Go Back   Forums > Community Chatterbox > Tech Corner
Memberlist Forum Rules Today's Posts
Search Forums:
Click here to use Advanced Search

Reply
 
Thread Tools Display Modes
Old 05-01-2008, 03:27 PM   #1
MinigunFiend
Forum hobbit
 
MinigunFiend's Avatar

 
Join Date: Nov 2007
Location: Chingford, England
Posts: 29
Default

I ditched AVG specifically to use Avast! because AVG was causing Half-Life 2: Episode 2 to crash with 'out of virtual memory' errors.

I checked Valve's help and support section, and apparently AVG assigns itself stupid amounts of virtual memory, even if you disable it.
One uninstall later, and Episode 2 hasn't crashed since.
MinigunFiend is offline                         Send a private message to MinigunFiend
Reply With Quote
Old 08-01-2008, 05:29 PM   #2
gregor
Home Sweet Abandonia
 
gregor's Avatar

 
Join Date: Feb 2004
Location: Agalli, Albania
Posts: 1,021
Default

ugh.... what does it mean if Sophos detects one file suspicious and one file as possible malicious software that intends to download trojans? I mean a few others also found it suspicious file and one even sort of named it: Trojan-Downloader.Win32.Small.BXA

but all major ones did no such thing. Panda sajs suspicious, Avira, AVG, AVAST, MCAFEE, F-PROT, NOD32v2 etc they are all negative. is this programme really a virus? or would it be OK to use it?
__________________
Crantius Colto: Fear not. You are safe here with me.
Lifts-Her-Tail: I must finish my cleaning, sir. The mistress will have my head if I do not!
Crantius Colto: Cleaning, eh? I have something for you. Here, polish my spear.
Lifts-Her-Tail: But it is huge! It could take me all night!
Crantius Colto: Plenty of time, my sweet. Plenty of time.
From The Lusty Argonian Maid by Crassius Curio found in TES3: Morrowind
gregor is offline                         Send a private message to gregor
Reply With Quote
Old 08-01-2008, 06:12 PM   #3
DeathDude
Caught Somewhere In Time
 
DeathDude's Avatar

 
Join Date: Jan 2005
Posts: 803
Default

Might be a false positive, you can also try Trend Micro's Online scan housecall for one more check. I'd personally move the file for the time being till you can tell for sure if the file is really a trojan or if it could just be a false positive, no harm done for moving it.

Do a google search on that trojan too, to see what is being said about the file, it also should give you a better idea on what it is capable of doing, should the file in question actually be that particular trojan.
__________________

http://www.last.fm/user/DeathDude/ Upcoming Concerts will be attending 5/10/08: Dream Theater, 5/12/08: Gigantour, 5/16/08: Nightwish, 5/27/08: Rush, 6/5/08 and 6/6/08: Iron Maiden!!, 7/27/08: Judas Priest
DeathDude is offline                         Send a private message to DeathDude
Reply With Quote
Old 08-01-2008, 08:27 PM   #4
gregor
Home Sweet Abandonia
 
gregor's Avatar

 
Join Date: Feb 2004
Location: Agalli, Albania
Posts: 1,021
Default

no problem there... it's on a CD anyway... only i planned to give the CD to someone and i don't want to give a bad thing.

The thing they found different programes describe it as different virus or malware.

the ones that actually do describe it as a possible virus talk about a program that will connect to other porgrammes in web and download malware/trojans... some say the risk is high. others say the risk is possible...

i just find it hard to believe only some programmes on that virustotal.com consider it to be a virus. while most major ones don't find it as a virus.

i did a search on sophos and info i got is that one might be false positive especially for keygen porgames. but the other one there is hardly anything appart form the info on sophos itself.

could it be some home made computer virus that best virus scans don't recognise as a virus?
__________________
Crantius Colto: Fear not. You are safe here with me.
Lifts-Her-Tail: I must finish my cleaning, sir. The mistress will have my head if I do not!
Crantius Colto: Cleaning, eh? I have something for you. Here, polish my spear.
Lifts-Her-Tail: But it is huge! It could take me all night!
Crantius Colto: Plenty of time, my sweet. Plenty of time.
From The Lusty Argonian Maid by Crassius Curio found in TES3: Morrowind
gregor is offline                         Send a private message to gregor
Reply With Quote
Old 08-01-2008, 08:54 PM   #5
DeathDude
Caught Somewhere In Time
 
DeathDude's Avatar

 
Join Date: Jan 2005
Posts: 803
Default

Sounds like that program or file in question could also be considered spyware, with the terms that are used about downloading malware/trojans, sometimes trojans are grouped into the same category now a days, especially with the extent and damage spyware is causing nowadays.

Anyways did you do a google search on the file/program that was identified? Maybe look around the security forums that are out there and see if anything pops up about said file. If a lot of the major virus programs are saying nothing about the file, then it might just be a false positive. I know back in the day sophos was pretty notorious around the security forums for having a lot of false positives, not sure if thats changed, but might still apply in this case, especially if you are not getting a lot of info about the trojan on other security sites.
__________________

http://www.last.fm/user/DeathDude/ Upcoming Concerts will be attending 5/10/08: Dream Theater, 5/12/08: Gigantour, 5/16/08: Nightwish, 5/27/08: Rush, 6/5/08 and 6/6/08: Iron Maiden!!, 7/27/08: Judas Priest
DeathDude is offline                         Send a private message to DeathDude
Reply With Quote
Old 09-01-2008, 06:07 AM   #6
gregor
Home Sweet Abandonia
 
gregor's Avatar

 
Join Date: Feb 2004
Location: Agalli, Albania
Posts: 1,021
Default

nope nothing virus like on the file.

like i said the only worry i have is that it's some home made virus thing that is not identified by virus scans. or is identified by some only through heuristics.

however it gave me back nothing. the pathc.exe seems to be only noCD crack while the other programe only points to copied .nfo text in forums and how to install it :-).

these are dictionaries, but they sell all of them in same package at a very high price. however i only need a few so i decided to go torrenting.

i will try some (anti)virus forums to see what they think. but i think this could well be false positive.

just to think i wouldn't even question it at my own computer with Avira, cause it simply wouldn't recognise it as a virus. :/ and japofran said they have a good recognision. plus i think that if oyu block the programe with firewall form accessing the firewall, how can it download anything malicious?:eek:
__________________
Crantius Colto: Fear not. You are safe here with me.
Lifts-Her-Tail: I must finish my cleaning, sir. The mistress will have my head if I do not!
Crantius Colto: Cleaning, eh? I have something for you. Here, polish my spear.
Lifts-Her-Tail: But it is huge! It could take me all night!
Crantius Colto: Plenty of time, my sweet. Plenty of time.
From The Lusty Argonian Maid by Crassius Curio found in TES3: Morrowind
gregor is offline                         Send a private message to gregor
Reply With Quote
Old 09-01-2008, 04:23 PM   #7
Japo
Autonomous human
 
Japo's Avatar


 
Join Date: Mar 2006
Location: ,
Posts: 4,615
Default

Quote:
Originally Posted by gregor View Post
plus i think that if oyu block the programe with firewall form accessing the firewall, how can it download anything malicious?:eek:
True if what the virus tries to do is access the web, a firewall with outbound protection should thwart it. That is, provided the virus doesn't manage to leak through the firewall or kill it outright. :eek: And a firewall will only prevent it from accessing the web, not from formatting your hard drive and the like.

It's probably a false positive, but try to be sure.
Japo is offline                         Send a private message to Japo
Reply With Quote
Old 11-01-2008, 08:08 AM   #8
Nick
Переводчик помаленьку
 
Nick's Avatar

 
Join Date: Dec 2004
Location: Protvino, Russian Federation
Posts: 340
Send a message via ICQ to Nick Send a message via Skype™ to Nick
Default

Me using AVG too. I discovered with horror, that in our LAN are evil users present, so I decided to get some protection.
__________________
"Paladin work is never done..."


Nick is offline                         Send a private message to Nick
Reply With Quote
Reply


Similar Threads
Thread Thread Starter Forum Replies Last Post
Alien Virus Kosta Games Discussion 73 01-08-2011 09:22 PM
Alien Virus Luchsen A 0 25-06-2008 04:22 PM
Alien Virus giganto Troubleshooting 23 27-09-2006 09:24 AM
Virus Emerengy! TheChosen Tech Corner 33 06-01-2006 10:58 PM
Scanner Not Working :cry: JJXB Tech Corner 8 08-03-2005 02:54 AM


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump
 


The current time is 04:27 AM (GMT)

 
Powered by vBulletin® Version 3.7.1
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.