Wilders Security Forums  

Go Back   Wilders Security Forums > Archived Forums > Closed Sub-Forums > Archived ESET Support Forums > NOD32 version 2 Forum
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old June 22nd, 2006, 12:48 AM
enduser999's Avatar
enduser999 enduser999 is offline
Frequent Poster
 
Join Date: Apr 2005
Location: The Peg
Posts: 418
Default IMON preventing UBCD4Win download

Tried for over an hour to download Ultimate Boot CD 4 Windows from each of their mirror sites http://www.ubcd4win.com/downloads.htm and then discovered IMON stopped the download only at the end due to:

Time Module Object Name Threat Action User Information
6/21/2006 23:24:40 PM IMON self-extracting archive http://ubcd4win.itinerantgroup.com/UBCD4WinV30.exe multiple infiltrations Connection terminated
  #2  
Old June 22nd, 2006, 12:57 AM
NOD32 user's Avatar
NOD32 user NOD32 user is offline
Very Frequent Poster
 
Join Date: Jan 2005
Location: Australia
Posts: 1,766
Default Re: IMON preventing UBCD4Win download

Quote:
Originally Posted by enduser999
Tried for over an hour to download Ultimate Boot CD 4 Windows from each of their mirror sites http://www.ubcd4win.com/downloads.htm and then discovered IMON stopped the download only at the end due to:

Time Module Object Name Threat Action User Information
6/21/2006 23:24:40 PM IMON self-extracting archive http://ubcd4win.itinerantgroup.com/UBCD4WinV30.exe multiple infiltrations Connection terminated
Just download it from the proper site and it should be OK - I've never heard of it having anything malicious in it before.
http://www.ultimatebootcd.com/
__________________
1. What is right is always The Truth.
2. Every Truth is supported in agreement by every Truth.
3. If the facts would persuade you otherwise, see 1.

ESET Reseller (Australia)
  #3  
Old June 22nd, 2006, 01:05 AM
enduser999's Avatar
enduser999 enduser999 is offline
Frequent Poster
 
Join Date: Apr 2005
Location: The Peg
Posts: 418
Default Re: IMON preventing UBCD4Win download

That is the Ultimate BootCD. They are two separate CDs. I am downloading Ultimate BootCD 4 Windows http://www.ubcd4win.com/index.htm

Last edited by enduser999 : June 22nd, 2006 at 01:13 AM.
  #4  
Old June 22nd, 2006, 01:12 AM
NOD32 user's Avatar
NOD32 user NOD32 user is offline
Very Frequent Poster
 
Join Date: Jan 2005
Location: Australia
Posts: 1,766
Default Re: IMON preventing UBCD4Win download

I would certainly be interested to see a detailed NOD32 scan result of the file you have there...
__________________
1. What is right is always The Truth.
2. Every Truth is supported in agreement by every Truth.
3. If the facts would persuade you otherwise, see 1.

ESET Reseller (Australia)
  #5  
Old June 22nd, 2006, 01:26 AM
enduser999's Avatar
enduser999 enduser999 is offline
Frequent Poster
 
Join Date: Apr 2005
Location: The Peg
Posts: 418
Default Re: IMON preventing UBCD4Win download

Attached is the scan log file for the downloaded file.
Attached Files
File Type: txt UBCD4WinScan.txt (762.2 KB, 94 views)
  #6  
Old June 22nd, 2006, 01:37 AM
NOD32 user's Avatar
NOD32 user NOD32 user is offline
Very Frequent Poster
 
Join Date: Jan 2005
Location: Australia
Posts: 1,766
Lightbulb Re: IMON preventing UBCD4Win download

Quote:
Originally Posted by enduser999
Attached is the scan log file for the downloaded file.
Number of threats found: 3
As you can see already the detections are for Potentially Dangerous Applications:-

G:\UBCD4WinV30.exe ... keyfinder.exe »RAR »xpkey.exe - Win32/PSWTool.RAS.A application - was a part of the deleted object
G:\UBCD4WinV30.exe ... keyfinder.exe »RAR »officekey.exe - Win32/PSWTool.RAS.A application - was a part of the deleted object
G:\UBCD4WinV30.exe ... nc.exe - Win32/RemoteAdmin.NetCat application - was a part of the deleted object

When downloading such things it is necessary to disable PDA checking in IMON and AMON.

HTH
__________________
1. What is right is always The Truth.
2. Every Truth is supported in agreement by every Truth.
3. If the facts would persuade you otherwise, see 1.

ESET Reseller (Australia)
 

Wilders Security Forums > Archived Forums > Closed Sub-Forums > Archived ESET Support Forums > NOD32 version 2 Forum « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 12:53 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums