Guild Wars Forums - GW Guru
 
 

Go Back   Guild Wars Forums - GW Guru > Forest of True Sight > Technician's Corner > Software

Notices

Reply
 
Thread Tools Display Modes
Old Sep 26, 2008, 11:24 PM // 23:24   #21
Banned
 
Lyynyyrd's Avatar
 
Join Date: Jun 2008
Location: Aussie Trolling Crew - Spah!
Advertisement

Disable Ads
Default

Quote:
Originally Posted by tarun View Post
well i'm not going to leave you waiting for days.

i removed your screenshot of the nod result because that did show the link to malware. I'm going to drop it into a vm and see how it reacts.
score: 1 for the amateur!
Lyynyyrd is offline   Reply With Quote
Old Sep 27, 2008, 02:20 AM // 02:20   #22
Technician's Corner Moderator
 
Tarun's Avatar
 
Join Date: Jan 2006
Location: The TARDIS
Guild: http://www.lunarsoft.net/ http://forums.lunarsoft.net/
Default

tinyproxy.exe is one of the processes that gets installed if the exe is allowed to run. Avast found and deleted it.
Tarun is offline   Reply With Quote
Old Sep 27, 2008, 07:15 AM // 07:15   #23
Jungle Guide
 
KZaske's Avatar
 
Join Date: Jun 2006
Location: Boise Idaho
Guild: Druids Of Old (DOO)
Profession: R/Mo
Default

Quote:
Originally Posted by Tarun View Post
Sir Seifus Halbred:
It looks like your NOD32 took care of the problem. It also looks like a website tried to pose as YouTube and wanted you to download some "codecs" that are actually malware.

What site are you encountering this issue on?
I managed to have malware installed from youtube just that way. But it was multi-part and the "codec" was a downloader that had a short field day. Both avast and Sypbot S&D missed it until I had another AV doing a scan.

Tarun, if you want the details I can provide most of them to you.
KZaske is offline   Reply With Quote
Old Sep 27, 2008, 09:06 AM // 09:06   #24
Banned
 
xRustyx's Avatar
 
Join Date: Jan 2006
Location: Bermuda Triangle
Profession: W/
Default

NOD32 is straight up G and I use it cuz it keeps the five-o off the block.
xRustyx is offline   Reply With Quote
Old Sep 27, 2008, 04:06 PM // 16:06   #25
Technician's Corner Moderator
 
Tarun's Avatar
 
Join Date: Jan 2006
Location: The TARDIS
Guild: http://www.lunarsoft.net/ http://forums.lunarsoft.net/
Default

Quote:
Originally Posted by KZaske View Post
I managed to have malware installed from youtube just that way. But it was multi-part and the "codec" was a downloader that had a short field day. Both avast and Sypbot S&D missed it until I had another AV doing a scan.

Tarun, if you want the details I can provide most of them to you.
Please do.

The only scanner that found anything was avast; SAS, MBAM, and Spybot did not find anything.
Tarun is offline   Reply With Quote
Old Sep 28, 2008, 04:54 PM // 16:54   #26
Wilds Pathfinder
 
Sir Seifus Halbred's Avatar
 
Join Date: Oct 2006
Default

Update: Got Ad Aware 2008 to open, did a FULL scan last night, it found the same thing NOD 32 found and removed it. Haven't seen the pop up message from NOD 32. I think it's solved.
Sir Seifus Halbred is offline   Reply With Quote
Old Sep 28, 2008, 05:42 PM // 17:42   #27
Technician's Corner Moderator
 
Tarun's Avatar
 
Join Date: Jan 2006
Location: The TARDIS
Guild: http://www.lunarsoft.net/ http://forums.lunarsoft.net/
Default

Could you post the log from Ad-Aware 2008 please? Be sure to wrap it in a codebox.
Tarun is offline   Reply With Quote
Old Sep 28, 2008, 10:21 PM // 22:21   #28
Wilds Pathfinder
 
Sir Seifus Halbred's Avatar
 
Join Date: Oct 2006
Default

I would If I knew how. Care to explain, please?
Sir Seifus Halbred is offline   Reply With Quote
Old Sep 29, 2008, 12:19 AM // 00:19   #29
Technician's Corner Moderator
 
Tarun's Avatar
 
Join Date: Jan 2006
Location: The TARDIS
Guild: http://www.lunarsoft.net/ http://forums.lunarsoft.net/
Default

I just had to install it into a VM and I must say wow is it ever garbage. Even after cleaning out tracking cookies, I can't see a log through the program. Instead, you have to navigate to...

If installed for All Users:
Code:
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\logs\
If installed for just your account:
Code:
C:\Documents and Settings\USERNAME\Application Data\Lavasoft\Ad-Aware\logs\
On Vista it will be slightly different.

My log was named: Ad-Aware 20080928 20-12-21.log.xml

You can copy it to the desktop, zip it and host it with a file sharing service like Rapidshare or Mediafire.
Tarun is offline   Reply With Quote
Reply

Share This Forum!  
 
 
           

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Conflict with Nod32 Antivirus 3.0 Braxton619 Technician's Corner 4 Sep 06, 2008 09:18 PM // 21:18
NOD32 3.0 and GW MrGuildBoi Software 10 Aug 07, 2008 06:04 PM // 18:04
Snow Bunny Software 2 Jul 22, 2008 12:55 AM // 00:55
NOD32 - just the AV or the firewall too? Snograt Technician's Corner 27 May 20, 2008 01:11 AM // 01:11
Nod32 Phyre Technician's Corner 5 Feb 17, 2007 04:07 PM // 16:07


All times are GMT. The time now is 01:40 AM // 01:40.


Powered by: vBulletin
Copyright ©2000 - 2016, Jelsoft Enterprises Ltd.
jQuery(document).ready(checkAds()); function checkAds(){if (document.getElementById('adsense')!=undefined){document.write("_gaq.push(['_trackEvent', 'Adblock', 'Unblocked', 'false',,true]);");}else{document.write("