Wavesfactory Shaker email...virulent???

Author
yorolpal
Max Output Level: 0 dBFS
  • Total Posts : 13829
  • Joined: 2003/11/20 11:50:37
  • Status: offline
2012/03/06 12:02:22 (permalink)

Wavesfactory Shaker email...virulent???

Hey guys,  just an FYI.  I got an email from Wavesfactory (really good stuff) touting their new Shaker package.  When I clicked the link it took me to the site but also started my Microsoft Security Essentials throwing up a bunch of "potential threat" dialogs.  I had to literally do a hard shut down to get out of it.  Everything is normal upon reboot but I hate to think a great site like Wavesfactory has been hacked or something.  Anyone else seen this behaviour?? 

https://soundcloud.com/doghouse-riley/tracks 
https://doghouseriley1.bandcamp.com 
Where you come from is gone...where you thought you were goin to weren't never there...and where you are ain't no good unless you can get away from it.
 
SPLAT 64 bit running on a Studio Cat Pro System Win 10 64bit 2.8ghz Core i7 with 24 gigs ram. MOTU Audio Express.
#1

17 Replies Related Threads

    Jonbouy
    Max Output Level: 0 dBFS
    • Total Posts : 22562
    • Joined: 2008/04/14 13:47:39
    • Location: England's Sunshine South Coast
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/06 12:09:18 (permalink)
    McAfee reports 'a risky connection blocked' on their domain here. 

    It's coming from the IP address 95.163.67.189 which is a domain in the Russian Federation, so it looks like a hack to me.

    DINET HOSTING
    Role:
    Digital Network Hosting Department
    13a, Yaroslavskaya st.,
    Moscow, Russia, 129366

    Is where it is registered so it's somebody hosted on that service.

    Enough to put me off visiting, it would be worth emailing somebody at Wavesfactory if you have a contact address to flag it up for them.
    post edited by Jonbouy - 2012/03/06 12:19:28

    "We can't do anything to change the world until capitalism crumbles.
    In the meantime we should all go shopping to console ourselves" - Banksy
    #2
    yorolpal
    Max Output Level: 0 dBFS
    • Total Posts : 13829
    • Joined: 2003/11/20 11:50:37
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/06 12:29:04 (permalink)
    Thanks JB, ol pal.  I think I do at home.  I'll give em a shout out.

    https://soundcloud.com/doghouse-riley/tracks 
    https://doghouseriley1.bandcamp.com 
    Where you come from is gone...where you thought you were goin to weren't never there...and where you are ain't no good unless you can get away from it.
     
    SPLAT 64 bit running on a Studio Cat Pro System Win 10 64bit 2.8ghz Core i7 with 24 gigs ram. MOTU Audio Express.
    #3
    MarioD
    Max Output Level: -72 dBFS
    • Total Posts : 901
    • Joined: 2006/04/15 15:59:50
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/06 20:57:38 (permalink)
    I just got on the site, 9:00 PM EST, and the site is still infected. Essentials caught the problem.
    #4
    yorolpal
    Max Output Level: 0 dBFS
    • Total Posts : 13829
    • Joined: 2003/11/20 11:50:37
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/06 21:00:41 (permalink)
    I got a return email after I alerted them saying they thought they had fixed the problem.  Maybe not.  Hope they get it worked out.  They have very good libraries.

    https://soundcloud.com/doghouse-riley/tracks 
    https://doghouseriley1.bandcamp.com 
    Where you come from is gone...where you thought you were goin to weren't never there...and where you are ain't no good unless you can get away from it.
     
    SPLAT 64 bit running on a Studio Cat Pro System Win 10 64bit 2.8ghz Core i7 with 24 gigs ram. MOTU Audio Express.
    #5
    chuckebaby
    Max Output Level: 0 dBFS
    • Total Posts : 13146
    • Joined: 2011/01/04 14:55:28
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/06 22:58:15 (permalink)
    thanks for the heads up...can you let us know when its all good?

    Windows 8.1 X64 Sonar Platinum x64
    Custom built: Asrock z97 1150 - Intel I7 4790k - 16GB corsair DDR3 1600 - PNY SSD 220GB
    Focusrite Saffire 18I8 - Mackie Control
       
    #6
    vintagevibe
    Max Output Level: -51 dBFS
    • Total Posts : 2446
    • Joined: 2003/12/15 21:45:06
    • Location: Atlanta, Ga
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/07 00:46:42 (permalink)
    So that's where these are coming from! Thanks!
    #7
    MarioD
    Max Output Level: -72 dBFS
    • Total Posts : 901
    • Joined: 2006/04/15 15:59:50
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/07 12:41:58 (permalink)
    I have sent the following email to WaveFactory:
     
    Your email announcing your new shakers:
     

    W-Shaker

    W-Shaker is a tempo synced and multisampled Kontakt 3 library based on two types of shaker (Egg and Metal). Personally, I think there’s a huge difference when a shaker comes into a song, it brings life to it!
    2 velocity layers and 6 round robin, 6 different rolls and 10 pre-recorded tempo synced patterns. They are recorded using the Mid/Side technique, 100% mono compatible.
    With our custom script you can control the volume and pan for each mic, that's what we call "real mix mode", it's like you have recorded it in your studio. The patterns are recorded at 60 bpm, so we recommend not to use it with a slower tempo.
    For Kontakt 3.5 and superior. Full version required.
    Get this instrument now for only €9.95!
    More info and audio demos here.

    YouTube screencast
    Is infected. When I click on it my Essentials antivirus catches a "severe" problem: "Exploit:HTLM/IframeRef.Z" in the following folder "file: c:\Documents and Settings\Mario\Local Settings\Temporary Internet files\Content.IE5\BSVQOHOR\samples_wavesfactory_com[1].htm"
    I would like to order the Kontakt program but I’m afraid to infect my non-internet music computer. Could you investigate this and let us know when it is taken care of.
     
    Note that when I log onto your website without using the email I do not get that warning.
     
    Thank you very much.
     
    #8
    vintagevibe
    Max Output Level: -51 dBFS
    • Total Posts : 2446
    • Joined: 2003/12/15 21:45:06
    • Location: Atlanta, Ga
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/07 17:22:17 (permalink)
    I go bit bad!  I'm having to restiore from a previous image.
    #9
    yorolpal
    Max Output Level: 0 dBFS
    • Total Posts : 13829
    • Joined: 2003/11/20 11:50:37
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/07 19:51:09 (permalink)
    I have now received two breezy emails saying that my Microsoft Essentials is mistaken.  Sorry...but until I'm sure there will be no more threat messages...I'm not heading back.

    https://soundcloud.com/doghouse-riley/tracks 
    https://doghouseriley1.bandcamp.com 
    Where you come from is gone...where you thought you were goin to weren't never there...and where you are ain't no good unless you can get away from it.
     
    SPLAT 64 bit running on a Studio Cat Pro System Win 10 64bit 2.8ghz Core i7 with 24 gigs ram. MOTU Audio Express.
    #10
    MarioD
    Max Output Level: -72 dBFS
    • Total Posts : 901
    • Joined: 2006/04/15 15:59:50
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/07 20:01:21 (permalink)
    This is the response I received from Wavesfactory:
     
    That problem is explained here:
    http://kb.mailchimp.com/a...aud-alerts-why-is-this][color=#810081 font="comic sans ms"]http://kb.mailchimp.com/a...ud-alerts-why-is-this/">http://kb.mailchimp.com/a...aud-alerts-why-is-this[/link]
     
    Our web is not infected, you can go to
    http://www.sucuri.net/
    it's a website that checks if a website contains viruses or not. If you type our website address you'll see that we are completely clean .
     
    Thanks, Wavesfactory
    #11
    MarioD
    Max Output Level: -72 dBFS
    • Total Posts : 901
    • Joined: 2006/04/15 15:59:50
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/07 20:03:18 (permalink)
    yorolpal


    I have now received two breezy emails saying that my Microsoft Essentials is mistaken.  Sorry...but until I'm sure there will be no more threat messages...I'm not heading back.


    Apparently the email is infected and not the web site. I’m going to check that out either after the hockey game tonight or sometime tomorrow.
    #12
    vintagevibe
    Max Output Level: -51 dBFS
    • Total Posts : 2446
    • Joined: 2003/12/15 21:45:06
    • Location: Atlanta, Ga
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/07 20:14:22 (permalink)
    MarioD


    yorolpal


    I have now received two breezy emails saying that my Microsoft Essentials is mistaken.  Sorry...but until I'm sure there will be no more threat messages...I'm not heading back.


    Apparently the email is infected and not the web site. I’m going to check that out either after the hockey game tonight or sometime tomorrow.



    It nailed me.  I love Acronis!
    #13
    MarioD
    Max Output Level: -72 dBFS
    • Total Posts : 901
    • Joined: 2006/04/15 15:59:50
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/08 10:13:34 (permalink)
    MarioD


    yorolpal


    I have now received two breezy emails saying that my Microsoft Essentials is mistaken.  Sorry...but until I'm sure there will be no more threat messages...I'm not heading back.


    Apparently the email is infected and not the web site. I’m going to check that out either after the hockey game tonight or sometime tomorrow.



    FYI-I just went to wavesfactory.com and everything went ok logging onto the site. BUT when I clicked on the shaker window Essentials blocked the same virus. I checked the site on sucuri.net and it showed a two day old this site is virus free listing.
     
    There is a problem with the site as well.
    #14
    Jonbouy
    Max Output Level: 0 dBFS
    • Total Posts : 22562
    • Joined: 2008/04/14 13:47:39
    • Location: England's Sunshine South Coast
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/08 10:24:45 (permalink)
    MarioD


    MarioD


    yorolpal


    I have now received two breezy emails saying that my Microsoft Essentials is mistaken.  Sorry...but until I'm sure there will be no more threat messages...I'm not heading back.


    Apparently the email is infected and not the web site. I’m going to check that out either after the hockey game tonight or sometime tomorrow.



    FYI-I just went to wavesfactory.com and everything went ok logging onto the site. BUT when I clicked on the shaker window Essentials blocked the same virus. I checked the site on sucuri.net and it showed a two day old this site is virus free listing.
     
    There is a problem with the site as well.



    I didn't get an email, I got the i.p. address of the intercept above directly from the site.

    I don't use MS Security Essential either, the site was definitely cross-scripted 2 days ago I'm not going to check it again.

    If the site is not hacked then it is up to no good.

    "We can't do anything to change the world until capitalism crumbles.
    In the meantime we should all go shopping to console ourselves" - Banksy
    #15
    MarioD
    Max Output Level: -72 dBFS
    • Total Posts : 901
    • Joined: 2006/04/15 15:59:50
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/08 19:14:02 (permalink)
    FYI-I was able to get on the site tonight and DL the shakers with no virus warnings. Just to be sure I Dled to a thumb drive then checked the drive on another computer with Essentials and Anti-Malwarebytes. No problems were found. It appears as the problem(s) have been solved.
    These shakers do sound excellent IMHO.
    #16
    wavesfactory
    Max Output Level: -90 dBFS
    • Total Posts : 11
    • Joined: 2012/03/10 19:57:52
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/10 20:12:06 (permalink)
    Hi there,  Our last e-mail announcing W-Shaker had one problem. We use MailChimp to send HTML e-mails to our customers, MailChimp tracks every link so we can have stats on clicks, etc. The thing is that the antivirus software thought that the links were phishing, that's all. We do care a lot of our customers and we do care a lot of security. Sucuri.net is monitoring our site daily, but if you see something suspicious just contact me at info@wavesfactory.com.



    Here's the MailChimp explanation: http://kb.mailchimp.com/a...in-my-emails-are-creat ing-possible-fraud-alerts-why-is-this/


    Thanks for your time and thanks for the feedback, next e-mails won't have "link tracking" :)
    Wavesfactory.com

    #17
    Jonbouy
    Max Output Level: 0 dBFS
    • Total Posts : 22562
    • Joined: 2008/04/14 13:47:39
    • Location: England's Sunshine South Coast
    • Status: offline
    Re:Wavesfactory Shaker email...virulent??? 2012/03/10 20:21:54 (permalink)
    wavesfactory


    Hi there,  Our last e-mail announcing W-Shaker had one problem. We use MailChimp to send HTML e-mails to our customers, MailChimp tracks every link so we can have stats on clicks, etc. The thing is that the antivirus software thought that the links were phishing, that's all. We do care a lot of our customers and we do care a lot of security. Sucuri.net is monitoring our site daily, but if you see something su****ious just contact me at info@wavesfactory.com.



    Here's the MailChimp explanation: http://kb.mailchimp.com/a...in-my-emails-are-creat ing-possible-fraud-alerts-why-is-this/


    Thanks for your time and thanks for the feedback, next e-mails won't have "link tracking" :)
    Wavesfactory.com



    Indeed I am able to navigate to the site now without getting a threat warning.

    I was getting one off the main page before, see post 2.

    Glad it's all sorted for you and thanks for the heads up.

    "We can't do anything to change the world until capitalism crumbles.
    In the meantime we should all go shopping to console ourselves" - Banksy
    #18
    Jump to:
    © 2024 APG vNext Commercial Version 5.1