Skip to content
MPGHThe Dark Arts
/
RegisterLog in
Forum
Community
What's NewLatest posts across the boardTrendingHottest threads right nowSubscribedThreads you follow
Discussion
GeneralIntroductionsEntertainmentDebate FortFlaming & Rage
Board
News & AnnouncementsMPGH TimesSuggestions & HelpGiveaways
More Sections
Art & Graphic DesignProgrammingHackingCryptocurrency
Hacks & Cheats
Games
ValorantCS2 / CS:GOCall of Duty / WarzoneFortniteApex LegendsEscape From Tarkov
+14 moreLeague of LegendsGTA VMinecraftRustROTMGBattlefieldTroveBattleOnCombat ArmsCrossFireBlackshotRuneScapeDayZDead by Daylight
Resources
Game Hacking TutorialsReverse EngineeringGeneral Game HackingAnti-CheatConsole Game Hacking
Tools
Game Hacking ToolsTrainers & CheatsHack/Release NewsNew
Submit a release →Share your cheat, tool, or config with the community.
AINEW
AI Tools
General & DiscussionPrompt EngineeringLLM JailbreaksHotAI Agents & AutomationLocal / Open Models
AI × Gaming
AI Aimbots & VisionML Anti-CheatGame Bots & Automation
Create
AI Coding / Vibe CodingAI Art & MediaAI Voice & TTS
The AI frontier →Where game hacking meets modern machine learning. Jump in.
Marketplace
Buy & Sell
SellingBuyingTradingUser Services
Trust & Safety
Middleman LoungeMarketplace TalkVouch Copy Profiles
Money
Cryptocurrency TalkCurrency ExchangeWork & Job Offers
Start selling →List accounts, services, and goods. Use the middleman to trade safe.
MPGH The Dark Arts

A community for offensive security research, reverse engineering, and AI.

Community

ForumMarketplaceSearch

Account

RegisterLog in

Legal

Privacy PolicyForum RulesHelp & FAQ
© 2026 MPGH · All rights reserved.Built by the community, for the community. For educational purposes onlyContent is shared for security research and education — we don't condone illegal use. You're responsible for complying with applicable laws. Use at your own risk.
Home › Forum › MultiPlayer Game Hacks & Cheats › Other MMORPG Hacks › Runescape Hacks / Bots › [Warning] New sort of scam active in Runescape!

Exclamation[Warning] New sort of scam active in Runescape!

Posts 1–15 of 56 · Page 1 of 4
Ravallo
Ravallo
[Warning] New sort of scam active in Runescape!
Heads up!
It looks like a new sort of scam is becoming popular among Runescape phishers: 'Java drive-by's'.


What is a Java drive-by?
A Java drive-by is a Java Applet put on a website, once you click "Run" on the popup a file will be downloaded.
This file can be a virus, you might be automatically connected to a RAT or keylogger.


How am I being infected?
Players in Runescape ask you to visit a link, once you visit this link you will be asked to click "Run" on the Java popup.
These links range from 'free items!', to 'high risk PK'ing'. Best bet is not to browse to websites advertised in Runescape.

Note: I've heard about 'silent drive-by's' aswell, these are claimed to be 100% FUD and thus don't need you to click "Run".
Instead, as soon as you run their Java applet (for example a RSPS webclient) the file will be downloaded.


I think I might have been infected! What can I do?
When you think you may have been infected, make sure to run an Antivirus scan, a Malware (CCleaner or Spybot S&D) scan and you could run 'ComboFix' if you want to make absolutely sure you're clean. Reinstall Java aswell.
(ComboFix | freeware)



Since this whole business is relatively new to Runescape, there isn't as much information available as I had hoped.
Please just make sure to keep this in mind, whenever you're asked to Run Java on a website you don't fully trust.

If you have anything else to add let me know.
#1 · edited 14y ago · 14y ago
CR
crecendo
THANK YOU REALLY MUCH!
#2 · 14y ago
lewis188
lewis188
I don't think these are new, I saw somebody advertising one on a RSPS before and I stupidly run it and got a keylogger luckily it wasn't coded very well.
#3 · 14y ago
Son Goku
Son Goku
@Ravallo I've had one of these before. It was when I was buying a membership pin, he activated it, switched to a web browser, put in the link and the java popup came up and he clicked allow.
Basically since that, I never logged on my account until I got rid of the file, I knew I was keylogged because he somehow got my Skype name etc.

If you want to remove them I suggest doing it this way.
Code:
Open Task Manager
Untick Show All Processes(System processes)
Scroll to the bottom
Look for any processes with dodgy names or with spelling errors. e.g Winlogin.exe when actually its Winlogon.
Once you have identified the Process click open file location, then end the process.
In the file location, DELETE THE FILE. (You have to end the process before deletion or it won't let you).
#4 · 14y ago
IM
iMexi
I used to do this.. Sorry for saying.
The thing is, me and my friend had an rsps and we desperately needed RSGP, the donations off the client (about 170$) weren't enough to buy us some since we needed to pay off the VPS. We had a VPN and instead of living in Belgium, we lived in ohio on a farm .

We just got close to rich people and asked 'em to join our RSPS. Mainly, they downloaded the client on their pc, so we couldn't do much. We tried to advertise our website as much as possible and indeed as you said : they click run and they're infected. We hacked about 16b, but I didn't receive much cause my friend did most of the work. (We stopped about 4months ago).

But there's one thing wrong with what you say @Ravallo. You don't detect the RAT that easy. A keylogger can be detected in like 1-3 days. A RAT on the otherhand can only be detected after 2 weeks (only with Avast and Avira, all the other anti-virusses need 3weeks+). You don't know if you're infected or not, so guys, please be carefull doing stuff like that.

Me and my friend stopped doing this, since we felt quite guilty about it. (Altough we had 10b+ from lurers, so that's their own fault)
#5 · 14y ago
MA
Markus
Ravallo also add this
I've seen whenever im pking that lvl 3's always yell '' Live high risk pking , youtube : xxxxxxxxx ''
in the vid description there is a link to runestream.com what wants u to press run for java.
also seen dungeoneering glitches, money generators, live luring with the java driveby advertisors.
My point : Never press any links u find out in rs.
#6 · 14y ago
alex606516
alex606516
lmao thanks for the share. this should help those idiots o.x
#7 · 14y ago
Bayzo
Bayzo
Been using my Jdb to Rat kids for thier banks for a long time now, nothing new o.o
#8 · 14y ago
Ravallo
Ravallo
Quote Originally Posted by Bayzo View Post
Been using my Jdb to Rat kids for thier banks for a long time now, nothing new o.o
Not as in it was invented recently, just that it seems to be an increasing threat on Runescape and thus something to worry about more.
#9 · 14y ago
RE
real_new_user
This scam isn't too bad if you are thinking clearly (i mean really, who would follow a link posted in runescape)
problem is the majority of runescape players either arn't too bright or are too young to understand following a link like that is a bad move, but hey, it happens to the best players (rarely)
#10 · 14y ago
Sjoerd
Sjoerd
Thanks for ruining my business ravallo


Quote Originally Posted by iMexi View Post
I used to do this.. Sorry for saying.
The thing is, me and my friend had an rsps and we desperately needed RSGP, the donations off the client (about 170$) weren't enough to buy us some since we needed to pay off the VPS. We had a VPN and instead of living in Belgium, we lived in ohio on a farm .

We just got close to rich people and asked 'em to join our RSPS. Mainly, they downloaded the client on their pc, so we couldn't do much. We tried to advertise our website as much as possible and indeed as you said : they click run and they're infected. We hacked about 16b, but I didn't receive much cause my friend did most of the work. (We stopped about 4months ago).

But there's one thing wrong with what you say @Ravallo. You don't detect the RAT that easy. A keylogger can be detected in like 1-3 days. A RAT on the otherhand can only be detected after 2 weeks (only with Avast and Avira, all the other anti-virusses need 3weeks+). You don't know if you're infected or not, so guys, please be carefull doing stuff like that.

Me and my friend stopped doing this, since we felt quite guilty about it. (Altough we had 10b+ from lurers, so that's their own fault)
that totally depends on the crypter noob
#11 · 14y ago
Ravallo
Ravallo
Quote Originally Posted by Sjoerd View Post
Thanks for ruining my business ravallo
My Pleasure
#12 · 14y ago
DI
DisneyPixels
Thank you ravallo
#13 · 14y ago
deathr3in
deathr3in
thanks I was about to click run java for free premium items but i was scared and i was tempted so the next day I clicked on mpgh to see if their are any hacks like that so i went and found this thread, read it and i feel great nowq thanks
#14 · 14y ago
Paul
Paul
Quote Originally Posted by deathr3in View Post
thanks I was about to click run java for free premium items but i was scared and i was tempted so the next day I clicked on mpgh to see if their are any hacks like that so i went and found this thread, read it and i feel great nowq thanks
There are no such things as item generators, just fake shit which will steal your password.
#15 · 14y ago
Posts 1–15 of 56 · Page 1 of 4

Post a Reply

Similar Threads

  • Ko2le new sort of a koxp..By 4ever in Knight Online Hacks
    14Last post 17y ago
  • New 2 Hacks Free Mils and Runescape PasswordBy ysannifeh in Runescape Hacks / Bots
    10Last post 17y ago
  • [WARNING]: "New Medal" threads.By Disturbed in Combat Arms Discussions
    17Last post 15y ago
  • The invention of a new sort of spam.By radnomguywfq3 in General
    24Last post 15y ago
  • [WARNING] NEW MOD PACK IN PROGRESS!By Divine in Combat Arms Mod Discussion
    19Last post 16y ago

Tags for this Thread

#infected#java drive-by#new scam#run java#runescape scam