newegg.com compromised!!!

  • 15 November 2015
  • 3 replies
  • 7 views

Userlevel 7
Badge +26
    Newegg.com has been compromised by a nasty "flash upgrade" pop up that leads to malicious software. DO NOT ACCEPT!!!
 
Redit link 1: https://www.reddit.com/r/buildapcsales/comments/3sva4q/meta_allegedly_newegg_has_been_hacked_and_it_is/
 
Original source: http://www.techpowerup.com/forums/threads/newegg-appears-to-be-infected-with-some-kind-of-social-engineering-hack.217568/
 
Someone has encountered the problem with Kasperski (sorry for mentioning another vendor! But this needed to be said)
 


(Care of Jetster At Tech Power up forums)
 
 
Here's a handy report on the IP address this attack is originating from http://urlquery.net/report.php?id=1447553569796
Please see there lots of IPs to block in your firewalls to further secure yourselves from other malware/attacks as well. I blocked in my hardware and software firewalls and hostsfiles as well. I suggest y'all do so too
 
 
 
For all that want to contact the owners of the IP address where the attacks originated from please contact support@centrilogic.com and be very nice and tell them the attacks came from codehost.ml and they are hosted with PKHost which resides on the network of Centrilogic. If we get rid of the source of the attacks we can save other webmasters/admins as well as newegg. source 1 http://toolbar.netcraft.com/site_report?url=http://www.codehost.ml source 2: http://urlquery.net/report.php?id=1447553569796 also source2 has IP addresses you can block in your firewalls till centrilogic or the other layers of the food chain can take action. Please be safe eggers!
  

3 replies

Userlevel 7
Badge +56
Saw this on reddit over the weekend. Malvertising is really getting out of control.
Userlevel 7
Badge +26
Yes it is and these hosts are slow to ban the clients 😞
Badge +8
Thanks so much for providing us with up-to-date antin-virus and other breaches. You're a wixard Jeff.
 
Theresa

Reply