
dual client malware found using AVAST
Moderators: waferbaron, Moderators
Forum rules
This server is currently not maintained and tables folder (including connection info) is outdated. Read the wiki for instructions on how to update those information. Please contribute your updated info. Contact Cozzie to join the team as a regular server supporter.
This server is currently not maintained and tables folder (including connection info) is outdated. Read the wiki for instructions on how to update those information. Please contribute your updated info. Contact Cozzie to join the team as a regular server supporter.
-
- Noob
- Posts: 9
- Joined: 30 May 2010, 22:37
- Noob?: Yes
dual client malware found using AVAST
can some one help me why valexe for dual has been removed because of a malware-gen. Ive been using dual client for valkyrie since renewal but only now Dec 3, 2010 its been block by my anti virus "AVAST" and been move to virus volt. Any one have the same problem like this. And another thing is that the original valexe dont have this same malware and working properly. I also tried to download sakexe from this site "http://forums.openkore.com/viewtopic.php?f=55&t=11659" and it also gave the same result "malware found" 

-
- Noob
- Posts: 1
- Joined: 03 Dec 2010, 10:35
- Noob?: Yes
Re: dual client malware found using AVAST
Even the link to download the ragexe has this. Can't download the ragexe from the link 4shared and I couldn't use the hexed client.
-
- Noob
- Posts: 9
- Joined: 28 Oct 2009, 10:18
- Noob?: Yes
Re: dual client malware found using AVAST
Got that too with the unpacked Sakexe, just now, and I've been using the same file since renewal. The trojan is called "Magania" and is a password/username stealer according to Avira. I wonder why only now do I get it.
-
- Noob
- Posts: 9
- Joined: 30 May 2010, 22:37
- Noob?: Yes
Re: dual client malware found using AVAST
So it means not only avast detects this as a malware but also other antivirus.But the question is why only now. What i have done so far is to install new antivirus i will try if it will work. Hope to have good results.. 

-
- Noob
- Posts: 9
- Joined: 28 Oct 2009, 10:18
- Noob?: Yes
Re: dual client malware found using AVAST
My guess, based on nothing, is that the virus will activate on "123" date, which is 12-3 or December 3.
Kidding aside. It's still early to judge other people, but for safety reasons, I recovered my client with GG and changed my game password. Just in case, I won't be using the unpacked client until someone tells me that it is really safe.
Or I will unpack my own .exe.
Kidding aside. It's still early to judge other people, but for safety reasons, I recovered my client with GG and changed my game password. Just in case, I won't be using the unpacked client until someone tells me that it is really safe.
Or I will unpack my own .exe.
-
- Noob
- Posts: 10
- Joined: 14 Oct 2010, 03:08
- Noob?: No
Re: dual client malware found using AVAST
whew.. AVAST automatically deleted the hexed valexe. been using this for months, but why only now that it has been detected as a malware?
-
- Plain Yogurt
- Posts: 94
- Joined: 15 Nov 2010, 05:41
- Noob?: Yes
Re: dual client malware found using AVAST
i allowed it also as trusted application.
should i be worried? and yes, why only now? ive been using this for months
should i be worried? and yes, why only now? ive been using this for months
-
- Moderators
- Posts: 403
- Joined: 25 Aug 2008, 14:56
- Noob?: No
- Location: CyberOne Building , Eastwood
Re: dual client malware found using AVAST
hmmm thats wierd could be another false positive again...
will be removing the link for unpacked clients at the moment.
----------- links temporarily removed.. will be testing unpacked clients after updating sakray.
EDIT :
Managed to UNPACK Ragexe using belladonas Stripperx.... the problem is.. the blocks of hextrings are not the same as before @_@
EDIT:
seems like they did change the positions of the hex strings... but I managed to trace the hex for Gameguard disabling in New Chaos.. I will be uploading the Unpacked RAGEXE.EXE and its upto you to use it... http://forums.openkore.com/posting.php? ... 59&p=43231 ...
will be removing the link for unpacked clients at the moment.
----------- links temporarily removed.. will be testing unpacked clients after updating sakray.
EDIT :
Managed to UNPACK Ragexe using belladonas Stripperx.... the problem is.. the blocks of hextrings are not the same as before @_@
EDIT:
seems like they did change the positions of the hex strings... but I managed to trace the hex for Gameguard disabling in New Chaos.. I will be uploading the Unpacked RAGEXE.EXE and its upto you to use it... http://forums.openkore.com/posting.php? ... 59&p=43231 ...
“The moon shines to both guilty and innocent alike..”
The Openkore Manual---Global Forum Rules--The Template
The Openkore Manual---Global Forum Rules--The Template
-
- Noob
- Posts: 1
- Joined: 04 Dec 2010, 05:52
- Noob?: Yes
Re: dual client malware found using AVAST
even my very reliable kaspersky detected a magania.edgo trojan in unpacked ragexe.
so sad i can't dual login the thing is i'm using that file since renewal.
so sad i can't dual login the thing is i'm using that file since renewal.
-
- Noob
- Posts: 9
- Joined: 30 May 2010, 22:37
- Noob?: Yes
Re: dual client malware found using AVAST
i have just change my antivirus to norton and it does not detect any thing on my dual client for valexe. But i do not suggest that this is the solution.
I think we just need to update the valexe for dual..
I think we just need to update the valexe for dual..
