system
8
@Asyn: It was the top three and the bottom links on the page I posted.
Actually guys, I wasn’t really looking for anyone to test the sites. I was looking for whether there was a log Avast keeps that I could check for the message I got. As it turns out, I just checked the links again myself, and did finally get the pop-up alert again.
The pertinent information was this:
object: http: [break this link!] //www.sitename.com/css.php?t=nouveau
Infection: JS:IFrame-BU[trj]
That’s what I wanted. That information so I can do some research on exactly what it really is. I do know it’s an iFrame injection, but not yet sure if it’s really malicious or not. It doesn’t always show up, as I said. There are Facbook apps loaded on those pages, but there are also some others too, so I’m not sure yet where it’s coming from.
If they decide to have me work on these sites, it won’t matter in the end anyway, because I plan to wipe them all and start from scratch, so whatever infections may or may not be there, they will be NUKED once I get hold of the sites.
Thanks anyway.
If you do know anything about that infection though, please do share. I’m still very curious as to what it is, and would like to be able to report to my people with more than just, “Uh… I don’t know, but I don’t think it’s good.” 