ozban;31772 wrote:VIRUS in update. detected by Kaspersky
Trojan-PSW programs are designed to steal user account information such as logins and passwords from infected computers. PSW is an acronym of Password Stealing Ware.
When launched, a PSW Trojan searches system files which store a range of confidential data or the registry. If such data is found, the Trojan sends it to its “master.” Email, FTP, the web (including data in a request), or other methods may be used to transit the stolen data.
Some such Trojans also steal registration information for certain software programs.
You are new to this aren't you? See the first thing to do when getting a report on a tested positive potential payload, you go and do your due diligence - not stomp to the forums writing in caps. Unless you have your own little agenda trying to smear the competition?
Well I did the due diligence for you, just out of curiosity.
Virustotal reported positive 0/55
https://www.virustotal.com/en/file/486eb018329296c403ef11912070347d2348065d7558b02f41659d511b0faebb/analysis/Metascan-Online reported positive 0/44
https://www.metascan-online.com/#!/results/file/afea940a1a7b4d75aa9592f8463b9621/extractedI personally have anti-exploit daily vulnerability patcher, malwarebytes anti-malware premium, plus W10 defender, computer scanned daily. Zero positives.
And here comes the common sense part: What do they have to gain or potentially lose by obscuring a payload into an installer?
Rush 4x has a many years long history of making pro-grade bots for popular games - they would have too much business to lose, believe it or not, if trying to bake in a payload. Look it up. Once the rep for a software firm is gone on the net, it's gone forever.
Plus, they don't smell funny. I have a pretty accurate nose for that.
I get it, you get that sinking feeling in your stomach when the AV goes into red mode. I've been there. With time, you will learn to manage the shock and start doing some research before actually concluding you are going to have to start changing pws and desinfecting (not in that order tho!)
Until then, guys like me will show up and make posts like these.
Best,