Latest Posts:
flame11-24-2024 Three Word Post.....The Next Generation.... (Rep.#19,435) from: BigDogflameflame11-24-2024 The Totally Useless Thread IV (Rep.#165) from: BigDogflameflame11-24-2024 Brrrr (Rep.#14,944) from: BigDogflameflame11-23-2024 Gas price in your area (Rep.#7,276) from: stingrayflameflame11-23-2024 Not boat related (Rep.#42) from: stingrayflame
No members are browsing this topic
Forum Led by: BigDog, RiverLiver

Pages: [1] 2 3 

[ Track this topic :: Email this topic :: Print this topic ]
add a reply to this topic create a new topic create a new poll
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 21 2010,8:22 pm Post # 1 see this member send this member a private message  quote this post in reply

Here is the info so far.....

I detected it this morning and killed it this afternoon.  Just FYI...

It's not bad by itself, but it opens your computer up to some real bad guys......


TrojanDownloader:Java/Rexec.B  

Encyclopedia entry
Published: Sep 21, 2010

Aliases
Not available

Alert Level:
Severe

Antimalware protection details
Microsoft recommends that you download the latest definitions to get protected.
Detection initially created:
Definition: 1.91.253.0
Released: Sep 21, 2010  



--------------------------------------------------------------------------------


Summary
This threat is classified as a Trojan - Downloader. A downloader trojan accesses remote websites in an attempt to download and install malicious or potentially unwanted software. Some downloader trojans target specific files on remote websites while others may target a specific URL that points to a website containing exploit code that may allow the site to automatically download and software or malicious code on vulnerable systems. This threat is detected by the Microsoft antivirus engine. Technical details are not currently available.


Edited by Fragile Magic on Sep. 21 2010,8:24 pm




Back to top
| Member # 1952 | Joined: 12-29-2005 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 22 2010,5:52 am Post # 2 see this member send this member a private message  quote this post in reply

Thanks for the heads up, I'll have to watch for it!.. :good

Definitions
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
DirtySquirtyMale Offline
Sagittarius
HDF Supporter
Boy named Sue
10,000 post flame1,000 post flame1,000 post flame100 post flame100 post flame
Ventura, CA
Posts: 12,202
APPD 1.94
Post Rank: 6
Post Icon Posted: Sep. 22 2010,6:22 am Post # 3 see this member send this member a private message  quote this post in reply

Ditto.... :good


"It seemed like a hell of an idea at the time".
Back to top
website  | Member # 3157 | Joined: 9-06-2007 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 23 2010,6:00 am Post # 4 see this member send this member a private message  quote this post in reply

Nothing yet!.. :comp
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
Carrera EliteMale Offline
Libra
HDF Supporter

10,000 post flame10,000 post flame10,000 post flame10,000 post flame1,000 post flame1,000 post flame1,000 post flame1,000 post flame100 post flame
Glendale,AZ
Posts: 44,127
APPD 5.50
Post Rank: 2
1990 Carrera 23.5 Classic
Post Icon Posted: Sep. 23 2010,12:50 pm Post # 5 see this member send this member a private message  quote this post in reply

Nice.... :beat  :break


Sarcasim, Just one more thing that I offer for free!!
I've Reached The Age Where Happy Hour Is A Nap!!

WWW.StormPokerRuns.Com

Back to top
| Member # 8 | Joined: 12-04-2002 |
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 23 2010,5:15 pm Post # 6 see this member send this member a private message  quote this post in reply

I have received several emails pitching drugs that I KNOW the sender didnt intend.... thats one of the symptoms this thing gives out.....it hiJacks your mailbox and sends ads to all your friends and family!!




Back to top
| Member # 1952 | Joined: 12-29-2005 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 24 2010,5:41 am Post # 7 see this member send this member a private message  quote this post in reply

Sounds like an old one from quite a few years back!.. :stupid
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
DirtySquirtyMale Offline
Sagittarius
HDF Supporter
Boy named Sue
10,000 post flame1,000 post flame1,000 post flame100 post flame100 post flame
Ventura, CA
Posts: 12,202
APPD 1.94
Post Rank: 6
Post Icon Posted: Sep. 24 2010,6:09 am Post # 8 see this member send this member a private message  quote this post in reply

Quote (Fragile Magic @ Sep. 23 2010,5:15 pm)
I have received several emails pitching drugs that I KNOW the sender didnt intend.... thats one of the symptoms this thing gives out.....it hiJacks your mailbox and sends ads to all your friends and family!!

Drugs, you say?? Hmmmmm............ :D  :laugh


"It seemed like a hell of an idea at the time".
Back to top
website  | Member # 3157 | Joined: 9-06-2007 |
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 24 2010,12:36 pm Post # 9 see this member send this member a private message  quote this post in reply

Quote (GoFastRacer @ Sep. 24 2010,5:41 am)
Sounds like an old one from quite a few years back!.. :stupid

Indeed, but with a new evil twist..... :angry

It allows those old tricksters in as well as the fake virus scans that wont let run your anti-virus programs or your browser to function normally.....

And other stuff too...... :banghead


Edited by Fragile Magic on Sep. 24 2010,12:40 pm




Back to top
| Member # 1952 | Joined: 12-29-2005 |
GlassManMale Offline
Pisces
HDF Silver Supporter
Redondo Crew
5,000 post flame500 post flame100 post flame100 post flame
Redondo Beach, California, USA
Posts: 5,761
APPD 0.77
Post Rank: 13
Post Icon Posted: Sep. 24 2010,1:23 pm Post # 10 see this member send this member a private message  quote this post in reply

Thanks !

I'll have to run right out and get that!  :good


It's a fact of Life:

After Monday and Tuesday, even the Calendar says : WTF .......
Back to top
| Member # 617 | Joined: 4-29-2004 |
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 24 2010,9:42 pm Post # 11 see this member send this member a private message  quote this post in reply

Here's the software that found it...

Microsoft Security Essentials

AVG missed it, as did Norten....... And Malwarebytes.....




Back to top
| Member # 1952 | Joined: 12-29-2005 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 25 2010,5:59 am Post # 12 see this member send this member a private message  quote this post in reply

Quote (Fragile Magic @ Sep. 24 2010,12:36 pm)
Quote (GoFastRacer @ Sep. 24 2010,5:41 am)
Sounds like an old one from quite a few years back!.. :stupid

Indeed, but with a new evil twist..... :angry

It allows those old tricksters in as well as the fake virus scans that wont let run your anti-virus programs or your browser to function normally.....

And other stuff too...... :banghead

Still have to open a file to let it in though, right??.. :stupid
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 25 2010,6:03 am Post # 13 see this member send this member a private message  quote this post in reply

Quote (Fragile Magic @ Sep. 24 2010,9:42 pm)
Here's the software that found it...

Microsoft Security Essentials

AVG missed it, as did Norten....... And Malwarebytes.....

Thanks for the link, I'll have to try it. I use Avast but so far I haven't got any bogus e-mails yet!.. :stupid
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 25 2010,1:42 pm Post # 14 see this member send this member a private message  quote this post in reply

Quote (GoFastRacer @ Sep. 25 2010,5:59 am)
Quote (Fragile Magic @ Sep. 24 2010,12:36 pm)
Quote (GoFastRacer @ Sep. 24 2010,5:41 am)
Sounds like an old one from quite a few years back!.. :stupid

Indeed, but with a new evil twist..... :angry

It allows those old tricksters in as well as the fake virus scans that wont let run your anti-virus programs or your browser to function normally.....

And other stuff too...... :banghead

Still have to open a file to let it in though, right??.. :stupid

Yep, you either have to open a file, or click on a website in a browser that is infected......

The more crafty infections come from a dialog box that says "an important update for JAVA is now available, please update your JAVA to assure continued functionality....blah blah blah......" Then it asks you to install an update for JAVA.... That's how I got it....  :pissed




Back to top
| Member # 1952 | Joined: 12-29-2005 |
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 25 2010,1:44 pm Post # 15 see this member send this member a private message  quote this post in reply

Quote (GoFastRacer @ Sep. 25 2010,6:03 am)
Quote (Fragile Magic @ Sep. 24 2010,9:42 pm)
Here's the software that found it...

Microsoft Security Essentials

AVG missed it, as did Norten....... And Malwarebytes.....

Thanks for the link, I'll have to try it. I use Avast but so far I haven't got any bogus e-mails yet!.. :stupid

The bogus emails are from folks in YOUR address book, that the malware has found and infected, and sent back to you from THEIR address book.....

If you have not received any bogus emails from your contacts, you are probably safe......  :good




Back to top
| Member # 1952 | Joined: 12-29-2005 |
lawbreaker2Male Offline
Virgo

Boat Racer
5,000 post flame100 post flame100 post flame100 post flame100 post flame
ohio
Posts: 5,429
APPD 0.77
Post Rank: 15
Post Icon Posted: Sep. 25 2010,2:06 pm Post # 16 see this member send this member a private message  quote this post in reply

I think this is what I have. I can't do anything, can't even get online now, so now what. any clue's :confused


Back to top
| Member # 1668 | Joined: 8-07-2005 |
shuemanMale Offline
Libra
HDF Gold Supporter
Born To Drive...
10,000 post flame5,000 post flame1,000 post flame1,000 post flame100 post flame100 post flame
Alta Loma CA
Posts: 17,228
APPD 2.27
Post Rank: 4
NADA
Post Icon Posted: Sep. 25 2010,7:46 pm Post # 17 see this member send this member a private message  quote this post in reply

We got hit by a virus at school this past Thu-Fri... :break    Our protection package shuts down the network card and each computer has to be checked, then manually reset... :eek

With over 150 PC's in the building, had to put in some long hours getting everything back "on-line".

Hate them fockers... :flamed  :guns  :pissed  :beat
Back to top
| Member # 376 | Joined: 2-01-2004 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 26 2010,6:00 am Post # 18 see this member send this member a private message  quote this post in reply

Quote (lawbreaker2 @ Sep. 25 2010,2:06 pm)
I think this is what I have. I can't do anything, can't even get online now, so now what. any clue's :confused

Try doing a system restore to a date when it was working good, that fixes it a lot of times!..
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 26 2010,6:05 am Post # 19 see this member send this member a private message  quote this post in reply

Quote (Fragile Magic @ Sep. 25 2010,1:44 pm)
Quote (GoFastRacer @ Sep. 25 2010,6:03 am)
Quote (Fragile Magic @ Sep. 24 2010,9:42 pm)
Here's the software that found it...

Microsoft Security Essentials

AVG missed it, as did Norten....... And Malwarebytes.....

Thanks for the link, I'll have to try it. I use Avast but so far I haven't got any bogus e-mails yet!.. :stupid

The bogus emails are from folks in YOUR address book, that the malware has found and infected, and sent back to you from THEIR address book.....

If you have not received any bogus emails from your contacts, you are probably safe......  :good

Nothing like that yet on any of my machines so far, I'm always on the lookout for strange e-mails though!.. :good
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
GoFastRacerMale Offline
HDF Supporter
V-Driver For Life!
50,000 post flame10,000 post flame1,000 post flame1,000 post flame500 post flame100 post flame100 post flame
Big River, Ca
Posts: 62,729
APPD 7.90
Post Rank: 1
Spectra20
Post Icon Posted: Sep. 26 2010,6:15 am Post # 20 see this member send this member a private message  quote this post in reply

Quote (Fragile Magic @ Sep. 25 2010,1:42 pm)
Quote (GoFastRacer @ Sep. 25 2010,5:59 am)
Quote (Fragile Magic @ Sep. 24 2010,12:36 pm)
Quote (GoFastRacer @ Sep. 24 2010,5:41 am)
Sounds like an old one from quite a few years back!.. :stupid

Indeed, but with a new evil twist..... :angry

It allows those old tricksters in as well as the fake virus scans that wont let run your anti-virus programs or your browser to function normally.....

And other stuff too...... :banghead

Still have to open a file to let it in though, right??.. :stupid

Yep, you either have to open a file, or click on a website in a browser that is infected......

The more crafty infections come from a dialog box that says "an important update for JAVA is now available, please update your JAVA to assure continued functionality....blah blah blah......" Then it asks you to install an update for JAVA.... That's how I got it....  :pissed

Kinda figured that, anytime I get something strange I send it to my junker and open it up just in case, I've got some interesting stuff before!. :laugh

I update Java all the time but never get a dialog box like that, all I ever get is an icon that pops up in the system tray and it stays there until I click on it, and all it says is there is a new version and shows the number and warns to only download genuine Java, in fact I just updated it on my laptop yesterday!..  :good
Back to top
website  | Member # 101 | Joined: 3-03-2003 |
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 26 2010,12:12 pm Post # 21 see this member send this member a private message  quote this post in reply

Quote (GoFastRacer @ Sep. 26 2010,6:15 am)
Quote (Fragile Magic @ Sep. 25 2010,1:42 pm)
Quote (GoFastRacer @ Sep. 25 2010,5:59 am)
Quote (Fragile Magic @ Sep. 24 2010,12:36 pm)
Quote (GoFastRacer @ Sep. 24 2010,5:41 am)
Sounds like an old one from quite a few years back!.. :stupid

Indeed, but with a new evil twist..... :angry

It allows those old tricksters in as well as the fake virus scans that wont let run your anti-virus programs or your browser to function normally.....

And other stuff too...... :banghead

Still have to open a file to let it in though, right??.. :stupid

Yep, you either have to open a file, or click on a website in a browser that is infected......

The more crafty infections come from a dialog box that says "an important update for JAVA is now available, please update your JAVA to assure continued functionality....blah blah blah......" Then it asks you to install an update for JAVA.... That's how I got it....  :pissed

Kinda figured that, anytime I get something strange I send it to my junker and open it up just in case, I've got some interesting stuff before!. :laugh

I update Java all the time but never get a dialog box like that, all I ever get is an icon that pops up in the system tray and it stays there until I click on it, and all it says is there is a new version and shows the number and warns to only download genuine Java, in fact I just updated it on my laptop yesterday!..  :good

So NOW you tell me!  Where were you last week when I updated the infected Java virus thing??

:laugh




Back to top
| Member # 1952 | Joined: 12-29-2005 |
Carrera EliteMale Offline
Libra
HDF Supporter

10,000 post flame10,000 post flame10,000 post flame10,000 post flame1,000 post flame1,000 post flame1,000 post flame1,000 post flame100 post flame
Glendale,AZ
Posts: 44,127
APPD 5.50
Post Rank: 2
1990 Carrera 23.5 Classic
Post Icon Posted: Sep. 26 2010,2:41 pm Post # 22 see this member send this member a private message  quote this post in reply

A Coffee Virus?? :stupid  :laugh  :D


Sarcasim, Just one more thing that I offer for free!!
I've Reached The Age Where Happy Hour Is A Nap!!

WWW.StormPokerRuns.Com

Back to top
| Member # 8 | Joined: 12-04-2002 |
DirtySquirtyMale Offline
Sagittarius
HDF Supporter
Boy named Sue
10,000 post flame1,000 post flame1,000 post flame100 post flame100 post flame
Ventura, CA
Posts: 12,202
APPD 1.94
Post Rank: 6
Post Icon Posted: Sep. 26 2010,3:55 pm Post # 23 see this member send this member a private message  quote this post in reply

Quote (Carrera Elite @ Sep. 26 2010,2:41 pm)
A Coffee Virus?? :stupid  :laugh  :D

Coffee is of the Devil!!  :good


"It seemed like a hell of an idea at the time".
Back to top
website  | Member # 3157 | Joined: 9-06-2007 |
Carrera EliteMale Offline
Libra
HDF Supporter

10,000 post flame10,000 post flame10,000 post flame10,000 post flame1,000 post flame1,000 post flame1,000 post flame1,000 post flame100 post flame
Glendale,AZ
Posts: 44,127
APPD 5.50
Post Rank: 2
1990 Carrera 23.5 Classic
Post Icon Posted: Sep. 26 2010,4:24 pm Post # 24 see this member send this member a private message  quote this post in reply

That Is A True Statement!!


Sarcasim, Just one more thing that I offer for free!!
I've Reached The Age Where Happy Hour Is A Nap!!

WWW.StormPokerRuns.Com

Back to top
| Member # 8 | Joined: 12-04-2002 |
Fragile MagicMale Offline
Capricorn
HDF Supporter
Goat Roper
5,000 post flame500 post flame100 post flame
Halfway between Margaritaville and Detox....
Posts: 5,644
APPD 0.82
Post Rank: 14
2005 Yamaha AR230HO
Post Icon Posted: Sep. 26 2010,10:28 pm Post # 25 see this member send this member a private message  quote this post in reply

Quote (lawbreaker2 @ Sep. 25 2010,2:06 pm)
I think this is what I have. I can't do anything, can't even get online now, so now what. any clue's :confused

If nothing else works, you can re-install your system files from either your backup discs or your recovery drive...

I completely wipe, reformat, and reinstall to factory new status every year, sometimes twice.....

Just make sure you have everything important backed up first.. :good

Just general use of your computer loads it up with junk and slows it down over time... Sometimes the format and reinstall option can be faster than trying to troubleshoot and remove a deeply embedded virus..... :banghead

Good Luck!!

:beer




Back to top
| Member # 1952 | Joined: 12-29-2005 |
62 replies since Sep. 21 2010,8:22 pm < Next Oldest | Next Newest >
Pages: [1] 2 3 

[ Track this topic :: Email this topic :: Print this topic ]
add a reply to this topic create a new topic create a new poll

navbarlogo
The Colorado River WebRing
‹ Prev | Hub | Like | Join | Surprise | Next ›

Please help keep HDF free. If you enjoy this site, feel free to make a donation to keep it running. THANKS!