Антивирусната ми засича вирус ?

Ботове, хакове и всякакви допълнителни инструменти, които не са в разрез с правилата на сървъра.
Cecobg
Jr. Member
Jr. Member
Posts: 127
Joined: Fri Feb 12, 2010 1:50 pm

Post

Добър ден на всички.Искам да попитам защо като тегля някои от готовите ботове (опитах с тези за пиндел бот за близард и този за контесата за лайт сорс.) антивирусната ми засече и на двата вирус.Проблема в мен ли е или ... ? Извинявам се предварително за притеснението.
User avatar
Ивайло Георгиев
Dreaming Friend
Dreaming Friend
Posts: 1542
Joined: Fri Feb 13, 2009 10:26 am

Post

В кой файл засича вирус. Направи едно сканиране в http://www.virustotal.com/
Cecobg
Jr. Member
Jr. Member
Posts: 127
Joined: Fri Feb 12, 2010 1:50 pm

Post

Ами ... резултата е плачевен :

Code: Select all

File d2jspLingContess.rar received on 2010.05.17 17:36:13 (UTC)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 20/41 (48.79%)
- Ако това ти говори нещо.Другия които моята анти-вирусна засече хак е този бот за близз сорс на пиндел.Няма смисал и него да го гледам мисля ...
User avatar
Ивайло Георгиев
Dreaming Friend
Dreaming Friend
Posts: 1542
Joined: Fri Feb 13, 2009 10:26 am

Post

makecdkeyhash.exe или gateway_editor.exe ги засича като подобие на "Trojan Generic/Agent" .
Cecobg
Jr. Member
Jr. Member
Posts: 127
Joined: Fri Feb 12, 2010 1:50 pm

Post

Ето цяло копие на това какво ми изписва :
File d2jspLingContess.rar received on 2010.05.17 18:38:58 (UTC)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 20/41 (48.79%)
Loading server information...
Your file is queued in position: ___.
Estimated start time is between ___ and ___ .
Do not close the window until scan is complete.
The scanner that was processing your file is stopped at this moment, we are going to wait a few seconds to try to recover your result.
If you are waiting for more than five minutes you have to resend your file.
Your file is being scanned by VirusTotal in this moment,
results will be shown as they're generated.
Compact Compact
Print results Print results
Your file has expired or does not exists.
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.

You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:

Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.05.10 -
AhnLab-V3 2010.05.18.00 2010.05.17 -
AntiVir 8.2.1.242 2010.05.17 BDS/Beastdoor.BJQ
Antiy-AVL 2.0.3.7 2010.05.17 -
Authentium 5.2.0.5 2010.05.17 -
Avast 4.8.1351.0 2010.05.17 -
Avast5 5.0.332.0 2010.05.17 -
AVG 9.0.0.787 2010.05.17 Generic7.CY
BitDefender 7.2 2010.05.17 Trojan.Generic.786639
CAT-QuickHeal 10.00 2010.05.17 Trojan.Agent.ATV
ClamAV 0.96.0.3-git 2010.05.17 -
Comodo 4862 2010.05.17 UnclassifiedMalware
DrWeb 5.0.2.03300 2010.05.17 Trojan.DownLoader1.1215
eSafe 7.0.17.0 2010.05.17 Win32.Backdoor.Troja
eTrust-Vet 35.2.7494 2010.05.17 -
F-Prot 4.5.1.85 2010.05.17 W32/Heuristic-210!Eldorado
F-Secure 9.0.15370.0 2010.05.17 Trojan.Generic.786639
Fortinet 4.1.133.0 2010.05.16 -
GData 21 2010.05.17 Trojan.Generic.786639
Ikarus T3.1.1.84.0 2010.05.17 Backdoor.Beastdoor
Jiangmin 13.0.900 2010.05.17 -
Kaspersky 7.0.0.125 2010.05.17 -
McAfee 5.400.0.1158 2010.05.17 Generic BackDoor!pc
McAfee-GW-Edition 2010.1 2010.05.17 Generic.dx
Microsoft 1.5703 2010.05.17 -
NOD32 5122 2010.05.17 probably a variant of Win32/Agent
Norman 6.04.12 2010.05.17 -
nProtect 2010-05-17.01 2010.05.17 -
Panda 10.0.2.7 2010.05.17 Adware/AccesMembre
PCTools 7.0.3.5 2010.05.17 Voronezh.1600.A
Prevx 3.0 2010.05.17 -
Rising 22.48.00.04 2010.05.17 -
Sophos 4.53.0 2010.05.17 Mal/Generic-A
Sunbelt 6313 2010.05.17 Trojan.Win32.Generic!BT
Symantec 20101.1.0.89 2010.05.17 Backdoor.Trojan
TheHacker 6.5.2.0.281 2010.05.17 -
TrendMicro 9.120.0.1004 2010.05.17 -
TrendMicro-HouseCall 9.120.0.1004 2010.05.17 -
VBA32 3.12.12.5 2010.05.17 -
ViRobot 2010.5.17.2320 2010.05.17 -
VirusBuster 5.0.27.0 2010.05.17 Packed/FSG
Additional information
File size: 925892 bytes
MD5...: 3ddc8afbee0a9b641fa7ded2b876d35f
SHA1..: 58b906212ae810e043a760addd97693c40e95b89
SHA256: fff8120a114391e3b446bd1bd764f915572d6f6cc7f9ebd3409f23001d4128f9
ssdeep: 24576:FJqPGTRIBoKHIIb32cGqbU1f3/1hbMAT/rsN:FJRTqo6IIb32cGqbU1f34
iYN
PEiD..: -
PEInfo: -
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: RAR Archive (83.3%)
REALbasic Project (16.6%)
Symantec Reputation Network: Suspicious.Insight http://www.symantec.com/security_respon ... 23-0550-99
packers (Kaspersky): ASPack, ASPack, FSG, UPX, ASPack, Packman
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
packers (F-Prot): Aspack, FSG, UPX, Packman

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.
User avatar
SkylineGTR
Dreaming Friend
Dreaming Friend
Posts: 1254
Joined: Fri Jan 22, 2010 8:58 pm

Post

Повечето антивирусни засичат програми с чужд език за тях като вирус . В rar формат няма как да има вирус :D . Или антивирусни е много стара или просто е с слаба защита че да хване вирус в рар формат :)
User avatar
TheExorcist™
Dreaming Friend
Dreaming Friend
Posts: 1479
Joined: Tue Jan 26, 2010 9:38 am

Post

SkylineGTR wrote: Повечето антивирусни засичат програми с чужд език за тях като вирус . В rar формат няма как да има вирус :D . Или антивирусни е много стара или просто е с слаба защита че да хване вирус в рар формат :)
Точно в РАР архив
МОЖЕ да има вирус :)...Дори ако не си забелязвал анти вирусните програми имат опция дали да сканират какво има в тях (архивите) :)
....