Virus warning ! - read this immediately -

Discussion in 'Announcements' started by GDJMSP, Apr 12, 2011.

Thread Status:
Not open for further replies.
  1. GDJMSP

    GDJMSP Numismatist Moderator

    All members, this is not a joke !

    DO NOT click on any image or picture posted by EyeEatWheaties !

    Apparently his Photobucket account has been hacked and every image there is of his has been infected with the Bloodhound virus !

    Somehow this happened between yesterday and today. So if in the past 24 hours you have cliked on an image of his, any image - stop what you are doing and run a complete system scan of your computer !

    Again - this is not a joke !
     
  2. Avatar

    Guest User Guest



    to hide this ad.
  3. Peter T Davis

    Peter T Davis Hammer at the Ready Moderator

    I've added the url to photo bucket to the censor list, so any image being loaded from there will show up as a ***** now and not load. This is a temporary measure to prevent anyone else from having problems as a result while we look for a long term solution.
     
  4. GDJMSP

    GDJMSP Numismatist Moderator

    As an additional note folks - whatever Peter did removes the images. However, the url to the infected is still being posted.

    Anyone who copies and paste that url into their browser in order to try and see the pictures will still get the virus when that image opens.

    DO NOT even try to to view any of his images. ALL images posted by EyeEatWheaties have been infected !

    As long as you just ignore them there is no risk to you ! Repeat - as long as you just ignore those urls for his pictures there is no risk to you !

    So please - do not even try to view any image posted by him until we get this resolved. We are working on it as fast as we can.

    And yes, Photobucket has been notified.

    Also - all other pictures posted on Photobucket are fine - there is no virus in them. But for the time being, no image hosted on Photobucket is going to work on Coin Talk.

    For the time being - please bear with us.

    Thanks
     
  5. KoinJester

    KoinJester Well-Known Member

  6. green18

    green18 Unknown member Sweet on Commemorative Coins

    What alerted you to this Doug? How did you find out?
     
  7. lucyray

    lucyray Ariel -n- Tango

    Okay, being a computer dolt, what do you exactly mean by 'run a computer scan'? Using what?
    Will my new mac have whatever?

    :( Lucyray
     
  8. Merc Crazy

    Merc Crazy Bumbling numismatic fool

    Lucy, if you have a mac, I wouldn't worry about it, the vast majority of viruses out there target PC's, not Mac's.

    If anybody needs a free antivirus, I'd recommend AVG;

    http://free.avg.com/us-en/homepage
     
  9. green18

    green18 Unknown member Sweet on Commemorative Coins

    AVG is a good program.....:)
     
  10. ikandiggit

    ikandiggit Currency Error Collector

    Just ran a scan....all clean here.
     
  11. Peter T Davis

    Peter T Davis Hammer at the Ready Moderator

    Just wanted to point out an alternative service

    http://www.imgur.com/

    AFAIK, they don't serve viruses with their photos.
     
  12. ikandiggit

    ikandiggit Currency Error Collector

    I really don't want to change my "service". I have several hundred photos in my photobucket account and all the pics that I have posted on this forum are linked there.

    Has Photobucket stated if more than one account was hacked or was this just an isolated attack?
     
  13. ikandiggit

    ikandiggit Currency Error Collector

    I just went to Photobucket's facebook page:

    Our maintenance issues affecting a small percentage of users are taking a bit longer than expected here, but we’re working hard to get it resolved. Right now, the estimated time for finishing up is approximately end of day today (04/12/11). Thanks for your patience, and we apologize for the inconvenience. We’ll keep you updated as things progress.
    ----------------------------------
    Hey everyone, unfortunately our maintenance is going to take longer than expected. That means about 2% of you may have trouble with your accounts until sometime tomorrow morning (US time). We're hard at work getting things going and we appreciate your patience!

    16 hours ago
    ----------------------------------------

    Hey Photobucket peeps: some of you may experience the inability to login to the site for a bit while we do some back-end work. We'll let you know when things are up and running smoothly again, and don't worry - your images are safe!

    23 hours ago
     
  14. GDJMSP

    GDJMSP Numismatist Moderator

    Just lucky I guess. When viewing a thread early this morning I clicked on one of his images and my ant-virus software caught it. I deleted those images and posted a warning in that thread.

    Then I got to thinking that maybe I had better check his other images just in case, so I did. Every single one had the same virus, and anybody who did not have good anti-virus protection and happened to view one of his images in the past 24 hours undoubtably is now infected with that virus.

    When I contacted Peter he changed things so Photobucket images could longer load on Coin Talk - to protect all of you guys. And not just his, but ALL Photobucket images.

    In the meantime I contacted Photobucket directly and made them aware of the situation in the hope that they do something on their end since have no control over things hosted on their site. I've still not heard back from Photobucket.

    Then I sent an email to EyeEatWheaties, alerting him to the danger and suggested he run scans on his computer. Haven't heard him from either.

    Anyway - hopefully I caught it in time so that no one got infected.
     
  15. GDJMSP

    GDJMSP Numismatist Moderator

    They have not contacted me since I sent them the info early this morning.

    I did however check a few random images on Photobucket, and my own personal Photobucket account - none of those images were infected. I can't speak for all the rest as there are thousands & thousands of accounts.
     
  16. GDJMSP

    GDJMSP Numismatist Moderator

    By the way I just checked, his images are still infected. So apparently he has done nothing to rectify the situation and neither has Photobucket.
     
  17. ikandiggit

    ikandiggit Currency Error Collector

    I sure hope it was an isolated event. I'll hang tough until you hear from them.

    Thanks for catching it!
     
  18. Taxidermist

    Taxidermist Collector of US/IL/RU/DE

    Its quite unusual to hear that a large and known image hosting provider could allow virus infection through public user interface, as a result of a hacked private user account. No scripts are allowed, images are parsed to verify they`re safe... Since the last news about photobucket security breach are from 2008-2009, i would like to know if the anti-virus which caught the infection was Avast.

    GDJMSP?
     
  19. Siggi Palma

    Siggi Palma Well-Known Member

    Nice catch GDJMSP, You may just have saved alot of computers and accounts here !
     
  20. GDJMSP

    GDJMSP Numismatist Moderator

    The virus is Bloodhound.Exploit.281 I use one of Norton's products and it caught it.

    If you want to see an infected image for yourself send me a PM and I'll send you back the link to one.

    But if your computer gets infected - don't blame me.
     
  21. Taxidermist

    Taxidermist Collector of US/IL/RU/DE

    I appreciate your warning, especially since my work is network security related, just trying to investigate a bit further.

    Avast 110411-1 definitions update has tagged majority of websites for a limited time recently, thought this might be the case.

    Norton is known to trigger false positives called "Bloodhound Exploit" for quite some time, some users mentioned it in their support forums.

    To verify it is indeed an infection or false positive, it is best to use http://www.virustotal.com/ for an extensive scan.
     
Thread Status:
Not open for further replies.

Share This Page