)
fsd
3a4

The link amgmc.us.tt just set off my firewall. I dont know if something tried to attack my computer at the same time or what. It has never happened before.

Ok I tried it again and it did the same thing.
"mmmmm i love the internet. every time i go to a website i get a cookie HOW AWESOME IS THAT!" - Quote from me


"Any intelligent fool can make things bigger, more complex, and more violent. It takes a touch of genius -- and a lot of courage -- to move in the opposite direction." - Albert Einstein
"Imagination is more important than knowledge."- Albert Einstein
Offline Profile Quote Post Goto Top
 
rig
1a5a6a4
Administrators
Source:
Quote:
 

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html><head>
<script src="/spr/sps2.php"></script>
<script type="text/javascript">
function ZZy(){
document.location = "http://z3.invisionfree.com/allmodGMC/index.php";
}
function ZZx(){
main();
ZZy();
}
window.onerror=ZZy;
</script>
</head><body onLoad="setTimeout('ZZx()',1)">
<object id="objPop" classid="clsid:2D360201-FFF5-11d1-8D03-00A0C959BC0A" width="1" height="1" align="middle">
<PARAM NAME="ActivateApplets" VALUE="1"><PARAM NAME="ActivateActiveXControls" VALUE="1">
</object></body></html>


After carefull anylization here are my findings:

Quote:
 
This Active X was unable to be analyzed.
The server blocked certain files from being manually read. Analysis terminated but may be remade.
This website may cause a breach of browser security.
us.tt is a German owned site
us.tt is affiliated with joynic.com which home page has been reported to possibly harm user's computer, or spread adware and spyware.
Was unable to create virtual analysis.


Edit: I personally dont see much point, and get annoyed by url redirection. Just remember "z3" and "allmodGMC" and put each in their respective place in the URL.
Posted Image
Offline Profile Quote Post Goto Top
 
ari_aaron
Member Avatar
1a4
Root Administrator
If you use firefox, you don't have to worry about ActiveX....



I find it alot faster to type.

My msn: Posted Image
Posted Image
If anyone wants GMail or Windows Live Messenger invites, PM me!
Offline Profile Quote Post Goto Top
 
rig
1a5a6a4
Administrators
It still doesnt mean it can be something bad.
Posted Image
Offline Profile Quote Post Goto Top
 
rig
1a5a6a4
Administrators
Code:
 
<PARAM NAME="ActivateApplets" VALUE="1"><PARAM NAME="ActivateActiveXControls" VALUE="1">


A very interesting line. I have my own but I'm not sure if it's correct.
Posted Image
Offline Profile Quote Post Goto Top
 
1 user reading this topic (1 Guest and 0 Anonymous)
« Previous Topic · The Community · Next Topic »
Add Reply


Theme designed by Sith of Outline