|
Next: Avira AntiVir Question
|
| Author |
Message |
External

Since: May 18, 2007 Posts: 7
|
(Msg. 1) Posted: Fri May 18, 2007 7:46 am
Post subject: java exploit problem... Archived from groups: alt>comp>anti-virus (more info?)
|
|
|
I am sorry to bother you folks.. I have CA and am at whits end trying to
find out how to contact them for support.. hence, why I hope you can help in
the meantime...
Scans continually identify 6 infected files and Etrust doesn't do anything
about them.. quaratine, delete...
Please tell me, what is my next step?
thank you...
C:\Documents and Settings\HP_Administrator\Application
Data\Sun\Java\Deployment\cache\6.0\1\748d8a81-3bfbac0f <BaaaaBaa.class> -
Java/ByteVerify!exploit trojan. Infected.
C:\Documents and Settings\HP_Administrator\Application
Data\Sun\Java\Deployment\cache\6.0\1\748d8a81-3bfbac0f <VaaaaaaaBaa.class> -
Java/ByteVerify!exploit trojan. Infected.
C:\Documents and Settings\HP_Administrator\Application
Data\Sun\Java\Deployment\cache\6.0\1\748d8a81-3bfbac0f <Baaaaa.class> -
Java/Shinwow.BJ trojan. Infected.
C:\Documents and Settings\HP_Administrator\Application
Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\crtdcghcn.jar-53c7de81-2b53548a.zip
<BaaaaBaa.class> - Java/ByteVerify!exploit trojan. Infected.
C:\Documents and Settings\HP_Administrator\Application
Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\crtdcghcn.jar-53c7de81-2b53548a.zip
<VaaaaaaaBaa.class> - Java/ByteVerify!exploit trojan. Infected.
C:\Documents and Settings\HP_Administrator\Application
Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\crtdcghcn.jar-53c7de81-2b53548a.zip
<Baaaaa.class> - Java/Shinwow.BJ trojan. Infected.
--
B'rgds,
Vinnie >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: May 18, 2007 Posts: 7
|
(Msg. 2) Posted: Fri May 18, 2007 8:17 am
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
I think I got them... I googled, found a little bit about them... applied a
patch to XP, and deleted temporarly Java files, as well as the one crtdc...
jar file (actually 2).. all scans clean...
thanks! Hope I did it right...!
Uncle Vinnie wrote:
> I am sorry to bother you folks.. I have CA and am at whits end trying
> to find out how to contact them for support.. hence, why I hope you
> can help in the meantime...
>
> Scans continually identify 6 infected files and Etrust doesn't do
> anything about them.. quaratine, delete...
> Please tell me, what is my next step?
>
> thank you...
>
>
> C:\Documents and Settings\HP_Administrator\Application
> Data\Sun\Java\Deployment\cache\6.0\1\748d8a81-3bfbac0f
> <BaaaaBaa.class> - Java/ByteVerify!exploit trojan. Infected.
> C:\Documents and Settings\HP_Administrator\Application
> Data\Sun\Java\Deployment\cache\6.0\1\748d8a81-3bfbac0f
> <VaaaaaaaBaa.class> - Java/ByteVerify!exploit trojan. Infected.
>
> C:\Documents and Settings\HP_Administrator\Application
> Data\Sun\Java\Deployment\cache\6.0\1\748d8a81-3bfbac0f <Baaaaa.class>
> - Java/Shinwow.BJ trojan. Infected.
>
> C:\Documents and Settings\HP_Administrator\Application
> Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\crtdcghcn.jar-53c7de81-2b53548a.zip
> <BaaaaBaa.class> - Java/ByteVerify!exploit trojan. Infected.
>
> C:\Documents and Settings\HP_Administrator\Application
> Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\crtdcghcn.jar-53c7de81-2b53548a.zip
> <VaaaaaaaBaa.class> - Java/ByteVerify!exploit trojan. Infected.
>
> C:\Documents and Settings\HP_Administrator\Application
> Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\crtdcghcn.jar-53c7de81-2b53548a.zip
> <Baaaaa.class> - Java/Shinwow.BJ trojan. Infected.
--
B'rgds,
Vinnie >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: Jul 04, 2003 Posts: 1719
|
(Msg. 3) Posted: Fri May 18, 2007 9:07 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
|
|
| Back to top |
|
 |  |
External

Since: May 18, 2007 Posts: 7
|
(Msg. 4) Posted: Fri May 18, 2007 9:07 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
|
|
| Back to top |
|
 |  |
External

Since: Jul 04, 2003 Posts: 1719
|
(Msg. 5) Posted: Sat May 19, 2007 12:20 am
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
|
|
| Back to top |
|
 |  |
External

Since: May 19, 2007 Posts: 1
|
(Msg. 6) Posted: Sat May 19, 2007 10:52 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
"David H. Lipman" <DLipman~nospam~@Verizon.Net> wrote in message
news:npr3i.2211$TU1.2182@trnddc07...
> From: "Uncle Vinnie" <vinrin57 DeleteThis @optonline.not.net>
>
> | Thank you Dave...
> |
> | 1.6.01 is there.. should I delete all the others?? There are 4 folders
of
> | various 1.5 releases??
> |
>
> Remove ALL old versions from the Control Panel applet "Add/Remove
Programs" first.
>
> Then if there are remnants you can delete them manually from...
> C:\Program Files\Java
>
> But leave the latest alone; C:\Program Files\Java\jre1.6.0_01
>
>
> --
> Dave
> http://www.claymania.com/removal-trojan-adware.html
> http://www.ik-cs.com/got-a-virus.htm
>
>
Hey Dave,
Trying to remove the old versions of JAVA through the CONTROL PANEL -
ADD/REMOVE list.
Everytime I try, it wants to access the internet and install the old
versions again. Get message that version is already installed.
How do you remove the old versions? I have the new version dl'd and ready to
install.
Thanks, Dennis >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: Jul 04, 2003 Posts: 1719
|
(Msg. 7) Posted: Sun May 20, 2007 2:12 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
From: "Dennis Schmitz" <dschmitz1.DeleteThis@kc.rr.com>
| Hey Dave,
| Trying to remove the old versions of JAVA through the CONTROL PANEL -
| ADD/REMOVE list.
| Everytime I try, it wants to access the internet and install the old
| versions again. Get message that version is already installed.
| How do you remove the old versions? I have the new version dl'd and ready to
| install.
| Thanks, Dennis
Never let Sun Java auto-update. Do it manually.
Copntrol panel --> Java --> Update
Uncheck teh box for; "Check for updates auto matically"
--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: Aug 15, 2007 Posts: 3
|
(Msg. 8) Posted: Wed Aug 15, 2007 12:53 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
David and Others...
Thanks for all of the great info here. I just found two instances of the
'crtdcghcn.jar' trojan on my machine and will use your advice to clean my
machine.
Please tell tho... What do these trojan do in my system? Have I be
vulerable to password leaks or other problems? Do I need to be worried
about cancelling credit cards and bank accounts?
Thanks for your help!
shharkbait >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: Jul 04, 2003 Posts: 1562
|
(Msg. 9) Posted: Wed Aug 15, 2007 8:54 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
Shharkbait wrote:
> David and Others...
> Thanks for all of the great info here. I just found two instances of the
> 'crtdcghcn.jar' trojan on my machine and will use your advice to clean my
> machine.
>
> Please tell tho... What do these trojan do in my system? Have I be
> vulerable to password leaks or other problems? Do I need to be worried
> about cancelling credit cards and bank accounts?
it's not possible to tell from a filename (crtdcghcn.jar is the file
name of a java archive file) what you have or what it does... if your
scanner doesn't detect it then submit it to an anti-virus vendor for
analysis...
--
"it's not the right time to be sober
now the idiots have taken over
spreading like a social cancer,
is there an answer?" >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: Aug 15, 2007 Posts: 3
|
(Msg. 10) Posted: Wed Aug 15, 2007 10:57 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
"it's not possible to tell from a filename (crtdcghcn.jar is the file
name of a java archive file) what you have or what it does... if your
scanner doesn't detect it then submit it to an anti-virus vendor for
analysis..."
---------------------------------------
Thanks... In the examples I have seen in this forum and else where, a long
series of numbers and letters follows the 'crtdcghcn.jar', always a
different number sequence... I am hoping to find out if these trojans are
responsible for an excessively large amount of data downloadng into my
system.
Thanks for your input.
Shharkbait >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: Jan 15, 2006 Posts: 98
|
(Msg. 11) Posted: Thu Aug 16, 2007 6:07 am
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
Shharkbait wrote:
> "it's not possible to tell from a filename (crtdcghcn.jar is the file
> name of a java archive file) what you have or what it does... if your
> scanner doesn't detect it then submit it to an anti-virus vendor for
> analysis..."
> ---------------------------------------
> Thanks... In the examples I have seen in this forum and else where, a long
> series of numbers and letters follows the 'crtdcghcn.jar', always a
> different number sequence... I am hoping to find out if these trojans are
> responsible for an excessively large amount of data downloadng into my
> system.
>
You are trying to find out what that is, right? Nobody needs a child
pornography charge. >> Stay informed about: java exploit problem... |
|
| Back to top |
|
 |  |
External

Since: Jul 04, 2003 Posts: 1719
|
(Msg. 12) Posted: Sun Aug 19, 2007 4:26 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
|
|
| Back to top |
|
 |  |
External

Since: Aug 15, 2007 Posts: 3
|
(Msg. 13) Posted: Fri Aug 24, 2007 3:00 pm
Post subject: Re: java exploit problem... [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
|
|
|
|
|
| Back to top |
|
 |  |