PDA

View Full Version : Mac virus...




guitarmaster18
Mar 29, 2007, 05:47 AM
Last night, I scanned my computer with clamXav for viruses. It said that it found one in my /Users/~/library/caches folder, called Java.Classloader. I secsessfully quarenteened it, then securely deleted it. Should I be worried, and what exactly would that virus have done? (I am using a MacBook)



miniConvert
Mar 29, 2007, 05:49 AM
http://www.f-secure.com/v-descs/classloader.shtml

The Classloader files are part of Internet Explorer homepage hijacker trojans, that infect IE through malicous web page that uses Java classloader byteverify exploit or other vulnerability in Internet Explorer.
Sounds like an IE vulnerability exploit. You're fine.

guitarmaster18
Mar 29, 2007, 05:53 AM
That is exactly what I had, but I never used IE. I may have used an older version of firefox... but, I mostly use safari. So, are you sure all I had to do was delete them?

guitarmaster18
Mar 29, 2007, 06:02 AM
Ahhh... Never mind. I was running an old version of IE in parallels desktop... But, they say that it is serious if you are on a PC... Oh well... I deleted it so let that be the end of it.

VinceVegaUK
Mar 29, 2007, 04:52 PM
It sounds like it could be a false positive. I know symantec offer a list of known viruses and false positives. it also tells you what it's for or where it's come from, mind you this is mainly on PC but i would advise not to delete your qurantiend items imediatly as if it did turn out to be a false positive you could have deleted a key component to an application thus corrupting it. leave it in there for a week or two. I normally delete my qurantines before i start a new scan after few weeks just to see if my sytem is running ok.

Later

vv

killmoms
Mar 29, 2007, 04:55 PM
It probably was attached to some page you opened in Safari/Firefox in OS X, downloaded, and (of course) didn't do anything. I'm sure there might be Windows viruses sitting in your caches if you traverse some of the seedier sections of the Internet. That doesn't make them harmful to your machine though.