Page 1 of 1

got a backdoor alert while playing NWN

Posted: Sat May 14, 2005 3:46 am
by ave
Maybe irrelevent with Avlis. I was playing on line while my antivirus alerted me of a backdoor program . After hard efford i managed to wipe the file out of my system. It's name was .EXE . I had to manualy delete the .exe.pf into the prefetch folder also to manualy wipe .exe file out of prosesses to finally remove it permanently after first having it renamed into .exe.VIR (the antivirus wouldn;t delete it so i had to rename it first and do the rest manually) . Did a scan now it seems clean .

PS not sure if relevent i had priorly to this got a message from winamp that a new update was availiable and i said yes to the window that appeared so to update , then i got into a page of winamp at least seemed so at first glance but i decided not to download anything at the time. Immediately after that and some minutes after playing at Mikona server i got this backdoor program warning

Posted: Sat May 14, 2005 11:50 am
by Kyprioth
Spybot: Search and Destroy (At least I think thats what its called, I'll check when I get back home) has a function called Shredder; Very useful for deleting files, I find it most useful for quickly removing *resisting* files

Posted: Sat May 14, 2005 1:36 pm
by Humanist
Kyprioth wrote:Spybot: Search and Destroy (At least I think thats what its called, I'll check when I get back home)
Yes, that's the correct name.

Posted: Sat May 14, 2005 4:06 pm
by tid242
Kyprioth wrote:Spybot: Search and Destroy (At least I think thats what its called, I'll check when I get back home) has a function called Shredder; Very useful for deleting files, I find it most useful for quickly removing *resisting* files
I'll have to look into the Shredder feature (the name is cool if nothing else.) never noticed it in spybot before.

Otherwise:
Lavasoft Adaware - free if for personal use.
Microsoft Antispy (just google "microsoft antispyware" and it'll be the 1st one).... I'm no microsoft fan, but this proggie actually works! - oddly enough. And seems to work well.

Also it's not a bad idea to use Mozilla instead of IE as many exploits are specifically written for the latter and not the former.... on second thought... just use Linux :)

-tid242

edit: a little RTFAing was in order :oops: