Page 1 of 1

2 Virus Scanners say new sro_client.exe is a Trojan

Posted: Tue May 22, 2007 10:04 am
by Jazba
AhnLab-V3 2007.5.21.1 05.21.2007 no virus found
AntiVir 7.4.0.23 05.22.2007 no virus found
Authentium 4.93.8 05.21.2007 no virus found
Avast 4.7.997.0 05.21.2007 no virus found
AVG 7.5.0.467 05.21.2007 no virus found
BitDefender 7.2 05.22.2007 no virus found
CAT-QuickHeal 9.00 05.21.2007 no virus found
ClamAV devel-20070416 05.22.2007 no virus found
DrWeb 4.33 05.21.2007 no virus found
eSafe 7.0.15.0 05.21.2007 no virus found
eTrust-Vet 30.7.3652 05.22.2007 no virus found
Ewido 4.0 05.21.2007 no virus found
FileAdvisor 1 05.22.2007 no virus found
Fortinet 2.85.0.0 05.22.2007 no virus found
F-Prot 4.3.2.48 05.21.2007 no virus found
F-Secure 6.70.13030.0 05.22.2007 no virus found
Ikarus T3.1.1.8 05.22.2007 no virus found
McAfee 5035 05.21.2007 no virus found
Microsoft 1.2503 05.22.2007 no virus found
NOD32v2 2283 05.21.2007 no virus found
Norman 5.80.02 05.21.2007 no virus found
Panda 9.0.0.4 05.22.2007 no virus found
Prevx1 V2 05.22.2007 no virus found
Sophos 4.17.0 05.21.2007 no virus found
Sunbelt 2.2.907.0 05.17.2007 no virus found
Symantec 10 05.22.2007 no virus found
TheHacker 6.1.6.120 05.21.2007 no virus found
VBA32 3.12.0 05.21.2007 no virus found
VirusBuster 4.3.239 05.21.2007 no virus found
Kaspersky 4.0.2.24 05.22.2007 Trojan-Spy.Win32.VB.qp
Webwasher-Gateway 6.0.1 05.22.2007 Win32.Vulnerable.genHigh suspicious

Posted: Tue May 22, 2007 10:07 am
by borat2
good sign for you not to install the game then :P

Posted: Tue May 22, 2007 10:08 am
by [SK]Paddo
lol, are you sure that you scanned the orig file? ;P... besides, why did u scan it? oO

Posted: Tue May 22, 2007 10:11 am
by Jazba
cuz some1 posted that on silkroad main forums
thats y i scanned the file again
http://www.virustotal.com/en/indexf.html

Posted: Tue May 22, 2007 10:15 am
by cin
Jazba wrote:cuz some1 posted that on silkroad main forums
thats y i scanned the file again
http://www.virustotal.com/en/indexf.html


maybe those virusscanners are too sensitive? :D

Posted: Tue May 22, 2007 10:19 am
by Drew_Benton
The fact that this is happening after a update means that JM did add something to the client. Not sure what, but something that would cause scanners to flag the file.

Posted: Tue May 22, 2007 10:21 am
by madooo
i have kaspersky antivirus and after update it detected Trojan-Spy.Win32.VB.qa in sro_client

Posted: Tue May 22, 2007 11:33 am
by feversea
i wish it's a background add-on for client which will detect abnormal programs if you bypass GG. may be a greater detector for bots than GG :P

Posted: Tue May 22, 2007 11:34 am
by Death2U
It's called a false positive 8)

Posted: Tue May 22, 2007 11:57 am
by Glorfindal
Silkroad Servers are shutting down in 5 minutes.

Posted: Tue May 22, 2007 12:01 pm
by Uriko
Glorfindal wrote:Silkroad Servers are shutting down in 5 minutes.
so?

Posted: Tue May 22, 2007 12:03 pm
by Key-J
So they are gna do something about it DUH!

Posted: Tue May 22, 2007 12:04 pm
by IceCrash
madooo wrote:i have kaspersky antivirus and after update it detected Trojan-Spy.Win32.VB.qa in sro_client

Same shit is happening with a friend of mine

Posted: Tue May 22, 2007 12:04 pm
by Jazba
they really messed up big this time
i think they installed trojan to get botters, but instead it backfired, now they have to rename the trojan ^_^
OR
someone in korea really hates rest of the world

Posted: Tue May 22, 2007 12:06 pm
by Blade__NZ
Someone on the SRO forums claims that its actually the virus scanners have updated. And that the virus is in the preupdated version aswell, just no ones virus scanning software had the trojan added to its check list ????

Anyone can confirm this ?

Posted: Tue May 22, 2007 12:35 pm
by heroo
its just to overprotected, when i have my norton personal firewall on, it wont let me start SRO, so there's nothing to worry about.

Posted: Tue May 22, 2007 12:38 pm
by Promet
Jazba wrote:now they have to rename the trojan ^_^


:P :P :P :P

Posted: Tue May 22, 2007 12:48 pm
by fant1k
my zone alarm found also same trojan in 3 places on hdd...

Posted: Tue May 22, 2007 1:02 pm
by Crumpets
Death2U wrote:It's called a false positive 8)


Finally some sense.

Seriously guys, think before you spew bullshit.

Posted: Tue May 22, 2007 1:02 pm
by QingMei
lol my virus scanner also found trojan in the sro_client

Posted: Tue May 22, 2007 1:02 pm
by madooo
now every time i want to start sro i must close my antivirus :S

Posted: Tue May 22, 2007 1:08 pm
by BuddahBless
A game client shouldn't have anything in it that gives a false positive though. Especially a false positive for a trojan ;o

Posted: Tue May 22, 2007 3:11 pm
by firefox6
i updated not that long ago and then was reading all this and a few other posts and did a scan with avg.. did not find anything

Posted: Tue May 22, 2007 3:19 pm
by Sharp324
You do know it scans stuff with the characteristics of a trojan...it could just be something to monitor your game play like most games do now.

Posted: Tue May 22, 2007 3:34 pm
by Takam
They are blaming the "Trojan" on people who use bots.

Methinks Joymax hasn't a clue as to why this is happening.

Posted: Tue May 22, 2007 3:38 pm
by YangKang
tz there u see what to much pr0n can do lol I always told myself that they are watching pr0n while inspection and im right :p u see guys watching pr0n = baaaaaaaad = gives trojan = u die lol

Posted: Tue May 22, 2007 10:05 pm
by Test007
Image

Kaspersky :love: . Now, the thing is, what the heck does a Trojan inside the client update?