This is a read-only archive. No new posts or registrations. Privacy Page
Software

Virus question

11 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hi there, I have CA AntiVirus loaded on my computer and recently, it just told me something was infected…..when there are infections, does CA AntiVirus fix the infections or is it there simply to tell me the infections are there and I have to fix them on my own? Thank you very much
The CA AntiVirus default settings are probably to "quarantine" or "remove" the offender that is identified.
However, CA AntiVirus program settings can probably be adjusted by the user.
Check your settings.

Your problem description ("it just told me something was infected") is too vague to recognize what the infected item actually was. And without additional information, it would be impossible to tell you for certain that everything is all good now.

AntiVirus Products detect a range of Malware that is primarily of the Virus type, but will sometimes detect in the range a Spyware/Trojan infections as well. If the item detected was outside of the primary range of the CA tool, it "might" have detected and alerted you to the offending item, but without taking any remedial action.

That's why we recommend a "layered" defense with Firewall, AntiVirus, AntiSpyware, Blockers, and Host Files.

AntiMalware products cannot insure against a user's deliberate action of "downloading" files, but rather they "alert" the user if a malicious component is identified in the download (sometimes only after the fact). Being careful about what you download and install is your first/best protection. However, many online offers and attractive utilities come "bundled" with Spyware components. The owner/user may "want" the "attractive offer" and not realize that it comes with infectious items.

If it were my machine, I'd run a few of the competent "online scans" to double-check my security.
Looking at your Nov 2006 HJT thread, I see that you've used some of the following in the past:
TrendMircro's HouseCall
Panda Online Scan
Kapersky's Online Scan

Be sure that you also have one or more competent AntiSpyware application.
I recommend having both of the following:
(free version) AVG AntiSpyware
(free version) Spybot Search & Destroy

Also, it would do you well to be certain that you keep your XP operating system updated with the most recent critical updates and patches.

Have a look here for additional information:
http://forums.tomcoyote.org/index.php?showtopic=48151

Best Regards
Thanks for your help I have downloaded and run AVG Anti-Spyware…..However, when I run my CA Anti-Virus, it says there are 4 infections, yet even though I have checked "clean - quarantine" as an option, it won't do so for some reason would you suggest that I post a HJT log? I have been careless of late on my PC (dumb) and I'm now worried something may have gotten in my system thanks for your help
Hi Jayfan41, OK, your CA AntiVirus reports 4 items infected. CA AntiVirus probably then gives you an option to "View Report" or "View Log". Click on the View Report or View Log option – (may be slightly different wording/term for Log or Report) Then Copy/Paste that Report/Log information into a reply here in this thread. Possiblilities: 1. CA AntiVirus may be detecting "legitimate" entries from another security utility you have installed. 2. CA AntiVirus may be detecting infected items that are locked away in your System Restore (items in your Restore Points cannot harm your machine, but continue to be a "risk" in the event that you use that particular Restore Point in the future to Restore your machine to prior functioning) 3. CA AntiVirus may be detecting infected items that it is unable to remove, clean, quarantine, or fix. (In this third case, we will probably bump you over to the HJT Forum for expert advice.) — We'll be able to give you a more specific answer after you Post the Report/Log from your CA AntiVirus. Note: This OCP Forum does not "generally" address malware infections, since the folks over in HJT Forums are better trained to address such matters. However, your question here in OCP is legitimate and welcome, and we may be able to fix you up, without referring to HJT Forum and the wait of a few days in that occasionally occurs in that busy Forum. Best Regards Does your username suggest that you are a Toronto Fan? :thumbup:
Thanks for your reply not such a Blue Jay fan anymore…..used to be when they had Pat Hentgen pitching for them! Anyway, here's my latest CA Anti-virus scan thanks Started scanning at 2/18/2007 11:48:10 PM. Engine Ver: 30.4.1. Sig Ver:3410. Sig Date: 2/18/2007. ArcLib Ver: 7.3.0.6. C:\hiberfil.sys - Could not open the file. C:\pagefile.sys - Could not open the file. C:\Documents and Settings\All Users\Application Data\CA\Consumer\AV\ond25.tmp - Could not open the file. C:\Documents and Settings\Jason\NTUSER.DAT - Could not open the file. C:\Documents and Settings\Jason\ntuser.dat.LOG - Could not open the file. C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cert8.db - Could not open the file. C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\history.dat - Could not open the file. C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\key3.db - Could not open the file. C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\parent.lock - Could not open the file. C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip - Java/ByteVerify!exploit trojan. C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip - Java/ByteVerify!exploit trojan. C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip - Java/ByteVerify!exploit trojan. C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip - Java/Shinwow.AB trojan. C:\Documents and Settings\Jason\Cookies\index.dat - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\Cache\_CACHE_001_ - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\Cache\_CACHE_002_ - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\Cache\_CACHE_003_ - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\Cache\_CACHE_MAP_ - Could not open the file. C:\Documents and Settings\Jason\Local Settings\History\History.IE5\index.dat - Could not open the file. C:\Documents and Settings\Jason\Local Settings\History\History.IE5\MSHist012007021820070219\index.dat - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temp\~DF3E7C.tmp - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temp\~DF43BC.tmp - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temp\~DF5544.tmp - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temp\~DF6E38.tmp - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temp\~DF903B.tmp - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temp\~DFB1F.tmp - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temp\~DFF33C.tmp - Could not open the file. C:\Documents and Settings\Jason\Local Settings\Temporary Internet Files\Content.IE5\index.dat - Could not open the file. C:\Documents and Settings\LocalService\NTUSER.DAT - Could not open the file. C:\Documents and Settings\LocalService\ntuser.dat.LOG - Could not open the file. C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - Could not open the file. C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG - Could not open the file. C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat - Could not open the file. C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat - Could not open the file. C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat - Could not open the file. C:\Documents and Settings\NetworkService\NTUSER.DAT - Could not open the file. C:\Documents and Settings\NetworkService\ntuser.dat.LOG - Could not open the file. C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - Could not open the file. C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG - Could not open the file. C:\Program Files\Jason's Radio\גובי7.jpg:Zone.Identifier - Could not open the file. C:\WINDOWS\SchedLgU.Txt - Could not open the file. C:\WINDOWS\Sti_Trace.log - Could not open the file. C:\WINDOWS\wiadebug.log - Could not open the file. C:\WINDOWS\wiaservc.log - Could not open the file. C:\WINDOWS\WindowsUpdate.log - Could not open the file. C:\WINDOWS\Debug\PASSWD.LOG - Could not open the file. C:\WINDOWS\SoftwareDistribution\ReportingEvents.log - Could not open the file. C:\WINDOWS\SYSTEM32\h323log.txt - Could not open the file. C:\WINDOWS\SYSTEM32\config\AppEvent.Evt - Could not open the file. C:\WINDOWS\SYSTEM32\config\default - Could not open the file. C:\WINDOWS\SYSTEM32\config\default.LOG - Could not open the file. C:\WINDOWS\SYSTEM32\config\Internet.evt - Could not open the file. C:\WINDOWS\SYSTEM32\config\SAM - Could not open the file. C:\WINDOWS\SYSTEM32\config\SAM.LOG - Could not open the file. C:\WINDOWS\SYSTEM32\config\SecEvent.Evt - Could not open the file. C:\WINDOWS\SYSTEM32\config\SECURITY - Could not open the file. C:\WINDOWS\SYSTEM32\config\SECURITY.LOG - Could not open the file. C:\WINDOWS\SYSTEM32\config\software - Could not open the file. C:\WINDOWS\SYSTEM32\config\software.LOG - Could not open the file. C:\WINDOWS\SYSTEM32\config\SysEvent.Evt - Could not open the file. C:\WINDOWS\SYSTEM32\config\system - Could not open the file. C:\WINDOWS\SYSTEM32\config\system.LOG - Could not open the file. C:\WINDOWS\SYSTEM32\wbem\Repository\FS\INDEX.BTR - Could not open the file. C:\WINDOWS\SYSTEM32\wbem\Repository\FS\INDEX.MAP - Could not open the file. C:\WINDOWS\SYSTEM32\wbem\Repository\FS\MAPPING.VER - Could not open the file. C:\WINDOWS\SYSTEM32\wbem\Repository\FS\MAPPING1.MAP - Could not open the file. C:\WINDOWS\SYSTEM32\wbem\Repository\FS\MAPPING2.MAP - Could not open the file. C:\WINDOWS\SYSTEM32\wbem\Repository\FS\OBJECTS.DATA - Could not open the file. C:\WINDOWS\SYSTEM32\wbem\Repository\FS\OBJECTS.MAP - Could not open the file. Files Scanned: 185785 Files Infected: 4 Files Cleaned \ Deleted: 0 Files Quarantined: 0 Memory Infections: 0 Memory Infections Cleaned: 0 Boot Infections: 0 Boot Infections Cleaned: 0 Top infections found during scan (Limited to 10). Java/ByteVerify!exploit Java/Shinwow.AB Files not Cleaned\Deleted\Quarantined (Limit 100): 4 C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip (Java/ByteVerify!exploit) C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip (Java/ByteVerify!exploit) C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip (Java/ByteVerify!exploit) C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip (Java/Shinwow.AB) Finished scanning at 2/19/2007 12:37:09 AM.
Hi Jayfan41,

The malicious JAVA items that your CA AntiVirus has detected are not, in and of themselves, active virus/Trojan entities, in that they are not directly attempting to affect your operating system. Rather they are “exploits” that you have unknowingly downloaded from a website when accepting an ActiveX component. (For instance, when allowing an online game to be run actively or something similar.) Such “exploits” do open a vector (pathway) for additional malicious items (virus and spyware) to more easily invade your machine, and need to be removed promptly to avoid these potentially more serious infections.

Manually remove these malicious applets from the JRE cache directory:
1.From the Start button, click Settings> Control Panel
2. In the Control Panel, open the "Java Plug-in Control Panel"
3. Select the Cache Tab
4. Click the Clear button inside the Cache Tab, which will clear your JRE cache directory

You can read more about this kind of detection and removal, here: http://www3.ca.com/securityadvisor/virusin…s.aspx?ID=53959

NOTE: by clearing your JAVA Cache, you will also be removing various “good” ActiveX components that you may have knowingly accepted to facilitate legitimate online activities. This is not a problem, in that when you revisit those legitimate sites, you will simply be asked to “re-accept” their legitimate ActiveX component in order to continue accessing the website content. (Examples: Online antivirus scans by Housecall and Panda use ActiveX components to allow their scan to function on your machine.)

Next:
After clearing your JAVA Cache, Be sure that you have the most recent Updates for your JSE2 JAVA Runtime Environment, by downloading and installing JAVA Runtime Environment version 6, here:
http://java.sun.com/javase/downloads/index.jsp

Next:
Install and Run both Spybot Search & Destroy v1.4, and Ad-Aware Personal SE version 1.06 and allow them to clean/fix all that they detect, particularly items detected and reported in Red. Download and Instruction links follow:
Spybot Search & Destroy – http://www.safer-networking.org/en/download/index.html
Ad-Aware SE Personal – http://www.lavasoft.de/products/ad-aware_se_personal.php

Next:
Clear your Temporary and Temporary Internet files:
Start – Run – (type)cleanmgr.exe – Enter (select Temporary and Temporary Internet files to be cleaned)

Next:
Run a couple of online AntiMalware Scans:
Panda Online Active Scan: http://www.pandasoftware.com/products/ActiveScan.htm
Trendmicro Housecall: http://housecall.trendmicro.com/

Next:
Report back with your results from the Online Scans and give an updated report about how your machine is running now.

Next:
The above steps may have cleaned up the problem, and will have accomplished a good preparation for obtaining a more specific analysis of your system and any further needed work in our Malware Removal Forum.

Since these JAVA “exploits” may have opened a vector for further malware infection…
please Download and Run HiJackThis, posting your Log over in our Malware Removal Forum.
Download HJT.exe here: http://www.radiosplace.com
Create a permanent folder on your C:\ Drive for HJT so that backups can be saved.
–>Place your HJT.exe into a Folder like this: C:\HiJackThis\HJT.exe
Open HJT by double-clicking on HJT.exe
Run HJT by pressing “Do a system scan and save a log file”
Note: Do Not make any changes with HJT unless/until your receive advice from an Expert Advisor in the Malware Removal Forum.
Copy/Paste the NotePad HJT Log file into our Malware Removal Forum, for further analysis, here: http://forums.tomcoyote.org/index.php?showforum=27
Please be patient. The Malware Removal folks are all Volunteers and have a terrible work load, sometimes requiring a couple of days before you receive a response.

Best Regards.
Thanks for your help for whatever reason, it didn't allow me to install and run JAVA Runtime Environment version 6 Below is my ACTIVESCAN results from PANDASOFTWARE……The CA ANTIVIRUS still shows what it did before……I have posted a HJT log in the forum you suggested thanks again! Incident Status Location Adware:adware/cydoor Not disinfected C:\WINDOWS\system32\cd_clint.dll Spyware:spyware/whazit Not disinfected c:\windows\system32\fiz1 Adware:adware/virtualbouncer Not disinfected c:\windows\system32\INNERVBINSTALL.LOG Adware:adware/ilookup Not disinfected c:\windows\system32\windec32.dll Adware:adware/savenow Not disinfected c:\windows\downloaded program files\WUInst.inf Adware:adware/clickalchemy Not disinfected c:\windows\inf\alchem.inf Spyware:spyware/betterinet Not disinfected c:\windows\inf\biini.inf Adware:adware/ncase Not disinfected c:\windows\didduid.ini Adware:adware/sidesearch Not disinfected c:\program files\Lycos Potentially unwanted tool:application/myway Not disinfected c:\program files\MyWay Spyware:spyware/searchcentrix Not disinfected Windows Registry Adware:adware/prositefinder Not disinfected Windows Registry Potentially unwanted tool:application/altnet Not disinfected hkey_local_machine\software\microsoft\windows\currentversion\app management\arpcache\AltnetDM Adware:adware/cws Not disinfected Windows Registry Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\DavidF\Application Data\Mozilla\Firefox\Profiles\u4uixd9x.default\cookies.txt[.atwola.com/] Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[.mediaplex.com/] Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[.apmebf.com/] Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[.mediaplex.com/] Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[.doubleclick.net/] Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[.atdmt.com/] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[statse.webtrendslive.com/] Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[.realmedia.com/] Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\Francine\Application Data\Mozilla\Firefox\Profiles\wbbw41i0.default\cookies.txt[landing.domainsponsor.com/] Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.casalemedia.com/] Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[ad.yieldmanager.com/] Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.atwola.com/] Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.burstnet.com/] Spyware:Cookie/web-stat Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[www.web-stat.com/ENGLISH/CGI-BIN/] Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.zedo.com/] Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.go.com/] Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.247realmedia.com/] Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.2o7.net/] Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.ads.pointroll.com/] Spyware:Cookie/NewMedia Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.anm.co.uk/] Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.bravenet.com/] Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.bs.serving-sys.com/] Spyware:Cookie/did-it Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.did-it.com/] Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.drivecleaner.com/] Spyware:Cookie/Inet-Traffic Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.inet-traffic.com/] Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.realmedia.com/] Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.serving-sys.com/] Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Firefox\Profiles\5ruo29vy.default\cookies.txt[.toplist.cz/] Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Profiles\default\7uuk8bnm.slt\cookies.txt[.ath.belnk.com/] Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Profiles\default\7uuk8bnm.slt\cookies.txt[.atwola.com/] Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Profiles\default\7uuk8bnm.slt\cookies.txt[.belnk.com/] Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Profiles\default\7uuk8bnm.slt\cookies.txt[.go.com/] Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Profiles\default\7uuk8bnm.slt\cookies.txt[.maxserving.com/] Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Jason\Application Data\Mozilla\Profiles\default\7uuk8bnm.slt\cookies.txt[.realmedia.com/] Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip[Gummy.class] Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip[Counter.class] Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip[VerifierBug.class] Virus:Trj/Classloader.AD Disinfected C:\Documents and Settings\Jason\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arr3.jar-53b20018-1f209aff.zip[Beyond.class] Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Jason\Cookies\jason@atwola[1].txt Spyware:Cookie/Ccbill Not disinfected C:\Documents and Settings\Jason\Cookies\jason@ccbill[1].txt Spyware:Cookie/GoStats Not disinfected C:\Documents and Settings\Jason\Cookies\jason@gostats[1].txt Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\Jason\Cookies\jason@toplist[1].txt Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Jason\Desktop\stuff to clean the computer\smitRem\Process.exe Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Jason\Desktop\stuff to clean the computer\smitRem.exe[smitRem/Process.exe]
did you do the following:

Manually remove these malicious applets from the JRE cache directory:
1.From the Start button, click Settings> Control Panel
2. In the Control Panel, open the "Java Plug-in Control Panel"
3. Select the Cache Tab
4. Click the Clear button inside the Cache Tab, which will clear your JRE cache directory



Before downloading the new version of JSE2 JAVA Runtime Environment version 6 (as linked above),
Please use Control Panel - Add/Remove to uninstall your present version of JAVA.
(if more than one version are detected as installed, remove each and all of them)

Then install the new version JSE2 JAVA Runtime Environment 6

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI