SUBSIM Radio Room Forums



SUBSIM: The Web's #1 resource for all submarine & naval simulations since 1997

Go Back   SUBSIM Radio Room Forums > Silent Hunter 3 - 4 - 5 > Silent Hunter 4: Wolves of the Pacific
Forget password? Reset here

Reply
 
Thread Tools Display Modes
Old 06-02-09, 05:09 PM   #1
RDDR
Bosun
 
Join Date: Jan 2007
Posts: 67
Downloads: 49
Uploads: 0
Default Rising Sun Downloaders A heads up :Virus's

I downloaded Maddys The fall of the Rising Sun today.
Really looking forward to getting it up and running.

Unfortunately I detected Trogen worms attached to two of the Bug fixes,and another update.
I sent Maddy an Alert PM to let him know,then on second thought figured it would be wise to let everyone know as soon as possible what has happened.
I have a very tough Anti Virus program that slams the door on any site that is unsafe, however for some that might not be the case.
The first fix had a virus { Win32 Trogen-gen(Other) Virus/Worm/VPS version 090601-06/12009}

Hope this is helps and is repaired as soon as possible,and hope if anyone had the same prob as myself that they are OK and it was detected.
If you have recently downloaded and noticed nothing, it would still be a good idea to perform a Deep Scan for safety sake.

Cheers,RDDR
RDDR is offline   Reply With Quote
Old 06-02-09, 06:38 PM   #2
Highbury
The Old Man
 
Join Date: Oct 2005
Location: 51.557, -0.102
Posts: 1,311
Downloads: 177
Uploads: 0
Default

What AV are you running? My wife works for a data protection company and one of our friends there set up their own in-house AV program on our PCs. I had always thought it was more advanced then off the shelf AV programs.. and I detected nothing downloading FOTRS. Just curious to know what you are running so I can ask some questions.
Highbury is offline   Reply With Quote
Old 06-02-09, 07:35 PM   #3
RDDR
Bosun
 
Join Date: Jan 2007
Posts: 67
Downloads: 49
Uploads: 0
Default

Greetings from San Diego Highbury.
I'm using the paid Upgrade version of Avast as well as Malwarebytes and Super Anti Syware.
I've used them all, ie Norton, AVG, and McCaffe.
Found this combo really keeps me as protected as you can get.
The virus';s were there at 11:30AM Pacific.

Cheers RDDR
RDDR is offline   Reply With Quote
Old 06-02-09, 07:40 PM   #4
Chaoic16
Seaman
 
Join Date: Apr 2009
Posts: 37
Downloads: 133
Uploads: 0
Default

I have exactly same problems when downloading updates for FOTRS, when trying to download them, my avast AV program alway warned me that there is virus in these files so I couldn't download these.


Chaoic out...
Chaoic16 is offline   Reply With Quote
Old 06-02-09, 08:05 PM   #5
RDDR
Bosun
 
Join Date: Jan 2007
Posts: 67
Downloads: 49
Uploads: 0
Default

Sometimes a pic works better.
Hope it gets repaired soon.




RDDR is offline   Reply With Quote
Old 06-03-09, 09:14 AM   #6
AVGWarhawk
Lucky Jack
 
AVGWarhawk's Avatar
 
Join Date: Jun 2005
Location: In a 1954 Buick.
Posts: 28,257
Downloads: 90
Uploads: 0


Default

Google that malware name...could be a false positive.
__________________
“You're painfully alive in a drugged and dying culture.”
― Richard Yates, Revolutionary Road
AVGWarhawk is offline   Reply With Quote
Old 06-03-09, 09:22 AM   #7
FIREWALL
Eternal Patrol
 
Join Date: Mar 2006
Location: CATALINA IS. SO . CAL USA
Posts: 10,108
Downloads: 511
Uploads: 0
Default

Still, thanks for the alert.
__________________
RIP FIREWALL

I Play GWX. Silent Hunter Who ???
FIREWALL is offline   Reply With Quote
Old 06-03-09, 10:18 AM   #8
RDDR
Bosun
 
Join Date: Jan 2007
Posts: 67
Downloads: 49
Uploads: 0
Default

Im not going to Google anything.

I think I have done the responsible thing, and thats to alert the community.
Perhaps someone might offer to zip up and send me the fixes.
I would really like to get Maddys addon working
RDDR is offline   Reply With Quote
Old 06-03-09, 10:51 AM   #9
AVGWarhawk
Lucky Jack
 
AVGWarhawk's Avatar
 
Join Date: Jun 2005
Location: In a 1954 Buick.
Posts: 28,257
Downloads: 90
Uploads: 0


Default

Quote:
Originally Posted by RDDR View Post
Im not going to Google anything.

I think I have done the responsible thing, and thats to alert the community.
Perhaps someone might offer to zip up and send me the fixes.
I would really like to get Maddys addon working
Well now, who is to say the files sent to you by another who is using the file is not infected....perhaps their AV did not catch this trojan and it now resides on their hard drive. Then, you get the virus anyway. A quick GOOGLE indicates that Avast does catch this malware were others did not. Hence the suggestion to dig further using Google or any search engine you wish. PM Maddy and advise what you found or do you feel you have done enough
__________________
“You're painfully alive in a drugged and dying culture.”
― Richard Yates, Revolutionary Road
AVGWarhawk is offline   Reply With Quote
Old 06-03-09, 10:53 AM   #10
Akula4745
Convicted Ship Killer
 
Join Date: Mar 2009
Location: Just out of sight... plotting your course and speed
Posts: 846
Downloads: 371
Uploads: 1
Default

I couldn't find anything on TrendMicro about "Win32 Trogen-gen(Other) Virus/Worm/VPS version 090601-06/12009"

Also I downloaded these FOTRS files recently myself and they came through clean and with no malware or trojans. I am not sure what he is seeing but TrendMicro says the downloads are fine.
__________________
Akula4745



"If you sit by the river long enough... the body of your enemy will float by -- SunTzu"
Akula4745 is offline   Reply With Quote
Old 06-03-09, 11:19 AM   #11
AVGWarhawk
Lucky Jack
 
AVGWarhawk's Avatar
 
Join Date: Jun 2005
Location: In a 1954 Buick.
Posts: 28,257
Downloads: 90
Uploads: 0


Default

Reading more on this issue and Avast it would seem to be a false positive. It is also a generic name for a possible Trojan. It does not mean that something is not there however. So, attempt a download from another who has this file and see if the file contains the same.
__________________
“You're painfully alive in a drugged and dying culture.”
― Richard Yates, Revolutionary Road
AVGWarhawk is offline   Reply With Quote
Old 06-03-09, 02:00 PM   #12
RDDR
Bosun
 
Join Date: Jan 2007
Posts: 67
Downloads: 49
Uploads: 0
Default

As mentioned in my first post.I PM'd Maddy first before posting this thread.
Thanks everyone
Cheers,RDDR
RDDR is offline   Reply With Quote
Old 06-03-09, 02:14 PM   #13
Rockin Robbins
Navy Seal
 
Join Date: Mar 2007
Location: DeLand, FL
Posts: 8,900
Downloads: 135
Uploads: 52


Default

My testing is not done, so best to be cautious but:
  • Kapersky online scan found no virus
  • Spybot Search & Destroy says it's clean
  • Ad-Aware says clean
  • Anti-virus portion of Comodo Firewall says it's clean
  • WinPatrol says no problem
Could be a false positive, but let me scan it with ClamWin and someone could hit it with AVG as well. THEN we can clear it as a false positive.

One of the reasons I use Avast! is that it is sensitive and sometimes gives false positives as a result. This would be about the fifth false positive so far this year. I'll take a hundred of those before I accept one false negative!

Don't bother with Norton. It reports that WinPatrol is a virus. Best way to knock out the competition is to make people afraid to use it. So Norton is permanently off my list.
Rockin Robbins is offline   Reply With Quote
Old 06-03-09, 04:17 PM   #14
RDDR
Bosun
 
Join Date: Jan 2007
Posts: 67
Downloads: 49
Uploads: 0
Default

Thanks Rockin Robbins.
I certainly agree.I'd rather deal with false positives for sure.
A few years agao a virus took down my hard drive and I lost photos and valuable info forever.
I hope this is a false positive and if it is I'd like a bit of advice about going back and installing files that look like this.What happens next?
RDDR is offline   Reply With Quote
Old 06-03-09, 04:47 PM   #15
Rockin Robbins
Navy Seal
 
Join Date: Mar 2007
Location: DeLand, FL
Posts: 8,900
Downloads: 135
Uploads: 52


Avast! says:



But Ad-Aware says:



And Kapersky online says:



And ClamWin says:



The verdict is in. The file is clean.
Rockin Robbins is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 11:52 AM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Copyright © 1995- 2025 Subsim®
"Subsim" is a registered trademark, all rights reserved.