1. Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

[WARNING] Read this if you have Java

Discussion in 'General Software' started by MxPhenom 216, Aug 1, 2012.

  1. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    Last night after play some DayZ with erocker, ducky, Haru and Alex logged out and and exitted out of all my programs to shut down for the night and down by the clock Java icon came up like it was updating.....................

    Well it wasn't updating it was actually installing Live Security Platinum a Hoax anti virus program that throws false positives out like you have a viruses and such. It also puts a proxy on your internet and disables all exe programs so nothing works.

    There are a ton of ways to get rid of it, but it comes down to finding the one that will work well.

    Just thought id let everyone know. There is definitely a Java exploit going around and its nasty.

    Once I figure out how to get rid of it I will let you all know.
    Last edited: Aug 1, 2012
  2. stinger608

    stinger608 Dedicated TPU Cruncher & Folder

    Joined:
    Nov 11, 2008
    Messages:
    7,071 (3.34/day)
    Thanks Received:
    3,468
    Location:
    Wyoming
    yea, keep us updated man!!!
    Crunching for Team TPU More than 25k PPD
  3. 95Viper

    95Viper

    Joined:
    Oct 12, 2008
    Messages:
    4,341 (2.02/day)
    Thanks Received:
    1,560
    Location:
    στο άλφα έως ωμέγα
    Last edited: Aug 2, 2012
  4. Jstn7477

    Jstn7477

    Joined:
    Aug 30, 2009
    Messages:
    3,830 (2.10/day)
    Thanks Received:
    1,518
    Location:
    Sarasota, Florida, USA
    lol, "Trojan.LameShield"

    Hope nobody else gets this as it does sound rather annoying to remove (like most fake AV programs).
    Crunching for Team TPU More than 25k PPD
  5. LAN_deRf_HA

    LAN_deRf_HA

    Joined:
    Apr 4, 2008
    Messages:
    4,525 (1.93/day)
    Thanks Received:
    932
    This seems similar to the thousand and one variants of fake security center infections. Malwarebytes in safemode usually get's rid of this stuff but the damage can remain. Might need to use system restore, and you should always run ccleaner's registry repair afterwards.
  6. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    I think im just going to be re imaging my system. this thing wrecks havoc on Windows main service.exe files so damage will always be there.
  7. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    its going to be a pain, but its what I got to do to for peace of mind that my system is healthy. no messed up files.
  8. TheMailMan78

    TheMailMan78 Big Member

    Joined:
    Jun 3, 2007
    Messages:
    20,936 (7.91/day)
    Thanks Received:
    7,509
    You went somewhere or downloaded something you shouldn't have. Only go to safe sites and stay off of torrents. I know you hate anti-virus programs but now you see why MS built one into win 8.
    Sir B. Fannybottom says thanks.
  9. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    Yeah downloaded and installed Java a long time ago lol. the only thing ive downloaded recently and installed was DayZ commander.
  10. TheMailMan78

    TheMailMan78 Big Member

    Joined:
    Jun 3, 2007
    Messages:
    20,936 (7.91/day)
    Thanks Received:
    7,509
    Java doesn't just randomly download a virus. You have to visited an infected site or installed something.
  11. Sir B. Fannybottom

    Sir B. Fannybottom

    Joined:
    Jun 4, 2011
    Messages:
    2,878 (2.43/day)
    Thanks Received:
    1,157
    Just stop being an emo and just use an anti virus, loosing 10mbs of ram is better than needing to reformat every 6 months.
    Chevalr1c says thanks.
  12. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    Like I said the last thing I installed with DayZ commander, and I only go to facebook, newegg, TPU, OCN, and then pinkbike a big mountain bike forum.
  13. TheMailMan78

    TheMailMan78 Big Member

    Joined:
    Jun 3, 2007
    Messages:
    20,936 (7.91/day)
    Thanks Received:
    7,509
    Facebook could be it right there. Also I once went to Hardware Canucks and just clicking on the forums I was hit with a Java exploit from one of their advertisers. JS.Black Hole from what I remember that downloads things like fake virus scanners. Most JS exploits come from shady advertisers and there is ZERO you can do about it......except keeping MSE updated.


    Edit: It wasnt JS. Black Hole it was VirTool:JS/Obfuscator.BN.
    http://www.microsoft.com/security/p...=VirTool:JS/Obfuscator.BN&threatid=2147646584

    I even made a thread about it here.............over a year ago.
    http://www.techpowerup.com/forums/showthread.php?t=148036
    Last edited: Aug 2, 2012
    stinger608 says thanks.
  14. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    yeah this stuff sucks ass. Last night on TS i was talking about this stuff with Dave and Alex and they were like you are becoming Mailman with virus paranoia
  15. TheMailMan78

    TheMailMan78 Big Member

    Joined:
    Jun 3, 2007
    Messages:
    20,936 (7.91/day)
    Thanks Received:
    7,509
    Its only paranoia if no one is out to get you........they are.
  16. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    So i got a USB flash drive. Going to wipe my system clean and install Windows 8 :)
  17. brandonwh64

    brandonwh64 Addicted to Bacon and StarCrunches!!!

    Joined:
    Sep 6, 2009
    Messages:
    18,555 (10.20/day)
    Thanks Received:
    6,070
    Location:
    Chatsworth, GA
    I use AVG and it has stopped many of the auto installer java/flash scripts that are in FB and other websites. Its virtually quite and never bugs me about anything but detecting possible harm.
    Crunching for Team TPU
  18. MxPhenom 216

    MxPhenom 216 Corsair Fanboy

    Joined:
    Aug 31, 2010
    Messages:
    9,925 (6.79/day)
    Thanks Received:
    2,205
    Location:
    Seattle, WA
    dude AVG went to shit after the last few years.

    Update:

    So I was not able to install windows 8! My sound card doesn't have Windows 8 drivers, and the WIndows 7 ones don't work. Back to Windows 7. Good to have my rig back :)
  19. brandonwh64

    brandonwh64 Addicted to Bacon and StarCrunches!!!

    Joined:
    Sep 6, 2009
    Messages:
    18,555 (10.20/day)
    Thanks Received:
    6,070
    Location:
    Chatsworth, GA
    I have never had an issue out of it???? Seems to be protecting me just fine. Same install of windows 7 for over 2 years
    Crunching for Team TPU
  20. OneMoar

    OneMoar

    Joined:
    Apr 9, 2010
    Messages:
    3,075 (1.92/day)
    Thanks Received:
    693
    Location:
    Rochester area
    I quit using AV ages ago so long as you are not a idiot you will NEVER have a problem
  21. TheMailMan78

    TheMailMan78 Big Member

    Joined:
    Jun 3, 2007
    Messages:
    20,936 (7.91/day)
    Thanks Received:
    7,509
    Yup. An idiot that will never know hes infected. So sure. You never have a problem because you have no way to tell. Its like having AIDS but saying your clean because you were never tested.
  22. OneMoar

    OneMoar

    Joined:
    Apr 9, 2010
    Messages:
    3,075 (1.92/day)
    Thanks Received:
    693
    Location:
    Rochester area
    no way to tell ? Orly
    I take it you don't monitor your running processes or know how you're machine behaves under normal use then ... I don't need some software to tell me that something is running on my machine that should't be
  23. TheMailMan78

    TheMailMan78 Big Member

    Joined:
    Jun 3, 2007
    Messages:
    20,936 (7.91/day)
    Thanks Received:
    7,509
    Yes because all malware shows up under your task manager.
    MxPhenom 216 says thanks.
  24. OneMoar

    OneMoar

    Joined:
    Apr 9, 2010
    Messages:
    3,075 (1.92/day)
    Thanks Received:
    693
    Location:
    Rochester area
    I am not gonna argue with you you are wrong just because you are not a
    s good as I am and are not capable of understanding it on the same level as me does not make you correct ... or even close. I have worked on plenty of AV infected machines and have very rarely resorted to having to use a AV scanner to resolve the issue if you belive there exists a single malware or virus or rootkit that can go undetected with out some crappy bloated Av software telling you that my computer should not be establishing a connection on port 31337 to some ip in china well then I feel sorry for you or need to have it tell me that i should not have processes attempting to hook into system services with strange handles
    you have a ways to go before you get to my level :roll:
  25. TheMailMan78

    TheMailMan78 Big Member

    Joined:
    Jun 3, 2007
    Messages:
    20,936 (7.91/day)
    Thanks Received:
    7,509
    I guess ignorance is bliss. Carry on.
    MxPhenom 216 says thanks.

Currently Active Users Viewing This Thread: 1 (0 members and 1 guest)

Share This Page