Computer Forums

Member Login

Remember Me? Sign Up! | Forgot Password
 
Slogan
 
Computer Forums > The World Wide Web > Virus - Spyware Protection / Detection » Suspecious EXE file (but only 1 virust scanner confirmed this)
Closed Thread
Old 07-23-2007, 03:22 PM   #1 (permalink)
 
True Techie

Join Date: Apr 2005

Posts: 110

Murdoc

Default Suspecious EXE file (but only 1 virust scanner confirmed this)

Hello all, I've downloaded a "patch" recently for a software and I've used an online site which has all major anti-virus scanner software installed and performs test in their own controlled environment. The test shows that out of 20 anti-virus softwares only AVG deemed it to be a virus namely Generic5.OFF Trojan.

I have noticed that right after using the patch I was under a silent spyware attack and I didn't discover it until the socketcltX.ocx error message came up on my Windows XP screen. I confirmed this to be a spyware attack because after getting this error, I performed a scan with spybot and a spyware was found hiding a bunch of dll files inside C:\windows directory.

It does sound very suspecious but do you guys think that this patch is really a virus? Or do you guys think that it's just coincidence? When I launched the patch everything looks normal and it looked like a regular software.
Murdoc is offline  
Old 07-23-2007, 07:49 PM   #2 (permalink)
eyeCpc's Avatar
 
Master Techie

Join Date: Apr 2007

Posts: 2,074

eyeCpc is on a distinguished road

Default Re: Suspecious EXE file (but only 1 virust scanner confirmed this)

That would depend on what the patch was for. If it was a 3rd mod for some game a possible trojan or adware is likely. From a regular retail software company the likelihood of trojans is greatly deminished there for sure. They want repeat business not a bad rep. That would be where something else triggered the spy right when you were applying the patch.
eyeCpc is offline  
Old 07-23-2007, 07:50 PM   #3 (permalink)
 
Newb Techie

Join Date: Dec 2006

Posts: 31

Crimsonite

Default Re: Suspecious EXE file (but only 1 virust scanner confirmed this)

What kinda patch...?

Anyways, go follow Warez' guide..
Crimsonite is offline  
Old 07-23-2007, 08:33 PM   #4 (permalink)
 
True Techie

Join Date: Apr 2005

Posts: 110

Murdoc

Default Re: Suspecious EXE file (but only 1 virust scanner confirmed this)

Quote:
Originally Posted by Crimsonite View Post
What kinda patch...?

Anyways, go follow Warez' guide..
Let's say it's a patch to stop a software from nagging you in registering their program.

The question is, if only 1 anti-virus is able to detect this problem could it really be a coincidence that I got the spyware at the sametime?
Murdoc is offline  
Old 07-23-2007, 08:34 PM   #5 (permalink)
eyeCpc's Avatar
 
Master Techie

Join Date: Apr 2007

Posts: 2,074

eyeCpc is on a distinguished road

Default Re: Suspecious EXE file (but only 1 virust scanner confirmed this)

AVG has been great here at spotting things on occasion. Once while having it completely disabled it suddenly sprang to life when a trojan was swiftly copied to the drive during a web search and coming across some new site. AVG pointed out the exact file name and location at the root of C for manual removal of the apparent trojan downloader. No new registry entries had been made there. SUspect drivers in the Windows\system32 folder suggest a need to post a HT log or something to look for new values in the reg.
eyeCpc is offline  
 
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
HiJack This! P30PL35 HijackThis Logs (finished) 17 07-12-2007 07:58 AM
Another Hijack Log boo HijackThis Logs (finished) 17 06-26-2007 12:30 PM
my log Max Power HijackThis Logs (finished) 10 06-07-2007 11:56 PM
Objecterror HJT Log objecterror Virus - Spyware Protection / Detection 4 05-18-2007 12:19 PM
Having trouble getting a downloaded file Bendersterrier Browser & General Internet Questions 1 03-28-2007 12:42 PM