Watch out for vidiotmaps.com


Another_Fan

 

Posted

I went to vidiotmaps.com this morning to check and see which badges I needed in Warburg. When I went to the Warburg map page I was redirected to an antivirus scan bot. It looks to me like someone hacked the site. I don't think the administrators of vidiotmaps.com would do something like this. If you are reading this and you are one of those administrators please see what you can do to fix this.


 

Posted

I just checked that page as well as various other pages on the site and everything seems to be working fine. You might want to check your own computer for an infection. I've seen people have stuff on their computers that they didn't know was there, but would cause behavior like you described. Specifically, run msconfig and see if there's anything you don't recognize on the Startup tab.


Blondeshell (1381 badges) - My other badge hunters
VidiotMaps Master Cartographer
MArc #87989 - Enter, The Conglomerate
Invention Salvage Distribution Charts

 

Posted

I know 2 players who's computers were infected while visiting badge-hunter week or so ago. At the same time vidiotmaps and badge-hunter were blocked for me by IE as unsafe. Before that, NAV reported that "pidief" trojan is contained in the files downloaded from vidiotmaps and badge-hunter. Both vidiotmaps and badge-hunter were fine last week. It is possible these were hacked again tho


 

Posted

There's something with the ad at the very bottom. I just got redirected to a fake "virus checker" site from there. I hit reload (after blocking that site) and got a regular ad.


Global @StarGeek
ParagonWiki.com-The original is still the best!
My Hero Merit rolls
Accuracy needed for 95% ToHit spreadsheet
Forum font change stripper for Firefox/Opera/Chrome. No more dealing with poor color choices, weird fonts or microscopic text
Search Wiki Patch notes, add site:ParagonWiki.com inurl:patch_notes to your Google Search

 

Posted

I got a map from there awhile ago, and I dont really need it anymore. How do I delete it?


 

Posted

There's nothing wrong with the maps, and no way to get a virus from them.

I don't recall if there's an uninstall in included, but you can simply go into the "Data\texture_library" directory of you CoH folder and delete the "MAPS" and "V_MAPS" folders.


Global @StarGeek
ParagonWiki.com-The original is still the best!
My Hero Merit rolls
Accuracy needed for 95% ToHit spreadsheet
Forum font change stripper for Firefox/Opera/Chrome. No more dealing with poor color choices, weird fonts or microscopic text
Search Wiki Patch notes, add site:ParagonWiki.com inurl:patch_notes to your Google Search

 

Posted

Quote:
Originally Posted by StarGeek View Post
There's something with the ad at the very bottom. I just got redirected to a fake "virus checker" site from there. I hit reload (after blocking that site) and got a regular ad.
Yeah, it is likely their ad provider.




Triumph: White Succubus: 50 Ill/Emp/PF Snow Globe: 50 Ice/FF/Ice Strobe: 50 PB Shi Otomi: 50 Ninja/Ninjistu/GW Stalker My other characters

 

Posted

The problem may be something different.

There is currently an active virus who's name I cannot for the life of me recall. It begins with an A and the extension I believe is .CT or something odd like that..

The virus's most common functions are browser redirects. So when you click a link or bookmark it will try to redirect you to another site, generally advertising or another malware site. If I can dig up the name I will post it up. It is however a VERY tenacious virus, going undetected by many scanners and even finding ways to reinstall itself if you do clean it as it also alters the host DNS settings to allow a reinstall if it is wiped.


 

Posted

While a virus is always a possibility, the fact that I've only had one browser redirect, and it was only when I went to the Vidiotmaps site, and wouldn't happen again once I had blocked clicksor.com (the ad site) even after some 30 reloads of the site, make it much less likely that it's a virus causing the problem.


Global @StarGeek
ParagonWiki.com-The original is still the best!
My Hero Merit rolls
Accuracy needed for 95% ToHit spreadsheet
Forum font change stripper for Firefox/Opera/Chrome. No more dealing with poor color choices, weird fonts or microscopic text
Search Wiki Patch notes, add site:ParagonWiki.com inurl:patch_notes to your Google Search

 

Posted

I've shot the site admins a notice about the problems with their ad provider.

Hopefully they find some way to correct it or do without the ads.



Clicking on the linked image above will take you off the City of Heroes site. However, the guides will be linked back here.

 

Posted

Quote:
Originally Posted by StarGeek View Post
There's something with the ad at the very bottom. I just got redirected to a fake "virus checker" site from there. I hit reload (after blocking that site) and got a regular ad.
Quote:
Originally Posted by StarGeek View Post
While a virus is always a possibility, the fact that I've only had one browser redirect, and it was only when I went to the Vidiotmaps site, and wouldn't happen again once I had blocked clicksor.com (the ad site) even after some 30 reloads of the site, make it much less likely that it's a virus causing the problem.
This.

I was also redirected the other day and was annoyed by the whole thing. It was only on that site, and only while viewing a couple of the maps.

After closing/reopening my browser and revisiting the page, everything was normal.

It's most likely the advertising company. Maybe we should all donate some extra money so they wont have ads at all!


 

Posted

http://malwarebytes.org/

Try malwarebytes antimalware scanner. Its free and highly effective. If for any reason it wont start up or install, its likely you are infected.


 

Posted

I immediately ran spybot S&D and CCleaner (Crap Cleaner). They are two great programs that I rely on regularly and highly recommend. Both are free.


 

Posted

Okay guys, got a reply from Beef Cake over at Badge Hunter.

Quote:
Originally Posted by Beef Cake
Hello Hyperstrike,

I'm aware of this, I have a support ticket with Clicksor now, we're trying
to find out which add is causing this, so please the next time this happens,
let me know, but try to see what add is being displayed at the time this
happens, this will help both me and Clicksor in eliminating this threat.
They need to know who is causing it as its against their Terms of Service
and they will be terminated from advertising with them again.


Best Regards,
Beef Cake
If any of you are willing to take the lead on this, shoot him an e-mail at beefcake at badge-hunter dot com.

Me, I'm about completely and utterly fried. Been up over 48 hours and STILL cannot sleep.

Time to get out the cast iron skillet

*BONG!*

[NO CARRIER]



Clicking on the linked image above will take you off the City of Heroes site. However, the guides will be linked back here.

 

Posted

Thanks Hyper, I hope they get it under control soon because I really love vidiotmaps and badge-hunter.


 

Posted

Hello everyone,

I just wanted to come in here and give everyone the details as to what had happened. And what we have done to correct the situation.

As some of you may've seen, we recently added a Ad Service to our site to help generate some money to help keep the site running due to server costs..etc..etc Well the Ad Service we used was Clicksor.com

Everything seemed to be fine until I had the same thing happen to me when visiting my own site. I thought I actually had a virus, but that wasn't the case. Afterwards, I did what most of you may have done and ran my Virus Scanner and Malware program. The end results were fine, I wasn't infected. And I truly hope no one else was either.

It happened a second time when visiting my site, and that's when it dawned on me, the only thing different on my site was the Ad Service. So I contacted the Ad Service and reported this situation with Clicksor.com immediately.

After about 2 days and no results, I finally decided to remove that Ad Service, after I received the two emails, it told me it wasn't just me and my hunch was correct about it being the Ad Service. Since then, I haven't had any issues. That Ad Service will never be used again, nor will I ever send anyone to them in the future.

I contacted BidVertiser (another ad site) in regards to this same situation and they assured me, that their system has protection against things like this and can not happen. So the site will be fine as of yesterday. But I'm not worried about the site, I'm more worried about the community and its thoughts when it comes tot he site. So the issue has been "Removed" all together with no future of it ever happening again. (At least I hope not)

So I'd like to "Wholehearted" apologize to anyone who may have experienced this over at my site. I wish it had never happened and if I knew such a threat was possible, I never would have placed it on my site to begin with. So I hope you can understand that.

And in the future, if anything like this should ever happen again, I would hope I would get a email ASAP. I think I did from 2 different members, one being in this thread. Another actually had the info I needed, which was given to Clicksor.com but I wasn't waiting for a fix, I removed the service and will never look back to them.

Again, I really apologize for this and hope you can forgive my ignorance.

Sincerely,
Rob
aka Beef Cake


[B]Leading Badge Holder in the City of Community[/B]
Owner & Operator of...
[URL="http://www.vidiotmaps.com/"]Vidiotmaps.com[/URL] & [URL="http://www.badge-hunter.com/"]Badge-Hunter.com[/URL]

[URL="http://net-warrior.mybrute.com/"][B][SIZE=3][COLOR=darkorange]Challenge My Brute[/COLOR][/SIZE][/B][/URL]

 

Posted

From me, at least, no worries at all. I'd rather you had adds than stop having a host, and I think it's pretty clear this wasn't somehow directly the site admins' faults.

I can't imagine any ad site fessing up to vulnerability to such things ahead of time, and plenty of hosts of all types have turned up hacked via various injection or XSS vulnerabilities. All we can do is keep our eyes open and let folks like you know when weird stuff happens.

This did prompt me to look into hardening my own browser a bit more, which isn't a bad thing.


Blue
American Steele: 50 BS/Inv
Nightfall: 50 DDD
Sable Slayer: 50 DM/Rgn
Fortune's Shadow: 50 Dark/Psi
WinterStrike: 47 Ice/Dev
Quantum Well: 43 Inv/EM
Twilit Destiny: 43 MA/DA
Red
Shadowslip: 50 DDC
Final Rest: 50 MA/Rgn
Abyssal Frost: 50 Ice/Dark
Golden Ember: 50 SM/FA

 

Posted

Quote:
Originally Posted by Beef_Cake View Post
Again, I really apologize for this and hope you can forgive my ignorance.
B_C, first I appreciate you coming in to clear this up and I appreciate the great service that vidiotmaps provides. I just donated for the first time. Keep up the good work, and I totally understand you using an ad service to help defray costs. Hopefully your next one will screen their ads better.


Freedom: Blazing Larb, Fiery Fulcrum, Sardan Reborn, Arctic-Frenzy, Wasabi Sam, Mr Smashtastic.

 

Posted

Quote:
Originally Posted by Beef_Cake View Post
Hello everyone,

I just wanted to come in here and give everyone the details as to what had happened. And what we have done to correct the situation.

As some of you may've seen, we recently added a Ad Service to our site to help generate some money to help keep the site running due to server costs..etc..etc Well the Ad Service we used was Clicksor.com

Everything seemed to be fine until I had the same thing happen to me when visiting my own site. I thought I actually had a virus, but that wasn't the case. Afterwards, I did what most of you may have done and ran my Virus Scanner and Malware program. The end results were fine, I wasn't infected. And I truly hope no one else was either.

It happened a second time when visiting my site, and that's when it dawned on me, the only thing different on my site was the Ad Service. So I contacted the Ad Service and reported this situation with Clicksor.com immediately.

After about 2 days and no results, I finally decided to remove that Ad Service, after I received the two emails, it told me it wasn't just me and my hunch was correct about it being the Ad Service. Since then, I haven't had any issues. That Ad Service will never be used again, nor will I ever send anyone to them in the future.

I contacted BidVertiser (another ad site) in regards to this same situation and they assured me, that their system has protection against things like this and can not happen. So the site will be fine as of yesterday. But I'm not worried about the site, I'm more worried about the community and its thoughts when it comes tot he site. So the issue has been "Removed" all together with no future of it ever happening again. (At least I hope not)

So I'd like to "Wholehearted" apologize to anyone who may have experienced this over at my site. I wish it had never happened and if I knew such a threat was possible, I never would have placed it on my site to begin with. So I hope you can understand that.

And in the future, if anything like this should ever happen again, I would hope I would get a email ASAP. I think I did from 2 different members, one being in this thread. Another actually had the info I needed, which was given to Clicksor.com but I wasn't waiting for a fix, I removed the service and will never look back to them.

Again, I really apologize for this and hope you can forgive my ignorance.

Sincerely,
Rob
aka Beef Cake
As you can see from my original post and the followups as well I never doubted you guys. I'm glad the problem is resolved. Thank you for taking care of it in a timely fashion.


 

Posted

Quote:
Originally Posted by Beef_Cake View Post
But I'm not worried about the site, I'm more worried about the community and its thoughts when it comes to the site.
It's clear to me that VidiotMaps.com and Badge-Hunter.com are two of the most used and most respected sites in the CoX community. The fact that you come in here quickly and personally to assure everyone of the sites' well-being speaks volumes and characterizes the well-placed faith people have in the sites.

Thanks for doing what you do so well.


 

Posted

Searching Google, this appears to be a common problem with anyone who uses Clicksor.com. So don't use it.


 

Posted

Quote:
Originally Posted by NekoNeko View Post
It's clear to me that VidiotMaps.com and Badge-Hunter.com are two of the most used and most respected sites in the CoX community. The fact that you come in here quickly and personally to assure everyone of the sites' well-being speaks volumes and characterizes the well-placed faith people have in the sites.

Thanks for doing what you do so well.
Seconded, I love the community this game has.