Arksun
October 23rd, 2008, 01:49 PM
Once again Eset NOD32 has failed me :(.
I got infected, specifically registry infections (Trojan.FakeAlert.H).
I'm still using ver 2.7, but that shouldn't matter if the virus signatures are up to date.
Before anyone asks, yes I'm a long time user (though perhaps not for much longer after this), absolutely everything that NOD32 can check for IS checked in the settings, for AMON, IMON, anyflippingMON, advanced, potentially unsafe app etc etc. Virus/Malware checking is set to the absolute max in NOD32.
So today I'm using my computer like normally, suddenly I get this wierd little small rectangular popup window saying the following:
Title: 16bit MS-Dos Subsystem
Inside the box:
C:\Windows\Sysvxd.exe
The NTVDM CPU has encountered an illegal instruction.
CS:06d1 IP:0007 OP:fe 74 6d de 01 Choose 'Close' to terminate the application.
Below that is two clickable buttons, Close and Ignore.
Now because I've never seen anything like this before and hadn't recently installed anything new. I felt it was very dodgy so I didn't click either button.
Instead tried to shut its process down in ctrl-alt-del. That didn't work, it refused to close. So I had to reset the computer.
I did so, reset my modem too. Did a full NOD32 scan, it picked up..... wait for it... NOTHING.
Anyways, it happens again, pops up... again a third time, so I do a bit of google research, it seems there is some nasty malware floating around that can cause this.
So I download the freeware software Malwarebytes Anti-Malware.
Perform a 'quick' scan (not even the full scan), 2 seconds later, its telling me two of my registry keys are infected.
I've no idea yet if Malwarebytes software has completely dealt with the problem, its not like I could do a NOD32 scan to confirm, because scanning with NOD32 doesn't seem to pick everything up anyways!.
Why did a scan show nothing, but more importantly, why didn't IMON or AMON at any time notify me of any incoming threat?.
Given that this is not the first, but the second time somethings slipped past the supposedly full-proof 'best in the field' virus/malware checker that is NOD32, you can imagine how annoyed I am a) getting infected and b) finding out a freebie program does a better job of letting me know!.
I love how NOD32 has very little impact on system performance, but failing to pick something up two times now doesn't fill me with confidence over its virus/malware stopping abilities :(
FYI, here's the Malwarebytes log file if anyones interested:
http://www.musicprogressive.com/ml/
I got infected, specifically registry infections (Trojan.FakeAlert.H).
I'm still using ver 2.7, but that shouldn't matter if the virus signatures are up to date.
Before anyone asks, yes I'm a long time user (though perhaps not for much longer after this), absolutely everything that NOD32 can check for IS checked in the settings, for AMON, IMON, anyflippingMON, advanced, potentially unsafe app etc etc. Virus/Malware checking is set to the absolute max in NOD32.
So today I'm using my computer like normally, suddenly I get this wierd little small rectangular popup window saying the following:
Title: 16bit MS-Dos Subsystem
Inside the box:
C:\Windows\Sysvxd.exe
The NTVDM CPU has encountered an illegal instruction.
CS:06d1 IP:0007 OP:fe 74 6d de 01 Choose 'Close' to terminate the application.
Below that is two clickable buttons, Close and Ignore.
Now because I've never seen anything like this before and hadn't recently installed anything new. I felt it was very dodgy so I didn't click either button.
Instead tried to shut its process down in ctrl-alt-del. That didn't work, it refused to close. So I had to reset the computer.
I did so, reset my modem too. Did a full NOD32 scan, it picked up..... wait for it... NOTHING.
Anyways, it happens again, pops up... again a third time, so I do a bit of google research, it seems there is some nasty malware floating around that can cause this.
So I download the freeware software Malwarebytes Anti-Malware.
Perform a 'quick' scan (not even the full scan), 2 seconds later, its telling me two of my registry keys are infected.
I've no idea yet if Malwarebytes software has completely dealt with the problem, its not like I could do a NOD32 scan to confirm, because scanning with NOD32 doesn't seem to pick everything up anyways!.
Why did a scan show nothing, but more importantly, why didn't IMON or AMON at any time notify me of any incoming threat?.
Given that this is not the first, but the second time somethings slipped past the supposedly full-proof 'best in the field' virus/malware checker that is NOD32, you can imagine how annoyed I am a) getting infected and b) finding out a freebie program does a better job of letting me know!.
I love how NOD32 has very little impact on system performance, but failing to pick something up two times now doesn't fill me with confidence over its virus/malware stopping abilities :(
FYI, here's the Malwarebytes log file if anyones interested:
http://www.musicprogressive.com/ml/