What the... first day with my Tytn and already a virus?!?! - 8525, TyTN, MDA Vario II, JasJam General

I just tried to go to a site in Internet Explorer on my Tytn tonight (I was successfully surfing the web all day today) and no matter what website I try to go to, I get redirected to www.ownbox.com/treasure/videogames.html!! I searched the whole forum, and did a google and turned up nothing in the forums and only that it is in fact a hijack site, but found no instructions for fixing it.
Anyone ever heard of this... on Windows Mobile no less??

stpete111 said:
I just tried to go to a site in Internet Explorer on my Tytn tonight (I was successfully surfing the web all day today) and no matter what website I try to go to, I get redirected to www.ownbox.com/treasure/videogames.html!! I searched the whole forum, and did a google and turned up nothing in the forums and only that it is in fact a hijack site, but found no instructions for fixing it.
Anyone ever heard of this... on Windows Mobile no less??
Click to expand...
Click to collapse
First day consider a hard reset should fix it. Did not think there were any virus's in the wild that infect WM devices yet?

stpete111 said:
I just tried to go to a site in Internet Explorer on my Tytn tonight (I was successfully surfing the web all day today)
Click to expand...
Click to collapse
Based on the story below chickswithdicks.com and similar ones must be among them...
and no matter what website I try to go to, I get redirected to www.ownbox.com/treasure/videogames.html!! I searched the whole forum, and did a google and turned up nothing in the forums and only that it is in fact a hijack site, but found no instructions for fixing it.
Anyone ever heard of this... on Windows Mobile no less??
Click to expand...
Click to collapse
Code:
<html><head>
<title></title>
</HEAD>
<BODY onload="confirmGoto()">
<SCRIPT>
var exit=true;
function confirmGoto() {
if (exit) {
if (confirm(" CONGRATULATIONS !!!\n\nYOU'VE WON VIRTUAL REALITY CASINO !\n\n CLICK on OK\nand Get up to +200$ BONUS NOW ! ")) {
location="http://www.super-casino.com/casino.htm"
} else {
var now = new Date()
var sec = now.getSeconds()
var ad = sec % 4;
ad +=1;
if (ad==1) { window.location="http://euroseek.com/geo/free%20games"; }
if (ad==2) { window.location="http://euroseek.com/geo/games"; }
if (ad==3) { window.location="http://euroseek.com/geo/computer%20games"; }
if (ad==4) { window.location="http://euroseek.com/geo/play%20games"; }
}
}
}
</SCRIPT>
</body>
</html>
This is where your "virus" takes you... By the way what's in your host file?
When you're done cleaning, reset your browser's home page and stop clicking all around next time when you're downloading pr0n (ie tonight ).

Muhahahaha, pwnt.

lol nice "virus" you got there

szlevi said:
By the way what's in your host file?
Click to expand...
Click to collapse
Where it is under WM5? I've tried to create \Windows\hosts to add a couple of records, to no avail. I wish I knew where it should be!

I'm glad everyone is so entertained by my first-day woes and surfing habits.
In any case, can anyone help me along here so I don't have to do a hard reset... when you say "what's in your host file?" Where can I find that? Is this where I will be able to clean this thing out? I can't imagine it would be near as hard to get rid of malware in a PPC as it is in a desktop. Then again, I could easily be wrong there too!
Thanks again.

Check in your java applets and you homepage setting?

Homepage setting is still the original one //\Windows/default.htm. I took a look at default.htm with Notepad on my desktop to see if it's compromised and it's not. Very strange.
I've also looked at the registry settings for IE and I don't see anything out of the ordinary, although, I'm far from an expert in what the typical registry entries are for IE!

Try over at 4winmobile.com as well mate and Modaco, in for a penny and all that!

Just do a hard reset, and stop surfing porn sites!

Google is good for porn, but also good for looking for solution to porn related problems
http://windowsmobilepro.blogspot.com/2006_04_28_windowsmobilepro_archive.html
http://www.freewareppc.com/utilities/pockethosts.shtml

Bydandie - thanks, I'm looking around in those forums right now.
Hanmin - those are great resources... I downloaded the pocket hosts program just to verify what I saw in the registry under Comm/Hosts. Unfortunately, the only host I'm showing in there is 169.254.2.2 which is the ppc's relationship with ActiveSync. This would lead me to believe that the problem lies somewhere else. The Pocket Hosts app is a great little app though, and I'm definitely keeping it.
By the way, to everyone else, I know you're just kidding around about the pornsites thing, but this issue arose out of me accidentally typing a "w" instead of an "e" in the address bar. If you navigate to www.googlw.com by accident, this is the result. Look it up on google if you don't believe me... just be sure to type GOOGLE, not GOOGLW!!!
A hard reset is going to be my very last resort as I already have a ton of apps on here that I put on yesterday. I don't have a storage card yet so running a backup isn't an option, besides the fact that once I were to run a restore on the newly-reset device, it would just bring the issue back anyway.
Thanks to everyone thus far for you help! The search continues!!

Spybot S&D have a mobile version - maybe try that? never found anything on mine but would not really expect it to as had no problems.

Crazyc, thanks, I had no idea Spybot had a mobile version... pretty cool.
Unfortunately, I downloaded it and ran it on my Tytn, and it finds nothing.
I'm tearing apart the internet left and right trying to find something... apparently I'm the first person in the world who has typed googlw.com by accident??
Onward I trudge...

There aren't any viruses, or spyware for Windows Mobile. If you synced with ActiveSync, it has all the programs still on your computer, just choose the Add/Remove Programs option from AS after you hard reset.

Everyone,
After several soft resets and clearing of all History, Files, and Cookies, both through the Options, and by manually going into the folders, as well as running Memmaid 3 different times, it FINALLY appears that the issue has gone away.
I wish I knew where exactly in the process the problem was solved, or what was done to solve it, but for now, I'm just happy to not have to do a hard reset, and actually be able to use IE again.
Thanks a ton to everyone for your help and suggestions. I hope to be able return the favor in the near-future to someone who has a problem I've experienced and solved.
Let this be a lesson to everyone... before you hit "Go" on your browser, make SURE you've spelled the website name correctly in the address bar... apparently googlw.com is just one of many of these kinds of "typosquatting" sites.
Cheers!

I've just gone into googlw.com and try to see what happened there.. and what script it is using to cause all the havoc.. but apparently, it has been .. solved? It redirects me to the proper google site.

I spoke to soon.
The problem is back. When I said it had gone away, I was accessing the internet through my activesync connection to my pc, and with that there are no problems. Once I disconnected from my pc and tried to browse through Cingular, the problem is back. Errrrrrrrrrgh!!

Also, it looks like this issue is exclusive to IE. I installed Opera and Minimo to test, and they both surf the web with no problems.

Related

Dyndns client for Pocket PC ?

I search and found something called PocketDyndns, however i never able to reach the site, does anyone know other programs can do ???
Since I want to config my firewall will only allow me to telnet in, however GPRS is not a fix IP, so I hope i set my firewall to recognize the xxx.dyndnd.org all i need is to update my IP to the DNS record.
Ever heard of the hidden, hard-to-find, brand-new and useless search machine Google? Here you can click on the second link and voila!
i know this thread is old, but anyone got any better leads i swear i been up and down and thru that list but whatever was the 2nd link isn't available anymore.
Nor does there seem to be much else.
It would be very convenient for the ftp, http, inbound via GPRS people if a ActiveSync/"Internet" aware PocketPC/Windows Mobile Dynamic IP app was available.
Any ideas?
Yup, it seems it has been completely removed from http://www.networkdweebs.com/stuff/dyndns/ . The parent directory, which is visible ( http://www.networkdweebs.com/stuff/ ) doesn't contain it any more.
Therefore, mail the dev at [email protected] and ask them how you can get the app. Please also post a message in here too if you get any positive answer.
I just find that site...
http://zdziarski.com/projects/dyndns/
Chatty said:
Ever heard of the hidden, hard-to-find, brand-new and useless search machine Google? Here you can click on the second link and voila!
Click to expand...
Click to collapse
The best part is: when you follow the link, the second result is this thread
Thanks!
It worked on my htc touch pro 2, WinMo 6.5.
Although it can not start with system and minimized to background.
drizzo91 said:
The best part is: when you follow the link, the second result is this thread
Click to expand...
Click to collapse
Nope, now it's the first result!
Still looking for one that I like...

"This device is restricted from downloading this file t

My Qtek 9100 with the latest english generic ROM was working fine for months. This morning, I removed the SIM and put it back in. Since then, it won't activesync, I can't drag n drop files to it through Explorer, and when I try to download a CAB file via IE, I now get this error message:
"This device is restricted from downloading this file type."
Any ideas? I don't understand what happened to it! It's like it moved to a very strict secure mode all by itself. It doesn't make any sense!
It seems that my security policies are all whacked up. The device doesn't even see the installed applications in the "Software uninstaller manager" app anymore. I tried rebooting and soft-resetting, no good.
ok guys, in order to fix my problem, I NEED one of you to send me ALL the keys and data info from this registry folder:
HKLM\Security\Policies\Policies\
Please export that registry for me as a text file and attach it here (or copy/paste it), so I can retype it manually on my Qtek 9100 phone (I can't import anything on my PDA atm as I can't download anything to it, it won't let me).
If none of you do this small favor to me, I am screwed. I would need to hard reset and lose everything (I can't back up anything).
Here Goes...
Ok, I am running the latest "T-mobile custom" ROM, ROM version 2.24.10.1 WWE. I should have no policies enabled... I have typed out all of the keys and values under this in notepad in the format name-value. all values should be DWORD. Hope this helps....
__________
Edit: My phone is a t-mobile MDa, don't think that should matter...
Thank you very much, much appreciated.
I have this issue but I can't view the txt doc can someone paste it here or email it me in the body so I can add them manually or if ur really kind email me the cab file. I have the htc wizard running the most beautiful edition rom. will this work by any chane? I can't download any file this device is restricted from downloading this file type every bloody time... (bloody being f*cking)
keithstewartson at hotmail.com
this device is restricted from downloading this file type
I have this issue but I can't view the txt doc can someone paste it here or email it me in the body so I can add them manually or if ur really kind email me the cab file. I have the htc wizard running the most beautiful edition rom. will this work by any chane? I can't download any file! "this device is restricted from downloading this file type" every bloody time... (bloody being f*cking)
keithstewartson at hotmail.com
hel
any1 ? please asap
Okay hate to bring back an ANCIENT Thread but do I add these security polocies or remove the ones that are currently in there and then add these or how do i do it.
Okay hate to bring back an ANCIENT Thread but do I add these security polocies or remove the ones that are currently in there and then add these or how do i do it.
Edit:
Okay I found that my security policies on my MDA did NOT match totally with the one that was posted here. Little adjustments had to be made in the value of the d-words as well as 3 dwords had to be added.
I also found ADDITIONAL D-Words:
Original .txt security DWords posted:
name-value (all DWORD)
00001000-8
00001001-1
00001005-16
00001006-1
00001007-64
00001008-1
00001009-5
0000100b-3716
0000100c-2112
0000100d-3136
0000100e-64
0000100f-3732
00001011-1
00001017-16
00001018-16
00001019-140
0000101a-1
0000101b-1
0000101d-1
0000101e-1
0000101f-1
00001020-1
00001021-3072
00001023-1
00001024-1
00001025-1
Additional Ones found on MY MDA
00001026-1
00001027-1
00001028-1
00001029-1
0000102A-1
0000102B-0
0000102C-0
0000102d-3200
0000102e-3200
0000102f-3200
00001030-0
00001031-1
00001032-1
I have not checked if changing these have fixed my issue or not so lets find out I will post back with the result. Should I try removing the additional ones found on my MDA?
Merely changing the security Policies as listed in the .txt did not fix the problem
I have this problem too, I can't even edit the registry so I can't even try to put the policies back again. By the looks of things that won't work anyway.
Anyone got a solution that doesn't involve wiping the phone? Not that I know how to do that anyway. I have an XDA Orbit from O2.
Thanks,
Sapan
Same problem here
I have the same problem (XDA Orbit 2)
Worked fine for the first few days - was able to download CABs etc. Then it just stopped. I've read elsewhere about root certificates. Could this be the problem?
this device is restricted from downloading this file type
I have had this problem on my HTC touch with windows mobile 6.
This microsoft bug can make you loose a lot of work, time and data.
Are the Microsoft programmers drinking while they work?
Here is the solution I found!
http://www.24hsoftware.com/How-To/this-device-is-restricted-from-downloading-this-file-type.html
I hope it fixes your problems too.
Restricted Download !!!!! Hum
Hello all. I also have a Qtek 9100 for more than 2 years.
Honestly i never had that problem. And i already flashed undreads of ROMs and software to it.
One thing is that i always have Backup Software for any eventuality. Things can always go wrong.
Tips
First - Try to use Resco Registery Editor,its a good Software to make any changes "Delete/Rename/Copy/Add etc,etc.
Second - Look for Its Right,the TNT Master. It will be dificult to find him as he is getting is Engineer Degree. You can also ask Octaivoi,he is a Wizard Master 2.
Third - Keep an exautive search in XDA Devs and eventualy you all will find the answere.
Fourth - Get a Backup Software,get back all the software that cant be recovered. "Eugenia software can always be recovered". And FLASH a new ROM. There are many,many Beautiful and advanced Wizard ROMs arround XDA Dev.
Hope that any of these tips can help
SOLVED!!! ThankS!!!
mioan said:
I have had this problem on my HTC touch with windows mobile 6.
This microsoft bug can make you loose a lot of work, time and data.
Are the Microsoft programmers drinking while they work?
Here is the solution I found!
http://www.24hsoftware.com/How-To/this-device-is-restricted-from-downloading-this-file-type.html
I hope it fixes your problems too.
Click to expand...
Click to collapse
first had this problem with the empty "remove programs" list 6 months ago, glad to see this whacked-out solution that works!!
Conclusion: Microsoft Windows Mobile messed up the security settings, so let Microsoft Word Mobile put it back automatically, voila!
And ofcourse, I've read about this "fix" soo many times at so many places, and it works for everyone but me >.< I tried all the different ways theres to it, nothing worked. One more thing, shutting it off and THEN pressing soft reset doesn't make sense. Anyway I tried, and it didnt fix. Still got the file deletion/changing restriction. Can't sync, can't get online, download files nothing ... If only Microsoft cared to fix this. Anyone any idea? Dutch phone, Hi provider, rom version: 1.93.404.1 NLD
A Real Fix
Has anyone on this board found A REAL FIX to this problem?
Because I just got my tilt 6 months ago was doing good and now cannot download, cannot stream, cannot play cellular videos, radio.
I have tried the office word solution. That did not work for me!
Is there a Real Solution?
THANKS IN ADVANCE!
A Real Fix
Has anyone on this board found A REAL FIX to this problem?
Because I just got my tilt 6 months ago was doing good and now cannot download, cannot stream, cannot play cellular videos, radio.
I have tried the office word solution. That did not work for me!
Is there a Real Solution?
THANKS IN ADVANCE!
I'm sorry it didn't work on your device. I had the same problem, no sync, no file copy/rename on the device, no cab install, no programs in "add/remove programs" on my Mio A702 thing. The MS Word solution worked smoothely and now I have everything as it should be. So I can confirm the "word thing" actually works . Don't know why it won't do the trick in your case

Retina WiFi Scanner/Brute Force WEP

so i actually found a copy of Retina WiFi scanner, and loaded it up on my HTC wiz (8125). But when I went to start it, it came back saying that it could not initiate the drivers, and that to turn my wifi card on...
Like I didn't already do that...
Anyone else come up with that error message, and is there any known way around it?
retina device driver;
hallo, i have the same problem. if you have found a sollution let me know
TYTN II UK
nope, no solutions. I actually abandoned the project cause i could find no one smarter then who actually knew what they were doing
The most I could come up with, however, was that for those that did get it to work, it usually took a long time for it to get anywhere, and by the time it did get anywhere their battery life was near shot.
I can send you the application if you like.
boe_dye said:
nope, no solutions. I actually abandoned the project cause i could find no one smarter then who actually knew what they were doing
The most I could come up with, however, was that for those that did get it to work, it usually took a long time for it to get anywhere, and by the time it did get anywhere their battery life was near shot.
I can send you the application if you like.
Click to expand...
Click to collapse
can you send me the file? pm me the link on rapidshare or something
weell....
well, apparently I misspoke. I thought i had that program stored away on my second harddrive, but apparently i do not. As it is, i don't have it anywhere except on my pocket pc and that is as an application.
however, i do remember reading somewhere that there is a program that can actually extract the .cab from the ppc in case of something like what has happened to me, happens. So i will research that and see if i can come up with something.
Again, I am really sorry, and rest assured if i did have it, it would have been up on rapishare that very day...
as it is, like most things, i am going to have to do it the hardway...
If in fact you do want to continue looking for it, i cannot remember if i found via torrent, or some russian site. those russian sites have EVERYTHING. Although I would suggest going through google to translate them. Unless of course you can read russian then kudo's to you.
Either way, I will work on seeing if i can extract the .cab from my phone.
stay tuned!
"Retina Wifi" is available for free from here -
http://www.eeye.com/html/downloads/index.html
You just have to register and they email you a download link. I shall have a play (although I shall be using a Hermes rather than my Wizard and probably won't come back to say if it works due to lazyness).
Hope that helps
that's new...
when i was there last, they said that they no longer supported the project. Unless this is a different think then what we were originally talking about.
the version that i was referring to, had a neat little brute force wep cracker. i read some pro's and con's to it and thought that it would be cool just to have.
but hey, register, and then share your find if it's worthwhile!
like i started to say earlier it has been a while since i played with my HTC wizard, and a lot of this is more or less a vaguery for me.
(yes i just made that word up)
boe_dye said:
well, apparently I misspoke. I thought i had that program stored away on my second harddrive, but apparently i do not. As it is, i don't have it anywhere except on my pocket pc and that is as an application.
however, i do remember reading somewhere that there is a program that can actually extract the .cab from the ppc in case of something like what has happened to me, happens. So i will research that and see if i can come up with something.
Again, I am really sorry, and rest assured if i did have it, it would have been up on rapishare that very day...
as it is, like most things, i am going to have to do it the hardway...
If in fact you do want to continue looking for it, i cannot remember if i found via torrent, or some russian site. those russian sites have EVERYTHING. Although I would suggest going through google to translate them. Unless of course you can read russian then kudo's to you.
Either way, I will work on seeing if i can extract the .cab from my phone.
stay tuned!
Click to expand...
Click to collapse
the only way of extracting an installed app as a cab from a ppc, that i know of, is sk schema or sk tracker, cant remember which but the software from sk has to be installed BEFORE you install the app
, so i doubt that will be of use to you.
hmmm...
yes, those names do sound familiar...
and yeah, installing it before hand might put a damper on things.
....
hmm i just had a thought, i wonder if i stored it as a backup on my sd card. as it is right i basically use my ppc for "war driving" (that is driving around in the car sniffing for wifi signals, courtesy of wififofum, for those that don't know) and as a glorified mp3 player for my truck (conduits player is great... just as a fyi)... however all my songs on my phone are all stored on a 2 gig micro sd card...
but i don't remember if i erased my backups to make room for more songs...
hold on all! don't close the thread yet there still may be hope!
do u still want the program ? let me know and I'll email you the install file.. I get the same error with the drivers on my qtek 9100. Let me know if you can get it to work.
i'm not 100% sure, but i remember seeing somewhere (years ago) that this program only works with compactflash wifi cards, and not internal ones. this could possibly be the issue about the driver thing. any other similar programs available for wep / wpa cracking?
bump... would love to see this app (or one like it work)

Ive got no browser

In the Internet page when I click on launch browser nothing happens, I can't find Opera using file manager. Anyone else having this problem ???
Opera should be in Start, Programs... If it's not there, then there's something wrong with it. Did anything odd happen when you were starting it up for the first time?
Yeah it should be under programs and you should also be able to see it on the internet tab in touchflo 3d too, try a hard reset and let it go through the restart
cheers fellas tried all that, it doesn't seem to be there... Ive emailed HTC support but downloaded 9.5 beta, which I must admit works beautifuly, I'll see what HTC say but its no stumbling block on what seems to be a fantastic phone !!!
I take it you have already tried carrying out a 'Soft Reset', or the more vigorous 'Hard Reset'?
Edit: Oops sorry... didn't notice Chris above has already recommended this to you.

Issue using Opera Mobile on www.studivz.net

hey guys, don not know, whether the problem may cause on other pages... but there is an issue with the website studivz.net.
I wrote more than three times to the sony ericsson-support...but they answered me to make a hard-reset and use opera mobile instead of internet explorer.
I thought they're just kidding me...because I wrote them that there are few people having the same problem USING OPERA on studivz.net...
ohere you may see the problem with a black col that becomes bigger and bigger each time I press any link on the page...
http://www.youtube.com/watch?v=7cKCJ25a6zE
perhaps anybodyy of you know how to work around...
got the same problem on meinvz and other pages aswell.
just keep in mind ... the opera version u are using is still BETA. it has plenty of bugs (hardcoded text block formatting f.e.)
well ... we'll see what future versions and browser bring here.
I'm trying to contact opera...but there seems to be no support-mailaddress available?!
I sent the link to the German Sony Ericsson-support as well...hope they'll answer seriously...
and I noticet the support-team of studiVZ.
Cysign said:
hey guys, don not know, whether the problem may cause on other pages... but there is an issue with the website studivz.net.
I wrote more than three times to the sony ericsson-support...but they answered me to make a hard-reset and use opera mobile instead of internet explorer.
I thought they're just kidding me...because I wrote them that there are few people having the same problem USING OPERA on studivz.net...
ohere you may see the problem with a black col that becomes bigger and bigger each time I press any link on the page...
http://www.youtube.com/watch?v=7cKCJ25a6zE
perhaps anybodyy of you know how to work around...
Click to expand...
Click to collapse
Does it need flash or anything? I can't see anything using the dev tools
Have you tried netfront browser?
the 3.5 "concept version" is one of my favourites, not to everyones taste but might be worth a try.
http://www.access-company.com/products/mobile_solutions/netfrontmobile/browser/35_wm_tp.html
Obviously leaving a message on the opera forums would be a good thing as well.
I found a support-mail-contactmailer on the webpage of opera and informed them about this issue. sent the link to this video as well.
perhaps I'll give the netFront a try...but I'd more like to use the opera...
the page doesn't use flash...but ajax. for opening message-windows (in the video you may see, it doesn't work with opera...)
well, I installed the new official rom and this issue has gone.
works find now. but ajax-messages won't open at all.
is there anything I can do?
and I hate that you have to zoom in before you are able to click a link/input-field in the new build of opera.
hope they make this "feature" checkable per box in the settings.
or anybody may find out, what to change in the registry.
another fine thing would be a tutorial that describes how to set opera opening tabs in the background instead of making new tabs active.
especially on ebay this is bugging me.
and at last I think it would be great to set the identity of opera as desktop-browser. I hate google-, gmx-, or especially ebay-mobile... if I could choose the identity of opera all would be fine

Categories

Resources