Author Topic: Infected file on GenesReunited  (Read 18483 times)

Offline crystal lady

  • RootsChat Senior
  • ****
  • Posts: 289
  • Census information Crown Copyright, from www.nationalarchives.gov.uk
    • View Profile
Re: Infected file on GenesReunited
« Reply #18 on: Sunday 14 February 10 15:58 GMT (UK) »
Sue - I've also got a tree on GR which I keep just for contacts etc, I have some new info to add on but that will have to wait as well.   Can't remember when my actual renewal date is, just hope its not too soon and that I have a chance to do something about it   :-\

Crystal
Bean - Alrewas, Staffs, Moreton/Morton-Hemsworth/Wellington/Staffs, Evans-Tipton, Richardson-Staffs

RootsChat is the busiest, largest free family history forum site in the country. It is completely free to use. Register now.
Also register instantly with Facebook or Twitter (and other social networks). Start your genealogy search now.


Offline downside

  • RootsChat Marquessate
  • *******
  • Posts: 4,206
  • Make my day
    • View Profile
Re: Infected file on GenesReunited
« Reply #19 on: Sunday 14 February 10 16:08 GMT (UK) »
Read all about it here:-

http://www.xephandreema.com/2009/12/exploit-rogue-scanner-how-to.html

Basically Genes Reunited is NOT THE PROBLEM.

Quote
Exploit Rogue Scanner Type 820 sends an error through your registry, causing your Security Center to send an "alert message" that the applications you open are virus infected. THIS IS NOT TRUE. It's kind of like a fake system error.

GR is not infected.
Sussex: Floate, West
Kent: Tuffee
Cheshire: Gradwell
Lancashire: Gradwell

UK Census information is Crown Copyright, from www.nationalarchives.gov.uk

RootsChat is the busiest, largest free family history forum site in the country. It is completely free to use. Register now.
Also register instantly with Facebook or Twitter (and other social networks). Start your genealogy search now.


Offline ambers

  • I am sorry but my emails are not working
  • RootsChat Aristocrat
  • ******
  • Posts: 1,640
  • Census information Crown Copyright, from www.nationalarchives.gov.uk
    • View Profile
Re: Infected file on GenesReunited
« Reply #20 on: Sunday 14 February 10 17:02 GMT (UK) »
Many thanks for the Link downside :)

Is type 1027 the same ?

Ambers
GLAMORGAN: Evans. Davies. Eddy. Bradnum.
GLAM to USA:Walter H Davies 1886.Thomas J 1852
PEMBROKE: Bradnum.Summers
CARMARTHENSHIRE:Davies. Jones
NORFOLK/SUFFOLK: Bradnum.Cork.Helsdon 3 in Australia, Whiskins. Fairhead.Catchpole.
DEVON:Mallett. Acford, Kidston.Short.Lover.Edwards,Telford.Sparrow
SOMERSET: Masey
CORNWALL:Eddy.Thomas Maddern.Harvey. Noy.Reynolds,Batten,Curtis.
Cornwall to USA: Thomas, Semmens. Oats
Warwickshire: Mountney

Offline downside

  • RootsChat Marquessate
  • *******
  • Posts: 4,206
  • Make my day
    • View Profile
Re: Infected file on GenesReunited
« Reply #21 on: Sunday 14 February 10 17:19 GMT (UK) »
I think it is from the same family of malware, second cousin twice removed.

A genealogy joke. :)
Sussex: Floate, West
Kent: Tuffee
Cheshire: Gradwell
Lancashire: Gradwell

UK Census information is Crown Copyright, from www.nationalarchives.gov.uk

Offline ankerdine

  • RootsChat Aristocrat
  • ******
  • Posts: 1,242
  • Unknown c1930s Wilf & Annie Cox Chase Terrace?
    • View Profile
Re: Infected file on GenesReunited
« Reply #22 on: Sunday 14 February 10 21:06 GMT (UK) »
Read all about it here:-

http://www.xephandreema.com/2009/12/exploit-rogue-scanner-how-to.html

Basically Genes Reunited is NOT THE PROBLEM.

Quote
Exploit Rogue Scanner Type 820 sends an error through your registry, causing your Security Center to send an "alert message" that the applications you open are virus infected. THIS IS NOT TRUE. It's kind of like a fake system error.

GR is not infected.

I really still dont understand how you can say this when GR is the common denominator for all the above coments.

I still do not understand why GR have not replied to our emails. If Ancestry and Find My Past personnel read this website then surely GR administrators do too? ???

J
Blair, Marshall, Williamson - Ayrshire, Wigtownshire
Saxton, Sketchley - Nottinghamshire, Leicestershire
Brown, Green - Rutland
Hawker, Malone, Bradbury, Arnott, Turner, Woodings, Blakemore, Upton, Merricks - Warwickshire, Staffordshire
Silvers, Dudley, Worcs
Deakin - Staffordshire

Offline smudwhisk

  • RootsChat Marquessate
  • *******
  • Posts: 3,812
  • Whiskey (1997-2018)
    • View Profile
Re: Infected file on GenesReunited
« Reply #23 on: Sunday 14 February 10 22:51 GMT (UK) »
GR may be the common denominator but I suspect at least one of the sources, as has been suggested already, will be the ads feed on the site.  I encountered the same problem a couple of years ago from GR and when I pointed out to them they had a problem with the ad feed on the site they ignored my email >:(.  AVG and AD-Adware scans of my laptop at the time showed no issue apart from a file in temporary internet files which had been cleaned so I just deleted it.

Quote
Exploit Rogue Scanner Type 820 sends an error through your registry, causing your Security Center to send an "alert message" that the applications you open are virus infected. THIS IS NOT TRUE. It's kind of like a fake system error.

If you do get the above, while your PC may not be infected and it could just be a false positive to get you to download the infected file (when its offering you software to clean your PC), there are occasions when the alert can be hiding other malware.  I've seen this several times in recent years having to clean up malware infected PCs at work.  The pop-ups themselves can be a pain to get rid of.
(KENT) Lingwell, Rayment (BUCKS) Read, Hutchins (SRY) Costin, Westbrook (DOR) Gibbs, Goreing (DUR) Green (ESX) Rudland, Malden, Rouse, Boosey (FIFE) Foulis, Russell (NFK) Johnson, Farthing, Purdy, Barsham (GLOS) Collett, Morris, Freebury, May, Kirkman (HERTS) Winchester, Linford (NORTHANTS) Bird, Brimley, Chater, Wilford, Read, Chapman, Jeys, Marston, Lumley (WILTS) Arden, Whatley, Batson, Gleed, Greenhill (SOM) Coombs, Watkins (RUT) Stafford (BERKS) Sansom, Angel, Young, Stratton, Weeks, Day

Offline Roobarb

  • RootsChat Aristocrat
  • ******
  • Posts: 1,897
  • Looking for that elusive branch!
    • View Profile
Re: Infected file on GenesReunited
« Reply #24 on: Sunday 14 February 10 23:06 GMT (UK) »
I'm pleased to have come across this thread because the exact same thing happened to me last night. I was trying to open a message on GR, luckily my virus checker picked it up. I couldn't close it down so eventually went to Task Manager and closed down everything, so that did the trick. I've been back on GR today to reply to a couple of messages and all was well.

Downside, I'm afraid all that technical stuff is above my head but I can't see how the problem isn't with GR.
Bell, Salter, Street - Devon, Middlesbrough.
Lickess- North Yorkshire, Middlesbrough.
Etherington - North Yorks and Durham.
Barker- North Yorks
Crooks- Durham
Forster- North Yorks/Durham
Newsam, Pattison, Proud - North Yorks.
Timothy, Griffiths, Jones - South Wales

Offline smudwhisk

  • RootsChat Marquessate
  • *******
  • Posts: 3,812
  • Whiskey (1997-2018)
    • View Profile
Re: Infected file on GenesReunited
« Reply #25 on: Monday 15 February 10 01:03 GMT (UK) »
Downside, I'm afraid all that technical stuff is above my head but I can't see how the problem isn't with GR.

The ads on the site are actually only "links" to other websites who provide the ads as a link on the GR site.  Although I think GR should be paying attention to what they are linking to, its the company supplying the ads that will have the problems as it is these which contain the malicious code. 

It wouldn't hurt GR though to actually respond when someone points out to them there has been a problem ....
(KENT) Lingwell, Rayment (BUCKS) Read, Hutchins (SRY) Costin, Westbrook (DOR) Gibbs, Goreing (DUR) Green (ESX) Rudland, Malden, Rouse, Boosey (FIFE) Foulis, Russell (NFK) Johnson, Farthing, Purdy, Barsham (GLOS) Collett, Morris, Freebury, May, Kirkman (HERTS) Winchester, Linford (NORTHANTS) Bird, Brimley, Chater, Wilford, Read, Chapman, Jeys, Marston, Lumley (WILTS) Arden, Whatley, Batson, Gleed, Greenhill (SOM) Coombs, Watkins (RUT) Stafford (BERKS) Sansom, Angel, Young, Stratton, Weeks, Day

Offline elaine447

  • RootsChat Aristocrat
  • ******
  • Posts: 1,499
    • View Profile
Re: Infected file on GenesReunited
« Reply #26 on: Monday 15 February 10 01:44 GMT (UK) »
I had same problem today
I did not click on any of the links on GR
all I did was check something on my tree
then close it  ::)
Elaine
Given,McCorkindale,Kennaway.Wylie,Cameron,Mooney,McCloskey,Black,
McCafferty,Gillespie,Jamieson,Keith,Adam,Quigley,Ainslie,
McHugh,Malone,Fisher,Burns,Gallacher,Nelson,Dunleavy,Brannan,
Docherty,McCluskey,Fitzpatrick,Barclay,Steele,King,Allison