{
  "id": 16729,
  "title": "Malware in data potentially damaged computer?",
  "url": "/competitions/dato-native/discussion/16729",
  "author_name": "",
  "post_date": "2015-09-30T16:03:19.887Z",
  "votes": null,
  "comment_count": 3,
  "views": 1199,
  "content": "<p>Hi,</p>\n\n<p>I downloaded and unzipped the data a couple of days ago. However, right after doing it my Mac started running into issues. I lost the admin rights to my computer and it started acting buggy. The only way to get admin rights back was to reinstall the OS which means my hard drive was completely emptied. Has anyone else had the same issues? I know that unless you click on an infected file the chances of Malware infecting your computer are low so I'm a bit confused as to what happened. (However, according to the person helping my Mac there is no guarantee that unzipping won't trigger either)</p>\n\n<p>Regardless of whether that was the cause or not, I am really disappointed that Kaggle won't be bothered to actually do a data check to see if there is any malware. It seems like no one at Kaggle does any sort of due diligence in these competitions. From data leakages everywhere to potential malwares, it's really not that hard to spot these things if Kaggle actually bothered looking at the data first.</p>",
  "messages": [
    {
      "id": "93709",
      "postDate": "09/30/2015 16:03:19",
      "content": "<p>Hi,</p>\n\n<p>I downloaded and unzipped the data a couple of days ago. However, right after doing it my Mac started running into issues. I lost the admin rights to my computer and it started acting buggy. The only way to get admin rights back was to reinstall the OS which means my hard drive was completely emptied. Has anyone else had the same issues? I know that unless you click on an infected file the chances of Malware infecting your computer are low so I'm a bit confused as to what happened. (However, according to the person helping my Mac there is no guarantee that unzipping won't trigger either)</p>\n\n<p>Regardless of whether that was the cause or not, I am really disappointed that Kaggle won't be bothered to actually do a data check to see if there is any malware. It seems like no one at Kaggle does any sort of due diligence in these competitions. From data leakages everywhere to potential malwares, it's really not that hard to spot these things if Kaggle actually bothered looking at the data first.</p>",
      "rawMarkdown": "Hi,\r\n\r\nI downloaded and unzipped the data a couple of days ago. However, right after doing it my Mac started running into issues. I lost the admin rights to my computer and it started acting buggy. The only way to get admin rights back was to reinstall the OS which means my hard drive was completely emptied. Has anyone else had the same issues? I know that unless you click on an infected file the chances of Malware infecting your computer are low so I'm a bit confused as to what happened. (However, according to the person helping my Mac there is no guarantee that unzipping won't trigger either)\r\n\r\nRegardless of whether that was the cause or not, I am really disappointed that Kaggle won't be bothered to actually do a data check to see if there is any malware. It seems like no one at Kaggle does any sort of due diligence in these competitions. From data leakages everywhere to potential malwares, it's really not that hard to spot these things if Kaggle actually bothered looking at the data first.",
      "votes": null
    },
    {
      "id": "93711",
      "postDate": "09/30/2015 16:21:39",
      "content": "<p>According to my AV there appears to be:</p>\n\n<ul>\n<li>JS/TrojanDownloader.Iframe.NKE trojan</li>\n<li>HTML/Iframe.B.Gen virus</li>\n<li>HTML/TrojanClicker.Iframe.NAG trojan</li>\n<li>JS/Tivso.Gen trojan</li>\n<li>HTML/ScrInject.B.Gen virus</li>\n</ul>\n\n<p>You can look them up to see how relevant they are to OS X.</p>\n\n<p>But when you open something in a zip, nothing gets executed - it is just a text file sitting on your disk. No binaries are in there, just the scripting language that may be in some of the pages.\nIn order for it to get executed, it needs to be opened and interpreted by the browser's javascript engine.\nThen it needs to actually apply to the OS and permissions of your particular machine.\nMost of the time things are written for Windows, don't know if that is the case here or not.</p>\n\n<p>Your chances aren't just low in the case of these files, it is literally zero, if you didn't open them in a browser - even then, it would probably still be low.</p>\n\n<p>Not sure what the person was talking about saying unzipping a text file could put you at threat.\nThat would require something actually running, and it doesn't.\nNothing roams your filesystem interpreting javascript on the fly.\nAkin to dowloading a text file with an R script in there, not running it via its interpreter, and then wondering why it isn't doing anything.</p>\n\n<p>As for your disappointment at Kaggle - the worst part is how they force us to do these competitions.</p>",
      "rawMarkdown": "According to my AV there appears to be:\r\n\r\n - JS/TrojanDownloader.Iframe.NKE trojan\r\n - HTML/Iframe.B.Gen virus\r\n - HTML/TrojanClicker.Iframe.NAG trojan\r\n - JS/Tivso.Gen trojan\r\n - HTML/ScrInject.B.Gen virus\r\n\r\nYou can look them up to see how relevant they are to OS X.\r\n\r\nBut when you open something in a zip, nothing gets executed - it is just a text file sitting on your disk. No binaries are in there, just the scripting language that may be in some of the pages.\r\nIn order for it to get executed, it needs to be opened and interpreted by the browser's javascript engine.\r\nThen it needs to actually apply to the OS and permissions of your particular machine.\r\nMost of the time things are written for Windows, don't know if that is the case here or not.\r\n\r\nYour chances aren't just low in the case of these files, it is literally zero, if you didn't open them in a browser - even then, it would probably still be low.\r\n\r\nNot sure what the person was talking about saying unzipping a text file could put you at threat.\r\nThat would require something actually running, and it doesn't.\r\nNothing roams your filesystem interpreting javascript on the fly.\r\nAkin to dowloading a text file with an R script in there, not running it via its interpreter, and then wondering why it isn't doing anything.\r\n\r\nAs for your disappointment at Kaggle - the worst part is how they force us to do these competitions.",
      "votes": null
    },
    {
      "id": "93713",
      "postDate": "09/30/2015 16:35:46",
      "content": "<p>That's what I thought to. Just that I don't understand why my computer started acting weird after it. I don't think I actually clicked on the files so it's strange.</p>\n\n<p>EDIT: nevermind, that's the virus/malware type. not the file name.</p>",
      "rawMarkdown": "That's what I thought to. Just that I don't understand why my computer started acting weird after it. I don't think I actually clicked on the files so it's strange.\r\n\r\nEDIT: nevermind, that's the virus/malware type. not the file name.",
      "votes": null
    },
    {
      "id": "95747",
      "postDate": "10/11/2015 13:21:27",
      "content": "<p>If you use Mac OS X, I happened to notice Spotlight would try to parse and even render HTML files. In this case, file extensions are all txt so perhaps no worries about it, but better safe then sorry, just exclude the folder from Spotlight.</p>",
      "rawMarkdown": "If you use Mac OS X, I happened to notice Spotlight would try to parse and even render HTML files. In this case, file extensions are all txt so perhaps no worries about it, but better safe then sorry, just exclude the folder from Spotlight.",
      "votes": null
    }
  ],
  "comments": [
    {
      "id": 93711,
      "author_name": "omgponies",
      "author_url": "",
      "post_date": "09/30/2015 16:21:39",
      "content": "<p>According to my AV there appears to be:</p>\n\n<ul>\n<li>JS/TrojanDownloader.Iframe.NKE trojan</li>\n<li>HTML/Iframe.B.Gen virus</li>\n<li>HTML/TrojanClicker.Iframe.NAG trojan</li>\n<li>JS/Tivso.Gen trojan</li>\n<li>HTML/ScrInject.B.Gen virus</li>\n</ul>\n\n<p>You can look them up to see how relevant they are to OS X.</p>\n\n<p>But when you open something in a zip, nothing gets executed - it is just a text file sitting on your disk. No binaries are in there, just the scripting language that may be in some of the pages.\nIn order for it to get executed, it needs to be opened and interpreted by the browser's javascript engine.\nThen it needs to actually apply to the OS and permissions of your particular machine.\nMost of the time things are written for Windows, don't know if that is the case here or not.</p>\n\n<p>Your chances aren't just low in the case of these files, it is literally zero, if you didn't open them in a browser - even then, it would probably still be low.</p>\n\n<p>Not sure what the person was talking about saying unzipping a text file could put you at threat.\nThat would require something actually running, and it doesn't.\nNothing roams your filesystem interpreting javascript on the fly.\nAkin to dowloading a text file with an R script in there, not running it via its interpreter, and then wondering why it isn't doing anything.</p>\n\n<p>As for your disappointment at Kaggle - the worst part is how they force us to do these competitions.</p>",
      "votes": null,
      "replies": []
    },
    {
      "id": 93713,
      "author_name": "ask788",
      "author_url": "",
      "post_date": "09/30/2015 16:35:46",
      "content": "<p>That's what I thought to. Just that I don't understand why my computer started acting weird after it. I don't think I actually clicked on the files so it's strange.</p>\n\n<p>EDIT: nevermind, that's the virus/malware type. not the file name.</p>",
      "votes": null,
      "replies": []
    },
    {
      "id": 95747,
      "author_name": "tmjiang",
      "author_url": "",
      "post_date": "10/11/2015 13:21:27",
      "content": "<p>If you use Mac OS X, I happened to notice Spotlight would try to parse and even render HTML files. In this case, file extensions are all txt so perhaps no worries about it, but better safe then sorry, just exclude the folder from Spotlight.</p>",
      "votes": null,
      "replies": []
    }
  ],
  "raw_markdown_by_id": {
    "93709": "Hi,\r\n\r\nI downloaded and unzipped the data a couple of days ago. However, right after doing it my Mac started running into issues. I lost the admin rights to my computer and it started acting buggy. The only way to get admin rights back was to reinstall the OS which means my hard drive was completely emptied. Has anyone else had the same issues? I know that unless you click on an infected file the chances of Malware infecting your computer are low so I'm a bit confused as to what happened. (However, according to the person helping my Mac there is no guarantee that unzipping won't trigger either)\r\n\r\nRegardless of whether that was the cause or not, I am really disappointed that Kaggle won't be bothered to actually do a data check to see if there is any malware. It seems like no one at Kaggle does any sort of due diligence in these competitions. From data leakages everywhere to potential malwares, it's really not that hard to spot these things if Kaggle actually bothered looking at the data first.",
    "93711": "According to my AV there appears to be:\r\n\r\n - JS/TrojanDownloader.Iframe.NKE trojan\r\n - HTML/Iframe.B.Gen virus\r\n - HTML/TrojanClicker.Iframe.NAG trojan\r\n - JS/Tivso.Gen trojan\r\n - HTML/ScrInject.B.Gen virus\r\n\r\nYou can look them up to see how relevant they are to OS X.\r\n\r\nBut when you open something in a zip, nothing gets executed - it is just a text file sitting on your disk. No binaries are in there, just the scripting language that may be in some of the pages.\r\nIn order for it to get executed, it needs to be opened and interpreted by the browser's javascript engine.\r\nThen it needs to actually apply to the OS and permissions of your particular machine.\r\nMost of the time things are written for Windows, don't know if that is the case here or not.\r\n\r\nYour chances aren't just low in the case of these files, it is literally zero, if you didn't open them in a browser - even then, it would probably still be low.\r\n\r\nNot sure what the person was talking about saying unzipping a text file could put you at threat.\r\nThat would require something actually running, and it doesn't.\r\nNothing roams your filesystem interpreting javascript on the fly.\r\nAkin to dowloading a text file with an R script in there, not running it via its interpreter, and then wondering why it isn't doing anything.\r\n\r\nAs for your disappointment at Kaggle - the worst part is how they force us to do these competitions.",
    "93713": "That's what I thought to. Just that I don't understand why my computer started acting weird after it. I don't think I actually clicked on the files so it's strange.\r\n\r\nEDIT: nevermind, that's the virus/malware type. not the file name.",
    "95747": "If you use Mac OS X, I happened to notice Spotlight would try to parse and even render HTML files. In this case, file extensions are all txt so perhaps no worries about it, but better safe then sorry, just exclude the folder from Spotlight."
  },
  "source": "meta"
}