follow ft86club on our blog, twitter or facebook.
FT86CLUB
Ft86Club
Xero Limit
Register Garage Members List Calendar Search Today's Posts Mark Forums Read

Go Back   Scion FR-S Forum | Subaru BRZ Forum | Toyota 86 GT 86 Forum | AS1 Forum - FT86CLUB > Off-Topic Discussions > Site Announcements / Questions / Issues


User Tag List

Reply
 
Thread Tools Search this Thread
Old 01-22-2020, 04:10 AM   #1
Captain Snooze
Because compromise
 
Captain Snooze's Avatar
 
Join Date: Jan 2012
Drives: Red Herring
Location: australia
Posts: 5,331
Thanks: 2,507
Thanked 4,811 Times in 2,306 Posts
Mentioned: 45 Post(s)
Tagged: 0 Thread(s)
www.animoller.com

My antivirus said

"firefox.exe attempted to establish a connection relying on an untrusted certificate to www.animoller.com. We blocked the connection to keep your data safe since untrusted certificates are issued by unrecognized Certificate Authorities."

and this was from connecting to https://www.ft86club.com/forums

Can someone shed any light on this?
Ta.
__________________
My car is completely stock except for all the mods.

Captain Snooze is offline   Reply With Quote
Old 01-22-2020, 05:03 AM   #2
Boomerang
86
 
Boomerang's Avatar
 
Join Date: May 2016
Drives: 2015 Toyota GT86 MT UEL E85 RSR CWP
Location: Perth, Western Australia
Posts: 2,749
Thanks: 2,591
Thanked 3,635 Times in 1,713 Posts
Mentioned: 14 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by Captain Snooze View Post
My antivirus said

"firefox.exe attempted to establish a connection relying on an untrusted certificate to www.animoller.com. We blocked the connection to keep your data safe since untrusted certificates are issued by unrecognized Certificate Authorities."

and this was from connecting to https://www.ft86club.com/forums

Can someone shed any light on this?
Ta.



Looks like she is on tinder, been on that recently?
Boomerang is offline   Reply With Quote
Old 01-22-2020, 06:00 AM   #3
Captain Snooze
Because compromise
 
Captain Snooze's Avatar
 
Join Date: Jan 2012
Drives: Red Herring
Location: australia
Posts: 5,331
Thanks: 2,507
Thanked 4,811 Times in 2,306 Posts
Mentioned: 45 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by Boomerang View Post
Looks like she is on tinder, been on that recently?
What? Tinder? Never been there.
I thought it was this website sending some analytics to some data harvesting crowd.
__________________
My car is completely stock except for all the mods.

Captain Snooze is offline   Reply With Quote
Old 01-22-2020, 06:03 AM   #4
Boomerang
86
 
Boomerang's Avatar
 
Join Date: May 2016
Drives: 2015 Toyota GT86 MT UEL E85 RSR CWP
Location: Perth, Western Australia
Posts: 2,749
Thanks: 2,591
Thanked 3,635 Times in 1,713 Posts
Mentioned: 14 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by Captain Snooze View Post
What? Tinder? Never been there.
I thought it was this website sending some analytics to some data harvesting crowd.

google animoller and that's what comes up on her twitter, based in Melbourne, somehow is related.. weird but hot
Boomerang is offline   Reply With Quote
Old 01-22-2020, 01:16 PM   #5
Tcoat
He who smelt it...
 
Tcoat's Avatar
 
Join Date: Jul 2014
Drives: 14 FRS Hot Lava
Location: London, Ont
Posts: 58,020
Thanks: 51,368
Thanked 82,456 Times in 36,942 Posts
Mentioned: 2117 Post(s)
Tagged: 49 Thread(s)
Quote:
Originally Posted by Boomerang View Post
weird but hot
Pretty much sums up all the Aussie girls I have known.
__________________
Racecar spelled backwards is Racecar, because Racecar.
Tcoat is online now   Reply With Quote
The Following 2 Users Say Thank You to Tcoat For This Useful Post:
Boomerang (01-22-2020), why? (01-23-2020)
Old 01-22-2020, 01:34 PM   #6
DarkPira7e
Handin' out 1 Deags
 
DarkPira7e's Avatar
 
Join Date: Feb 2017
Drives: 13 Firestorm Red FRS
Location: Vermont
Posts: 1,563
Thanks: 896
Thanked 1,202 Times in 656 Posts
Mentioned: 15 Post(s)
Tagged: 0 Thread(s)
How were you accessing the URL? Did you type it in manually? Or did you click a google search result? Did you use a browser favorite?
DarkPira7e is offline   Reply With Quote
The Following User Says Thank You to DarkPira7e For This Useful Post:
ScoobsMcGee (01-22-2020)
Old 01-22-2020, 02:57 PM   #7
ScoobsMcGee
Junior Senior with Cheese
 
ScoobsMcGee's Avatar
 
Join Date: Aug 2014
Drives: 15 BRZ, 19 WRX STI
Location: York, PA
Posts: 2,132
Thanks: 3,916
Thanked 3,799 Times in 1,545 Posts
Mentioned: 7 Post(s)
Tagged: 2 Thread(s)
Quote:
Originally Posted by DarkPira7e View Post
How were you accessing the URL? Did you type it in manually? Or did you click a google search result? Did you use a browser favorite?
Also do you use an ad blocker?

No direct links between the two sites, but animoller.com seems to be an abandoned wordpress blog from 2011 (with some nice nsfw gifs), which is susceptible to a few different xss attacks from a quick scan. Chances are that a compromised ad package was trying to redirect you to a malicious website using xss on animoller.com, but the site does redirect all port 80 traffic to 443, which resulted in the cert pop-up.

TL;DR, if you didn't agree to the cert, or if you did and didn't download any files, you're probably okay. If you're not already using one, install an ad blocker.
ScoobsMcGee is offline   Reply With Quote
The Following 2 Users Say Thank You to ScoobsMcGee For This Useful Post:
DarkPira7e (01-22-2020), why? (01-23-2020)
Old 01-23-2020, 08:05 AM   #8
why?
Only happy when it rains.
 
why?'s Avatar
 
Join Date: Feb 2013
Drives: series.blue
Location: Harnett county NC
Posts: 1,772
Thanks: 4,515
Thanked 1,015 Times in 627 Posts
Mentioned: 22 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by ScoobsMcGee View Post
Also do you use an ad blocker?

No direct links between the two sites, but animoller.com seems to be an abandoned wordpress blog from 2011 (with some nice nsfw gifs), which is susceptible to a few different xss attacks from a quick scan. Chances are that a compromised ad package was trying to redirect you to a malicious website using xss on animoller.com, but the site does redirect all port 80 traffic to 443, which resulted in the cert pop-up.

TL;DR, if you didn't agree to the cert, or if you did and didn't download any files, you're probably okay. If you're not already using one, install an ad blocker.
or 2. Or a crazy locked down privacy browser.
why? is offline   Reply With Quote
Old 01-23-2020, 11:56 PM   #9
Captain Snooze
Because compromise
 
Captain Snooze's Avatar
 
Join Date: Jan 2012
Drives: Red Herring
Location: australia
Posts: 5,331
Thanks: 2,507
Thanked 4,811 Times in 2,306 Posts
Mentioned: 45 Post(s)
Tagged: 0 Thread(s)
Quote:
Originally Posted by why? View Post
or 2. Or a crazy locked down privacy browser.

My Firefox browser has the following installed:
uBlock Origin
Ghostery
HTTPS Everywhere
Duckduckgo Privacy Essentials
Adblock Plus
__________________
My car is completely stock except for all the mods.

Captain Snooze is offline   Reply With Quote
The Following 2 Users Say Thank You to Captain Snooze For This Useful Post:
ScoobsMcGee (01-27-2020), why? (01-24-2020)
Old 01-27-2020, 03:09 PM   #10
ScoobsMcGee
Junior Senior with Cheese
 
ScoobsMcGee's Avatar
 
Join Date: Aug 2014
Drives: 15 BRZ, 19 WRX STI
Location: York, PA
Posts: 2,132
Thanks: 3,916
Thanked 3,799 Times in 1,545 Posts
Mentioned: 7 Post(s)
Tagged: 2 Thread(s)
Quote:
Originally Posted by Captain Snooze View Post
My Firefox browser has the following installed:
uBlock Origin
Ghostery
HTTPS Everywhere
Duckduckgo Privacy Essentials
Adblock Plus
You're one VPN agent away from manually turning FireFox into Tor.
ScoobsMcGee is offline   Reply With Quote
 
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 10:57 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2020, Jelsoft Enterprises Ltd.
Garage vBulletin Plugins by Drive Thru Online, Inc.