Rootkit and Trojan Prevent - Detect- and/or Destroy-ware

Howdy You All.
Any of my compatriots heard tell of an effective Mac Rootkit- and/or Trojan -tasked Utility?
Thanks for Considering the Growing Concern.
CLowSheen.

Knowledge is the key! http://www.thesafemac.com/

Similar Messages

  • Any good anti-rootkit and anti-keylogger for OSX ?

    Hi,
    Is there any reliable anti-rootkit and anti-keylogger software for OSX ?
    I don't mind if its an all-in-one suite with anti-virus, I'm just less conceren about viruses so it's doesn't matter to me too much.
    Many thanks!

    First, there's no software out there that can reliably detect all possible keyloggers. There are legit keyloggers that won't be detected by everything, for example. If you think that someone malicious has had access to your computer, either physical access or through a back door installed through some other method, then the only reliable response is to erase the hard drive and then reinstall the system and all applications from scratch.
    In addition, the term "rootkit" (when used correctly) is a very specific kind of malware that is installed to give the hacker escalated root-level access to the computer. In modern single-user systems, this is not particularly meaningful, for a variety of reasons. Fearing rootkits and not more general malware is kind of like going to Africa and being on your guard against lions, but not against hyenas, hippos, elephants, leopards, poisonous snakes, etc.
    What is the specific issue you're trying to solve? If it's just a general concern about protecting yourself against malware, see:
    http://www.thesafemac.com/mmg
    (Formerly at the reedcorner address the others have referred to.)

  • Trojan Virus Detected

    While using Safari a notice stating Trojan Virus detected keeps appearing! Safe Booted once but very apprehensive !?

    HI and welcome to Apple Discussions...
    Malware perhaps but not a virus. Get MacScan
    You can use the demo for 30 days free and runs on Snow Leopard.
    Carolyn

  • Proposal for 12 database and Fusion Middle-ware.

    Dear all,
    i am not sure that the question is relevant here or not, if not then please accept my sorry for that.
    we are going to move to 12c database and fusion middle-ware from 10g database.
    our head of department ask me to prepare a proposal for that so i ask and forward it to the top management.
    i am wonder what should i include in that proposal?
    thanks

    >he convence us to purchase new license for oracle database 12c and weblogic suite 12c
    If you have a proper Support contract, it includes Update support.  So upgrading an existing implementation doesn't require additional licences to be purchased.  You'd need additional licences if you are increasing your licence count (Processors or Users), adding database options (e.g. the 12c MultiTenant Database Option is a new feature that needs additional licencing) etc
    Hemant K Chitale

  • Difference between ESOA and SOA Middle ware

    Hi All
    Can anybody explain me the difference between ESOA and SOA Middle Ware?
    Thanks
    SIM

    Hi SIM,
    SOA and ESOA are not middlewares.
    They are architectures.
    SOA is Service Oriented Architecture
    ESOA is same as SOA with some business semantics which is initiated by SAP to reduce the complexity of business process and problems.
    Middleware is any tool which is used to integrate different technologies and platform like XI .
    XI is a middleware tool which supports SOA and ESOA. I.e by using SOAP adapter you can expose web services which can have business meaning also.
    Hope this helps.
    Regards,
    Piyush

  • IPhone Retina Screen, Digitizer, and Glass Destroyed

    Hi All,
    So the sad, simple, and short version of my story is that my iPhone 4 was run over by a car last night.  As you can imagine, it is not in pretty shape.  The glass is cracked (so bad that small shards of glass are falling out) and the Retina screen is also destroyed.  By destroyed, I mean that I can see black and white lines on only part of the screen (the rest being either blank or cracked LCD fluid) signifying that the screen is still receiving power, yet no image at all (other than the black and white lines) is shown on the screen.
    The phone is still capable of making phone calls, receiving emails, and playing music, but obviosuly I can not see or interact with the phone other than through voice command.
    So to the question.  I am fairly handy with electronics and feel that replacing the Retina display, digitizer, and front glass would not be that hard of a task.  However, before I purchase a new screen, I wanted to make sure that the issues I am seeing are merely caused by a busted Retina display and digitizer, and not a broken GPU or other motherboard issues.  Does anyone know how I might be able to confirm this?
    Thanks in advance for the help and input.
    Jordan

    Verify that the iPhone connects to iTunes correctly. Verify that the battery charges normally. Verify that the Home button functions, use Voice to open an App, make sure it is closed back up by Home button. Verify that Power button works, if you can verify if it wakes from sleep or something. Verify Mute/Vibrate switch works. Verify Volume buttons work. That is all I can think of as a good start. If these all worked I'd be happy.

  • My computer crashed and it destroyed the hard drive.  I use the adobe suite not creative cloud.  Is there anyway I can recover the licenses?

    Basically explains it in the title.  I had a computer that was plugged into an outlet that lost voltage, killing my computers hard drive.  I recently replaced it and want to install it again.  Can I recover the licenses from my destroyed hard drive.

    https://www.adobe.com/account.html for your Adobe orders page... or
    Lost serial # http://helpx.adobe.com/x-productkb/global/find-serial-number.html

  • How do I know which cookies to destroy through Malware application, and if destroyed, but needed, can I get them back?

    Had PC reformatted, and ended up with new Internet provider, Malware etc. By running one of my Malwares, I destroyed all potential Malware Browser (Tracking cookies) . Now I realize that I probably need some of these back.? Is there a way, and how do I know, by the name of the cookie, if it is one I need or tnot. Example, : Zedo, CasaleMedia,FastClick,AdBrite etc. I miss getting my regular Malware bubble info, that something was blocked, etc. Could this be connected to mySpybot destroying it? I apologize for any confusion, I am only a basic user and PC literate person.

    If you were not syncing and backing up your phone to either iTunes or iCloud, then they are gone. There is no "undo".

  • Lightroom is creating a "previews" folder for me and is destroying my files

    LLightroom is running extremely slow because it's generating a "previews" folder in my library! I literally have to boot Lightroom once it happens! horrible workflow and I'm getting nothing accomplished! HELP NOW!!!!!! This is ridiculous!

    Lightroom will build previews when you are looking at the files in library when they are needed if you do not build them when you first import.  If you want just the embeded previews and not have previews built at import then set the following in the import dialog.  This will slow you down later on when you are scanning the library as previews are needed and they are not prebuilt.  Get used to the preview files as they are unavoidable.
    Build Previews     Minimal
    Uncheck       Build smart Previews

  • How can I completely and totally destroy these processes?

    Once a minute these two processes (one for Boxee and one for Glims) will run. Both have been uninstalled as completely as I can see how (ran the uninstaller for Glims, nothing in Application Support, all related .plist files), but launchd apparently is still looking for them. I know it doesn't seem like much but this poor G4 sometimes needs all the help it can get so I am trying to eliminate all errant processes...
    Here is what the system log is reporting:
    May 21 15:17:56 richard-bensons-powerbook-g4-15 com.apple.launchd[98] (com.machangout.glims.agent[46635]): Exited with exit code: 1
    May 21 15:17:56 richard-bensons-powerbook-g4-15 com.apple.launchd[98] (com.machangout.glims.agent): Throttling respawn: Will start in 10 seconds
    May 21 15:18:03 richard-bensons-powerbook-g4-15 com.apple.launchd[98] (tv.boxee.helper[46636]): posix_spawnp("/Applications/Boxee.app/Contents/Resources/Boxee/bin/boxeeservice ", ...): No such file or directory
    May 21 15:18:03 richard-bensons-powerbook-g4-15 com.apple.launchd[98] (tv.boxee.helper[46636]): Exited with exit code: 1
    May 21 15:18:03 richard-bensons-powerbook-g4-15 com.apple.launchd[98] (tv.boxee.helper): Throttling respawn: Will start in 10 seconds
    Any help would be greatly appreciated! TIA!

    Hi,
    May 21 15:17:56 richard-bensons-powerbook-g4-15 com.apple.launchd98 (com.machangout.glims.agent):
    May 21 15:18:03 richard-bensons-powerbook-g4-15 com.apple.launchd98 (tv.boxee.helper)
    Is there a launchd plist that I can delete?
    There might be. Remember though, that the .plist extension means the file is a "property list," which refers to the file's format, not it's function. Many .plist files are not "preferences" and are not found in Preferences folders. The files used by launchd to create launch daemons and launch agents are in property list format and so have .plist extensions.
    Your log report above suggests the existence of two such files:
    com.machangout.glims.agent.plist
    and
    tv.boxee.helper.plist
    After some Googling, it looks as if com.machangout.glims.agent.plist normally gets installed in
    HD>Library>LaunchAgents
    and that tv.boxee.helper.plist normally gets installed in
    HD>Users>username>Library>LaunchAgents
    So if you haven't already looked in those two places, I would do so. If you find those files, delete them and reboot.

  • Trojan Programme Detected?

    Hello, Macbook users!
    I use Macbook Pro and I recently received a warning from Kaspersky that my mac is infected with Trojan virus.
    My school re-imaged my MacBook on Thursday 22 August 2013 and Kaspersky detected "Trojan.Win32.Hosts2.Gen" in File / Private / etc / hosts on Friday 23 August 2013. (It's so weired! I NEVER torrent!)
    However, I saw a post on Kaspersky discussion forum and some of the users aruge that they might have received false warning. So, I'm just wondering if this was just a false warning or real one. But I guess my Mac is really infected with Trojan virus since I am running few anti virus programmes at the same time and all of them give me warnings about virus / infected files. I disinfected the detected files but I'm still concerend.
    I did some research about Trojan virus and I am so worried now.
    So what I know is:
    1. Trojan programme is a very dangerous virus programme.
    2. Hackers can hack through my computer if my computer is infected with Trojan virus.
    3. Recent Trojan programmes are so smart they hide themselves and even Terminal cannot detect them.
    I'm so concerned right now I can't do anything
    So my questions are:
    1. How do I completely get rid of Trojan virus? I'm scanning my Mac with Kaspersky, Magician, Sophos and Dr. Web Light now and they give me different results so I am kind of skeptical about using Anti-virus programme.
    2. Is there any possibility that I got Trojan because of re-imaging? Would it be better if I ask the school to re-image my computer again?
    3. Can re-imaging get rid of Trojan virus?
    4. If the answer to question 2 is no, how did I get Trojan virus?
    5. What do the Trojan remains do? Is there any possibility that remains do any harm to my computer?
    6. How do I view hidden Trojan files?
    7. Could it be a false warning?
    I'm so confused and frustrated right now. I never had virus before and I thought Mac don't get virus. I'm really concerned that I might lose all my files and documents. I asked around a bit but I still don't know what to do. Please, please, please help me!
    Thanks in advance!
    *P.S: The photos might help!

    Here are the contents of the file of etc/hosts requested above.
    216.239.32.20 www.google.ac # __CE_WATERMARK__
    216.239.32.20 www.google.ad # __CE_WATERMARK__
    216.239.32.20 www.google.ae # __CE_WATERMARK__
    216.239.32.20 www.google.al # __CE_WATERMARK__
    216.239.32.20 www.google.am # __CE_WATERMARK__
    216.239.32.20 www.google.as # __CE_WATERMARK__
    216.239.32.20 www.google.at # __CE_WATERMARK__
    216.239.32.20 www.google.az # __CE_WATERMARK__
    216.239.32.20 www.google.ba # __CE_WATERMARK__
    216.239.32.20 www.google.be # __CE_WATERMARK__
    216.239.32.20 www.google.bf # __CE_WATERMARK__
    216.239.32.20 www.google.bg # __CE_WATERMARK__
    216.239.32.20 www.google.bi # __CE_WATERMARK__
    216.239.32.20 www.google.bj # __CE_WATERMARK__
    216.239.32.20 www.google.bs # __CE_WATERMARK__
    216.239.32.20 www.google.bt # __CE_WATERMARK__
    216.239.32.20 www.google.by # __CE_WATERMARK__
    216.239.32.20 www.google.ca # __CE_WATERMARK__
    216.239.32.20 www.google.cat # __CE_WATERMARK__
    216.239.32.20 www.google.cc # __CE_WATERMARK__
    216.239.32.20 www.google.cd # __CE_WATERMARK__
    216.239.32.20 www.google.cf # __CE_WATERMARK__
    216.239.32.20 www.google.cg # __CE_WATERMARK__
    216.239.32.20 www.google.ch # __CE_WATERMARK__
    216.239.32.20 www.google.ci # __CE_WATERMARK__
    216.239.32.20 www.google.cl # __CE_WATERMARK__
    216.239.32.20 www.google.cm # __CE_WATERMARK__
    216.239.32.20 www.google.cn # __CE_WATERMARK__
    216.239.32.20 www.google.co.ao # __CE_WATERMARK__
    216.239.32.20 www.google.co.bw # __CE_WATERMARK__
    216.239.32.20 www.google.co.ck # __CE_WATERMARK__
    216.239.32.20 www.google.co.cr # __CE_WATERMARK__
    216.239.32.20 www.google.co.id # __CE_WATERMARK__
    216.239.32.20 www.google.co.il # __CE_WATERMARK__
    216.239.32.20 www.google.co.in # __CE_WATERMARK__
    216.239.32.20 www.google.co.jp # __CE_WATERMARK__
    216.239.32.20 www.google.co.ke # __CE_WATERMARK__
    216.239.32.20 www.google.co.kr # __CE_WATERMARK__
    216.239.32.20 www.google.co.ls # __CE_WATERMARK__
    216.239.32.20 www.google.co.ma # __CE_WATERMARK__
    216.239.32.20 www.google.co.mz # __CE_WATERMARK__
    216.239.32.20 www.google.co.nz # __CE_WATERMARK__
    216.239.32.20 www.google.co.th # __CE_WATERMARK__
    216.239.32.20 www.google.co.tz # __CE_WATERMARK__
    216.239.32.20 www.google.co.ug # __CE_WATERMARK__
    216.239.32.20 www.google.co.uk # __CE_WATERMARK__
    216.239.32.20 www.google.co.uz # __CE_WATERMARK__
    216.239.32.20 www.google.co.ve # __CE_WATERMARK__
    216.239.32.20 www.google.co.vi # __CE_WATERMARK__
    216.239.32.20 www.google.co.za # __CE_WATERMARK__
    216.239.32.20 www.google.co.zm # __CE_WATERMARK__
    216.239.32.20 www.google.co.zw # __CE_WATERMARK__
    216.239.32.20 www.google.com # __CE_WATERMARK__
    216.239.32.20 www.google.com.af # __CE_WATERMARK__
    216.239.32.20 www.google.com.ag # __CE_WATERMARK__
    216.239.32.20 www.google.com.ai # __CE_WATERMARK__
    216.239.32.20 www.google.com.ar # __CE_WATERMARK__
    216.239.32.20 www.google.com.au # __CE_WATERMARK__
    216.239.32.20 www.google.com.bd # __CE_WATERMARK__
    216.239.32.20 www.google.com.bh # __CE_WATERMARK__
    216.239.32.20 www.google.com.bn # __CE_WATERMARK__
    216.239.32.20 www.google.com.bo # __CE_WATERMARK__
    216.239.32.20 www.google.com.br # __CE_WATERMARK__
    216.239.32.20 www.google.com.bz # __CE_WATERMARK__
    216.239.32.20 www.google.com.co # __CE_WATERMARK__
    216.239.32.20 www.google.com.cu # __CE_WATERMARK__
    216.239.32.20 www.google.com.cy # __CE_WATERMARK__
    216.239.32.20 www.google.com.do # __CE_WATERMARK__
    216.239.32.20 www.google.com.ec # __CE_WATERMARK__
    216.239.32.20 www.google.com.eg # __CE_WATERMARK__
    216.239.32.20 www.google.com.et # __CE_WATERMARK__
    216.239.32.20 www.google.com.fj # __CE_WATERMARK__
    216.239.32.20 www.google.com.gh # __CE_WATERMARK__
    216.239.32.20 www.google.com.gi # __CE_WATERMARK__
    216.239.32.20 www.google.com.gt # __CE_WATERMARK__
    216.239.32.20 www.google.com.hk # __CE_WATERMARK__
    216.239.32.20 www.google.com.jm # __CE_WATERMARK__
    216.239.32.20 www.google.com.kh # __CE_WATERMARK__
    216.239.32.20 www.google.com.kw # __CE_WATERMARK__
    216.239.32.20 www.google.com.lb # __CE_WATERMARK__
    216.239.32.20 www.google.com.lc # __CE_WATERMARK__
    216.239.32.20 www.google.com.ly # __CE_WATERMARK__
    216.239.32.20 www.google.com.mm # __CE_WATERMARK__
    216.239.32.20 www.google.com.mt # __CE_WATERMARK__
    216.239.32.20 www.google.com.mx # __CE_WATERMARK__
    216.239.32.20 www.google.com.my # __CE_WATERMARK__
    216.239.32.20 www.google.com.na # __CE_WATERMARK__
    216.239.32.20 www.google.com.nf # __CE_WATERMARK__
    216.239.32.20 www.google.com.ng # __CE_WATERMARK__
    216.239.32.20 www.google.com.ni # __CE_WATERMARK__
    216.239.32.20 www.google.com.np # __CE_WATERMARK__
    216.239.32.20 www.google.com.om # __CE_WATERMARK__
    216.239.32.20 www.google.com.pa # __CE_WATERMARK__
    216.239.32.20 www.google.com.pe # __CE_WATERMARK__
    216.239.32.20 www.google.com.pg # __CE_WATERMARK__
    216.239.32.20 www.google.com.ph # __CE_WATERMARK__
    216.239.32.20 www.google.com.pk # __CE_WATERMARK__
    216.239.32.20 www.google.com.pr # __CE_WATERMARK__
    216.239.32.20 www.google.com.py # __CE_WATERMARK__
    216.239.32.20 www.google.com.qa # __CE_WATERMARK__
    216.239.32.20 www.google.com.sa # __CE_WATERMARK__
    216.239.32.20 www.google.com.sb # __CE_WATERMARK__
    216.239.32.20 www.google.com.sg # __CE_WATERMARK__
    216.239.32.20 www.google.com.sl # __CE_WATERMARK__
    216.239.32.20 www.google.com.sv # __CE_WATERMARK__
    216.239.32.20 www.google.com.tj # __CE_WATERMARK__
    216.239.32.20 www.google.com.tn # __CE_WATERMARK__
    216.239.32.20 www.google.com.tr # __CE_WATERMARK__
    216.239.32.20 www.google.com.tw # __CE_WATERMARK__
    216.239.32.20 www.google.com.ua # __CE_WATERMARK__
    216.239.32.20 www.google.com.uy # __CE_WATERMARK__
    216.239.32.20 www.google.com.vc # __CE_WATERMARK__
    216.239.32.20 www.google.com.vn # __CE_WATERMARK__
    216.239.32.20 www.google.cv # __CE_WATERMARK__
    216.239.32.20 www.google.cz # __CE_WATERMARK__
    216.239.32.20 www.google.de # __CE_WATERMARK__
    216.239.32.20 www.google.dj # __CE_WATERMARK__
    216.239.32.20 www.google.dk # __CE_WATERMARK__
    216.239.32.20 www.google.dm # __CE_WATERMARK__
    216.239.32.20 www.google.dz # __CE_WATERMARK__
    216.239.32.20 www.google.ee # __CE_WATERMARK__
    216.239.32.20 www.google.es # __CE_WATERMARK__
    216.239.32.20 www.google.fi # __CE_WATERMARK__
    216.239.32.20 www.google.fm # __CE_WATERMARK__
    216.239.32.20 www.google.fr # __CE_WATERMARK__
    216.239.32.20 www.google.ga # __CE_WATERMARK__
    216.239.32.20 www.google.ge # __CE_WATERMARK__
    216.239.32.20 www.google.gf # __CE_WATERMARK__
    216.239.32.20 www.google.gg # __CE_WATERMARK__
    216.239.32.20 www.google.gl # __CE_WATERMARK__
    216.239.32.20 www.google.gm # __CE_WATERMARK__
    216.239.32.20 www.google.gp # __CE_WATERMARK__
    216.239.32.20 www.google.gr # __CE_WATERMARK__
    216.239.32.20 www.google.gy # __CE_WATERMARK__
    216.239.32.20 www.google.hn # __CE_WATERMARK__
    216.239.32.20 www.google.hr # __CE_WATERMARK__
    216.239.32.20 www.google.ht # __CE_WATERMARK__
    216.239.32.20 www.google.hu # __CE_WATERMARK__
    216.239.32.20 www.google.ie # __CE_WATERMARK__
    216.239.32.20 www.google.im # __CE_WATERMARK__
    216.239.32.20 www.google.io # __CE_WATERMARK__
    216.239.32.20 www.google.iq # __CE_WATERMARK__
    216.239.32.20 www.google.ir # __CE_WATERMARK__
    216.239.32.20 www.google.is # __CE_WATERMARK__
    216.239.32.20 www.google.it # __CE_WATERMARK__
    216.239.32.20 www.google.je # __CE_WATERMARK__
    216.239.32.20 www.google.jo # __CE_WATERMARK__
    216.239.32.20 www.google.kg # __CE_WATERMARK__
    216.239.32.20 www.google.ki # __CE_WATERMARK__
    216.239.32.20 www.google.kz # __CE_WATERMARK__
    216.239.32.20 www.google.la # __CE_WATERMARK__
    216.239.32.20 www.google.li # __CE_WATERMARK__
    216.239.32.20 www.google.lk # __CE_WATERMARK__
    216.239.32.20 www.google.lt # __CE_WATERMARK__
    216.239.32.20 www.google.lu # __CE_WATERMARK__
    216.239.32.20 www.google.lv # __CE_WATERMARK__
    216.239.32.20 www.google.md # __CE_WATERMARK__
    216.239.32.20 www.google.me # __CE_WATERMARK__
    216.239.32.20 www.google.mg # __CE_WATERMARK__
    216.239.32.20 www.google.mk # __CE_WATERMARK__
    216.239.32.20 www.google.ml # __CE_WATERMARK__
    216.239.32.20 www.google.mn # __CE_WATERMARK__
    216.239.32.20 www.google.ms # __CE_WATERMARK__
    216.239.32.20 www.google.mu # __CE_WATERMARK__
    216.239.32.20 www.google.mv # __CE_WATERMARK__
    216.239.32.20 www.google.mw # __CE_WATERMARK__
    216.239.32.20 www.google.ne # __CE_WATERMARK__
    216.239.32.20 www.google.nl # __CE_WATERMARK__
    216.239.32.20 www.google.no # __CE_WATERMARK__
    216.239.32.20 www.google.nr # __CE_WATERMARK__
    216.239.32.20 www.google.nu # __CE_WATERMARK__
    216.239.32.20 www.google.pl # __CE_WATERMARK__
    216.239.32.20 www.google.pn # __CE_WATERMARK__
    216.239.32.20 www.google.ps # __CE_WATERMARK__
    216.239.32.20 www.google.pt # __CE_WATERMARK__
    216.239.32.20 www.google.ro # __CE_WATERMARK__
    216.239.32.20 www.google.rs # __CE_WATERMARK__
    216.239.32.20 www.google.ru # __CE_WATERMARK__
    216.239.32.20 www.google.rw # __CE_WATERMARK__
    216.239.32.20 www.google.sc # __CE_WATERMARK__
    216.239.32.20 www.google.se # __CE_WATERMARK__
    216.239.32.20 www.google.sh # __CE_WATERMARK__
    216.239.32.20 www.google.si # __CE_WATERMARK__
    216.239.32.20 www.google.sk # __CE_WATERMARK__
    216.239.32.20 www.google.sm # __CE_WATERMARK__
    216.239.32.20 www.google.sn # __CE_WATERMARK__
    216.239.32.20 www.google.so # __CE_WATERMARK__
    216.239.32.20 www.google.st # __CE_WATERMARK__
    216.239.32.20 www.google.td # __CE_WATERMARK__
    216.239.32.20 www.google.tg # __CE_WATERMARK__
    216.239.32.20 www.google.tk # __CE_WATERMARK__
    216.239.32.20 www.google.tl # __CE_WATERMARK__
    216.239.32.20 www.google.tm # __CE_WATERMARK__
    216.239.32.20 www.google.tn # __CE_WATERMARK__
    216.239.32.20 www.google.to # __CE_WATERMARK__
    216.239.32.20 www.google.tt # __CE_WATERMARK__
    216.239.32.20 www.google.us # __CE_WATERMARK__
    216.239.32.20 www.google.vg # __CE_WATERMARK__
    216.239.32.20 www.google.vu # __CE_WATERMARK__
    216.239.32.20 www.google.ws # __CE_WATERMARK__
    #This file has been replaced with its default version by Kaspersky Lab because of possible infection
    127.0.0.1 localhost
    ::1 localhost

  • Trojan threat detected when installing Rescue & Recovery

    I am performing a fresh install of Win7 on a T61p.  I downloaded the 'Thinkpad Rescue and Recovery' installer (tvtvrnr43_1027fi.exe) from Lenovo's download site and ran it to began installing it.  After some unpacking and working through the setup wizard a bit AVG detected the following as a threat:
    File:   C:\preboot\utils\rnrdbgtool.exe
    Threat: Trojan horse Agent_r.BKV
    Since I know this package came direct from Lenovo and since R&R is likely doing things that LOOK like a trojan, I have to believe AVG is throwing a false positive here.  But before I proceed I wanted to ask anyone else if they have encountered this before? Is it possible that the R&R installer is actually infected with a virus??
    Thanks,
    Rob

    rbell wrote: Is it possible that the R&R installer is actually infected with a virus??
    Thanks,
    Rob
    The answer to this is No...   not even your AVG suspects that. A trojan is much different then a Virus. An example of a trojan would be a computer program that claims to do one thing, but really does something different. A virus is a generic definition of a type of malware that infects and reproduces and spreads.
    Any program that can make major changes to a computer could easily be detected as a false positive by anti-virus software, and AVG is one of the worse when it comes to false detections.
    My advice is to look it up on AVG's database and see what it is they claim to have found. Odds are it's a generic classification or a heuristic definition, meaning their software is basically making a wild guess that it might not be what it claims to be. 
    If you're overly concerned about this you can update your AVG definitions each day until it's removed from the database. I'd also report it to AVG, they can't rule it out until someone reports it. Odds are it's been reported already, but it's best to check and do your part and improving a freeware product.
    I doubt lenovo can do anything about it anyway. If the file was infected with a virus, that may be a different story, but most servers will detect a change in the file and anything infected will be removed very quickly. With a trojan definiton, it would be like trying to prove a negative. For example, if you say you're a doctor, but I say you're a plumber, you can easily prove you are a doctor, but you can't so easily prove you're NOT a plumber, and in this case AVG probably isn't even saying what type of program it thinks this really is, so that makes it infintiely harder to prove...      so the ball is in AVG's court, then need to fix it, or provide something specific for lenovo to contest or fix.
    ThinkPad W-510 i7-820QM(1.73-3.06GHz) Quad Core... ThinkPad T500, T9900, 8gb SSD...FrankNpad T-60p/61p (X9000 2.8ghz) 8gb SSD ips FlexView...ThinkPad T-61p (T9300 2.5ghz) 8gb ram...Thinkpad X-61 Tablet 4gb ram...ThinkPad A-31 (1.9ghz P4 1.5gb ram)

  • Trojan Horse detected

    My BitDefender antivirus software detected the following:
    File c:\program files\quicktime\qttask.exe
    infected with Trojan.Generic.72005
    Program has been installed for some time. Occurred on last boot. Anybody else have this happen? Any info would be appreciated.

    Heres my reply from bulguard
    Dear BullGuard User,
    Thank you for submitting your scan report.
    The log shows that BullGuard has found several infected files on your computer (Trojan.Generic.72005). At the moment, we are still analyzing these files, as it seems this detection may be a false positive (a legitimate component that is mistakenly identified as being infected). Thus far, all information indicates that these files are legitimate, but testing them has not been completed yet. Either way, you need not worry, as BullGuard keeps them blocked.
    Given the above, I will kindly ask you to ignore these detections for the moment and, as soon as testing is complete, we will release an update that will instruct the Antivirus on how to handle these files (as infections or as legitimate files).
    Thank you for your understanding.
    Seems that it isnt something to worry about, they'll send an update to ensure bullguard doesnt see it as a threat.Its probably just something new that it didnt like. But they're looking into it at least
    Hope that helps

  • Creative Alchemy and Dawn of War 2

    Hi i have just got Dawn of War 2 and have sound problems with the game. When i play the game the sound stuterrs etc. read somewhere on the net that the problem was to do with alchemy but my alchemy does not list dawn of war 2 as a possible game. I gather i can add games myself but am unsure what settings to input or what game path to use. I have linked it to the default game path which is inside steam folder where the dow2.exe can be found, If anyone can tell me settings to use in game i would be greatful [email protected]

    &} main problem solved on RelicNews Forums ALchemy is not needed just needed to set speakers to 6bit 44.kHz under windows sounds settings. One last problem though if anyone has any ideas do please say during cutscenes and videos in the game there is a lot of static never had this problem on any other software so if anyone has any ideas how to solve this one i would be [email protected]

  • Windows Vista and itunes at war on my laptop

    Just recently, everytime I load up itunes on my laptop (windows vista) a pop-up error message comes up saying "AppleMobileDeviceHelper has stopped working". Th box keeps coming up (there were over 50 the first occasion this happened) and only seems to stop when I close itunes.
    Obviously, I would like this to stop so if anyone has any solutions, I would be eternally grateful. Otherwise, does anyone have a contact number for itunes so that I could speak to a member of their own support staff? The help page was anything but!
    Thanks in advance

    Just recently, everytime I load up itunes on my laptop (windows vista) a pop-up error message comes up saying "AppleMobileDeviceHelper has stopped working".
    For troubleshooting advice on that one, see the following announcement:
    http://discussions.apple.com/ann.jspa?annID=640
    For more information on using MSConfig, see:
    Using MSCONFIG to troubleshoot conflicts in Windows Vista

Maybe you are looking for

  • Mapping failure in Null fields passing

    Hi We are facing some problem in null fields passing to RFC side.. some times the JDBC colums not having the data , so that time our map is failing to call RFC. Please let me know any prevent methodologies for this? Target side field occurances are 0

  • Enable access through port 80

    hi! We are trying to get access through prot 80. We are using WL5.1 on Linux 6.2. I have done everything is in docs but it doesn't work. Do i Have to do anything special?? thanks

  • SocketExceptopn: Socket Operation on nonsocket: JVM_Bind - what ?

    Hi, I'm a new Java-application developer. I'm stadying Java at university in Kassel (germany) an now in university holiday I wnat to development a little messanging tool. So I have tried some basic technics.... but the simplesed things won't work! I'

  • VM not responding

    I get a strange behaviour, after running tomcat(under java 1.4.1) few hours (some times few days), it didn't response to any request (a blank page is showed until connectionTimeout ocured). SO : Linux SuSE 7.2; VM: java 1.4.1 Also, what is strange th

  • Calendar times differ when viewing and printing

    Using mac calendar on OS X Yosemite, when I view the times in the calendar app, everything looks correct. If I select "Print" and try to print the upcoming week, some events are off by one hour. I have been printing the calendars weekly for several m