Author Topic: Infected file on GenesReunited  (Read 18486 times)

Offline smudwhisk

  • RootsChat Marquessate
  • *******
  • Posts: 3,812
  • Whiskey (1997-2018)
    • View Profile
Re: Infected file on GenesReunited
« Reply #27 on: Monday 15 February 10 02:21 GMT (UK) »
You don't need to click on the links for it to try and infect you, just accessing the GR webpage can cause the problem.
(KENT) Lingwell, Rayment (BUCKS) Read, Hutchins (SRY) Costin, Westbrook (DOR) Gibbs, Goreing (DUR) Green (ESX) Rudland, Malden, Rouse, Boosey (FIFE) Foulis, Russell (NFK) Johnson, Farthing, Purdy, Barsham (GLOS) Collett, Morris, Freebury, May, Kirkman (HERTS) Winchester, Linford (NORTHANTS) Bird, Brimley, Chater, Wilford, Read, Chapman, Jeys, Marston, Lumley (WILTS) Arden, Whatley, Batson, Gleed, Greenhill (SOM) Coombs, Watkins (RUT) Stafford (BERKS) Sansom, Angel, Young, Stratton, Weeks, Day

RootsChat is the busiest, largest free family history forum site in the country. It is completely free to use. Register now.
Also register instantly with Facebook or Twitter (and other social networks). Start your genealogy search now.


Offline Nick29

  • Deceased † Rest In Peace
  • RootsChat Marquessate
  • ********
  • Posts: 6,273
    • View Profile
Re: Infected file on GenesReunited
« Reply #28 on: Monday 15 February 10 09:04 GMT (UK) »
Well, I'm fairly confident that my security systems here are pretty good, so yesterday I paid a visit to GR - I no longer subscribe, so I could only access the public bits.

Nothing bad happened, either during or since my visit.  I can only suspect that the GR site is somehow triggering malware which was there all along.
RIP 1949-10th January 2013

Best Wishes,  Nick.

Census information Crown Copyright, from www.nationalarchives.gov.uk

RootsChat is the busiest, largest free family history forum site in the country. It is completely free to use. Register now.
Also register instantly with Facebook or Twitter (and other social networks). Start your genealogy search now.


Offline jc26red

  • RootsChat Marquessate
  • *******
  • Posts: 4,735
  • Census information Crown Copyright.
    • View Profile
Re: Infected file on GenesReunited
« Reply #29 on: Monday 15 February 10 10:12 GMT (UK) »
well, I also went on there and yes, I too got a virus message

HTML:Iframe-inf

My on-access protection also picked up the associated  trojan first  before I got the above infection message.

my anti-virus dealt with it but seems like GR is being hijacked or something but I don't have a problem with any other site - and didn't prior to visiting GR this morning.

I didn't hang around long enough to see if there was any advertising on the home page. Could be an inserted ad which is not controlled by GR that is causing a problem.

 
Please acknowledge when a restorer works on your photos, it can take hours for them to work their magic

Please scan at 300dpi minimum to help save the restorers eyesight.

Offline newbe_nz

  • RootsChat Marquessate
  • *******
  • Posts: 4,099
    • View Profile
Re: Infected file on GenesReunited
« Reply #30 on: Monday 15 February 10 10:23 GMT (UK) »
I have just been on GR and have had no such message at all

Newbe
Purcell, - Limerick - Ireland,Australia, Westland, NZ
Coppell  - England 1734 to now, New Zealand - 1853 to now
Buckby - England, Australia, New Zealand - 1630 to now
Smith New Zealand
Parker -England - New Zealand  - 1800 to now
Lilley,Lillie, Lilly  - England -New Zealand - 1800 to now
Dykins - Wales, England, New Zealand -  1752 to now
Reynolds, England- 1800 to now
Newdick -Norfolk and Suffolk England , Australia, New Zealand - 1700 to now

Offline downside

  • RootsChat Marquessate
  • *******
  • Posts: 4,206
  • Make my day
    • View Profile
Re: Infected file on GenesReunited
« Reply #31 on: Monday 15 February 10 10:26 GMT (UK) »
It is not unusual for Genes Reunited Support people not to respond to emails from customers.  If this happens it normally means they can't find anything wrong but their policy seems to be that they do not tell customers that.

I suggest that you re-run your security programs in safe mode as the implication from the link is that something is buried deep in your registry and it can only be removed when in safe mode.
Sussex: Floate, West
Kent: Tuffee
Cheshire: Gradwell
Lancashire: Gradwell

UK Census information is Crown Copyright, from www.nationalarchives.gov.uk

Offline jc26red

  • RootsChat Marquessate
  • *******
  • Posts: 4,735
  • Census information Crown Copyright.
    • View Profile
Re: Infected file on GenesReunited
« Reply #32 on: Monday 15 February 10 10:31 GMT (UK) »
Well,

The first time I got the message, I was using IE7 then I just tried it with Firefox... no errors at all.

Then I tried it with Advent. I got the same error twice, and the top GR banner was then blocked.  So it most definitely is something to do with GR
Please acknowledge when a restorer works on your photos, it can take hours for them to work their magic

Please scan at 300dpi minimum to help save the restorers eyesight.

Offline downside

  • RootsChat Marquessate
  • *******
  • Posts: 4,206
  • Make my day
    • View Profile
Re: Infected file on GenesReunited
« Reply #33 on: Monday 15 February 10 11:00 GMT (UK) »
Quote
So it most definitely is something to do with GR

So how come most people do not get an error?  I've tried to get this error and I can't. 

Let us apply some logic to this problem.

What security are you using?

It seems to be an anti-virus program that is either falsely or rightly reporting that there is an error.

If you temporarily disable your security program will you still get the message?
Sussex: Floate, West
Kent: Tuffee
Cheshire: Gradwell
Lancashire: Gradwell

UK Census information is Crown Copyright, from www.nationalarchives.gov.uk

Offline ambers

  • I am sorry but my emails are not working
  • RootsChat Aristocrat
  • ******
  • Posts: 1,640
  • Census information Crown Copyright, from www.nationalarchives.gov.uk
    • View Profile
Re: Infected file on GenesReunited
« Reply #34 on: Monday 15 February 10 11:45 GMT (UK) »
GR have just replied to my email, asking what Security I use and what type of warning I am receiving.

In the last two days, I have had Warning Messages three times while trying to use GR, but have also accessed it about five times without any Warning Messages appearing ...how  odd ???

Ambers

 
GLAMORGAN: Evans. Davies. Eddy. Bradnum.
GLAM to USA:Walter H Davies 1886.Thomas J 1852
PEMBROKE: Bradnum.Summers
CARMARTHENSHIRE:Davies. Jones
NORFOLK/SUFFOLK: Bradnum.Cork.Helsdon 3 in Australia, Whiskins. Fairhead.Catchpole.
DEVON:Mallett. Acford, Kidston.Short.Lover.Edwards,Telford.Sparrow
SOMERSET: Masey
CORNWALL:Eddy.Thomas Maddern.Harvey. Noy.Reynolds,Batten,Curtis.
Cornwall to USA: Thomas, Semmens. Oats
Warwickshire: Mountney

Offline snowyw

  • RootsChat Aristocrat
  • ******
  • Posts: 1,097
    • View Profile
Re: Infected file on GenesReunited
« Reply #35 on: Monday 15 February 10 12:02 GMT (UK) »
Quote
So it most definitely is something to do with GR

So how come most people do not get an error?  I've tried to get this error and I can't. 

Let us apply some logic to this problem.

What security are you using?

It seems to be an anti-virus program that is either falsely or rightly reporting that there is an error.

If you temporarily disable your security program will you still get the message?

Are you joking? That would  surely let something in , if it wanted to get in.





I'm not young enough to know everything.


Census information Crown Copyright, from www.nationalarchives.gov.uk