DirtyLarry, on 31 December 2012 - 16:59, said:
I verified with him, he did not install a single .exe, so it had to somehow be the ads from pron sites it sounds like.
There was a vulnerability in the Java applet runtime a couple versions back that allows attackers to trigger the machine to download a payload executable
without the user having to click anything (other than simply visiting a site).
I had to deal with the fallout of one such incident.. The payload exe in this case would run, sniff for a while, then start sending out emails to the user's contacts in webmails (yahoo, gmail, hotmail) with links to similarly infected sites. Oh yeah, as a bonus, it also joins your PC as a zombie in one of the major botnets.
There are other payloads making rounds on the net, but that was one of the nastier ones.
Oracle allegedly fixed the vulnerability in the recent versions, but I still tell people to NOT install Java under any circumstances. And if they REALLY must have it for one of their apps, then I would point them to articles about how to disable the browser applets (which you have to do for EACH browser you have installed. Each of them in slightly different ways. A bloody annoyance.)
Quote
See, I am my friends default tech support, which is ironic as you can all probably tell, I am not a Windows oriented user whatsoever.
I feel you. I'm the exact opposite - Windows user with Mac-using friends. I'm lucky to know enough Unix command-line, as I wouldn't know which button to click to, say, disable DHCP on a Mac...