Jump to content

Recommended Posts

Hi,

Windows security scanner, came up with an instance of this malware on my pc. It is not mentioned in any of the forum threads, and I was wondering is malwarebytes was either aware of it, or its anti-malware program removed it.

Avast.com also does not mention the malware.

The security scanner states that the malware was first identified on 30/3/2011.

Looking forward to any advise

thanks

Link to post
Share on other sites

  • Root Admin

My guess is that you probably have one or more older versions of Java on your system.

Please run the following scanner and post back the logs and we'll see what we can find.

Download
DDS
and save it to your desktop

Disable any script blocker if your Anti-Virus/Anti-Malware has it.

Once downloaded you can disconnect from the Internet and disable your Ant-Virus temporarily if needed.

Then double click
dds.scr
to run the tool.

When done, the
DDS.txt
will open.

Click Yes at the next prompt for Optional Scan.


    When done, DDS will open two (2) logs:

  1. DDS.txt

  2. Attach.txt

  • Save both reports to your desktop
  • Please include the following logs in your next reply:
    DDS.txt
    and
    Attach.txt

Links about it:

Microsoft - Exploit:Java/CVE-2010-0840.CA

Common Vulnerabilities and Exposures

Link to post
Share on other sites

Hi, I refer to my post of 12/5 and response by Forum Deity, which I received no advise about.

Unfortunately the post was then closed (I did get advise then of the post).

Notwithstanding, I now attach the files requested via DDS and look forward to your response (and the emailed advise of this).

thanks

lethal1

Attach.rar

DDS.txt

Link to post
Share on other sites

  • Root Admin

Well I don't see anything obvious to indicate an ongoing infection. In fact you have more security apps there than most so aside from a slow computer due to an overload of security software you should be okay.

The Java though is out of date and possibly may be where, why you got an alert.

I would uninstall the following programs.

Java Auto Updater

Java™ 6 Update 21

Then reboot the computer and then run the following TFC cleaner as well and reboot once again.

Please use TFC to clear temporary files:

Run TFC by OldTimer to clear temporary files:

  • Please download TFC from here or here and save it to your desktop.
  • Close any open programs and Internet browsers.
  • Double click TFC.exe to run it and once it opens click on the Start button on the lower left of the program to allow it to begin cleaning.
  • Please be patient as clearing out temp files may take a while.
  • Once it completes you may be prompted to restart your computer, please do so.
  • Once it's finished you may delete TFC.exe from your desktop or save it for later use for the cleaning of temporary files.

Then after your reboot please download and install the latest version of Java from here which is currently Version 6 Update 25.

Then update MBAM and do a Quick Scan and let us know if it finds anything. Also update your Anti-Virus if it's not already and scan with it and let us know if it finds anything.

The following peer 2 peer software apps though useful at times can also be a source of infection so you really need to be careful with using them.

Link to post
Share on other sites

Hi Forum Deity,

Thansk for the response(s).

Once again i did not get an emailed advise of your post of 18/5, only the follow up today.

Frustrating.

I thank you for the advise and will post back with the results (once 'digested' and carried out).

As you mentioned MS updates, I might add that I do have an ongoing issue with MS updates not being able to be installed as well as a couple of IE favourites issues (orgainsiation), and recently the occassional 'blue screen crash' (once or twice a week). Perhaps a reinstall of win xp is also on the cards......

Notwithstanding will run and install as you suggest, and come back.

regards

lethal1

Link to post
Share on other sites

Hi,

Thanks for the link Forum Deity (Ron?).

Prior experience says that repairs arent always either straight forward OR successful.

I have completed the process, rescanned with malwarebytes (found nothing), complete scan with avast(they note and do not scan archives, whether or not password protected). Reinstalled the latest Java & rescanned using the updated microsoft safety/security scanner and no longer have the 'Exploit:Java/CVE-2010-0840.CA' identified. I do however continue to have something called 'open candy' which other forums (including the frostwire one) state may be a false positive. I have attached the results of this scan.

Regarding your comment on having more security apps than most...is there a problem (besides being slightly slower) using multiple spyware apps? I certainly would not run more than one AV at a time....

I have done a lot of research and tried quite a few and found the anti-spyware I have (superantispyware, spyware terminator, malwarevytes and stinger) to be the most effective.

Would be interested in your position on this and these.

The TFC app was great. Even though I use ccleaner (some call it crap cleaner) everyday, this one found a fair bit more...and was quite quick. I have also downloaded and run the Secunia PSI app, and it found that shockwave player was out of date, and also identified the microsoft updates issue I mentioned earlier (focusing on .Net framework updates I am unable to install).

Thanks for your advise to date, and looking forward to hearing from you (hopefully I get the advise & soon).

regards

lethal1

safety scanner results.doc

Link to post
Share on other sites

  • Root Admin

Please review the following post about OpenCandy and at this time you'll need to make up your own mind.

As for .NET installation issue you can probably avail yourself to Microsoft support on that for Free, at least it's worth trying.

Error installing .NET

Error installing .Net 3.0: Microsoft .NET Framework 3.0 has encountered a problem during setup.

Link to post
Share on other sites

  • 2 weeks later...
Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.