Portal site / redirect to malware scam - About xda-developers.com

Twice this evening I hit "READ MORE>" links on the portal and the tabs that were opened had been redirected to a malware scam:
http://preview.tinyurl.com/2338wlu

All ok here, never happened that

I have been redirected as well, just innocently clicking on articles on the main page. I sent an email to the webmaster just now with a complaint.
Got redirected to safyeom.in just like you with a scare malware scam. I really hope the webmaster/owners have nothing to do with this as it is quite disappointing.

Same problem here.

Now happened to me as well
In the portal whenever I want to click on any article it redirects me to a supposed malaware but nothing happens, after you click again and all ok
I´m sure Admins are aware of this and will be solved ASAP

Just happened to me also. Only, it keeps happening. Clicked on the article title link Boot Animations + Tutorial for Android a few times and happened each time.

Yeah, the blog is definitely infected. Redirects to malware when you click on any of the tags for the stories too.

Contacting the server Sys. Admin for XDA along with the site admins
EDIT: Talked to the portal admin and got a story on the front page to warn users, working on resolving this issue.

Sithis said:
I have been redirected as well, just innocently clicking on articles on the main page. I sent an email to the webmaster just now with a complaint.
Got redirected to safyeom.in just like you with a scare malware scam. I really hope the webmaster/owners have nothing to do with this as it is quite disappointing.
Click to expand...
Click to collapse
This is a XSS (Cross Site Scripting) attack where an advertiser publishes on a site legitimately for a while then switches to a malicious site. not at the fault of the site owners... This has happened to other large sites like the new york times and such

yeah, happened to me a few times. funny too. i run ubuntu, and it was 'scanning my system' finding several windows viruses.
the websites picked up were with .in suffixes (india)
glad to hear that it's the site, though, and not something local

Yeah, I noticed this too. Glad its not my PC...but I'm not exactly happy XDA's taking a hit for the team.

Forums back up (obviously) the portal will stay down for a little time...

Captainkrtek said:
This is a XSS (Cross Site Scripting) attack where an advertiser publishes on a site legitimately for a while then switches to a malicious site. not at the fault of the site owners... This has happened to other large sites like the new york times and such
Click to expand...
Click to collapse
That I am happy to hear. I figured they wouldn't resort to such low tactics. Glad to know it is being taken care of (although I'm sorry there was a problem to begin with).

Sithis said:
That I am happy to hear. I figured they wouldn't resort to such low tactics. Glad to know it is being taken care of (although I'm sorry there was a problem to begin with).
Click to expand...
Click to collapse
Actually after further discussion it turns out to be a Wordpress Exploit of some sort... Still not their fault as WP isnt very secure, more updates coming soon..

Just wanted to thank yall for the tweet.

Now links working ok again

Captainkrtek said:
Actually after further discussion it turns out to be a Wordpress Exploit of some sort... Still not their fault as WP isnt very secure, more updates coming soon..
Click to expand...
Click to collapse
What are the potential risk here? i got to the page and it tried to download something on my machine. I closed the windows asap and I am running a scan right now.

zenmasta said:
What are the potential risk here? i got to the page and it tried to download something on my machine. I closed the windows asap and I am running a scan right now.
Click to expand...
Click to collapse
If you declined any download, then you should be OK. I'd suggest scanning with something in addition to your regular scanner, like Malware Bytes Antimalware (I only suggest it as it's free, and doesn't use a real-time monitor like other AV packages, so won't conflict with what you have installed already).

The XDA Portal is temporarily offline. Visit the Forums!

Glad to know that I was not the only one.
Got worried that my machine was infected, went so far as to actually run a trace to verify that the malware was being launched from the website, haha

Related

Forum Problems?

Is it just me, or has the forum been up and down more often than a whores knickers these past few weeks? What's going on with the server? Been trying to get on all morning and just been getting timeouts...
same here
facing these probs frm dec
http://www.petitiononline.com/xdadevs/petition.html
This Petition aims to show the support for xda-developers.com's archive of 'ROM Images'
The Undersigned wish to notify Microsoft Corp. of their strong feelings against the recent demands to remove the 'ROM Images'. We feel that they bring more publicity and support to the 'Windows Mobile' platform and device: without this we feel they would not be as popular as they are to this date
Nah, this forum's reliability is shocking to say the least. It's almost down more then it's up and it's incredibly slow from Australia!
a123xxsp said:
http://www.petitiononline.com/xdadevs/petition.html
This Petition aims to show the support for xda-developers.com's archive of 'ROM Images'
The Undersigned wish to notify Microsoft Corp. of their strong feelings against the recent demands to remove the 'ROM Images'. We feel that they bring more publicity and support to the 'Windows Mobile' platform and device: without this we feel they would not be as popular as they are to this date
Click to expand...
Click to collapse
Wrong thread, doofus.
tmaster100 said:
Nah, this forum's reliability is shocking to say the least. It's almost down more then it's up and it's incredibly slow from Australia!
Click to expand...
Click to collapse
Yep, I second this. Would be nice to know what is going on...
a123xxsp said:
http://www.petitiononline.com/xdadevs/petition.html
This Petition aims to show the support for xda-developers.com's archive of 'ROM Images'
The Undersigned wish to notify Microsoft Corp. of their strong feelings against the recent demands to remove the 'ROM Images'. We feel that they bring more publicity and support to the 'Windows Mobile' platform and device: without this we feel they would not be as popular as they are to this date
Click to expand...
Click to collapse
Completly un-related. The site is not been taken off line for M$ or HTC.
tmaster100 said:
Nah, this forum's reliability is shocking to say the least. It's almost down more then it's up and it's incredibly slow from Australia!
Click to expand...
Click to collapse
The site admin is enjoying a well deserved rest.
Before xmas there were some issues identified and some fixes issued and all seemed OK. But now this...
Upon her return the issues will be investigated. I'm can't say if they are the same or new issues that are causing the recent outages.
Ta
Dave
So at 5:39am CST, the only question I have for you is she is a she.
momentarylapseofreason said:
So at 5:39am CST, the only question I have for you is she is a she.
Click to expand...
Click to collapse
See for your self: http://forum.xda-developers.com/member.php?u=298610
Seriously, keep this thread on topic, please.
Ta
Dave
We're having some problems with the frontend webserver at the moment, investigation is ongoing. The System is just crashing randomly on us.
foobar423 said:
We're having some problems with the frontend webserver at the moment, investigation is ongoing. The System is just crashing randomly on us.
Click to expand...
Click to collapse
Nice one mystery admin
Dave
FloatingFatMan said:
Wrong thread, doofus.
Click to expand...
Click to collapse
Chill out man, I was thinking that maybe the were tries to move to other servers because of MS charges or anything like this.
Last night the forum and main page were down, but the wiki was up (definitely from 9PM-11PM EST).
Jason
FloatingFatMan said:
Is it just me, or has the forum been up and down more often than a whores knickers these past few weeks? What's going on with the server? Been trying to get on all morning and just been getting timeouts...
Click to expand...
Click to collapse
Seriously gentleman, I like this forum as much as anyone, I visit at least every morning and night as part of my daily news round up , but you guys need girlfriends or something.
The site was down last night, so I did something else.
It is not like your Hundreds of dollars in subscription fees are going for not.
denco7 said:
Seriously gentleman, I like this forum as much as anyone, I visit at least every morning and night as part of my daily news round up , but you guys need girlfriends or something.
The site was down last night, so I did something else.
It is not like your Hundreds of dollars in subscription fees are going for not.
Click to expand...
Click to collapse
Actually, If I got a girlfriend, I think my wife might not be too impressed...
I generally browse the forum when I'm at work.... If the forum's not working, that means I have to actually DO some work! Baaaaaaaad idea!
FloatingFatMan said:
Actually, If I got a girlfriend, I think my wife might not be too impressed...
I generally browse the forum when I'm at work.... If the forum's not working, that means I have to actually DO some work! Baaaaaaaad idea!
Click to expand...
Click to collapse
Me too! waaajajajajajja
Glad it's back up! I was left in the dark last night
Also, hope some backup system servers are available in the future...
It seems we all get a case of the wobbles when XDA goes down
foobar423 said:
We're having some problems with the frontend webserver at the moment, investigation is ongoing. The System is just crashing randomly on us.
Click to expand...
Click to collapse
I guess you have physical access to the hardware then.
Memtest the RAM modules.
Test for memory leaks
Try upgrading to the latest stable software - check logs for segfaults
Running software compiled against another version of a dependancy you have on your system?
Is your server virtualized?
Do a hard reset
adwinp said:
I guess you have physical access to the hardware then.
Memtest the RAM modules.
Test for memory leaks
Try upgrading to the latest stable software - check logs for segfaults
Running software compiled against another version of a dependancy you have on your system?
Is your server virtualized?
Click to expand...
Click to collapse
ALWAYS FIXS MY DIAMOND

Wallpaper apps by jackeey,wallpaper could be stealing millions of users data

A security team named “Lookout”, who does have antivirus and anti-malware apps available for the Android platform, has said that there are a number of apps, all from the same developer, that are recording and sending out personal information from users’ devices to an unknown source somewhere in China, to include:
•browsing history
•text messages
•your SIM card data
•subscriber ID
•voicemail password (if it’s set to be entered automatically)
Is this a big deal? Absolutely. Should wallpaper apps be doing this? No way. However, there has been an unofficial response from Lookout concerning the uproar surrounding the situation, wherein Kevin Mahaffey, CTO for Lookout, Inc., states:
while the data the wallpaper apps are accessing are certainly suspicious coming from wallpaper apps, we’re not saying that these applications are malicious. There have been cases in the past where applications are simply a little overzealous in their data gathering practices, but not because of any ill intent.
While this is no justification for the problems surrounding the apps, it does clarify the possibility that this may simply be some slap-happy programming from an overly-zealous developer. Still, either way, we would recommend removing any of these apps in question. The list of suspected apps can be found here:
http://www.appbrain.com/browse/dev/jackeey,wallpaper
Ah, an Engadget reader I assume?
I'd pop back there and read their last minute update to their big story for the day where they admit they got the numbers wrong and the got the details wrong too.
So "millions of users" turns into 250,000. SMS messages, and browser history is not touched as they claimed and they admit hardly anyone ever sets their voicemail pin...I mean, have you ever done that?
lol... As my teenage son might type..."pwnd" I think is the expression... but with a big caveat on this occasion to the OP to say thanks very much for the heads up & the warning anyway... appreciate the spirit of the post.
I've removed endgadget from my Google reader a long time ago because of their stupidity but I see nothing has changed.
Sent from my HTC Desire using XDA App
Aitese said:
Ah, an Engadget reader I assume?
I'd pop back there and read their last minute update to their big story for the day where they admit they got the numbers wrong and the got the details wrong too.
So "millions of users" turns into 250,000. SMS messages, and browser history is not touched as they claimed and they admit hardly anyone ever sets their voicemail pin...I mean, have you ever done that?
Click to expand...
Click to collapse
no it was talk android actually, i was just posting a heads up as it sounded somthing people should know about and i didnt know how many other sites where posting the story
Well you know, yesterday there was a heap of stupid "news" "websites " like endgadget that published that froyo was OTA just because a user here on xda pulled a joke. He actually revealed it was a joke only some minutes later, so you see, these supposed knowledgeable websites are usually run by morons ...
Sent from my HTC Desire using XDA App
andycted said:
Well you know, yesterday there was a heap of stupid "news" "websites " like endgadget that published that froyo was OTA just because a user here on xda pulled a joke. He actually revealed it was a joke only some minutes later, so you see, these supposed knowledgeable websites are usually run by morons ...
Sent from my HTC Desire using XDA App
Click to expand...
Click to collapse
its just like with newspapers tho init, there always having to apologise cuz they got sumat wrong in a rush to be the first to a story, suppose internet journalism isnt that diffrent, maybe harder to get facts str8 with tech journalism as there are so many rumors floating about lol
AndroHero said:
no it was talk android actually, i was just posting a heads up as it sounded somthing people should know about and i didnt know how many other sites where posting the story
Click to expand...
Click to collapse
Basically it all come from Lookout who make anti virus and security software for mobiles attempting to scare up some business. Through a series of Chinese whispers their claims became more and more outlandish until culminating in "MILLIONS" of peoples emails and SMS messages being beamed to shady Triad gangsters.
Aitese said:
Basically it all come from Lookout who make anti virus and security software for mobiles attempting to scare up some business. Through a series of Chinese whispers their claims became more and more outlandish until culminating in "MILLIONS" of peoples emails and SMS messages being beamed to shady Triad gangsters.
Click to expand...
Click to collapse
it works tho dosent it lol i dnt currently have any av on my desire, after reading that i thought i might download lookout lol
Agreed lookout should be hit hard in the balls for stunts like this, but the main fault here is of internet 'journalism' if even you could call it like that. They are just a bunch of morons happy to earn a buck 'blogging' crap.
Also, maybe "scripta manet" - but not so much if it's electronic
not sent from an iToilet

about the advertisement

The IBM advertisement made the website hang and stop loading contact under the advertisement. Hope to fix it
What ad?
I don´t see any
I haven't seen that one...
Although on the matter of Ads. I occasionaly get one in the portal which hovers over the Forum button etc. so I can't click it, also there is no [x] button
If you can get a screenie of it, let us know and I'll see if anything can be done about it.
pulser_g2 said:
If you can get a screenie of it, let us know and I'll see if anything can be done about it.
Click to expand...
Click to collapse
Here you go
I'm a newbie here. I don't mind the ads in principal, but the ads that drop down when I accidently pass over them I find an intrusion and very annoying. What makes them bad news in my opionion is that they often sit there and are hard to get rid of. Frustrating or what?
Surely this site is not that desperate. Some of them seem to be designed especially to irritate users. And no X button. Surely we could at least insist on an escape route.
Cheers ...
Adblocker? Ive already donated 210 Euros to the site, the site doesn't make a lot
I won't link the websiteworth checker
MacaronyMax said:
I won't link the websiteworth checker
Click to expand...
Click to collapse
It's not the point. What is more, some people are here just to look around and may not get any benefit at all.
I've been a site administrator also - ads generate income and can allow more benefit to users.
But I've never had this trouble before on any other such site. I'm fine with the ads per se, but some of these are very very annoying in products that I'm not at all interested in and being jammed down my neck - with no escape, that's the irritating bit!
Cheers ...

kinhacking.com Need Ideas

So a guy from our facebook page said that he has bought domain called "kinhacking.com" and he needs ideas to get it going, post your ideas here or on the facebook page!
Hey that guy was me. Shoot me any ideas for what you would like to see the site be used for...
Of course, later in the evening after I bought the domain, I dropped my kin at the bar (from waist height!) and the screen stopped working. FFFFFFFUUUUUUUUUUUUUU
Anyway, I would still be happy to host the site. Additionally, I found a Kin on ebay where the owner claims to have unlocked it and loaded Froyo on it. I am trying to get details now...
tjacoby2006 said:
Additionally, I found a Kin on ebay where the owner claims to have unlocked it and loaded Froyo on it. I am trying to get details now...
Click to expand...
Click to collapse
Don't wanna sound like mr. pessimistic, but I won't be holding my breath until I see some proof.
tjacoby2006 said:
Of course, later in the evening after I bought the domain, I dropped my kin at the bar (from waist height!) and the screen stopped working. FFFFFFFUUUUUUUUUUUUUU
Click to expand...
Click to collapse
.
Does it still work connected to a USB port? Aka, power on & show as "KIN" at windows.
I dont really need that for my evil darkness plans, and could be interested in hehe.
tjacoby2006 said:
Additionally, I found a Kin on ebay where the owner claims to have unlocked it and loaded Froyo on it. I am trying to get details now...
Click to expand...
Click to collapse
Can you link that? Cant find it, Thanks!
soninja8 said:
Can you link that? Cant find it, Thanks!
Click to expand...
Click to collapse
I found it by google searching "kin 2 running android" but I can't post links until I've hit 8 posts, so just literaly look up "kin 2 running android" in Google and it should be the first result.
Anyway, I think the seller is confused about what OS the Kin 2 is running, as I've seen people who've reviewed the kin and thought it had Android, which is blatently incorrect.
Iggy95 said:
I found it by google searching "kin 2 running android" but I can't post links until I've hit 8 posts, so just literaly look up "kin 2 running android" in Google and it should be the first result.
Anyway, I think the seller is confused about what OS the Kin 2 is running, as I've seen people who've reviewed the kin and thought it had Android, which is blatently incorrect.
Click to expand...
Click to collapse
Return policy
The seller will not accept returns for this item.
He's just trying to get money. I'm sure it wasn't unlocked at all.
what if we could post a kind of online petition asking Microsoft, Nvidia, or Sharp for something, anything whatsoever. Possibly if Microsoft would continue through with their idea of running WP7 on the Kin from the very beginning of the release before dumping it realizing that they were far too behind. Say we get like 5,000 digital signatures for it, maybe Microsoft will get to work on it? I mean they still have to have SOMEONE working on the device otherwise these newer Kin TwoM's that will not revert to the original Kin Two OS would not be out there
Hey everyone, sorry to take so long to reply to the thread!
zero2duo said:
Don't wanna sound like mr. pessimistic, but I won't be holding my breath until I see some proof.
Click to expand...
Click to collapse
I asked him for a picture of it running as well as some directions as to how he did it... He told me he'd get me a picture and never did, then told me (jokingly) that if he told me how he did it he'd have to kill me. I don't think he was telling the truth or didn't know what he was saying.
johnkussack said:
.
Does it still work connected to a USB port? Aka, power on & show as "KIN" at windows.
I dont really need that for my evil darkness plans, and could be interested in hehe.
Click to expand...
Click to collapse
Yeah, it should still work (I will check in a bit). If you wanna pay for me to ship it I will send it to you.
Ok, so what would everyone like to see on this site? I don't want to drive traffic from here, certainly, but it would be nice to have a place where we can really consolidate some stuff.
fazi13 said:
what if we could post a kind of online petition asking Microsoft, Nvidia, or Sharp for something, anything whatsoever. Possibly if Microsoft would continue through with their idea of running WP7 on the Kin from the very beginning of the release before dumping it realizing that they were far too behind. Say we get like 5,000 digital signatures for it, maybe Microsoft will get to work on it? I mean they still have to have SOMEONE working on the device otherwise these newer Kin TwoM's that will not revert to the original Kin Two OS would not be out there
Click to expand...
Click to collapse
I don't think we can count on anything from MS. Considering the fact that they have re-released the phones they will not have any interest in offering an "unlock" procedure, or at least not so long as Verizon has any input in it (which they have a LOT).

Some Ideas on KIN Improvments without replaceing the OS

I had some ideas this morning on what we could do to make the OS and usabilyity of the phone greater without hacking (I rolled out of bed and fell on the floor and then it came to me lol. Ironic right?).
*This will of course involve the browser which isnt the fastest but not the worst.
What if we made web applications for the KIN and a web apps store which basicially is like an android market turned into a mobile version and KINafied a bit and instead of downloads has links to webapps people have found and/or made. I would be willing to ut time into it if someone else will help and if you guys want this.
*Please leave a comment on your standpoint.
I stated this before. It was a work in progress called WebOS. I stated the idea, then people started to get involved and made it happen. Doesn't look like it will be done.
Yeah I know and it was a good idea so I stated it again because for some reason your posts always get passed off as bad, but I think some of them had good ideas.
That's not entirely true. I get impatient with people when they say "Just release the damn hack already" Or "Show some proof" I got annoyed so I gave up and gave those trolls what they deserved: Stuff to piss them off
True true but are you working on an online web app store optimized for the KIN or not? If you are can I be of any assistance?
I brought up the idea of web apps a long time ago but was simply blown off. I now have a Droid charge but still like to keep an eye on this forum. This is a good idea, but I do not have the apps I was using on my phone before I upgraded. However I did post them soif you look up my previous posts you could maybe as then to your list.
Sent from my SCH-I510 using XDA
Thanks I didnt even know they were up here. Can you tell me which page or what im looking for?
kintwofan said:
I brought up the idea of web apps a long time ago but was simply blown off. I now have a Droid charge but still like to keep an eye on this forum. This is a good idea, but I do not have the apps I was using on my phone before I upgraded. However I did post them soif you look up my previous posts you could maybe as then to your list.
Sent from my SCH-I510 using XDA
Click to expand...
Click to collapse
Sorry to bust your bubble, but your idea wasn't blown off. I stated the idea before you and they tried. I don't know here you were when we started but one of the main person that was in on this (Alex Williams) Left the train ride if you know what I mean. We made some good progress too.
im not so sure about doing apps for the device as long as we cannot really rely on the case or browser hehaviour.
on the other hand,im making some tests that could let you plug your kin on one pc and access the content wherever you want,through web browser
kinda....kino web version. kin on the cloud...whatever
must ask some guys to see if its doable in windows. but for linux,and probably mac it works. i just tested the kinect samples.
also is all done on javascript so if releases is instantly opensource.
tldr; makin something like studio....but on your pc so you will have to have it powered on, and that stuff
Johnwhat would we do without you. That sounds great. My next suggestion was something like that. If we can add our own apps without changing the software Im fine with that too. But changing the software to something like ICS would be a bonus! Can you give a bit more detail on what your program does?
mmm its too late here so i will just say that this will be just like kino but the interface will be by browser and from any device.
except the kin itself haha,will be the host.
this lets you edit the interface and the code in stuff like notepad.
also using css templates, designers csn change the gui,extend it..whatever
Kinuser1
I was talking about a single game cached on the phone. Here is where I brought it up back in July 2011. forum.xda-developers.com/showthread.php?p=15759037#post15759037
I don't see were you mentioned this at all and I just reread all your posts. You didn't burst my bubble because like all your posts you are trying to act smarter than everyone.
WEM If you look at my posts I think I listed the games I gound that cached.
Thanks but what im trying to get us to do is make a website based app store with web applications designed for the KIN. basically just until we can crack this thing.
Sounds good I'll keep an eye to see how the progress is coming I thought you could use some games that cached to use source code to put in your site. I will say I got a lot from an open source site and added the caching code and was housing on a local server die nee. Worked perfectly and lated on phone for songs 12hours with no internet
Sent from my SCH-I510 using XDA
kintwofan said:
I was talking about a single game cached on the phone. Here is where I brought it up back in July 2011. forum.xda-developers.com/showthread.php?p=15759037#post15759037
I don't see were you mentioned this at all and I just reread all your posts. You didn't burst my bubble because like all your posts you are trying to act smarter than everyone.
WEM If you look at my posts I think I listed the games I gound that cached.
Click to expand...
Click to collapse
Thanks for your smart comment bud. But, I didn;t post it on here. I posted it on the facebook group. Either way it's the past and it doesn't matter
Okay, well I'm not a member of the Facebook page so maybe you did. Either way it seems like the best workable solution for the kin. It worked great for me while I had my Kin, made the phone pretty useable when not around wifi. However, yall keep up the good work. I still have mine as a back up for my charge so I hope you make some progress. Also if anyone needs some testing I am willing to risks bricking my phone since it just sits in my attic
Sent from my SCH-I510 using XDA
kintwofan said:
Okay, well I'm not a member of the Facebook page so maybe you did. Either way it seems like the best workable solution for the kin. It worked great for me while I had my Kin, made the phone pretty useable when not around wifi. However, yall keep up the good work. I still have mine as a back up for my charge so I hope you make some progress. Also if anyone needs some testing I am willing to risks bricking my phone since it just sits in my attic
Sent from my SCH-I510 using XDA
Click to expand...
Click to collapse
I think the idea for a "Web store" or something like that, is out of the question. It's a good idea but the browser is slow, Plus we've tried this before..maybe I can ask people to try and do this again
to be honest... develop that would just take one evening.
the other stuff is just making it pretty.
the most imporant stuff is to store it somewhere.
and i may be... "overacting" but i wouldnt bet on someones personal site for storage of my "downloaded" or selected stuff.
Apart from that... well is a pity as kin doesnt accept ad-hoc networks so refreshing could be done from a laptop without internet.
Also:
WEM97 said:
...until we can crack this thing.
Click to expand...
Click to collapse
not gonna happen. If electronics guys help us, we could just plug the samsung chip and use the wiring on the right pins, so read it in serial (UART) mode and dump the content into bin files (including possible rom content) like has been done for other Movinand devices in this forum (XDA). Of course no one has interest, and i got no means to do so, even if i had found the samsung documents describing the wiring.
And the alternative, which is decoding what XNA game dev studio says is not easy for me, so imma not gonna do it, and there is no other way to create a installable/runnable app (so no "do half and...." stuff that is on the other thread)

Categories

Resources