Did SBR give me a virus?

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • robzilla
    SBR MVP
    • 10-25-07
    • 3556

    #211
    Here we go again
    Comment
    • Bill Dozer
      www.twitter.com/BillDozer
      • 07-12-05
      • 10894

      #212
      Rob,
      Fire over the "more info" details they offer? Thanks
      Comment
      • ProfaneReality
        SBR Hall of Famer
        • 04-14-09
        • 7607

        #213
        just got this today
        Comment
        • robzilla
          SBR MVP
          • 10-25-07
          • 3556

          #214
          Billy, it's attempting to plant an .exe file in my Users directory.
          Comment
          • robzilla
            SBR MVP
            • 10-25-07
            • 3556

            #215
            For those posters that dont have a good anti virus, this could really be a problem and they arent even aware right now.
            Comment
            • blackbeSSt
              SBR Hall of Famer
              • 09-06-08
              • 9398

              #216
              Originally posted by robzilla
              For those posters that dont have a good anti virus, this could really be a problem and they arent even aware right now.
              i didn't think it was trying to install anything?
              Comment
              • secretstash
                SBR Posting Legend
                • 03-29-10
                • 14907

                #217
                I am getting the message too from avast

                Infection Details

                http://rguyspornencyk.info/main.php?page
                C:\Program Files (x86)\SBR Poker\sbr.exe
                URL:Mal

                -stash
                Comment
                • sickler
                  SBR Posting Legend
                  • 06-05-08
                  • 15006

                  #218
                  Bill, Lou et al...The virus alerts are still happening

                  I don't see any active threads with complaints about this. Minutes ago, see the date and clock.

                  I use firefox if that helps.

                  Comment
                  • King Mayan
                    SBR Posting Legend
                    • 09-22-10
                    • 21330

                    #219
                    Sickler, nobody cares no more.

                    We're all fukked.. Mayans predicted this.
                    Comment
                    • Trident
                      SBR MVP
                      • 02-07-09
                      • 2362

                      #220
                      Really need to get rid of these Flash Banners till you guys have this fixed once and for all before someone ends up with a virus.
                      Comment
                      • robzilla
                        SBR MVP
                        • 10-25-07
                        • 3556

                        #221
                        This trojan didnt get removed from my system right away. Could tell because it wouldnt let me exit via sys tray or alt-ctrl-del close
                        Comment
                        • hhsilver
                          SBR Hall of Famer
                          • 06-07-07
                          • 7387

                          #222
                          I just got the same thing when I opened poker.
                          Comment
                          • sickler
                            SBR Posting Legend
                            • 06-05-08
                            • 15006

                            #223
                            My thread was merged here. I'm not the only one.
                            Comment
                            • Jerm3462
                              SBR MVP
                              • 11-09-09
                              • 4454

                              #224
                              Bill Dozer, I just gotta ask you...

                              What the hell are you doing?

                              A trojan virus? Are you kidding me?


                              I run ESET NOD32 Antivirus 4 ( a pretty expensive antivirus program)
                              Upon entering sbr today, a red message popped up.

                              4/9/2012 4:57:21 PM HTTP filter file connection terminated - quarantine
                              Threat was detected upon access to web by the application:
                              Comment
                              • robmpink
                                SBR Posting Legend
                                • 01-09-07
                                • 13205

                                #225
                                the saga continues
                                Comment
                                • SBR Lou
                                  BARRELED IN @ SBR!
                                  • 08-02-07
                                  • 37863

                                  #226
                                  Thanks guys for the screenshots. We're in the process of remotely connecting with an affected user to narrow it down.

                                  Unfortunately, you will see the alerts for the time being if you use AVG, Avant, Nortons.
                                  Comment
                                  • Jerm3462
                                    SBR MVP
                                    • 11-09-09
                                    • 4454

                                    #227
                                    Looks like antivirus killed that silly banner up top.
                                    Comment
                                    • Mr. Jones
                                      SBR Wise Guy
                                      • 09-02-05
                                      • 942

                                      #228
                                      C'mon Man!
                                      Comment
                                      • SBR Lou
                                        BARRELED IN @ SBR!
                                        • 08-02-07
                                        • 37863

                                        #229
                                        Any new reports since clearing cookies/cache? Screenshots appreciated.
                                        Comment
                                        • robzilla
                                          SBR MVP
                                          • 10-25-07
                                          • 3556

                                          #230
                                          Originally posted by SBR Lou
                                          Any new reports since clearing cookies/cache? Screenshots appreciated.
                                          My time is set to pinnacles time. its really 6:24pm
                                          Comment
                                          • str
                                            SBR Posting Legend
                                            • 01-12-09
                                            • 11789

                                            #231
                                            Lou,

                                            This is a virus that AVG stopped just now.

                                            URL: rguyspornencyk.info/main.php?page=b8c7f71aa41c9ce4
                                            Name: Blackhole Exploit Kit Detection (type 1889)
                                            Comment
                                            • sideloaded
                                              SBR Hall of Famer
                                              • 08-21-10
                                              • 7561

                                              #232
                                              It's obvious your ad network is ******, time to bring it down and quit infecting users
                                              Comment
                                              • capitalist pig
                                                SBR Hall of Famer
                                                • 01-25-07
                                                • 5001

                                                #233
                                                Same here just got attacked again, its not worth visiting here till this issue is fixed. This has been going on for almost a week now and its obvious that either you dont know how to fix it or you dont care,JMO.

                                                later
                                                Comment
                                                • Ian
                                                  SBR Hall of Famer
                                                  • 11-09-09
                                                  • 6119

                                                  #234
                                                  Originally posted by ProfaneReality
                                                  just got this today
                                                  I got the exact same Norton warning that ProfaneReality got. There was a Bodog banner at the top of the poker software.

                                                  The whois info on the attack site is
                                                  Comment
                                                  • Jerm3462
                                                    SBR MVP
                                                    • 11-09-09
                                                    • 4454

                                                    #235
                                                    Originally posted by capitalist pig
                                                    Same here just got attacked again, its not worth visiting here till this issue is fixed. This has been going on for almost a week now and its obvious that either you dont know how to fix it or you dont care,JMO.

                                                    later
                                                    agreed, i was just hit with the same message at 7:05PM.
                                                    Disable to damn ad's. You are exposing your users to threats.

                                                    I wonder whats happening to all the people who lacks antivirus software?
                                                    Comment
                                                    • SBR Lou
                                                      BARRELED IN @ SBR!
                                                      • 08-02-07
                                                      • 37863

                                                      #236
                                                      Originally posted by capitalist pig
                                                      Same here just got attacked again, its not worth visiting here till this issue is fixed. This has been going on for almost a week now and its obvious that either you dont know how to fix it or you dont care,JMO.

                                                      later
                                                      We're deeply sorry for these alerts, the entire team is working on this as priority number one. There are too many variables to name and things on the user side that add length to the investigative process, but from a technical end, there isn't a stone unturned at this point and one thing to add is, the alerts from your program actually mean the perceived threat(s) is being prevented. It wouldn't do any good to get into more technical detail from a security perspective, but I'd like to think you have more faith in SBR after five years of membership than your post indicated.
                                                      Comment
                                                      • Roadtrip635
                                                        SBR Hall of Famer
                                                        • 12-07-10
                                                        • 6129

                                                        #237
                                                        Just logged in and got the same warning as everyone else just now. The saga continues...business as usual.
                                                        Comment
                                                        • Optional
                                                          Administrator
                                                          • 06-10-10
                                                          • 62242

                                                          #238
                                                          Originally posted by sideloaded
                                                          It's obvious your ad network is ******, time to bring it down and quit infecting users
                                                          If it was that obvious, or simple, we wouldn't still be hearing about it.


                                                          On a positive note, my AV was broken when this started. But I just got a clean bill of health that I have not been infected by anything from an expert.
                                                          .
                                                          Comment
                                                          • Optional
                                                            Administrator
                                                            • 06-10-10
                                                            • 62242

                                                            #239
                                                            Originally posted by SBR Lou
                                                            We're deeply sorry for these alerts.
                                                            You keep making it sound like you only think you need to work out how to stop the AV programs going off. I hope you are looking into the possibility that you really have a server exploit.

                                                            New version of forum software recently makes that seem like a decent possibility I would have thought.
                                                            .
                                                            Comment
                                                            • onlooker
                                                              BARRELED IN @ SBR!
                                                              • 08-10-05
                                                              • 36572

                                                              #240
                                                              Originally posted by SBR Lou
                                                              Any new reports since clearing cookies/cache? Screenshots appreciated.
                                                              Just got home, and logged on. My browser is set to clear cookies when closing, and my cache is set to store 0MB.

                                                              Comment
                                                              • onlooker
                                                                BARRELED IN @ SBR!
                                                                • 08-10-05
                                                                • 36572

                                                                #241
                                                                Also. I seen on a Youtube video of what the Blackhole Exploit does to your computer, if infected. Let me tell you, if your computer got infected, you wouldn't be able to post here about the alerts on your AV. You would have to go through Safemode to get it cleared off, to even have control of your computer.

                                                                Are these alerts right? No, and SBR needs to find the reason for it. That is why I am posting screens, and trying to help notify them. Just letting you know your computer isn't getting anything on it.

                                                                I'll post a video later I seen, that shows what the Exploit does.
                                                                Comment
                                                                • Iwinyourmoney
                                                                  SBR Posting Legend
                                                                  • 04-18-07
                                                                  • 18368

                                                                  #242
                                                                  Logged into poker today and it set it off.

                                                                  Is it the add network??

                                                                  If its the adds disable the fukin adds SBR
                                                                  Comment
                                                                  • sideloaded
                                                                    SBR Hall of Famer
                                                                    • 08-21-10
                                                                    • 7561

                                                                    #243
                                                                    Opti all this is coming from their ad network, If sbr stopped serving ads on the LIVE site until they fixed it, No one would be getting infected. I'm sorry but it is that simple. Instead SBR is leaving the ads live and potentially infecting new users.
                                                                    Comment
                                                                    • Iwinyourmoney
                                                                      SBR Posting Legend
                                                                      • 04-18-07
                                                                      • 18368

                                                                      #244
                                                                      Originally posted by sideloaded
                                                                      Opti all this is coming from their ad network, If sbr stopped serving ads on the LIVE site until they fixed it, No one would be getting infected. I'm sorry but it is that simple. Instead SBR is leaving the ads live and potentially infecting new users.
                                                                      Comment
                                                                      • blackbeSSt
                                                                        SBR Hall of Famer
                                                                        • 09-06-08
                                                                        • 9398

                                                                        #245
                                                                        onlooker, are you running adblock plus?
                                                                        Comment
                                                                        Search
                                                                        Collapse
                                                                        SBR Contests
                                                                        Collapse
                                                                        Top-Rated US Sportsbooks
                                                                        Collapse
                                                                        Working...