Soldato
- Joined
- 31 May 2009
- Posts
- 21,468
Since installing windows 10, I have on a few occasions, noted a sidebar pop out notification telling me windows defender found a thread and took steps to neutralise it.
Generally concerning as only OcUK and Facebook were open at the time within MS Edge.
Searching for said Trojan reveals little to nothing, seemingly defender tried to quarantine the JS script, and couldn't find it, so quarantined nothing.
Subsequently I have run various scanning tools to check system integrity, and all have come back clean, but a batch of these notifications just arrived.
I am pondering if FB might be compromised, or someone has a dodgy signature on OcUK, or just a hitherto unpatched windows 10 bug.
The identified JS was Trojan:JS/BlacoleRef.CM which seems to be something trying to open an iframe.
Anyway.
Anyone have any thoughts on what might been happening?
The only other piece of information I have it that two Sundays in a row at exactly 7.03pm this was posted, just after a message stating my backup didn't complete as it should have, and until the flurry of it one hour or so later, it was simply an isolated incident.
It appears to exist within
file:C:\Users\*******\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\YFLS0KIG\index[1].htm
file:C:\Users\*******\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\H0LWK7N2\index[1].gif
Generally concerning as only OcUK and Facebook were open at the time within MS Edge.
Searching for said Trojan reveals little to nothing, seemingly defender tried to quarantine the JS script, and couldn't find it, so quarantined nothing.
Subsequently I have run various scanning tools to check system integrity, and all have come back clean, but a batch of these notifications just arrived.
I am pondering if FB might be compromised, or someone has a dodgy signature on OcUK, or just a hitherto unpatched windows 10 bug.
The identified JS was Trojan:JS/BlacoleRef.CM which seems to be something trying to open an iframe.
Anyway.
Anyone have any thoughts on what might been happening?
The only other piece of information I have it that two Sundays in a row at exactly 7.03pm this was posted, just after a message stating my backup didn't complete as it should have, and until the flurry of it one hour or so later, it was simply an isolated incident.
It appears to exist within
file:C:\Users\*******\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\YFLS0KIG\index[1].htm
file:C:\Users\*******\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\H0LWK7N2\index[1].gif