Hello, my AV software caught it before it had a chance to infect my PC.
[img:11uo972z]http://img188.imageshack.us/img188/6988/trojanclicker.png[/img:11uo972z]
I do a research about [COLOR="blue"]fiji water[/COLOR] using google search. I see the website which is:
[code:11uo972z]hxxp://structuralevolution.org/blog/2008/06/05/avoid-fiji-water-unless-you-like-arsenic/[/code:11uo972z]
After I clicked on the website link. My AV software detected the Trojan.
My question is:
I did not download or click on a download link or install anything. How can the virus attack my computer?
Hey Joel - Grr is correct. The site in question has most likely been affected by what is known as a 'drive-by' infection.
I just accessed the site myself, from Firefox within a sandbox (virtual environment) and Avast issued me with a warning that it had just blocked a malicious site.
The site is actually rated Green (safe) by leading site advisory services so it would almost definitely be some outside influence.
One of the very reasons we need strong security...and some brownie points for your AV software methinks!
Cheers....Jim
Joel,
There are plenty of online services which will check a site/link for malware for you. All you are generally required to do is just copy and paste (or type) the URL into the dialogue box and then click on a 'Scan' (or similar) button.
Dr.Web has one [url=http://online.us.drweb.com/?url=1:1j0fslv8]HERE[/url:1j0fslv8]
AVG has one [url=http://linkscanner.explabs.com/linkscanner/avg/:1j0fslv8]HERE[/url:1j0fslv8]
Another way to protect yourself would be to use something like Sandboxie, I use it all the time. Each time you run it Sandboxie sets up a temporary virtual environment. Select the option to 'Run Web browser sandboxed' and just surf as usual. When your session is over just delete the contents of the sandbox and everything is gone; history, downloads, added bookmarks, any malware, everything.....nothing gets near your system.
Of course that would mean, if you wanted to retain any info, you would need to take notes during sandboxed browsing and re-visit any worthwhile sites normally.
Your security programs and any site advisory service will still operate as per normal during the sandboxed browsing session and continue to issue warnings, except any malware will be contained (imprisoned if you like) within the sandbox.
Sandboxie is free, [url=http://www.sandboxie.com/:1j0fslv8]Sandboxie Home Page[/url:1j0fslv8]
Cheers....Jim
Dr.Web shows clean: http://online.us.drweb.com/cache/?i=651 ... f1d3233c59
AVG shows clean: http://linkscanner.explabs.com/linkscan ... e-arsenic/
Websites actually live on a remote computer. As such they are susceptible to similar issues if the owner of the computer doesn't use strong passwords and keep the underlying software up to date.
There was probably an underlying software vulnerability, or the site owner did not have a strong password. This would allow a third party access to the content on the server. When this happens they usually place a script on the site which downloads items to your computer, and place the actual site in an iframe. The download happens in the background without the visitor's knowledge and the site displays at normal - Yes, they are a sneaky bunch, which is why security software and safe practices are important!
1 Guest(s)