Suspicious Site on Facebook...possible spyware/malware?

disasterpiece91

New member
Member
Local time
8:27 AM
Messages
40
I was on facebook and was scrolling through my news feed when I saw something saying ""I can't believe a girl did this because of Justin Beiber" with the URL. Being that I disliked the guy anyway, I was curious and bored.

(click at your own risk since I do not know if it is malicious or not, but i do not recognize the domain link .info): justinbgirl.info

there was another URL when i entered it in the search field on Facebook: crazyjustin.info as part of a second post relating to it.

When I stupidly clicked on the link of the first one, it took me to a page (i took a screenshot in the attached file). I couldn't navigate anywhere and seemed like nothing happened. No antivirus alerts, nothing out of the ordinary. My laptop did not act up or anything either. I checked my task manager for suspicious programs but nothing registered as anything malicious.

I scanned my laptop and my scanner found nothing.

Now I am worried I am infected with spyware and I have no clue where to turn to or what to do to check to see if I even have it in the first place.
 

Attachments

  • foutube.png
    foutube.png
    70.3 KB · Views: 35

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
Stupidity is a very expensive luxury. Anyways, scan like theres no tomorrow. Use MBAM, SAS and the resident AV.

Dont access critical sites like your bank and cc, until you are certain the computer's clean. Watch out for wierd behavior. Go to task manager and check for any suspicious names, google for them.

If you're paranoid or lazy, just restore windows from a previously created image, if theres one.

Some people would advise a reinstall, but that should only be the last resort.
 

My Computer My Computer

At a glance

Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
Stupidity is a very expensive luxury. Anyways, scan like theres no tomorrow. Use MBAM, SAS and the resident AV.

Dont access critical sites like your bank and cc, until you are certain the computer's clean. Watch out for wierd behavior. Go to task manager and check for any suspicious names, google for them.

If you're paranoid or lazy, just restore windows from a previously created image, if theres one.

Some people would advise a reinstall, but that should only be the last resort.

Microsoft Security Essentials and MBAM found nothing. Now running SAS. So far it found adware tracking cookies but it's most likely from forums and other places I visit frequently.

I've googled the names so far and again, nothing suspicious.

But what would count as weird behavior? And silly question, but restore windows = system restore right? Just want to get that clear.
 

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
It mentioned Justin Beiber....
So if you pc starts to sing baby or act like a pre-Madana it may have caught beiber fever.

If that is the case the only solution is to take her out back and shoot her...( the computer that is)
 

My Computer My Computer

At a glance

Windows 7 x86/x64, Server 2008r2, Web Server ...i7 v2 3930K Steping stone 2G.SKILL Ripjaws Z Series 32GBAMD HD 5770
Computer Manufacturer/Model Number
SMN-Productions
OS
Windows 7 x86/x64, Server 2008r2, Web Server 2008
CPU
i7 v2 3930K Steping stone 2
Motherboard
ASUS Rampage IV Extreme
Memory
G.SKILL Ripjaws Z Series 32GB
Graphics Card(s)
AMD HD 5770
Monitor(s) Displays
Acer 21" and Samsung 20"
Hard Drives
Patriot Pyro 80GB
PSU
1000 Watt
Case
HAF-X
Cooling
4 Fans
Keyboard
Black Widow Ultimate
what worries me is the .info domain. I've never seen any website like that in my life.
 

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
Wierd behaviour means random windows popping up, ie pages being redirected, computer becoming sluggish, mouse clicks going waywire......

By restore, I meant, if you used a backup program like windows backup or Acronis or macrium etc. and have a clean image tucked away, you can just hook it up and bring back windows to the state in which it was imaged. In other words, you'll have a clean computer again.

And, no, I did not mean" system restore". System restore can create copies of the infected files. And some viruses can infect the restore volume as well as the actual system files. When somebody cleans their computer using an antivirus, then uses System restore, they may actually reinfect the computer.

And dont worry, .info is an authorized domain name.

http://en.wikipedia.org/wiki/.info
 

My Computer My Computer

At a glance

Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
Wierd behaviour means random windows popping up, ie pages being redirected, computer becoming sluggish, mouse clicks going waywire......

By restore, I meant, if you used a backup program like windows backup or Acronis or macrium etc. and have a clean image tucked away, you can just hook it up and bring back windows to the state in which it was imaged. In other words, you'll have a clean computer again.

And, no, I did not mean" system restore". System restore can create copies of the infected files. And some viruses can infect the restore volume as well as the actual system files. When somebody cleans their computer using an antivirus, then uses System restore, they may actually reinfect the computer.

And dont worry, .info is an authorized domain name.

.info - Wikipedia, the free encyclopedia

I gotcha.

Well, I've been experiencing none of that so far....if that's the case then what could those websites possibly be online for? You see the screenshot I took, I dunno....something just doesn't strike me as normal..Foutube? Not being able to click on anything?...unless I'm paranoid and it's nothing
 

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
what worries me is the .info domain. I've never seen any website like that in my life.

it means exactly what it says info (as in information) they are alot cheaper $1.99 USD compared to $9.99 USD (on sale)

The site you accessed is more than likely a 16 year old script kitty who thinks they are amazing hackers...

http://www.whois.net/whois/justinbgirl.info is the whois info
 

My Computer My Computer

At a glance

Windows 7 x86/x64, Server 2008r2, Web Server ...i7 v2 3930K Steping stone 2G.SKILL Ripjaws Z Series 32GBAMD HD 5770
Computer Manufacturer/Model Number
SMN-Productions
OS
Windows 7 x86/x64, Server 2008r2, Web Server 2008
CPU
i7 v2 3930K Steping stone 2
Motherboard
ASUS Rampage IV Extreme
Memory
G.SKILL Ripjaws Z Series 32GB
Graphics Card(s)
AMD HD 5770
Monitor(s) Displays
Acer 21" and Samsung 20"
Hard Drives
Patriot Pyro 80GB
PSU
1000 Watt
Case
HAF-X
Cooling
4 Fans
Keyboard
Black Widow Ultimate
OK, listen I went to this site crazyjustin.info on my test machine. It doesnt appear to have malware, heres a snipshot.

Capture.PNG

So, relax, take the precautions I mentioned and dont go around randomly clicking again.
 

My Computer My Computer

At a glance

Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
what worries me is the .info domain. I've never seen any website like that in my life.
it means exactly what it says info (as in information) they are alot cheaper $1.99 USD compared to $9.99 USD (on sale)

The site you accessed is more than likely a 16 year old script kitty who thinks they are amazing hackers...

Whois Lookup - Domain Names Search, Registration, & Availability | Whois.net is the whois info

Should I be worried though?

So, relax, take the precautions I mentioned and dont go around randomly clicking again.

Believe me I won't lol.
 

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
what worries me is the .info domain. I've never seen any website like that in my life.

it means exactly what it says info (as in information) they are alot cheaper $1.99 USD compared to $9.99 USD (on sale)

The site you accessed is more than likely a 16 year old script kitty who thinks they are amazing hackers...

Whois Lookup - Domain Names Search, Registration, & Availability | Whois.net is the whois info

Should I be worried though?

Change your facebook info (IE password) and any passwords you may have used after visiting the site in question.
Normally these are Facebook hijackers.
 

My Computer My Computer

At a glance

Windows 7 x86/x64, Server 2008r2, Web Server ...i7 v2 3930K Steping stone 2G.SKILL Ripjaws Z Series 32GBAMD HD 5770
Computer Manufacturer/Model Number
SMN-Productions
OS
Windows 7 x86/x64, Server 2008r2, Web Server 2008
CPU
i7 v2 3930K Steping stone 2
Motherboard
ASUS Rampage IV Extreme
Memory
G.SKILL Ripjaws Z Series 32GB
Graphics Card(s)
AMD HD 5770
Monitor(s) Displays
Acer 21" and Samsung 20"
Hard Drives
Patriot Pyro 80GB
PSU
1000 Watt
Case
HAF-X
Cooling
4 Fans
Keyboard
Black Widow Ultimate
it means exactly what it says info (as in information) they are alot cheaper $1.99 USD compared to $9.99 USD (on sale)

The site you accessed is more than likely a 16 year old script kitty who thinks they are amazing hackers...

Whois Lookup - Domain Names Search, Registration, & Availability | Whois.net is the whois info

Should I be worried though?

Change your facebook info (IE password) and any passwords you may have used after visiting the site in question.
Normally these are Facebook hijackers.

Done and done.
 

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
I am not on my normal test machine or I would see if it was an infected website. I am not exactly sure how they manage to do some of the stuff they do cause one day I just clicked a link in an email and it transmitted my password somehow.

It happens to the best of us at times mate.
 

My Computer My Computer

At a glance

Windows 7 x86/x64, Server 2008r2, Web Server ...i7 v2 3930K Steping stone 2G.SKILL Ripjaws Z Series 32GBAMD HD 5770
Computer Manufacturer/Model Number
SMN-Productions
OS
Windows 7 x86/x64, Server 2008r2, Web Server 2008
CPU
i7 v2 3930K Steping stone 2
Motherboard
ASUS Rampage IV Extreme
Memory
G.SKILL Ripjaws Z Series 32GB
Graphics Card(s)
AMD HD 5770
Monitor(s) Displays
Acer 21" and Samsung 20"
Hard Drives
Patriot Pyro 80GB
PSU
1000 Watt
Case
HAF-X
Cooling
4 Fans
Keyboard
Black Widow Ultimate
If theres any mission critical data on that computer, best to backup to an external location. Scan the backup as well.
 

My Computer My Computer

At a glance

Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
Check that you did not inadvertently 'like' the message/link and that you did not inadvertently allow a rogue application access to your Facebook account (both unlikely, if you did not click anything on the webpage).

These scams happen all the time. You should be cautious of everything you click and download, irrespective of where and who it comes from (friend's email, friend's instant message, friend's Facebook account, etc).
 

My Computer My Computer

At a glance

Arch Linux 64-bit
OS
Arch Linux 64-bit
Check that you did not inadvertently 'like' the message/link and that you did not inadvertently allow a rogue application access to your Facebook account (both unlikely, if you did not click anything on the webpage).

These scams happen all the time. You should be cautious of everything you click and download, irrespective of where and who it comes from (friend's email, friend's instant message, friend's Facebook account, etc).

I didn't "Like" the the link, though I did click on something on the site to see if it was a real website in the first place. Nothing seemed to happen. And I don't think any apps were installed.

And 2 years ago I did click on a link my friend sent (though it was probably a hijacked account) and next thing i knew, my computer was going haywire.
 

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
I still recommend checking your recent messages.

New Facebook scam tricks users into liking links

:confused: crap, found it on my news feed.

I removed it immediately; no trace of it anywhere on my page. No suspicious activity to report today either. Things are running smoothly and no programs detected that are odd.

If nothing happened, or if I can't find anything from my antivirus/antispyware scanners, is there anything to be worried about?
 

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics

My Computer My Computer

At a glance

Arch Linux 64-bit
OS
Arch Linux 64-bit

My Computer My Computer

At a glance

Windows 7 64 bitPavilion dv6ATI Mobility Radeon Premium Graphics
Computer Manufacturer/Model Number
HP
OS
Windows 7 64 bit
CPU
Pavilion dv6
Graphics Card(s)
ATI Mobility Radeon Premium Graphics
Back
Top