Closed Bug 296740 Opened 19 years ago Closed 19 years ago

Virus is installed without any warning when the above URL is visited

Categories

(Firefox :: Security, defect)

x86
Windows XP
defect
Not set
critical

Tracking

()

RESOLVED INVALID

People

(Reporter: photos-com, Unassigned)

References

()

Details

User-Agent:       Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7.8) Gecko/20050511 Firefox/1.0.4
Build Identifier: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7.8) Gecko/20050511 Firefox/1.0.4

When I type in "http://www.cracks.ss.ru" or "htp://www.cracks.ss.ru/data" I get
a virus.  I AM using Firefox, the version is: "Mozilla/5.0 (Windows; U; Windows
NT 5.1; en-US; rv:1.7.8) Gecko/20050511 Firefox/1.0.4".  I have visited other
websites this month, and have found many trojans in the Java folder.

Reproducible: Always

Steps to Reproduce:
1.  "http://www.cracks.ss.ru" (or) "http://www.cracks.ss.ru/data"
2.  Virus is auto installed after a second or two

Actual Results:  
My virus scanner found it.  Now that I have On-Access protection by Avast, Avast
warns me and allowes me to abort the connection.

Expected Results:  
Protected me from trojans/viruses, spyware, and adware.
What version of java are you using?
I think that there isn't Java on this page.

Avast has blocked URL
hxxp://install.xxxtoolbar.com/ist/scripts/prompt.php?event_type=onload&recurrence=always&retry=3&loadfirst=1&account_id=56715&adid=a1059804691\PxB1B10

Avast has found: JS:Istbar [Trj]

Mozilla/5.0 (Windows; U; Windows NT 5.0; en-US; rv:1.8b2) Gecko/20050604
Firefox/1.0+
Your antivirus program is simply seeing the code in the browser's cache, and
reacting. The code is not executable in any way, it's just there to be deleted
when you empty your cache. This is INVALID.
I see this as the user has anti-spyware software installed, but wants Firefox to
come with spyware/adware protection integrated into it, Correct?

<- INVALID
Status: UNCONFIRMED → RESOLVED
Closed: 19 years ago
Resolution: --- → INVALID
*** Bug 296754 has been marked as a duplicate of this bug. ***
*** Bug 296755 has been marked as a duplicate of this bug. ***
You need to log in before you can comment on or make changes to this bug.