Trojan warning when I browse the forums

My Kaspersky detects, “decouples” and stops downloading the object.

Object name: HEUR: Trojan.Script.Generic

Object: http://ads.vb-api.com/gate/miner

Type object: Trojan Program

Happens on every forum page, since toay.

I’m looking into this, now… just started getting it myself, last 20 minutes or so (was on a conf call, but def within the last 2 hours).

Not sure how that site is related, but it’s definitely not from us. I’ve opened a communication with Phrost, we’ll nip this in the bud.

vb-api.com seems to have squashed this one, I’m no longer detecting miner scripts. Please let me know if this is not the case. I’m still investigating where that got slipstreamed into your daily Bull.

It’s gone for me.

It’s back. Now as

Object name: HEUR: Trojan.Script.Generic

Object: http://ads.vb-api.com/gate/ads

Type object: Trojan Program

Yep, I’m already on it. Phrost is aware, too. Hopefully, they don’t “fix” it before I find it, this time.

Trojan warning, this is first thing that came to mind…
Apropos on more than one level, eh?

//youtu.be/Eh9XwSgCigc

This is some Twin Peaks type shit. It’s happening again.

Gone again…

Indeed. I now have all the data on you I need.

Roderick.