OK, yes, Java itself, is the Bad Boy, or can be, and has been exiled by Apple.
It’s just that, I have a log file of what they were doing inside my system using a JavaScript.
The name of the Log file is “DownloaderApp.log” which they also downloaded (uploaded?) and ran for me.
I hesitate to upload all of it here, but I will, if need be.
It clearly reports completing some activities like these excerpts; code is between quotes “…”
“20160321 13:57:56.458 I: [7245] <1607> sending request for 'https://download.citrixonline.com/launcher2/telemetry/helper?token=e0-nQgYbn8YxW MxTRumxhi_0v19-RreCNM9kEHXTp5OFTJWFnuEwStkYiKLBXsxI9vut4v6wKRCB7vNf0Xf-tv1_XMmch Xw_MvWqoSYcIKk6bQROMHamv40VjTyoGjl7eJQbpos1PHVkpv86DESflXJ2&downloadTrigger=java script' “
-and-
“this is the remove-dmg script.
script: /private/var/tmp/4F9BED7C-5856-4059-9807-702257A5E8C9.sh
vol path: /Volumes/Citrix Online Launcher
dmg path: /Users/xxxxxxxxxxx/Downloads/Citrix Online Launcher.dmg
wait pid: 7245
detaching volume
"disk2" unmounted.
"disk2" ejected.
deleting disk image file
deleting script”
End of the Log file here.
So, here is a Java script, downloading, installing and executing files, and without me knowing it.
This seems like JavaScript can be a possible threat also.
Am I wrong about this ?
I don’t proclaim to be an expert, at all, I’m just hoping to understand things a bit better really.