Go Back   Forums > Abandonia.com > Games Discussion
Memberlist Forum Rules Search Today's Posts Mark Forums Read
Search Forums:
Click here to use Advanced Search

Reply
 
Thread Tools Display Modes
Old 18-07-2009, 12:36 PM   #21
TotalAnarchy
Surviving the Dark Age
 
TotalAnarchy's Avatar



 
Join Date: Jan 2008
Location: Chisinau, Moldova, Republic of
Posts: 3,147
Default

Quote:
Originally Posted by notyetregistered View Post
Code:
Comodo          1690          2009.07.18   UnclassifiedMalware
Fortinet        3.120.0.0     2009.07.18   MS06.004!exploit
McAfee          5679          2009.07.17   Exploit-MS06-004.gen
McAfee+Artemis  5679          2009.07.17   Exploit-MS06-004.gen
TrendMicro      8.950.0.1094  2009.07.17   TSPY_ZBOT.MCL
http://threatinfo.trendmicro.com/vin...=TSPY_ZBOT.MCL

Just so you know. Could be false alert, could be true.
I'm quite sick of running scans and installing different antiviruses every time one of you guys report a probably unexisting virus. Last Scan Result
__________________
Don't think about the probabilities. The smallest chance can take us a long way forward. It's not like we have anything else to lose.
TotalAnarchy is offline                         Send a private message to TotalAnarchy
Reply With Quote
Old 18-07-2009, 03:01 PM   #22
Skyfly
Abandonia nerd

 
Join Date: May 2009
Location: ,
Posts: 61
Default

Quote:
Originally Posted by TotalAnarchy View Post
I'm quite sick of running scans and installing different antiviruses every time one of you guys report a probably unexisting virus. Last Scan Result
I would say that we're just being cautious, I was the first to post a malware report. I ran the zip through McAfee and I have cleaned out that 'malware' generating file. Can't someone upload the cleaned zip back here to prevent future posts of this nature (reporting malware in Dylan Dog)?

Microsoft should have patched up the exploit, so if you're keeping up with the Windows Updates, the malware should be kept in check.
Skyfly is offline                         Send a private message to Skyfly
Reply With Quote
Old 20-07-2009, 05:56 AM   #23
TotalAnarchy
Surviving the Dark Age
 
TotalAnarchy's Avatar



 
Join Date: Jan 2008
Location: Chisinau, Moldova, Republic of
Posts: 3,147
Default

Quote:
Originally Posted by Skyfly View Post
I would say that we're just being cautious, I was the first to post a malware report. I ran the zip through McAfee and I have cleaned out that 'malware' generating file. Can't someone upload the cleaned zip back here to prevent future posts of this nature (reporting malware in Dylan Dog)?

Microsoft should have patched up the exploit, so if you're keeping up with the Windows Updates, the malware should be kept in check.
Have you been able to play the game after cleaning this so-called malware?
__________________
Don't think about the probabilities. The smallest chance can take us a long way forward. It's not like we have anything else to lose.
TotalAnarchy is offline                         Send a private message to TotalAnarchy
Reply With Quote
Old 20-07-2009, 03:51 PM   #24
Skyfly
Abandonia nerd

 
Join Date: May 2009
Location: ,
Posts: 61
Default

Quote:
Originally Posted by TotalAnarchy View Post
Have you been able to play the game after cleaning this so-called malware?
Yes, I am able to start main1.exe and I can play through the game. I don't know if I need to install the game in order to get the sound to work, I'm reluctant to try because it is in Italian.
Skyfly is offline                         Send a private message to Skyfly
Reply With Quote
Old 21-07-2009, 04:27 AM   #25
TotalAnarchy
Surviving the Dark Age
 
TotalAnarchy's Avatar



 
Join Date: Jan 2008
Location: Chisinau, Moldova, Republic of
Posts: 3,147
Default

Quote:
Originally Posted by Skyfly View Post
Yes, I am able to start main1.exe and I can play through the game. I don't know if I need to install the game in order to get the sound to work, I'm reluctant to try because it is in Italian.
Could you send me somehow the Secur.pal files that you can find in the "P" folders of both part 1 and 2? These files are probably responsable of the copy protection, so I don't think it has smth related to the sound.
__________________
Don't think about the probabilities. The smallest chance can take us a long way forward. It's not like we have anything else to lose.
TotalAnarchy is offline                         Send a private message to TotalAnarchy
Reply With Quote
Old 21-07-2009, 03:34 PM   #26
Skyfly
Abandonia nerd

 
Join Date: May 2009
Location: ,
Posts: 61
Default

Quote:
Originally Posted by TotalAnarchy View Post
Could you send me somehow the Secur.pal files that you can find in the "P" folders of both part 1 and 2? These files are probably responsable of the copy protection, so I don't think it has smth related to the sound.

I took a minute to compare the cleaned zip with the 'detected' zip, there are two files that are removed, Ani1.ani, one in each folder Dylan1 & Dylan2.

It is the animated cursor file, and windows has been vulnerable to malware through the way it handles animated cursors. I don't know if this is a false positive or not, but removing these files doesn't seem to disrupt game play, though I don't know what the animated cursor looks like compared to the cursor I have been using.

The issue with the sound, since the instructions are in Italian, I'm not sure how to follow the directions, so I haven't tried, yet.

Do you need to install the game in order to configure the sound?
Skyfly is offline                         Send a private message to Skyfly
Reply With Quote
Old 21-07-2009, 03:55 PM   #27
The Fifth Horseman
FUTURE SCIENCE BASTARD
 
The Fifth Horseman's Avatar


 
Join Date: Oct 2004
Location: Opole, Poland
Posts: 14,276
Default

And you are sure it was an animated cursor?
LULZ.
I've seen the ANI extension associated with animated sprites (and animations in general) in older games.
Are there any other ANI files in the game directory?
__________________

"God. Can't you people see I'm trying to commit a crime against science and nature here?"
-- Reed Richards
The Fifth Horseman is offline                         Send a private message to The Fifth Horseman
Reply With Quote
Old 21-07-2009, 04:03 PM   #28
Skyfly
Abandonia nerd

 
Join Date: May 2009
Location: ,
Posts: 61
Default

Quote:
Originally Posted by The Fifth Horseman View Post
And you are sure it was an animated cursor?
LULZ.
I've seen the ANI extension associated with animated sprites (and animations in general) in older games.
Are there any other ANI files in the game directory?

I'm not sure what it is, I'm only trying to be helpful. Those are the only .ani files in the archive.

There are only 2 Ani1.ani files, one for each directory, Dylan1 and Dylan2. The file is only 23KB. I assume it was for a cursor, but I don't know.
Skyfly is offline                         Send a private message to Skyfly
Reply With Quote
Old 21-07-2009, 04:06 PM   #29
TotalAnarchy
Surviving the Dark Age
 
TotalAnarchy's Avatar



 
Join Date: Jan 2008
Location: Chisinau, Moldova, Republic of
Posts: 3,147
Default

Quote:
Originally Posted by Skyfly View Post
I took a minute to compare the cleaned zip with the 'detected' zip, there are two files that are removed, Ani1.ani, one in each folder Dylan1 & Dylan2.

It is the animated cursor file, and windows has been vulnerable to malware through the way it handles animated cursors. I don't know if this is a false positive or not, but removing these files doesn't seem to disrupt game play, though I don't know what the animated cursor looks like compared to the cursor I have been using.

The issue with the sound, since the instructions are in Italian, I'm not sure how to follow the directions, so I haven't tried, yet.

Do you need to install the game in order to configure the sound?
What are you talking about? Using Trend Micro antivirus it detected only the secur.pal as viruses Can you please check with your antivirus the archive on HOTUD.org. If the results are also positive, then forget it. It's just the original files are detected as something else, and can do no harm to your computer.
__________________
Don't think about the probabilities. The smallest chance can take us a long way forward. It's not like we have anything else to lose.
TotalAnarchy is offline                         Send a private message to TotalAnarchy
Reply With Quote
Old 21-07-2009, 04:17 PM   #30
Skyfly
Abandonia nerd

 
Join Date: May 2009
Location: ,
Posts: 61
Default

Quote:
Originally Posted by TotalAnarchy View Post
What are you talking about? Using Trend Micro antivirus it detected only the secur.pal as viruses Can you please check with your antivirus the archive on HOTUD.org. If the results are also positive, then forget it. It's just the original files are detected as something else, and can do no harm to your computer.
I was explaining what McAfee removed from the zip archive, the Exploit-MS06-004.gen... It is related to the Ani1.ani files.

My point isn't that they are problematic or potentially harmful - I don't know, it is that other people might come here to post warnings as long as those files are in the zip, so maybe someone can post a note on the download page to disregard the malware warning if they run McAfee or Fortinet or Comodo scans.

I don't have Trend Micro available, so I don't know what's going on there.
Skyfly is offline                         Send a private message to Skyfly
Reply With Quote
Reply


Similar Threads
Thread Thread Starter Forum Replies Last Post
Dylan Dog - The Murderers TheVoid Games Discussion 25 15-11-2010 01:24 PM
Fill To Me The Parting Glass... ReamusLQ Blah, blah, blah... 46 03-11-2007 09:18 AM
Dylan Dog: Through the Looking Glass gugnihr On site 5 15-07-2007 10:02 PM
Dylan Dog Guest_christian_* Troubleshooting 1 21-11-2006 11:01 AM

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump
 


The current time is 01:08 AM (GMT)

 
Powered by vBulletin® Version 3.7.1
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.