Not what you were looking for? Ask our experts!
Reply
Super Contributor
Tomas01
Posts: 138
Registered: ‎11-08-2009
Accepted Solution

Need help what is malicious toolkit variant activity 12

This is the 2nd time I have gotten this this week.  norton popup that says an intrusion attemt by """" 2 differnet websites that norton says is fine.  Risk name is http malicious toolkit variant activity 12 . Says at the bottom that phenomen02.co.cc matches the signature of a known attack.  from the hd prog files (86) ie \ie. sig id is 24046

The 1st one earlier was on Tuesday 1/25 when it first started  Norton power eraser shows nothing. risk ame for this one is Java obe toolkit activity 1  can anyone help?  Is there weakness in java or what is java obe toolkit??

Tomas01

SendOfJive
Posts: 10,579
Kudos: 4,683
Solutions: 759
Registered: ‎02-07-2009

Re: Need help what is malicious toolkit variant activity 12

Hi Tomas01,

 

These would appear to be two separate, unrelated events.  Toolkits are packages of exploits that use vulnerabilities in unpatched software programs to install malware.  Usually you will encounter such attacks on normally safe websites that have been compromised with the toolkits.  You were probably not infected but it is always prudent to empty your browser's temp files and run a malware scan any time you may have been exposed to attacks such as these.

 

http://www.symantec.com/business/security_response/attacksignatures/detail.jsp?asid=23794

 

http://www.symantec.com/business/security_response/attacksignatures/detail.jsp?asid=24002

Super Contributor
Tomas01
Posts: 138
Registered: ‎11-08-2009

Re: Need help what is malicious toolkit variant activity 12

I updated my java and seems not be popping up as of now.  Sorry for the late response,  winter storm had me some where else.  I used Secunia psi to look for it.  Showed up to date, updated to make sure.  I just got done fixing my computer a couple of weeks ago.  my web search adware was on it and finally got that taken care of.  I will let you know if it comes back up again.

Tomas01