Librax
#1
A recent scan has detected the folllowing:
Files C:\Users.…\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/XML.class
(Malware@316soqtk54aae)
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/
ThreadParser.class (Malware@1meifrsspugq)
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/
Option.class (Malware@26x3jyr8ufmjb)
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/
SmartyPointer.class (Malware@38ufpv1e3bgen)
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json
Parser.class (Malware@36ebf9byjbh)
I am unable to upload these files because I cannot find them. Please advise if they are malware.
Product version: 5.9.219863.2196
Database version: 11214
haja
#2
Hi Librax,
Above mentioned files are not False Positives.
Also , Please submit the correct detection names for the following files:
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/
ThreadParser.class (Malware[at]1meifrsspugq)
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/
Option.class (Malware[at]26x3jyr8ufmjb)
C:\Users\...\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json
Parser.class (Malware[at]36ebf9byjbh)
Regards,
Haja
Librax
#3
Dear Haja
The following are obtained from the “View Antivirus Events” and submitted as requested:
Location - C:\Users.…\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/
ThreadParser.class
Malware Name - Malware[at]1meifrsspugq
Location - C:\Users.…\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json/
Option.class
Malware Name - Malware[at]26x3jyr8ufmjb
Location - C:\Users.…\AppData\LocalLow\Sun\Java\Development\cache\6.0\3\797cfcc3-28dce54b|json
Parser.class
Malware Name - Malware[at]36ebf9byjbh
Thanks.
Librax