Aqua-Soft Forums: Xwd Dock 2.0.2 Kaspersky Issue - Aqua-Soft Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Xwd Dock 2.0.2 Kaspersky Issue Rate Topic: -----

#1 User is offline   mitzaodx Icon

  • Group: Member
  • Posts: 5
  • Joined: 30-May 08

Posted 26 June 2010 - 09:55 PM

Today my antivirus discovered that xwd.exe is infected with a trojan TROJAN.WIN32.FakeAV.ws and container.dll is infected with TROJAN.WIN32.FakeAV.wr and it automatically deleted those files.
The problem is that now it discovered that i am infected with Rootkit.Win32.TDSS.d.
So... my point is somehow i got infected through xwd with a bigger virus, well.. actually a rootkit.
The thing is i downloaded it from the official page (http://xwdock.aqua-soft.org/) 3 days ago and when i first scanned this thing it detected nothing. When i scanned my computer today because i full scan it once a week (saturday) it found nothing. I was downloading a big file from internet and went to sleep for a 5 hours then i woke up and found that kaspersky detected xwd.exe infected, i know it was ok and i taught maybe it's a false positive and a new version was pushed to my hard drive (check for updates was on and i had the lastest version) and i choose skip. Then after a few seconds it keep poping up that all my system tray apps are infected and crashed with the argument - bad image. I am running a full scan again and it automatically deleted xwd.exe and container.dll.
I can't seem to get rid of the rootkit but i will.

I wrote this just to let you know what happened and maybe change a little bit of code because of security risks.
I love this dock and 3 days after i use it, i get my computer infected and i didn't get a virus or anything in 2 YEARS, yeah i once had a nasty virus and since then i am a security freak, (dedicated linux firewall - smoothwall, kaspersky on all my computers and i don't download cracks or keygens or torrents!).

The bottom line is awesome dock.

Michael


EDIT: I have removed the rootkit with Combofix. Kaspersky was only reporting the rootkit and failed to disinfect every time it scanned the computer and actually it activates it, making the computer reboot itself.

EDIT2: I try to download xwdock form http://xwdock.aqua-soft.org/ and it detected Trojan.Win32.FakeAV.ws and Trojan.Win32.FakeAV.wr on xwd.exe and container.dll when i try to extract to my desktop. Please repack without the virus.

This post has been edited by mitzaodx: 27 June 2010 - 12:16 AM

0

#2 User is offline   demode Icon

  • Group: Recruit
  • Posts: 1
  • Joined: 27-June 10

Posted 27 June 2010 - 03:02 AM

My KAV find it too. So I don't want to risk.
0

#3 User is offline   instantfeed Icon

  • Group: Recruit
  • Posts: 3
  • Joined: 22-June 10

Posted 27 June 2010 - 03:27 AM

View Postmitzaodx, on 26 June 2010 - 09:55 PM, said:

Today my antivirus discovered that xwd.exe is infected with a trojan TROJAN.WIN32.FakeAV.ws and container.dll is infected with TROJAN.WIN32.FakeAV.wr and it automatically deleted those files.
The problem is that now it discovered that i am infected with Rootkit.Win32.TDSS.d.
So... my point is somehow i got infected through xwd with a bigger virus, well.. actually a rootkit.
The thing is i downloaded it from the official page (http://xwdock.aqua-soft.org/) 3 days ago and when i first scanned this thing it detected nothing. When i scanned my computer today because i full scan it once a week (saturday) it found nothing. I was downloading a big file from internet and went to sleep for a 5 hours then i woke up and found that kaspersky detected xwd.exe infected, i know it was ok and i taught maybe it's a false positive and a new version was pushed to my hard drive (check for updates was on and i had the lastest version) and i choose skip. Then after a few seconds it keep poping up that all my system tray apps are infected and crashed with the argument - bad image. I am running a full scan again and it automatically deleted xwd.exe and container.dll.
I can't seem to get rid of the rootkit but i will.

I wrote this just to let you know what happened and maybe change a little bit of code because of security risks.
I love this dock and 3 days after i use it, i get my computer infected and i didn't get a virus or anything in 2 YEARS, yeah i once had a nasty virus and since then i am a security freak, (dedicated linux firewall - smoothwall, kaspersky on all my computers and i don't download cracks or keygens or torrents!).

The bottom line is awesome dock.

Michael


EDIT: I have removed the rootkit with Combofix. Kaspersky was only reporting the rootkit and failed to disinfect every time it scanned the computer and actually it activates it, making the computer reboot itself.

EDIT2: I try to download xwdock form http://xwdock.aqua-soft.org/ and it detected Trojan.Win32.FakeAV.ws and Trojan.Win32.FakeAV.wr on xwd.exe and container.dll when i try to extract to my desktop. Please repack without the virus.

Yes at the same time mine system also found it as virus.Kaspersky might have updated its definitions and hence found it.
Here i'm posting downgraded version 2.0.0 of xwd.exe ,replace it in "xwindows" directory ,its working as same and with no virus.
XWD.exe

This post has been edited by instantfeed: 27 June 2010 - 04:05 AM

0

#4 User is offline   mitzaodx Icon

  • Group: Member
  • Posts: 5
  • Joined: 30-May 08

Posted 27 June 2010 - 07:12 AM

Now all i need is container.dll plugin.

Thank you.
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic