Followed your instructions. Here are the results. (Still getting pop-ups on Mozilla - even with the pop-ups disabled feature) Not as many, but still from the same to places. Thanks for all the help. I am totally lost!
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<meta name="GENERATOR" content="A pair of hands, a set of brains and a texteditor. FROTPAGE SUX!">
<meta http-equiv="Content-Type" content="text/html">
<link rel="shortcut icon" href="favicon.ico" type="image/x-icon">
<link rel="stylesheet" HREF="style.css">
<title>Online malware scan</title>
<script language="javascript" type="text/javascript">
function set_pleasewait()
{
document.getElementById("status").innerHTML='Uploading file, please wait...';
}
function faq_read()
{
var faqread=window.confirm('Did you read the Frequently Asked Questions first?');
if (faqread)
{
document.location.href='mailto:
[email protected]?subject=Your online malware scan service';
} else
{
window.open('docs/FAQ', 'FAQ', 'width=800,height=400,scrollbars=1');
}
}
</script>
</head>
<body>
<table border="0" cellpadding="2" cellspacing="2" class="servicetable" width="90%">
<tr>
<td colspan="2" align="center">
<div class="columnheader">
Jotti's malware scan 2.99-TRANSITION_TO_3.00
</div>
<div id="javascriptwarning">
Warning: you seem to have javascript disabled. This is necessary for the display of results.
</div>
<script language="javascript" type="text/javascript">document.getElementById('javascriptwarning').innerHTML='';</script>
</td>
</tr>
<tr>
<td width="250">
File to upload & scan:
<img src="images/virus.gif" border="0" alt="Virus">
</td>
<td>
<form enctype="MULTIPART/FORM-DATA" action="" method="POST" onsubmit="set_pleasewait()">
<input type="HIDDEN" name="MAX_FILE_SIZE" value="15242880">
<input type="FILE" name="scanfile" value="Browse...">
<input type="SUBMIT" value="Submit">
<a href="
http://virusscan.jotti.org/de" title="Auf Deutsch"><img src="images/de.png" border="0" alt=""></a>
</form>
</td>
</tr>
<tr>
<td align="center" colspan="2">
<div class="columnheader">
Service
</div>
</td>
</tr>
<tr>
<td align="right" class="resultcell">
Service load:
</td>
<td align="left" nowrap class="resultcell">
<table border="0" class="table" cellspacing="0" cellpadding="0">
<tr class="load">
<td>
0%
</td>
<td width="200" class="loadcolorheavy loadleft">
</td>
<td width="0" class="loadright">
</td>
<td>
100%
</td>
</tr>
</table>
</td>
</tr>
<tr>
<td align="right" class="resultcell">
Status:
</td>
<td class="resultcell" width="800">
<div id="status">Ready for upload</div>
</td>
</tr>
<tr>
<td align="center" colspan="2" valign="middle">
<div class="columnheader">
Powered by
</div>
</td>
</tr>
<tr>
<td colspan="2" align="center">
<a href="
http://www.antivir.de/en/" target="_blank"><img src="images/antivir.png" border="0" height="35" alt="images/antivir.png"></a>
<a href="
http://www.arcabit.com" target="_blank"><img src="images/arcabit.png" border="0" height="35" alt="images/arcabit.png"></a>
<a href="
http://www.avast.com/" target="_blank"><img src="images/avast.png" border="0" height="35" alt="images/avast.png"></a>
<a href="
http://www.grisoft.com" target="_blank"><img src="images/avg.gif" border="0" height="35" alt="images/avg.gif"></a>
<a href="
http://www.bitdefender.com" target="_blank"><img src="images/bitdefender.png" border="0" height="35" alt="images/bitdefender.png"></a>
<a href="
http://www.clamav.net" target="_blank"><img src="images/clamav-logo1.png" border="0" height="35" alt="images/clamav-logo1.png"></a>
<a href="
http://www.drweb.com" target="_blank"><img src="images/drweb.gif" border="0" height="35" alt="images/drweb.gif"></a>
<a href="
http://www.f-prot.com" target="_blank"><img src="images/f-prot.png" border="0" height="35" alt="images/f-prot.png"></a>
<a href="
http://www.fortinet.com" target="_blank"><img src="images/fortinet.gif" border="0" height="35" alt="images/fortinet.gif"></a>
<a href="
http://www.kaspersky.com" target="_blank"><img src="images/kaspersky.png" border="0" height="35" alt="images/kaspersky.png"></a>
<a href="
http://www.nod32.com" target="_blank"><img src="images/nod32.gif" border="0" height="35" alt="images/nod32.gif"></a>
<a href="
http://www.norman.com" target="_blank"><img src="images/norman.png" border="0" height="35" alt="images/norman.png"></a>
<a href="
http://www2.una.ua/index_e.html" target="_blank"><img src="images/una_logo.jpg" border="0" height="35" alt="images/una_logo.jpg"></a>
<a href="
http://www.anti-virus.by/en" target="_blank"><img src="images/vba32.png" border="0" height="35" alt="images/vba32.png"></a>
</td>
</tr>
<tr>
<td colspan="2" align="center">
<div class="columnheader">
Disclaimer
</div>
</td>
</tr>
<tr>
<td colspan="2" class="disclaimer">
This service is by no means 100% safe. If this scanner says 'OK', it does not necessarily
mean the file is clean. There could be a whole new virus on the loose. <b>NEVER EVER</b>
rely on one single product only, not even this service, even though it utilizes several
products.
Therefore, I cannot and will not be held responsible for any damage caused by results
presented by this non-profit online service.
<br><br>
Also, I am aware of the implications of a setup like this. I am sure this whole thing
is by no means scientifically correct, since this is a fully automated service (although
manual correction is possible).
I am aware, in spite of efforts to proactively counter these, false positives might occur,
for example. I do not consider this a very big
issue, so please do not e-mail me about it. This is a simple online scan service, not the
university of Wichita.
<br><br>
Scanning can take a while, since several scanners are being used, plus
the fact some scanners use very high levels of (time consuming) heuristics. Scanners used
are Linux versions, differences with Windows scanners may or may not occur.
Another note: some scanners will only report one virus
when scanning archives with multiple pieces of malware.<br><br>
Virus definitions are updated every hour. There is a 15Mb limit per file. Please refrain from
uploading tons of hex-edited or repacked variants of the same sample.
<br><br>
Please do not ask for viruses uploaded here, unless you work for an anti-virus vendor.
They are not for trade. This is a legitimate service, not a VX site.
Viruses uploaded here will be distributed to antivirus vendors without exception.
<br><br>
Sponsored by donations (in random order) from:
Stormbyte Technologies LLC,
The ClamAV project,
James Love,
Gideon Pertzov,
Malcolm Murray,
Nigel Thomas,
Wendy Dickerson,
Anthony Midmore,
"ethereal",
Mark Rubins,
Steve S.,
Eric Johansen,
Eric Schechter,
Paul Bokel,
Wilders Security,
Wilfried Lilie,
Prevx,
SonicWALL,
and some people who prefer to remain anonymous... many thanks to all!
</td>
</tr>
<tr>
<td valign="top">
</td>
<td align="right">
<script type="text/javascript"><!--
google_ad_client = "pub-5174570257921396";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="";
google_color_border = "CCCCCC";
google_color_bg = "FFFFFF";
google_color_link = "000000";
google_color_url = "666666";
google_color_text = "333333";
//--></script>
<script type="text/javascript"
src="
http://pagead2.googl...d/show_ads.js">
</script>
</td>
</tr>
<tr>
<td align="center" colspan="2">
<div class="columnheader">
Statistics
</div>
</td>
</tr>
<tr>
<td colspan="2">
Last file scanned at least one scanner reported something about: downloadaccelerator.rar, detected by:<BR><BR>
<table class="servicetable" cellpadding="2">
<tr>
<td class="resultheader resultcell">
Scanner
</td>
<td align="center" class="resultheader resultcell">
Malware name
</td>
</tr>
<tr>
<td class="resultcell">
AntiVir
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
ArcaVir
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
Avast
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
AVG Antivirus
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
BitDefender
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
ClamAV
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
Dr.Web
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
F-Prot Antivirus
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
Fortinet
</td>
<td align="center" class="resultcell">
W32/Tiot.A
</td>
</tr>
<tr>
<td class="resultcell">
Kaspersky Anti-Virus
</td>
<td align="center" class="resultcell">
not-a-virus:AdWare.BHO.Dap.b
</td>
</tr>
<tr>
<td class="resultcell">
NOD32
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
Norman Virus Control
</td>
<td align="center" class="resultcell">
<font color="red">X</font>
</td>
</tr>
<tr>
<td class="resultcell">
UNA
</td>
<td align="center" class="resultcell">
Adware.BHO.Dap
</td>
</tr>
<tr>
<td class="resultcell">
VBA32
</td>
<td align="center" class="resultcell">
AdWare.BHO.Dap.b
</td>
</tr>
</table>
<br><br>
You're free to (mis)interpret these automated, flawed statistics at your own discretion.<br><br>
</td>
</tr>
</table>
<br><br>
<center>
<a class="servicelink" target="_blank" href="docs/FAQ">Frequently asked questions</a> - <a class="servicelink" href="javascript:void(0)" onclick="faq_read()">Feedback</a><br><br>
<a href="
http://www.debian.org" target="_blank"><img src="images/debian.gif" border="0" alt="Debian"></a>
<a href="
http://validator.w3..../check/referer" target="_blank"><img src="images/valid-html401.gif" border="0" alt="Valid HTML 4.01!"></a><br><br>
Page generated by <a class="servicelink" target="_blank" href="
http://www.jotti.org...TPL</a><br><br>
Copyright © 2004-2005 Jordi Bosveld <
[email protected]>
</center>
</body>
</html>