[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

Fosshub downloads compromised. http://www.ghacks.net/2016/

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 73
Thread images: 8

File: 1421803661939.jpg (28KB, 500x567px) Image search: [Google]
1421803661939.jpg
28KB, 500x567px
Fosshub downloads compromised.

http://www.ghacks.net/2016/08/03/attention-fosshub-downloads-compromised/
>>
File: Capture.png (2KB, 758x24px) Image search: [Google]
Capture.png
2KB, 758x24px
STALLEDtorrent confirmed Bitcoin miner!
>>
>AS YOU REBOOT, YOU FIND THAT SOMETHING HAS OVERWRITTEN YOUR MNR !
FUCK WHATS A GOOD ANTIVIRUS FOR MY MNR i use windows 10 btw
>>
I downloaded qb 3.3.6 last week and no malware or suspicious activity, when did this start?
>>
>>55893309
Tonight. There was a thread earlier with someone whose new Classic Shell overwrote their MBR.
Downloads are just being replaced with a 35K exe, so it's not like the programs are being replaced with a rooted version or anything.
>>
>>55893207
freetards on suicide watch xD
>>
>>55893207
>using freetard sofware
>ever

lmao, that's what you get lincucks,
>>
>>55893276

>windows 10

welp, found your problem.
>>
File: fosshub.png (57KB, 817x307px) Image search: [Google]
fosshub.png
57KB, 817x307px
They still haven't fixed their fucking downloads
>>
>>55893207
https://www.youtube.com/watch?v=DD9CvHVU7B4
>>
File: 1470053601841.jpg (47KB, 680x680px) Image search: [Google]
1470053601841.jpg
47KB, 680x680px
>using freetard site
>downloading freetard shit
>getting miners,ransomwares and other kinds of viruses
>>
>>55893309
>>55893331

>got qb in July

Thank God.
>>
>>55894458
Wew good thing they have a Sourceforge link so I can update it.
>>
>>55893207
>freetards in charge of security
Say what you want about proprietary software from huge companies like Microsoft, but at least you know it's secure.
>>
>>55893309
Download from their official website.
>>
Why cant freetards do security?

https://twitter.com/CultOfRazer/status/760749305598705664
>>
AAAAAAAAAHHHHHHHHHH FUCK I JUST GOT AUDACITY FROM THERE

WHAT DO I DOOOO?
>>
JUST

FOSS MY SHIT UP
>>
>>55894558
So, if Microsoft or Apple say that their OS is secure, you're just going to take their word for it? That's really the only thing you can do, since you don't even have the changelogs of so called security updates. And let's see what security researchers say about the security of your favorite freeā„¢ OS:
https://www.cvedetails.com/top-50-vendors.php
>>
>>55894629
Are you fucking retarded? They aren't "freetards" just because they run an open source mirror. They even host proprietary software on their website.
>>
>>55894629
>>55894638
>>55894660
>>55894438
>>55893521
>>55893463
I know these are just shitposts after shitposts, but if you're so concerned about security, why are you even downloading software (that you don't have to pay for) through anything rather than the official sites?
>>
>>55893463
>>55893521
>>55894438
>>55894558
>>55894629
>implying 'freetards' get their software from this website instead of retarded winbabies

First of all, we don't use windows, and second, we either get our software from our distros repos or we get it from the source
>>
>>55894737
most foss actually use fosshub as their main host for example audacity
>>
>>55893207
Is this detectable by Anti Virus?

>>55893276
Bit Defender. It ranks high in detection and low resource usage.
>>
>>55894850
>>Is this detectable by Anti Virus?
Only AVG, Kaspersky, and AegisLab caught it.
>>
FOSS HUB CURRENTLY DOWN

FOSS HUB ON SUICIDE WATCH
>>
>>55894837

Audacity uses Fosshub, but the majority of Foss projects are either hosted on github, or on sourceforge.
>>
Why the fuck would you download software fr that POS instead of your repository?
>>
>>55894892
Classic Shell isn't found in any repo, of course.
>>
Fosstards, do you ever get tired of being btfo?
>>
Using Classic Shell 4.2.5c Hope it's not compromised.
>>
>>55894909
I thought Windows had its own repo. NuGet or something.
>>
>>55894875
What's the name of the virus?
>>
>>55894935
Just 4.3.0 as far as we know
>>
>>55894935
ClassicShellSetup_4_2_5c.exe
6.64MB
SHA256: 46139997048f4f41926398910ed3164be29190046c7ecfbea98607ac51aa515e

>>55894958
Did a test and it's safe, so it must be the 4.3.0 as you say.
>>
>>55894955
No idea. Those three caught it generically.
>>
>>55894963
So Foss Hubb just took down their site so basically any hash could be false.
>>
>>55894955
memeware.exe
>>
>>55894967
>>55894982

Found it: https://www.virustotal.com/en/file/a848bf24651421fbcd15c7e44f80bb87cbacd2599eb86508829537693359e032/analysis/1470182253/
>>
>>55893463
>freetards use windows
Nice misdirection paj, enjoy your malware
>>
>>55893207
>using freetard junk
you get what you pay for :^)
>>
>>55894638
>>55894837
Funny that I downloaded Audacity just yesterday from Fosshub.
Lucky me I downloaded the portable version which seems to be virus free.
>>
>>55893207
Good thing i've never used that site.
>>
>>55895221
Windows 10 is free faggot
Enjoy your ads or subscription
>just install classic shell and you don't have ads
you got cucked
>>
>https://qbforums.shiki.hu/index.php/topic,4474.0.html

>Yeah but I meant it like... fosshub is a "good" site.
>It's not Facebook, it's not some evil site, not some organization, business, whatever.
>It's actually a site that offers free downloads for free software with no strings attached.

>Why would you even target that?
Makes no sense...

What a moron.
>>
>>55896612
I can't blame them, wincucks deserve all the ads
>>
>use Windows 10 bro it's much more secure
>just use classic shell if you dislike the UI

AHHAHAHAHAHAHAHA
>>
>>55893207
i installed qbittorent from ninite, am i safe?
>>
>>55897168
Nope.
>>
Who gives a shit, you cannot get viruses if you just use common sense.
>>
>>55893207
Good thing my stalledbittorrent version is old as fuck.
Next you're going to tell me someone put a bitcoinminer on the latest winamp. I haven't updated my installer in 14 years.
>>
>>55897168
https://sourceforge.net/projects/qbittorrent/files/qbittorrent-win32/qbittorrent-3.3.6/qbittorrent_3.3.6_setup.exe/download
Why?
>>
File: Co0och1XYAAO82n.jpg (45KB, 478x712px) Image search: [Google]
Co0och1XYAAO82n.jpg
45KB, 478x712px
why doesn't qbitorrent distribute itself using magnet links? yeah I know you'd need a torrent client for that, but for updates it makes a lot of sense
>>
>>55898326
That's kinda like using IE / EDGE to get FF or something
>>
What the hell is this and why have a load of mouth-breathers downloaded it?
>>
File: 1-44-MB_0.jpg (106KB, 483x566px) Image search: [Google]
1-44-MB_0.jpg
106KB, 483x566px
Reminder: Even legit sites can get hit or haxored occasionally.

1. Download portable editions if possible
2. Verify CHECKSUM, the highest given
3. jotti or virustotal
4. ?????
5. something happened
>>
It's not like we warned you about the fosshub meme or anything.
>>
File: ublock.png (24KB, 1409x786px) Image search: [Google]
ublock.png
24KB, 1409x786px
This legitimately made me laugh.
>>
>>55898898
Oh boy, it's real.
>>
File: CovaG23UIAA2MME.png (159KB, 291x351px) Image search: [Google]
CovaG23UIAA2MME.png
159KB, 291x351px
>>55898898

kek'd heartily
>>
>>55894697
Finding exploits don't matter so long as they are promptly fixed when identified.
>>
>>55897196
>common sense
>that one useful piece of software you've safety installed many times in the past now requires "common sense" to know if it's bundled with malware

Good bait.
>>
>>55900096
>ITT fags who dont have virtualized test environments
>>
>>55900096
>I am a moron that disabled UAC because /g
>>
>>55900221
>he thinks UAC will warn him if he's about to install malware infested software
>>
>>55900399
>Donwloads and runs ClassicShell setup
>unsigned UAC says if I want to destroy my MBR
>UAC is not useful
>>
>>55900399
UAC DID WARN FAGGOTS THAT THE FAKE INSTALLER WASN'T SIGNED, MORON

THEY JUST SKIPPED THE WARNING FAGGOT

MICROSOFT DID ITS PART TO PROTECT THE USERS
>>
>>55900459
prove it
>>
wtf is fosshub?
>>
>>55898898
hahahahahahahahahaha

a
haha
h
a
h
a
ha
h
ah
a


IT'S FUCKING REAL
>>
Finally those run everything as admin disable UAC kids get what they deserve.
>>
>>55900912
This.

I feel sad for ClasicShell developer because the damage has been dramatic and he will be sued for sure.
>>
>AS YOU REBOOT, YOU FIND THAT SOMETHING HAS OVERWRITTEN YOUR MBR !
>IT IS A SAD THING YOUR ADVENTURES HAVE ENDED HERE

Bitch I fucked up my MBR shittons on times installing testing builds of Linux distros while multi booting with Windows. Shit takes me 5 mins to fix.

Pajeet-tier virus confirmed.
Thread posts: 73
Thread images: 8


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.