Path: csiph.com!newsfeed.hal-mli.net!feeder3.hal-mli.net!newsfeed.hal-mli.net!feeder2.hal-mli.net!border3.nntp.dca.giganews.com!Xl.tags.giganews.com!border1.nntp.dca.giganews.com!nntp.giganews.com!local2.nntp.dca.giganews.com!nntp.earthlink.com!news.earthlink.com.POSTED!not-for-mail NNTP-Posting-Date: Tue, 15 Jan 2013 08:47:08 -0600 Date: Tue, 15 Jan 2013 06:47:13 -0800 From: Patricia Shanahan User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:17.0) Gecko/17.0 Thunderbird/17.0 MIME-Version: 1.0 Newsgroups: comp.lang.java.programmer Subject: Re: U.S. warns on Java software as security concerns escalate References: In-Reply-To: Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Message-ID: Lines: 33 X-Usenet-Provider: http://www.giganews.com NNTP-Posting-Host: 70.230.205.210 X-Trace: sv3-gIK3A3Um/ShX4Mom3QvUeYQB72ftJfo/E3R9QQDjjjxnzahNXvCm6JztBMAnFpOVCC6fAdQbRijvQrr!doZCVoapSDUUoOXnFiUC6RYXw8yREAKlpwhu3XTGv3o02X+yCR6Ew/6QFjiJ3fv7Q7fFfZj5arY/!O4DpMy8DufcB7jIL8e9gzNSDz2G2WkXvicjhUUlm0Bw+v1o= X-Abuse-and-DMCA-Info: Please be sure to forward a copy of ALL headers X-Abuse-and-DMCA-Info: Otherwise we will be unable to process your complaint properly X-Postfilter: 1.3.40 X-Original-Bytes: 2691 Xref: csiph.com comp.lang.java.programmer:21412 On 1/15/2013 12:23 AM, Roedy Green wrote: > On Sat, 12 Jan 2013 07:48:51 -0500, emf wrote, > quoted or indirectly quoted someone who said : > >> U.S. warns on Java software as security concerns escalate > > I just got hit by a virus, the first time ever. It was what the RCMP > call "scareware". It suddenly popped up, locked screen, claiming I > had broken some law and must wire them $100 to unlock my computer. > If I failed to do so within 24 hours they would erase my hard drives. > They would also erase them it detected any attempts to remove it. > > I follow all the usual rules to avoid infection. I figure it must have > got via running an unsigned Java applet or some JavaScript code. > > Any way I got rid of it by booting to safe mode and running the Ace > Utilities and had a look at code configured to run at startup. I > noticed a suspicious runcff.lnk from Microsoft, disabled it and all > seems to be ok. > > The police were very ho hum, saying there were a rash of such attacks, > and they wanted to treat them like ordinary virus attacks. I guess > they figured nobody would be stupid enough to fall for the extortion. > Apparently some variants claim to have found kiddie porn or accuse of > random crimes. > The scary thing about this is how much it could cost in support service fees for an ordinary computer user who does not know how to boot in safe mode etc. Patricia