Wilders Security Forums  

Go Back   Wilders Security Forums > Privacy Related Topics > privacy technology
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old October 12th, 2012, 02:30 AM
ComputerSaysNo ComputerSaysNo is offline
Very Frequent Poster
 
Join Date: Aug 2012
Posts: 1,086
Default Be careful when installing your VPN service client .exe

Please check your VPN service client .exe's against VirusTotal.com. I've tested a few and some are Trojan droppers, some are false positives and others are OK.

The last thing you want is to get backdoored with your VPN service.
  #2  
Old October 14th, 2012, 01:23 PM
Taliscicero's Avatar
Taliscicero Taliscicero is offline
Frequent Poster
 
Join Date: Feb 2008
Posts: 826
Default Re: Be careful when installing your VPN service client .exe

If your talking about BolehVPN its well known and BD is too lazy to fix.
__________________
(Emsisoft Anti-Malware 7.0)
(Emsisoft Online Armor Premium)
(Mullvad VPN User)
(TrueCrypt 7.1a User)
  #3  
Old October 14th, 2012, 03:56 PM
mirimir mirimir is offline
Very Frequent Poster
 
Join Date: Oct 2011
Posts: 1,527
Default Re: Be careful when installing your VPN service client .exe

Just use OpenVPN.
  #4  
Old October 14th, 2012, 05:15 PM
Snowden Snowden is offline
Regular Poster
 
Join Date: May 2012
Posts: 68
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by CubonesCastle
If your talking about BolehVPN its well known and BD is too lazy to fix.

Say again?
  #5  
Old October 14th, 2012, 08:02 PM
LockBox LockBox is offline
Very Frequent Poster
 
Join Date: Nov 2004
Posts: 2,081
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by ComputerSaysNo
Please check your VPN service client .exe's against VirusTotal.com. I've tested a few and some are Trojan droppers, some are false positives and others are OK.

The last thing you want is to get backdoored with your VPN service.

There have been problems for years with false positives on SSL VPN clients. Just when most have been fixed, along comes another. It's a problem with the the low-level nature of the TAP drivers.

You said that you tested some that were, in fact, infected. Name names. What service did this? Or, was it a MITM attack?

`
  #6  
Old October 14th, 2012, 10:08 PM
ComputerSaysNo ComputerSaysNo is offline
Very Frequent Poster
 
Join Date: Aug 2012
Posts: 1,086
Default Re: Be careful when installing your VPN service client .exe

Yeah... Thing is they will change up if named. So let me re-check them first. 2 are very well known though.
  #7  
Old October 14th, 2012, 11:19 PM
Rowmon Rowmon is offline
Infrequent Poster
 
Join Date: Oct 2012
Posts: 10
Default Re: Be careful when installing your VPN service client .exe

Hey,

I've purchased VPNs that had their own client and the UI was all pretty and full of features but I couldn't trust them. They also seemed to be based off outdated versions, so I felt they could be vulnerable. I've noticed however, if you ask support they can always organize a configuration to apply to the official OpenVPN client instead. I'd say that's the safer way.
  #8  
Old October 15th, 2012, 02:31 AM
Snowden Snowden is offline
Regular Poster
 
Join Date: May 2012
Posts: 68
Default Re: Be careful when installing your VPN service client .exe

Why was boleh mentioned? I've been using them for over six months and have never heard one issue
  #9  
Old October 15th, 2012, 03:45 AM
mirimir mirimir is offline
Very Frequent Poster
 
Join Date: Oct 2011
Posts: 1,527
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by Snowden
Why was boleh mentioned? I've been using them for over six months and have never heard one issue
I think that CubonesCastle was saying that BolehVPN's installer triggers some anti malware software, and that it's a false positive. Yes?
  #10  
Old October 16th, 2012, 12:10 PM
scriptolab scriptolab is offline
Infrequent Poster
 
Join Date: Sep 2012
Posts: 6
Default Re: Be careful when installing your VPN service client .exe

I assume it's a false positive, as panda deleted the exe automatically. (bolehvpn).
Any confirmations?
  #11  
Old October 18th, 2012, 05:28 PM
Taliscicero's Avatar
Taliscicero Taliscicero is offline
Frequent Poster
 
Join Date: Feb 2008
Posts: 826
Default Re: Be careful when installing your VPN service client .exe

Its a FP, a few engines detect it as such. Something to do with the low level crypto that their software uses.

Trojen swizzor with bitdefender. Just use hitmanpro when you have boleh on your machine and G-data + emsisoft will flag it due to their shared BD engine.
__________________
(Emsisoft Anti-Malware 7.0)
(Emsisoft Online Armor Premium)
(Mullvad VPN User)
(TrueCrypt 7.1a User)
  #12  
Old October 19th, 2012, 04:53 PM
LockBox LockBox is offline
Very Frequent Poster
 
Join Date: Nov 2004
Posts: 2,081
Default Re: Be careful when installing your VPN service client .exe

In other words, this is a non-issue. Unless, of course, he's come up with names for VPN clients that really were trojans.
  #13  
Old October 19th, 2012, 09:33 PM
DasFox DasFox is offline
Very Frequent Poster
 
Join Date: May 2006
Posts: 1,825
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by CubonesCastle
If your talking about BolehVPN its well known and BD is too lazy to fix.


What's well known and who's BD?

Let's be careful about how we speak about a business you make this look bad for others and I've put my name on the line many times for this VPN that I happen to know is very good and no I don't work for them either....
__________________
Security Comes By Education, Not Tons Of Software!
  #14  
Old October 20th, 2012, 03:44 AM
Taliscicero's Avatar
Taliscicero Taliscicero is offline
Frequent Poster
 
Join Date: Feb 2008
Posts: 826
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by DasFox
What's well known and who's BD?

Let's be careful about how we speak about a business you make this look bad for others and I've put my name on the line many times for this VPN that I happen to know is very good and no I don't work for them either....

Dude.. I use BolehVPN and love it too. I was simply saying "BD -> BitDefender" has a heuristic detection false positive with Bolehvpn's GUI. I have mentioned it to BitDefender and Boleh. Boleh tried to get BitDefender to remove the detection but there is no auto-upload feature of false samples to BitDefender, and as such they had to ask on the english forum, but nothing was done because BitDefender team did not care to change it or test it.
__________________
(Emsisoft Anti-Malware 7.0)
(Emsisoft Online Armor Premium)
(Mullvad VPN User)
(TrueCrypt 7.1a User)
  #15  
Old October 21st, 2012, 12:22 AM
ComputerSaysNo ComputerSaysNo is offline
Very Frequent Poster
 
Join Date: Aug 2012
Posts: 1,086
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by LockBox
In other words, this is a non-issue. Unless, of course, he's come up with names for VPN clients that really were trojans.

No this is a real issue. You can be sure it's happening.
  #16  
Old October 21st, 2012, 03:06 AM
mirimir mirimir is offline
Very Frequent Poster
 
Join Date: Oct 2011
Posts: 1,527
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by ComputerSaysNo
No this is a real issue. You can be sure it's happening.
What about OpenVPN itself?
  #17  
Old October 24th, 2012, 04:05 AM
bolehvpn's Avatar
bolehvpn bolehvpn is offline
Regular Poster
 
Join Date: Oct 2011
Posts: 56
Default Re: Be careful when installing your VPN service client .exe

We tried getting ourselves removed from BitDefender's list but our thread was ignored.

We got ourselves removed from a couple of others though including Norton and stuff.

But I can confirm that this is a FALSE POSITIVE. Appreciate if you guys get these detections to also help us out and submit these false reports to the Antivirus providers so that they themselves can manually check it and approve (which good AV providers do).
__________________
Reuben
Co-Founder

BolehVPN
  #18  
Old November 5th, 2012, 08:34 PM
pbust's Avatar
pbust pbust is offline
AV Expert
 
Join Date: Apr 2009
Location: Spain
Posts: 1,173
Default Re: Be careful when installing your VPN service client .exe

Quote:
Originally Posted by bolehvpn
We got ourselves removed from a couple of others though including Norton and stuff.
I haven't seen the detection details but if Panda is throwing an FP on your files please PM me directly.
 

Wilders Security Forums > Privacy Related Topics > privacy technology « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 11:43 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums