Urbanspoon.com
Three different computers.
OS : Windows 8.1
Browsers: IE, Firefox, Chrome
The search function at the top of the page does not function properly.
Clicking the switch city link just reloads the page with an # appended to the end of the url.
Clicking any of the Filter Results dropdown boxes reloads the page.
The map is missing.
I deactivate Virus Shield and Auto Scan. Reload the page. Everything goes back to working properly. Activate Virus Shield and Auto Scan. Continues to work properly. The next day it is back to not working properly.
I have another computer running a different antivirus that does not suffer from this.
Any help would be greatly appreciated.
Thank you for your time,
Comments
-
On a preliminary test for the page I noticed it refers to content from http://a3.urbancdn.com/ and from http://a4.urbancdn.com/ blocked by Bitdefender Antivirus Free Edition. It appears that these URLs are false positives as so are the URLs http://a1.urbancdn.com/ and from http://a2.urbancdn.com/ which by themselves redirect to http://www.urbanspoon.com/c/1/Seattle-restaurants.html and http://www.urbanspoon.com/c/17/Denver-restaurants.html respectively. I reported one of the filtered files URLs as a false positive already but I am not sure if that will take care of the problem completely.
It is unfortunate, but when web pages refer to content from a different domain, if that domain is a false positive, that additional content of the website may be blocked without any alert to the user. However it is possible to find out what happened by examining the file gzserv.log in the antivirus software folder. The excluded material can be found in gzserv.log by looking at the lines that say:
... HTTPAV Cloud link infected ...0 -
Thank you for the lesson on the gzserv.log. I know where to look now when I have future troubles. I appreciate your help and thank you for your time.
0 -
Thank you for the lesson on the gzserv.log. I know where to look now when I have future troubles. I appreciate your help and thank you for your time.
I am happy to help. By the way, I just verified the problem with the urbanspoon website has been corrected by Bitdefender Customer Care Team.0 -
It is back to not working today.
2015/04/15 19:04:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/i18n/locales...d87c8e1fc949.js
2015/04/15 19:04:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...6ff8544806ff.js
2015/04/15 19:04:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...1f4537f68937.js
2015/04/15 19:04:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...d6beb3591e6d.js
2015/04/15 19:04:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...6f08ecef820f.js
2015/04/15 19:04:09 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/15 19:04:09 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/15 19:04:10 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/15 19:04:10 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff0 -
Hello,
We have tested Switch City feature from the site and it works properly with all Bitdefender modules enabled.
Moreover, Bitdefender does not detect as infected any of the above links. Another security solution does that for 5 of them. Click the links below from Virus Total to see the scan results. Thank you.
https://www.virustotal.com/en/url/2c71b3cff...sis/1429191318/
https://www.virustotal.com/en/url/1ab433260...sis/1429191330/
https://www.virustotal.com/en/url/5b4860c21...sis/1429191338/
https://www.virustotal.com/en/url/5394d19c6...sis/1429191108/
https://www.virustotal.com/en/url/5394d19c6...sis/1429191108/
Please restart the computer with Bitdefender, wait for 15 minutes then check if the site is working properly.0 -
I have done as instructed and all is working properly.
Thank you for your time,0 -
Meanwhile, eight hours later.
Does bitdefender have some grudge against urbanspoon?
From the gzserv.log:
2015/04/16 20:49:16 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/16 20:49:17 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/16 20:49:18 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/16 20:49:18 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/16 20:49:38 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...582e65284538.js
2015/04/16 20:49:39 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/16 20:49:39 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/16 20:49:40 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/16 20:49:40 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
Is there a way to turn this feature off?0 -
Meanwhile, eight hours later.
Does bitdefender have some grudge against urbanspoon?
From the gzserv.log:
2015/04/16 20:49:16 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
...
Is there a way to turn this feature off?
I confirmed the "problem" has returned. It is in the best interest of Bitdefender not to have false positives, however I imagine some procedures may inadvertently create one. I cannot say why is this reoccurs to urbanspoon but I found a company in that provides security solutions for websites reported they were unable to properly scan a3.urbancdn.com and a4.urbancdn.com due to website errors.
Unfortunately, Bitdefender Antivirus Free Edition offers very limited control through its interface, unlike their alternatives with a free-trial period (which in some promotions can extend to six-months!).0 -
Thank you graciliano.
My solution so far:
Turn off the Auto Scan and then the Virus Shield.
Fire up my browser.
Turn on the Virus Shield then the Auto Scan.
Surf without a problem.
I just have to remember to do this before I start my browser up.
Thank you for all the help.0 -
After doing some digging around, I found that urbancdn.com is identified as Malware by BitDefender and only BitDefender
https://www.virustotal.com/en/url/3ae7677cb...57190/analysis/
I have submitted it as a False-Positive.
This has been an interesting learning experience.
Thank you for your time,0 -
After doing some digging around, I found that urbancdn.com is identified as Malware by BitDefender and only BitDefender
https://www.virustotal.com/en/url/3ae7677cb...57190/analysis/
I have submitted it as a False-Positive.
This has been an interesting learning experience.
Thank you for your time,
They fixed it quickly this time (within a few hours).I hope it stays that way now!!!!!
"Patience is a virtue, and I'm learning patience. It's a tough lesson." --Elon Musk0 -
So far so good.
Thanks to all for your help.
I will hang around and try to help others, but my tech knowledge is limited.
Thanks again0 -
Spoke too soon.
2015/04/23 14:33:32 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/23 14:33:32 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/23 14:33:33 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/23 14:33:33 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/23 14:34:22 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...582e65284538.js
2015/04/23 14:34:23 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/23 14:34:23 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/23 14:34:24 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/23 14:34:24 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff0 -
BitDefender is back to blocking urbancdn.com.
https://www.virustotal.com/en/url/3ae7677cb...57190/analysis/
Interesting that only BitDefender is blocking this site again.
2015/04/24 08:35:04 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/i18n/locales...d87c8e1fc949.js
2015/04/24 08:35:05 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...b772beef8721.js
2015/04/24 08:35:05 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...cd878bd2c3cd.js
2015/04/24 08:35:05 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...1f4537f68937.js
2015/04/24 08:35:05 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...6f08ecef820f.js
2015/04/24 08:35:06 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/24 08:35:06 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/24 08:35:07 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/24 08:35:07 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/24 08:35:14 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/i18n/locales...d87c8e1fc949.js
2015/04/24 08:35:14 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...582e65284538.js
2015/04/24 08:35:14 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...cd878bd2c3cd.js
2015/04/24 08:35:14 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...1f4537f68937.js
2015/04/24 08:35:14 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...6f08ecef820f.js
2015/04/24 08:35:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/24 08:35:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/24 08:35:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...dcbbd6b4fd75.js
2015/04/24 08:35:16 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/24 08:35:16 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff0 -
Any hope of a permanent fix for this false positive?
2015/04/27 08:19:30 EnginesUpdate.cpp [CheckEnginesUpdate] Engines update finished.
2015/04/27 08:19:30 ProductUpdate.cpp [CheckProductUpdate] Check product update
2015/04/27 08:19:35 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/i18n/locales...d87c8e1fc949.js
2015/04/27 08:19:35 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...b772beef8721.js
2015/04/27 08:19:35 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...6f08ecef820f.js
2015/04/27 08:19:35 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...1f4537f68937.js
2015/04/27 08:19:36 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:19:36 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/27 08:19:36 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/27 08:19:36 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:19:38 ProductUpdate.cpp [CheckProductUpdate] Product is up to date
2015/04/27 08:19:43 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...1f4537f68937.js
2015/04/27 08:19:43 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/i18n/locales...d87c8e1fc949.js
2015/04/27 08:19:43 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...582e65284538.js
2015/04/27 08:19:43 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...6f08ecef820f.js
2015/04/27 08:19:43 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:19:43 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/27 08:19:44 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...dcbbd6b4fd75.js
2015/04/27 08:19:44 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:19:44 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/27 08:20:06 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/i18n/locales...d87c8e1fc949.js
2015/04/27 08:20:06 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...1aeda59481fa.js
2015/04/27 08:20:06 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...9f78f6c63ee4.js
2015/04/27 08:20:06 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...6f08ecef820f.js
2015/04/27 08:20:07 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...1f4537f68937.js
2015/04/27 08:20:07 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/shared/addon...dcbbd6b4fd75.js
2015/04/27 08:20:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/27 08:20:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:20:08 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:20:09 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/27 08:20:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/i18n/locales...d87c8e1fc949.js
2015/04/27 08:20:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...b681000308dc.js
2015/04/27 08:20:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/web/responsi...1f4537f68937.js
2015/04/27 08:20:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...ffa06c0d7251.js
2015/04/27 08:20:15 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/web/responsi...6f08ecef820f.js
2015/04/27 08:20:16 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:20:16 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff
2015/04/27 08:20:17 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a4.urbancdn.com/assets/opensans/Ope...1103279ace.woff
2015/04/27 08:20:17 HttpCallbacks.cpp [isUrlCloudClean] HTTPAV Cloud link infected http://a3.urbancdn.com/assets/opensans/Ope...05a6be26a5.woff0 -
Hello,
We are working on it.
If it's a false alarm, the detection will be removed in 24-48 hours.
Thank you for your patience.0 -
Hi again,
Thank you for your patience. The detection was removed.
From now on, please use only this automatic platform to submit all false alarms and samples directly to the Bitdefender Labs.
http://www.bitdefender.com/submit
Hope you have a beautiful day ahead!0 -
Thank you for the help.
0