Message boards :
Application Code Discussion :
MILKYWAY_NBODY_0.03_WINDOWS_X86_64.EXE is a SpyWare?!!!
Message board moderation
Author | Message |
---|---|
Send message Joined: 21 Jul 10 Posts: 8 Credit: 70,984 RAC: 0 |
Today, my Kaspersky Internet Security 2010 prevent read my WebMoney coockie file from personal coockies folder IE8. KIS2010 has given out the message: MILKYWAY_NBODY_0.03_WINDOWS_X86_64.EXE attepmt to read protected file in group 'Personal Data'. File: D:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\Low\user@webmoney[1].txt Sequence of start: Run Once Wrapper > BOINC Manager for Windows > BOINC Client D:\ProgramData\BOINC\PROJECTS\MILKYWAY.CS.RPI.EDU_MILKYWAY\MILKYWAY_NBODY_0.03_WINDOWS_X86_64.EXE 3820 projects/milkyway.cs.rpi.edu_milkyway/milkyway_nbody_0.03_windows_x86_64.exe -f json_parameters.txt -h histogram.txt --seed 634624 -np 4 -p 21.0507342998150050000000000 0.2329108663577818500000000 3.9518472752025870000000000 3.8717080194641730000000000 WHAT IS IT ?!!!!! I have suspended participation in project before finding-out of the reasons |
Send message Joined: 14 Feb 09 Posts: 999 Credit: 74,932,619 RAC: 0 |
Anti-virus and anti-spyware software are always coming up with wrong info on the applications, they are not spyware or virus. Your best bet is to exclude the BOINC Data folder from scans as the scans can cause application crashes. |
Send message Joined: 12 Nov 07 Posts: 2425 Credit: 524,164 RAC: 0 |
This happens with newer programs. Doesn't expecting the unexpected make the unexpected the expected? If it makes sense, DON'T do it. |
Send message Joined: 21 Jul 10 Posts: 8 Credit: 70,984 RAC: 0 |
IMHO, arkayn, you wrong In this case it's not mistake response on spyware signature. I running untrusted application in sandsink of KIS2010 and BIONC Manager has been started also. KIS2010 sandsink hook syscals and watch to action of applications. P.S. MILKYWAY_NBODY_0.03_WINDOWS_X86_64.EXE has been last automatically update at 2010-08-19 |
Send message Joined: 8 May 10 Posts: 576 Credit: 15,979,383 RAC: 0 |
Antivirus programs aren't that smart. I actually think this is pretty funny. I've never written malware before! I've reported it as a false positive to Kaspersky. All of the code is here if you really want to check for yourself http://github.com/Milkyway-at-home/milkywayathome_client |
Send message Joined: 8 May 10 Posts: 576 Credit: 15,979,383 RAC: 0 |
I'm also not getting any warnings from Kaspersky when I try. |
Send message Joined: 8 May 10 Posts: 576 Credit: 15,979,383 RAC: 0 |
The Kaspersky people responded: Hello, |
Send message Joined: 21 Jul 10 Posts: 8 Credit: 70,984 RAC: 0 |
Please, those who doesn't know how to anti-virus products work and don't understand a difference between the anti-virus monitor and the control application monitor, don't flood here. Question to code experts: Whether it is possible, what someone uses the MILKYWAY_NBODY_0.03_WINDOWS_X86_64 as backdoor? |
Send message Joined: 21 Jul 10 Posts: 8 Credit: 70,984 RAC: 0 |
Thnx, Matt! I will necessarily communicate with experts in safety of Kaspersky Lab and I will send them alarm screenshot & log file. |
Send message Joined: 25 Feb 10 Posts: 49 Credit: 10,137,837 RAC: 0 |
PC Tools, Avast and Avira didnt detect anything. |
Send message Joined: 21 Jul 10 Posts: 8 Credit: 70,984 RAC: 0 |
Once again I repeat - don't confuse the anti-virus monitor to the control application monitor. |
Send message Joined: 25 Feb 10 Posts: 49 Credit: 10,137,837 RAC: 0 |
You are just assuming that we didnt do a full system scan on our PCs. I even tried the online scanner of Bitdefender. MBAM also didnt detect anything. |
Send message Joined: 21 Jul 10 Posts: 8 Credit: 70,984 RAC: 0 |
Haris, are you really don't understand about what speech or are you scoff? |
Send message Joined: 13 Aug 10 Posts: 15 Credit: 122,278 RAC: 0 |
Fine. You want a reply? It's the way the json handler scans your appdata folder for relevant pieces of the app and data. There's your answer. If you weren't so busy arguing semantics and being generally obtuse, you could have looked through the github repo and found that information in the source code. |
Send message Joined: 21 Jul 10 Posts: 8 Credit: 70,984 RAC: 0 |
Really? Therefore subj attempt to read not to something, but namely to cookie file of WebMoney??? LOL! I have no time and desire to investigate a project code on vulnerability |
Send message Joined: 8 Feb 08 Posts: 261 Credit: 104,050,322 RAC: 0 |
Smells like you got caught by a Trojan ... ZBOT variant from 1 or 2 month ago? Advice 1: Full system scan with more than 1 AV tool and check for rootkits too Advice 2: Change your browser (IE8) and email program to a more secure one. |
Send message Joined: 13 Aug 10 Posts: 15 Credit: 122,278 RAC: 0 |
Ah, good 'ol Zbot. |
©2024 Astroinformatics Group