- Edited
To be clear I don't know for a fact that it has anything to do with hellobar.com, it's just something to eliminate. But the hosts file is a good idea, I'm going to try that as well.127.0.0.1 my.hellobar.com
To be clear I don't know for a fact that it has anything to do with hellobar.com, it's just something to eliminate. But the hosts file is a good idea, I'm going to try that as well.127.0.0.1 my.hellobar.com
Yes I experienced this a couple days ago.
remember to flush dns cache and restart your browser if using the hosts trick. I got the same page again after adding it to hosts but had not done those actions. I now have and I've not had the page again since.
@[deleted]The issue should be resolved now. We will be monitoring the site but please let us know if you still run into these issues or see anything suspicious.Cheers.
Thanks Kevin.
The malware is back! It is exactly the same as before. :(
yup. Norton stopped attack.
I've been on the forums for the last couple hours and have not seen it.
I haven't seen the malware since the 22nd or 23rd. But apparently the verdict is that the root cause is vulnerabilities with Vanilla Forums. @[deleted] is working on migrating all existing forum content over to a new platform. No small feat.
Yeah he and I talked about the migration. I understand he's almost ready to do the switch over. Once I hear that he is ready we will announce a switch over date so that everyone knows ahead of time.
I hate to say it but...When visiting the forum this morning my browser (Windows/Chrome) was redirected.
:(
@[deleted]
Yea I don’t know...it’s something with Vanilla. We will migrate forums very soon. Thank you for your patience.
Cheers.
I also have the same problem.
@[deleted] everyone does.
Yes its back... just got on Chrome that screen red of death lol
yes I have this message today.
I was just coming here to mention that I have been redirected as well to:http://167.99LINKBREAKER.0.154/warn/ff/indexx.php?pn=KDg0NCkgMzk1LTE0Nzk=It happened yesterday to a co-worker. Only the first time anyone at the office visited. Then again this morning the first time I (the only one in the office) visited it.
Looks like it's coming from HTTPS site of osTicket.comhttps://osticket.com/https://osticket.com/forum/discussionsThis server could not prove that it is osticket.com; its security certificate is from *.supportsystem.com. This may be caused by a misconfiguration or an attacker intercepting your connection.Issued to: *.supportsystem.comIssued by: COMODO RSA Domain Validation Secure Server CAValid from 6/1/2015 to 9/1/2018
Our OSTicket site has been attached recently. How can I fix it?