Insert BS here A place to discuss anything you want

Is this really spyware?

Thread Tools
 
Search this Thread
 
Old 03-17-2009, 05:00 PM
  #1  
Elite Member
Thread Starter
iTrader: (5)
 
johndoe's Avatar
 
Join Date: Mar 2007
Location: NYC
Posts: 1,970
Total Cats: 1
Default Is this really spyware?

I downloaded something from somwhere that already has an activation code imbedded in it. Scanned it with avast and malwarebytes and it came up clean. I just scanned it with trend micro's online scanner to be sure and it found it contained spyware called "hackingtools_cain". I looked up the definition for this and didn't find much. I think it's a false alarm though. As in, trend micro is noticing the script or whatever imbedded in this copy that puts the activation code in there for you. Thoughts? It's worked so far without ringing any alarms on my computer but I'm going to make copies for co-workers and don't want to bugger their computers.

(edited to hopefully avoid lockage)

Last edited by johndoe; 03-17-2009 at 05:29 PM.
johndoe is offline  
Old 03-17-2009, 05:12 PM
  #2  
Tour de Franzia
iTrader: (6)
 
hustler's Avatar
 
Join Date: Jun 2006
Location: Republic of Dallas
Posts: 29,085
Total Cats: 375
Default

hustler is offline  
Old 03-17-2009, 05:17 PM
  #3  
Tour de Franzia
iTrader: (6)
 
hustler's Avatar
 
Join Date: Jun 2006
Location: Republic of Dallas
Posts: 29,085
Total Cats: 375
Default

i like this one too:
hustler is offline  
Old 03-17-2009, 05:50 PM
  #4  
Boost Pope
iTrader: (8)
 
Joe Perez's Avatar
 
Join Date: Sep 2005
Location: Chicago. (The less-murder part.)
Posts: 33,019
Total Cats: 6,587
Default

Heh. I don't recall that we have a policy about discussing TheР1rateBay.οrg, or about downloading copies of Μicr0sоft 0ffіce from it.

I've found that some antivirus / antispyware programs redflag known copy-protection / activation hacks, which of course would be included with your download. Not saying that it's guaranteed safe, just that the unlocking programs themselves tend to be targeted for one reason or another.
Joe Perez is offline  
Old 03-17-2009, 06:32 PM
  #5  
Senior Member
 
Miatamaniac92's Avatar
 
Join Date: Nov 2005
Location: Austin, TX yall
Posts: 846
Total Cats: 0
Default

Try this: VirusTotal - Free Online Virus and Malware Scan

"Online virus scanner Virus Total checks your file for cooties with over 30 AV apps, including Kaspersky, BitDefender, F-Secure and Panda."


Via Virus Killers: Scan your files online with VirusTotal

Disregard if this is a couple gigs.

Chris
Miatamaniac92 is offline  
Old 03-17-2009, 07:14 PM
  #6  
Elite Member
iTrader: (12)
 
icantthink4155's Avatar
 
Join Date: Apr 2008
Location: Longs, SC
Posts: 2,566
Total Cats: 13
Default

There is a thread on here some place where someone recommends malwarebytes anti-malware. That program is fantastic.
icantthink4155 is offline  
Old 03-17-2009, 09:37 PM
  #7  
Elite Member
Thread Starter
iTrader: (5)
 
johndoe's Avatar
 
Join Date: Mar 2007
Location: NYC
Posts: 1,970
Total Cats: 1
Default

that's what I'm thinking joe, thanks. trend micro says it is a hacking utility but doesn't really explain why it would be malicious. Trend micro also says hackingtools_cain can be uninstalled via ad remove programs. Doesn't sound too serious. And upon further review nothing was installed to any of the directories mentioned here: HACKINGTOOLS_CAIN

Last edited by johndoe; 03-17-2009 at 09:48 PM.
johndoe is offline  
Old 03-17-2009, 09:40 PM
  #8  
Elite Member
iTrader: (11)
 
Trent's Avatar
 
Join Date: Feb 2006
Location: Louisiana
Posts: 1,651
Total Cats: 39
Default

Originally Posted by icantthink4155
There is a thread on here some place where someone recommends malwarebytes anti-malware. That program is fantastic.
yep. fantastic software. You can also run a virus scan at Free ESET Online Antivirus Scanner.
Trent is offline  
Old 03-18-2009, 01:13 AM
  #9  
DXO
Junior Member
iTrader: (2)
 
DXO's Avatar
 
Join Date: Jul 2008
Location: Kannapolis, NC
Posts: 229
Total Cats: 1
Default

Cain is a network scanning "tool". I've used it some and it does have a second part to it called Abel. Thus Cain & Abel. Abel is detected as a trojan by many anti virus programs because it IS a backdoor program that Cain uses to access the remote system. It is easily identifiable by it being listed in the windows services. I don't remember its service name off the top of my head but it starts with Abel.
DXO is offline  
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
thirdgen
Insert BS here
27
04-11-2011 02:17 PM
turbobluemiata
Insert BS here
40
12-11-2008 01:23 PM



Quick Reply: Is this really spyware?



All times are GMT -4. The time now is 12:42 AM.