Author Topic: AVAST doesn't catch Loadnew.exe  (Read 2650 times)

0 Members and 1 Guest are viewing this topic.

dsheldon3

  • Guest
AVAST doesn't catch Loadnew.exe
« on: November 27, 2006, 09:29:48 PM »
Its a nasty one too and causes big problems.I have to go into safe mode to get rid of it.It sure would be nice if AVAST could figure a way to block this or something.

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: AVAST doesn't catch Loadnew.exe
« Reply #1 on: November 27, 2006, 09:30:57 PM »
Can you send a sample of it to virus (at) avast.com with a link to this thread?
Thanks.
The best things in life are free.

dsheldon3

  • Guest
Re: AVAST doesn't catch Loadnew.exe
« Reply #2 on: November 27, 2006, 09:41:57 PM »
How can I send a sample of it? Besides that I cannot do anything with my computer till its deleted.

Rick F

  • Guest
Re: AVAST doesn't catch Loadnew.exe
« Reply #3 on: November 27, 2006, 10:13:38 PM »
Submitting sample file....

Quote
If you have any suspicious files that are not detected by the latest version of our antivirus programs, you can send them to virus@avast.com. The ideal way to send such files is to compress them as a ZIP with the password 'virus' (so that the attachment is not deleted by some other antivirus software on the way).

Also, make sure you're using 'web shield' in addition to 'standard shield' for this one.

This is part of "JAVA_BYTEVER.C"  This JAVA malware is found in malicious Web sites as part of a Web page applet. It comes in the form of a compiled Java class, and may be called from an HTML page.
It exploits the ByteVerifier vulnerability in unpatched versions of Microsoft (MS) Java Virtual Machine, which could allow a file to be downloaded and executed without a user’s knowledge.

It connects to the following Web site where it downloads a file and saves it as LOADNEW.EXE:

http://ifra<BLOCKED>lars.biz/dl/loadadv479.exe
It then executes the file, which is detected by Trend Micro as TROJ_SMALL.OI.
« Last Edit: November 27, 2006, 10:18:13 PM by Rick F »

dsheldon3

  • Guest
Re: AVAST doesn't catch Loadnew.exe
« Reply #4 on: November 27, 2006, 11:04:31 PM »
Thanks, I already have Web shield on high.I wonder what security patch I'm missing.I have Windows ME. Would you happen to know what patch it is?

dsheldon3

  • Guest
Re: AVAST doesn't catch Loadnew.exe
« Reply #5 on: November 27, 2006, 11:14:15 PM »

Offline FreewheelinFrank

  • Avast Evangelist
  • Ultra Poster
  • ***
  • Posts: 4872
  • I'm a GNU
    • Don't Surf in the Nude!
Re: AVAST doesn't catch Loadnew.exe
« Reply #6 on: November 27, 2006, 11:51:56 PM »
The Microsoft Java Machine is obsolete, and won't be supported after the end of next year. You'd be far better off using the MSVM removal tool and installing Sun Java.

http://www.geocities.com/dontsurfinthenude/java.htm

EDIT: Corrected end date for support.
« Last Edit: November 27, 2006, 11:54:15 PM by FreewheelinFrank »
     Bambleweeny 57 sub-meson brain     Don't Surf in the Nude Blog