|
You last visited: Today at 13:28
Advertisement
[IMPORTANT] About viruses - how to avoid being infected
Discussion on [IMPORTANT] About viruses - how to avoid being infected within the WarRock Hacks, Bots, Cheats & Exploits forum part of the WarRock category.
05/27/2011, 07:13
|
#31
|
elite*gold: 0
Join Date: Sep 2010
Posts: 10,215
Received Thanks: 5,781
|
Quote:
Originally Posted by .PrAyEr™
aber was den wen es weiterleitet!?
|
Ich gehe davon aus, dass du beim Starten eines Cheats auf die Seiten der Urheber weitergeleitet wirst? Das ist kein Virus, sonder eine einfache Zeile im Quellcode des Cheats, die deinen PC dazu aufordert mit deinem Standart-Webbrowser die angegebene Internetadresse aufzurufen.
|
|
|
05/27/2011, 14:26
|
#32
|
elite*gold: LOCKED
Join Date: Mar 2011
Posts: 2,170
Received Thanks: 166
|
Quote:
Originally Posted by Nomad'
Ich gehe davon aus, dass du beim Starten eines Cheats auf die Seiten der Urheber weitergeleitet wirst? Das ist kein Virus, sonder eine einfache Zeile im Quellcode des Cheats, die deinen PC dazu aufordert mit deinem Standart-Webbrowser die angegebene Internetadresse aufzurufen.
|
aso ok danke dachte das wär ein virus!
|
|
|
05/27/2011, 16:49
|
#33
|
elite*gold: 0
Join Date: Aug 2010
Posts: 496
Received Thanks: 44
|
Danke n1 Sticky
|
|
|
05/27/2011, 17:03
|
#34
|
elite*gold: LOCKED
Join Date: Mar 2011
Posts: 2,170
Received Thanks: 166
|
mein sicherheits center lässt sich nicht aktivieren was kann man da machen!?
|
|
|
05/29/2011, 21:31
|
#35
|
elite*gold: 0
Join Date: Sep 2010
Posts: 10,215
Received Thanks: 5,781
|
[quote=~ r a z e r _;10792388]I feel like it's time to correct some false statements, concerning the following topics:
- [url]http://www.elitepvpers.com/forum/warrock/1076084-ber-das-aussortieren-von-viren-eine-hoffentlich-anregende-kritik.html[/url]
- [url]http://www.elitepvpers.com/forum/warrock/896339-allgemeine-infos-ber-viren-etc.html[/url] [pinned once]
- [url]http://www.elitepvpers.com/forum/warrock-hacks-bots-cheats-exploits/876654-schutz-vor-viren-protection-against-viruses.html[/url] [pinned once]
[B][U]outline:[/U][/B]
- What exactly is a virus?
- Tips and tricks related to viruses
- Viruses and game hacking - why cheats are often notified as viruses by many scanners
- Closing words
[B][U]What exactly is a virus?[/U][/B]
Every computer user knows the term "virus" - even though just a few of these know the meaning of "virus". In fine, it's a "damaging program routine of lowest size, which does replicate and spread by itself". In fine, actually no one get this. A virus is, spreading the topic from small to large, a very small program which replicates itself, so I won't get deleted. A program which you can't just deleted the usual way, something that is used to delete or damage data or even broadcast saved data such as passwords.
[B][U]Tips and tricks related to viruses[/U][/B]
In short:
- NEVER turn of the firewall
- ALWAYS run an anti virus software - Attention: You should not run more than one anti virus software at the same time, as they could block each other.
- Programs with unknown origin should be ALWAYS downloaded into a sandbox. A sandbox is a closed system, which does relocate itself every time you boot to the installation's point. This could be e.g. a virtual machine. People who are interested in this topic should fix themselves up with VMWare.
- You should not just test your autostart regularly for unknown executables, but you should also use programs like Kernel Detective to scan for hidden processes you cannot relate to any of your applications.
- Keyloggers necessarily feature some kind of network activity. You can use Netlimiter to check for it.
- Nobody is "trusted".
- NEVER use one master password for your accounts.
- Always mind the respectability of the person providing the download.
- Always mind the files' sizes - Example "Naeron Injector": this injector has the original size of 197 kB; a bound injector would have a larger size (there are also very small of only a few kB, so caution is advised here)
- If necessary, lock up the checksums as explained in [url]http://www.elitepvpers.com/forum/warrock-hacks-bots-cheats-exploits/478559-important-hacks-fake-vt.html[/url].
- [url]http://www.elitepvpers.com/forum/technical-support/1005375-info-gefahren-im-internet.html[/url] - Just read it, it's very informative.
[B][U]Viruses and game hacking - why cheats are often notified as viruses by many scanners[/U][/B]
Here you have to differentiate between two things: the injector and the cheat.
Let's have a look at the injector first, which - from a pure technical point of view - serves to attach a thread to an external process to run a DLL's routine in it. Since there are a lot of hidden viruses running in these processes, many virus scanners notify them as a virus. Actually, the majority of viruses in this board are bound to the cheat's injector (which means that the virus is ran at the same time you start the program it was bound to). To avoid this, it's best to use always the very same injector, I e.g. always use "PerX" or "Naeron Injector".
Secondly, it is essential to occupy yourself with the DLL file. A cheat manipulates a process's memory, the particular regions are figured out under the usage of addresses. Programs manipulating memory addresses are often notified as viruses alike, as they feature a related behaviour. Here is an example of a hack including no viruses but reaching a result of 17/43 on Virustotal (DLL packed with VMP): [url=http://www.virustotal.com/file-scan/report.html?id=b5e251347512a44b79f801a04f0dee43040 783c130d9113cf6d1c1764088b4d1-1300391848]CLICK_ME[/url].
[B][U]Encoders & Packers[/U][/B]
Encoders & Packers are often used as apologizes for high results in Virustotal reports. Gone through these apologizes with a fine-tooth comb, they include a element of truth but don't have to be true at all. Encrypting is a possible way to ensure the security of someone's source, to prevent it form getting manipulated under the usage of a HexEditor. Therefore, you encrypt the strings. But encryption can also mean letting a routine looking like some else routine, which is called making "fud" (fud = fully undetected) in the hacking scene. This means that virus scanners are not longer able to find the virus. Virustotalreports with a result of no viruses are rare in the gamehacking scene and often indicate viruses - which are after all encrypted. This topic has to be handled with all due caution, because someone who is able to encrypt viruses is mostly not a newbie.
Packer are used to prevent the unpacking of dlls to ensure the security of the source or at least complicate it. As this usually change wide parts of the dll, packed files are also often notified as viruses.
[B][U]Closing words[/U][/B]
War Rock - what a beautiful game - for cheating. But this only stays nice for the cheater until it doesn't end up in a negative result, such as a virus. Abandoning the mostly unaware user in the jungle of internet hazards can't be the intended objective. So I beg the user to be careful, the coders to become aware of encryption and packing as well as the moderation to suppress the spreading of false facts as happened in "the once marked as important"-topics mentioned.
Discuss.[/quote]
Bitteschön :>
//thx pl0x
|
|
|
05/29/2011, 21:39
|
#36
|
elite*gold: 297
Join Date: Dec 2010
Posts: 1,129
Received Thanks: 1,687
|
#updated
|
|
|
06/01/2011, 08:29
|
#37
|
elite*gold: 0
Join Date: Jun 2011
Posts: 2
Received Thanks: 0
|
hehe nice
|
|
|
06/01/2011, 10:59
|
#38
|
elite*gold: 0
Join Date: Dec 2010
Posts: 11
Received Thanks: 3
|
gute Formulierung
sehr aufschlussreich
|
|
|
06/11/2011, 13:25
|
#39
|
elite*gold: 0
Join Date: Jun 2011
Posts: 4
Received Thanks: 1
|
seeeehr hilfreiches topic..
danke (;
|
|
|
06/12/2011, 22:26
|
#40
|
elite*gold: 297
Join Date: Dec 2010
Posts: 1,129
Received Thanks: 1,687
|
#updated
|
|
|
06/15/2011, 23:10
|
#41
|
elite*gold: 0
Join Date: Jan 2011
Posts: 100
Received Thanks: 85
|
Quote:
Originally Posted by .PrAyEr™
mein sicherheits center lässt sich nicht aktivieren was kann man da machen!?
|
wenn sich dein virenprog nicht öffne will oder gar nicht starten will zieh den stecker vom internet, deinstallier dein virenprog und installier ein neues (am besten kaspersky hier DL:  kannst so oft down,oaden wie du willst wenn 30 tage demo abgelaufen ist oder behalt einfach den installer und installier dann einfach immer neu  WICHTIG: wenn virenprog deinstallierst und ein neues installierst musst VORHER dein computer vom internet trennen weil dein pc in der zeit ein gefundenes fressen für viren,hacker,trojaner und würmer ist
|
|
|
09/10/2011, 13:57
|
#42
|
elite*gold: 0
Join Date: Aug 2011
Posts: 325
Received Thanks: 229
|
Sind die hacks immer no infected?!
|
|
|
09/10/2011, 14:35
|
#43
|
elite*gold: 5
Join Date: Sep 2010
Posts: 9,927
Received Thanks: 4,387
|
Quote:
Originally Posted by Schmabbel
wenn sich dein virenprog nicht öffne will oder gar nicht starten will zieh den stecker vom internet, deinstallier dein virenprog und installier ein neues (am besten kaspersky hier DL:  kannst so oft down,oaden wie du willst wenn 30 tage demo abgelaufen ist oder behalt einfach den installer und installier dann einfach immer neu  WICHTIG: wenn virenprog deinstallierst und ein neues installierst musst VORHER dein computer vom internet trennen weil dein pc in der zeit ein gefundenes fressen für viren,hacker,trojaner und würmer ist 
|
Was glaubst du denn, warum sich sein AV Programm nicht mehr öffnen lässt?
|
|
|
09/10/2011, 15:30
|
#44
|
elite*gold: 297
Join Date: Dec 2010
Posts: 1,129
Received Thanks: 1,687
|
Quote:
Originally Posted by -BrainShot-
Sind die hacks immer no infected?!
|
lies bitte erst das topic.
Quote:
Originally Posted by Diablo_
Was glaubst du denn, warum sich sein AV Programm nicht mehr öffnen lässt?
|
av programme werden imo überbewertet. brain.exe ftw.
|
|
|
09/10/2011, 15:40
|
#45
|
elite*gold: 5
Join Date: Sep 2010
Posts: 9,927
Received Thanks: 4,387
|
Quote:
Originally Posted by __underScore
lies bitte erst das topic.
av programme werden imo überbewertet. brain.exe ftw.
|
Die wurden schon immer überbewertet aber darum ging es auch garnicht.
|
|
|
 |
|
Similar Threads
|
[IMPORTANT REQUEST] Avoid Duping
09/13/2012 - Shaiya Private Server - 30 Replies
Hello fellow dev's,
It has come to my attention that there are a few dupers on our servers. A few of you already found a way how to avoid the whole duping. My question is, how did you do it? What should we change or add to avoid the whole duping? It ruins most of the server's economies, and is therefore considered as the biggest exploit so far. People with custom stats are considered easy when i look at this, since they can be IP banned and cannot login anymore then. But dupers can sell...
|
IMPORTANT ALLES ÜBER VIREN IMPORTANT
03/26/2011 - Wolfteam - 4 Replies
@@@EDIT@@@ : Tread wurde nur kopiert damit ihr bescheid wisst
Hey e*pvp,
Ich denke es ist an der Zeit, falsche Aussagen zu korrigieren. Dies gilt bezüglich folgender Topics:
- Über das Aussortieren von Viren | Eine (hoffentlich anregende) Kritik
- Allgemeine Infos über Viren etc.
- Schutz vor Viren (!) Protection against viruses (!)
|
[IMPORTANT] Alles über Viren [IMPORTANT]
03/23/2011 - Wolfteam - 7 Replies
Hey e*pvp,
Ich denke es ist an der Zeit, falsche Aussagen zu korrigieren. Dies gilt bezüglich folgender Topics:
- Über das Aussortieren von Viren | Eine (hoffentlich anregende) Kritik
- Allgemeine Infos über Viren etc.
- Schutz vor Viren (!) Protection against viruses (!)
Gliederung:
|
[READ ME]Important!Avoid getting hacked/scammed
05/02/2010 - SRO Private Server - 3 Replies
Hey guys,hey girls,
I think the following article I`m writing will help you a little bit.
As you all know,threads which are containing software need to be approved by a moderator first,before they will show up to all the members.
However,this moderation queue is only applied for the HACKS/BOTS section,meaning that basicly anyone can create a thread with malicious code,post it in DISCUSSIONS section,and anyone could download harmful programs to his/her PC.
What you should do before...
|
[Guide] How to avoid viruses
01/03/2010 - Mabinogi Hacks, Bots, Cheats & Exploits - 22 Replies
In reply to the rootkit recently posted, here's some tips on not getting a virus.
If it looks to good to be true, it is. There are no currently working, public bypasses. I'm not saying they don't exist, but there aren't any here.
Look at their post count. If its under 20 or so, they probably wont be uploading anything super epic. This doesn't always apply, but its good to keep in mind.
Virus scan it. This doesn't always work. Some viruses have gone under the radar of virus companies...
|
All times are GMT +1. The time now is 13:31.
|
|