Cubersnot renewed in IE 6.0 ?

Published by

data/avatar/default/avatar04.webp
This is an well known trick that many websites like to use to pretend that they can see your drives when infact they can't. When the following is embedded in a webpage (as was the case with the provided link) or typed in the address bar file:///C:/ the contents of the local c drive are only shown to the user at the computer. The website using the link can not see your drives or gain access to any files but the user is fooled into believing there security is compromised and the website has access to there drives.
data/avatar/default/avatar04.webp
Of course considering the pop ups from THIS site actually features that pretty thing, I'm surprised you guys of all people just noticed NOW.
data/avatar/default/avatar01.webp
The first poster is completely right. Just look at the page source: It's doing the same thing as opening IE6.0 and typing C: into the Address bar, except it's sticking the rest of the page content around it. A lot of older hacker sites used to play this trick to get people paranoid. :) The remote web server never actually see's or accesses your HDD's info, IE just loads it locally off your drive.
data/avatar/default/avatar04.webp
Open your registry and find the key below. Each value name listed in this key will be sent to the remote web server as an additional entry in the user agent string. To remove any additional information delete all the entries within the [Post Platform] key. To add additional entries create a string value and name it the string you want to be sent. Restart Internet Explorer for the changes to take effect. Key: [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersion Internet SettingsUser AgentPost Platform] Data Type: REG_SZ (String Value) and type in: ***** YOURSELF !!!
data/avatar/default/avatar04.webp
this is the code they use: <iframe src="https://www.warp2search.net/file:///C|/" height=130 width=580 marginwidth=0 marginheight=0 scrolling=no frameborder=0 vspace=2></iframe>
data/avatar/default/avatar04.webp
damn, same thing happens to me. every time i go to the warp2search website, the hackerspider page pops up with a window showing my c drive. good to know its nothing serious though. is there any way to prevent this?
data/avatar/default/avatar04.webp
Haven´t seen a site that tries to install so many EXREMELY EXPENSIVE dialer programs on my machine for a long time. I would higly recommend to remove that link from the news page and warn people of the rip-off site!!! This should not stay on a good news site like WARP2 .... Regards - Morlock
data/avatar/default/avatar04.webp
that this hacker site is one amongst many pop-ups originating when i load war2search. i'm not interested in hacking and only found it via looking at warp2search :) nurlaili
data/avatar/default/avatar01.webp
We have noticed all the problems with this HackerSpidersite the last weeks. We have contacted the adfim and told them several times that they have to remove these HackerSpider popup from our account. They told me that they´ve done it allready. I noticed that HackerSpider Window the last days no more and I hope that they have diffently removed that dammed page from my account. Please contact me if you notice that window in the future. BTW, I am allready searching for a new ad firm to kick these traffichome guys off!
data/avatar/default/avatar04.webp
Thanks degger, I know ads keep a sight alive, but im not, as well as many other readers intrested in seeing a hacker site all in Dutch which most can't read anyways. hehe
data/avatar/default/avatar04.webp
For the users with firewalls: Set a rule to block the IP 62.146.24.114, that takes care of the 'traffichome' garbage.
data/avatar/default/avatar04.webp
their still doing it, everytime i go to warp2search.com the popup comes up. shows my drive c contents also. please get rid of this annoying popup.
data/avatar/default/avatar04.webp
If you have a firewall, log your connections, pickout the ipadres of this site and block any connection to/from it. Its a good way to stop popups from adservers.
data/avatar/default/avatar04.webp
Better, better, Muuuchh, Better, there pretty anoying for some time. M3dzone has them to, and just becouse of that i just blocked all adds from them and techconnect. pretty shame couse i like them and most the sites techconnect host. They have to live and pay bills i know, but NOT this way with these shitty adds and popups.
data/avatar/default/avatar04.webp
Install XenoBar and you have full control over the popups.... Works great ! dhnc
data/avatar/default/avatar04.webp
I've recieved that hacker-spider.de pop up as well and it was caused by an embedded file in my windows system folder named winsvc32.exe. I just deleted it and the problem is solved. Damned German gibberish is driving me nuts and my files showing caused me some grief at first.
data/avatar/default/avatar04.webp
This morning I linked to Warp2Search.net from a TechTV page. I got the german language page with some of the contents of my C:/ drive listed. I do not have a file "winsvc32.exe" on my drives, as someone did who wrote in on 2.14.2002. Looks like they are "baaack" in spite of your efforts in December. Good luck. I hate to see a good site screwed up by an ad like this one!