View Full Version : hi virus found in advance box 1.19 exe - (Problem Resolved Jan-23-2008)
unlock_solution
01-15-2008, 06:49
hi sir virus found in advance box v 1.19 exe .......plz check
win 32.backdoor.rbot.bmr.in
wbr
varun
X-Shadow
01-15-2008, 06:55
?????
What is your virus scanner??????????
X-Shadow
01-15-2008, 06:58
1. The Laptop that compiles our EXE is not even connected to the Internet.
2. I think it is the Themida Packer that is causing this wrong "virus" signature.
Tell me your virus scanner software and I will try to check here...
B.R.
X-Shadow
unlock_solution
01-15-2008, 07:04
hi sir i am using quick heal anti virus plus 2007 ..........original pack
wbr
varun
Advance-Box
01-15-2008, 07:06
Currently Installing Quick Heal...
Please wait for few minutes...
B.R.
Advance-Box
01-15-2008, 07:22
I installed this:
http://download4.quickheal.com/builds/eval2008/qhnteval.exe
Quick Heal AntiVirus Plus 2008 - Free One Month Trial
And it did not find anything in my 1.19 exe ...
I have the Jan 14, 2008 Update for Quick Heal Installed
unlock_solution
01-15-2008, 08:42
here is link sir i attached snaps of that plz check..................
File: Desktop.rar
DownloadLink: http://rapidshare.com/files/83926384/Desktop.rar
----------------------------------------------------------------------------------------------
wbr
varun
X-Shadow
01-15-2008, 11:19
I can see from your screenshots that you have this file in Driver E:...
Is your Drive E: a USB FlashDrive? If it is, then I think it is your FlashDrive
which is infected by maybe a Autorun malware.
Can you try downloading the 1.19 rar file from the support site again and
scan it? But this time, dont use your Flash Drive. ;-)
I still also don't get a virus message after installing the same Virus Scanner
you have plus the latest updates. I am aware that sometime ago a malware
was packed using a demo version of themida which enabled it to escape
the scanning of any anti-virus software because the anti-virus software cannot
see it's actual trojan's signature!!! Maybe this is the reason why any themdia packed
software is closely watched these days by the anti-virus companies.
Anyone else having the same problem???
Best Regards,
X-Shadow
unlock_solution
01-16-2008, 13:38
hi sir e drive is not a flash drive but i wait for next update because in all advance box exe it cannot find virus in that it find i think anti virus problem
wbr
varun
GSM-FUTURE
01-20-2008, 19:12
Hi,
Adv Box Exe Is Not Infected And Don,t Claim To Support Site That Has Virus In Support Site Scan Ur Pc With Gud Antivirus And Then Download Same Exe And Check Result.all Are Using This Exe After Download From Support Area No Body Claim This. So Nest Time Be Sure That Your Pc Is Cleaned Up From Virus Insted Of Blaming Support Area.
Br
Jass
No Virus Bro.............................................!
harim_1981
01-23-2008, 11:35
me too facing the problem....i am using ESET smart security trial version
for all exes says as virus
after disabling the protection downloads fine
X-Shadow
01-23-2008, 12:42
@harim_1981
The reason why some virus scanners reports some virus our EXE it's
because of themida.
Sometime ago, some ingenius hacker realized that if he put his tojan
inside the EXE and then pack the EXE using the 30 day trial version
of themida, the virus scanners will no longer detect the trojan's signature
because with themida, he can internally use a virtual PC with different
ASM structures not recognizable by any win32 machine.
People later on realized what was going on and panic struck some
Virus Scanner Companies who found it almost impossible to detect
the signature of trojans/mallwares/viruses/worms packed with themida.
In short, any software packed with themida became a prime suspect
for trojans/mallwares/viruses/worms etc... Especially softwares that
uses generic ports to exchange data in the internet.
Now, starting from version 1.18 of AdvanceBox software, ulymar included
some online update tools for faster support in the form of the "Update Triggers"
button. This is the main reason why some virus scanners detect 1.18 and above
as having some kind of trojan. You will also notice that each virus scanner software
detects a different trojan signature!!! Some virus scanner detect it as "Virus A" some
with "Virus B" and still others "Virus C" etc etc...
So long story short, there is absolutely nothing malicious inside our EXE files. The most
we can do is provide an offline version of the EXE files by removing the Online Update
codes so that you can continue to activate your virus scanner software while running
AdvanceBox EXE.
Best Regards,
X-Shadow
harim_1981
01-24-2008, 10:36
thanks sir....
but while downloading only i face this problem...
while using Soft nothing problem....very nice performance
GOPALRAJ
06-04-2008, 18:46
sir i also facing same problem
Advance-Box
06-05-2008, 07:43
@GOPALRAJ
Turn OFF Any virus scanner and download again.
After you download, extract then turn on virus scanner.
I have reported this fake "Virus Found" to Kaspersky Labs and
they fixed it in their latest update. Right now, I am not getting
any problems with Kaspersky. I also reported it to AVG but they
did not reply my emails.
B.R.
X-Shadow
oliverous
06-05-2008, 07:58
he he he... all version of advance has no virus found.. maybe your anti virus has a problem...
GOPALRAJ
06-08-2008, 17:30
sir i have done this many times and my way .i also unstall antivires .i am using NOD 32 anvirus
GOPALRAJ
06-09-2008, 18:11
sir when i am downloading advance 2.17 it directly go to temporary folder and can,t find that setup .
GOPALRAJ
06-10-2008, 18:09
sorry sir that is happend by my pc problem.after v2.17 setup all problem is solved thanks to advance team