dodgy download redi...
 

[Closed] dodgy download redirect from this site

11 Posts
5 Users
0 Reactions
91 Views
Posts: 0
Free Member
Topic starter
 

Anyone else getting this irritating flash download(I guess it's not flash as it's some other dodgy site konyunbao.com).

It wants to download an exe file. My av caught it, but just flagging this up to the admin, it's only this site that does it, every 3 or 4 page refreshes I get this nonsense.

It's making the site unusable.

windows 7 on chrome.

[img] [/img]


 
Posted : 11/11/2014 4:07 pm
Posts: 77721
Free Member
 

Run a scan with www.malwarebytes.org ?


 
Posted : 11/11/2014 4:13 pm
Posts: 0
Free Member
Topic starter
 

I'll give that a go, running just now. But it's my works comp, so their AV is pretty decent.

I suspect it's one of the ads. (I know I know pay for it etc...)


 
Posted : 11/11/2014 4:23 pm
Posts: 0
Free Member
Topic starter
 

All fine on malwarebytes

[img] [/img]


 
Posted : 11/11/2014 4:29 pm
Posts: 77721
Free Member
 

Groovy.

Dunno then, I'll ping it to the techs.


 
Posted : 11/11/2014 4:51 pm
Posts: 0
Free Member
 

kongyunbao.com part of PUPs / LPIS (Potentially Unwanted Software), unwanted programs, which typically display advertisements and install toolbars (toolbars). They settled along with other software, often free. They change browser settings (start page and search engines).

Apparently
[url= http://www.bleepingcomputer.com/download/adwcleaner/ ]Adwcleaner gets rid of it[/url]


 
Posted : 11/11/2014 5:03 pm
Posts: 77721
Free Member
 

Yup, I saw ADWcleaner suggested (in French) on a website too. Figured it was unlikely to be a local infection if MBAM came up clean, but you're right, it can't hurt to try.


 
Posted : 11/11/2014 5:37 pm
Posts: 18343
Free Member
 

Thank you Duntstick, that got rid of the bits of the contamination I hadn't found manually. I've been infected twice, once by STW and another time when my son was using the computer.


 
Posted : 11/11/2014 6:46 pm
Posts: 0
Free Member
Topic starter
 

Not doing it today. just bumping this, FYI.


 
Posted : 12/11/2014 2:48 pm
Posts: 18343
Free Member
 

Having used ADW cleaner the page in the link is now my start page. (:รง(


 
Posted : 12/11/2014 3:07 pm
Posts: 0
Free Member
 

I presume it's just reset everything to get rid of the PUP. Just reset your homepage


 
Posted : 12/11/2014 3:48 pm
Posts: 50252
Free Member
 

Just had something similar occur here. Different address, same problem.


 
Posted : 17/11/2014 9:22 pm