AntiSpy\Java Horror 2

A

Andries

My system survived the latest CWS infection because I use
a layered defence: When MS Antispy failed, Spybot Search
and Destroy picked it up and removed it faultlessly.
I run Norton AntiVirus, Ad-Aware, Spybot Search and
Destroy, Spyware Blaster, SpywareGuard, Bazooka, MS
AntiSpy -- all of them together and without any
conflicts -- plus a 45 000 line allmost dupeless HOSTS
file blocking almost all banner and ad servers and all
known malware sites, including about 1500 sites infected
with CWS. My eDexter pacfile contains about 300 lines.
Yet it got me. It's that damn outdated javascript.
CWS exploits shortcomings in all javascript versions
below version 3810. That's what it feeds on and that's
mainly how it survives and spreads. By not updating the
javascript of all users Microsoft is feeding a monster
that criples its own operating system.
What is Microsoft, spywarehunters, privacy protectors
and legislators doing to wipe this scum off the internet?
The company paying the authors of CWS is well known and
the sites subscribing to the CWS "service" is published
on several anti-malware sites. The owners subscribing to
the CWS "service" knows exactly how CWS works and pay
willing for it. The money trial is about a mile wide.
* They blatantly invade your privacy and allow code to be
installed on your computer without your permission.
That's illegal and punishable, both in terms of the
people who originate and spread the code and in terms of
the people who finance the illegal operation and share
the illegal profits.
* The code causes damage and severely disrupts normal
functioning of Windows systems. That's illegal and
punishable.
Yet nobody is doing anything in terms of legal action.
I repeat. Check which javascript version you are running
on your machine.
Click Start
Click Run
Enter the following:
cmd jview
Click OK.
The last four digits in the Version line indicates the
java version.
If it's anything below 3810 scream.
You're one of the Windows owners Microsoft is leaving up
the creek without a paddle.
 
J

John

I typed in jview and nothing happened, not a recognised command...

Where should this execute from?
 
I

injuryfree

I down loaded the microsoft anti spyware it found over a
thousand infected files and registry keys. During the
process of determining the recommended fixes the system
stopped responding. (This little process took over an
hour, and I have spent another couple of hours trying to
figure out how to get it running again) I had to start
over. I could not run spyware again and I have
uninstalled the program.

PS
I checked my java script and it is at 2600. I don't know
what that means, but who do I scream to??
 
S

Steve Wechsler [MVP]

PS
This was my response to Andrie's first thread on this subject :

" Andries,

There is NO MSJVM installed on an XP SP2 system.
http://www.microsoft.com/mscorp/java/

Go to Sun and download their latest JRE : JRE 5.0 Update 1
http://javashoplm.sun.com/ECom/docs...5.0_01-oth-JPR&SiteId=JSC&TransactionId=noreg

Get the Windows Offline Installation package, save it, close IE, then
install it. "

As to your issue, to fix that many infected files and keys just doing
one scan will cause issues with any program. Best method for a multitude
of infected files/reg keys is to stop the scan at 100 objects and then
remove them. Resume scanning again.
It's tedious but it is the most efficient method for automated file/reg
key removal when there is an overwhelming infestation.


Steve Wechsler (akaMowGreen)
MVP Windows Server
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top