| Windows 7: Sharing a quick warning for steam users |
27 Jul 2009
|
#1 | | Windows 7 RTM x64 In a house |
Sharing a quick warning for steam users Hi all
Thought i would share this with u all, just incase. Please all steam users scan your PC. This is what virus i found last night, strange thing is i havent downloaded anything recently which makes me think it may be one of them time virus things.
I tried to delete the following virus
SDbot.gen!f
I used MSE and it said it couldnt delete it however it did quarantine. 20 minutes later my steam got hacked. Ive had to buy all games again ( long story which steam basically said tough)
So if you do scan and find it, please please change your pass quick. | My System Specs |
| System Manufacturer/Model Number Made by Mastercard OS Windows 7 RTM x64 CPU Core 2 Quad, @3.8 on aircooling Motherboard XFX 750i Nforce Memory 8 Gig Geil Black Dragon Graphics Card Nvidia 8800GTX 512 x 2 in SLI Sound Card Razor Barracuda Monitor(s) Displays 2 X 24 Inch Hannsg Screen Resolution 1600x1050 Keyboard Razor Lycosa Mouse Razor Mamba, sweet as candy PSU 600 Watt Coolermaster Elite Silent Pro Case Coolermaster Storm Cooling Coolermaster V8 Hard Drives 1X64 Gig Kingston SSD Drive
2X 320 sata
2X250 ide
1X 320 External. and lets not forget the 8 gig thumbdrive :)
and a partridge in a pear tree Internet Speed Virgin 50MB. Other Info Zalman Guardian System Fan Controls
Aerocool Modern V system monitor.
And a nice bunch of stickers on the front!! All that money for something that glows blue. But thats why we do it kids. all for the bling!!
100mbit Seedbox, loving that!
Razor Destructor Gaming Mat, Razor Moray Headphones.
To much spare money perhaps? Nah, my mrs has shoes. I have a very expensive way of her shopping for |
27 Jul 2009
|
#2 | | |
thanks for the warning!
did this virus infect your machine even though you had mse running? worrying. | My System Specs | | System Manufacturer/Model Number mickey megabyte 1234 OS ultimate 64 sp1 CPU i5 2500K 3.3@4.2GHz Motherboard MSI P67A-GD53 Memory 8 gigs GSkill Ripjaws 1600 Graphics Card amd hd6950 Sound Card creative x-fi gamer Monitor(s) Displays samsung 24" Screen Resolution 1920x1080 Keyboard saitek eclipse ii Mouse logitech g3 PSU antec 550 Case antec three hundred Cooling i'm a cooling fan Hard Drives ocz vertex 2e 60 gig, samsung f3 1tb, buffalo 2tb ext Internet Speed about 4 Mbps Other Info i love win7 |
27 Jul 2009
|
#3 | | Windows 7 RTM x64 In a house |
Well thing is that i only installed MSE yesterday lol. So im wondering how long it was on there for. Ive run a full scan both with AVG and MSE and only MSE detected it.
I may be paranoid, but i find it funny how when i try to remove it ( unsuccessfully) my steam hacks within minutes. I dont know enough about how viruses work to say wether me trying to remove it actaully activated it. Im concerned that AVG didnt detect it and still didnt after MSE had | My System Specs | | System Manufacturer/Model Number Made by Mastercard OS Windows 7 RTM x64 CPU Core 2 Quad, @3.8 on aircooling Motherboard XFX 750i Nforce Memory 8 Gig Geil Black Dragon Graphics Card Nvidia 8800GTX 512 x 2 in SLI Sound Card Razor Barracuda Monitor(s) Displays 2 X 24 Inch Hannsg Screen Resolution 1600x1050 Keyboard Razor Lycosa Mouse Razor Mamba, sweet as candy PSU 600 Watt Coolermaster Elite Silent Pro Case Coolermaster Storm Cooling Coolermaster V8 Hard Drives 1X64 Gig Kingston SSD Drive
2X 320 sata
2X250 ide
1X 320 External. and lets not forget the 8 gig thumbdrive :)
and a partridge in a pear tree Internet Speed Virgin 50MB. Other Info Zalman Guardian System Fan Controls
Aerocool Modern V system monitor.
And a nice bunch of stickers on the front!! All that money for something that glows blue. But thats why we do it kids. all for the bling!!
100mbit Seedbox, loving that!
Razor Destructor Gaming Mat, Razor Moray Headphones.
To much spare money perhaps? Nah, my mrs has shoes. I have a very expensive way of her shopping for |
27 Jul 2009
|
#4 | | Windows 7 Ultimate Houston, Texas |
Sorry for your issue, I suggest you uninstall whatever AV you currently have, and install Avast and have it do a boot scan. You can remove avast afterwards if you want, and put MSE back on. I had issues where no other AV found what had infected my pc, and using Avast to do a boot scan fixed it right on up. I think it is worth a shot. | My System Specs | | System Manufacturer/Model Number Gigabyte OS Windows 7 Ultimate CPU Intel Core(TM)2 Quad- Q9550, 2.83GHz Motherboard G31M-ES2L Memory 4GB Graphics Card ATI Radeon HD4600 Sound Card On Board: Monitor(s) Displays Acer AL2223W, Acer AL1916 Screen Resolution 1680 x 1050, 1280 x 1024 Keyboard Microsoft Laser 6000 Mouse Logitech Optical Trackman PSU 600W Case Cooler Master Hard Drives 160GB
350GB
250GB
250GB Internet Speed 1.5MB Other Info I am also running a quasar gamatron flux capacitor with twin pulse tronic phasers......jk, I have no such stuff. |
27 Jul 2009
|
#5 | | Win 8 Release candidate 8400 |

Quote: Originally Posted by damoh Well thing is that i only installed MSE yesterday lol. So im wondering how long it was on there for. Ive run a full scan both with AVG and MSE and only MSE detected it.
I may be paranoid, but i find it funny how when i try to remove it ( unsuccessfully) my steam hacks within minutes. I dont know enough about how viruses work to say wether me trying to remove it actaully activated it. Im concerned that AVG didnt detect it and still didnt after MSE had Damoh
What specific virus did MSE find? sometimes mse gives false positives.
Ken | My System Specs | | System Manufacturer/Model Number HP Pavillion dv-7 1005 Tx OS Win 8 Release candidate 8400 CPU 2@2.4 Memory 4 gigs Graphics Card Nvidia 9600M Sound Card HD built-in Monitor(s) Displays 17" Wxga Screen Resolution 1440x900 Cooling none Internet Speed 45Mb down 5Mb up |
28 Jul 2009
|
#6 | | Windows 7 RTM x64 In a house |

Quote: Originally Posted by zigzag3143 Damoh
What specific virus did MSE find? sometimes mse gives false positives.
Ken
This one mate: SDbot.gen!f
I seem to have gotten rid of it, not before my steam got hijacked. But imho steam customer support has been 'flakey' at best. Told it can take upto 5 days for them to return my account to me. Then in the next breath im told that if said hacker does anything to my account which results in me getting a Vac ban then essentially tough.
Nice | My System Specs | | System Manufacturer/Model Number Made by Mastercard OS Windows 7 RTM x64 CPU Core 2 Quad, @3.8 on aircooling Motherboard XFX 750i Nforce Memory 8 Gig Geil Black Dragon Graphics Card Nvidia 8800GTX 512 x 2 in SLI Sound Card Razor Barracuda Monitor(s) Displays 2 X 24 Inch Hannsg Screen Resolution 1600x1050 Keyboard Razor Lycosa Mouse Razor Mamba, sweet as candy PSU 600 Watt Coolermaster Elite Silent Pro Case Coolermaster Storm Cooling Coolermaster V8 Hard Drives 1X64 Gig Kingston SSD Drive
2X 320 sata
2X250 ide
1X 320 External. and lets not forget the 8 gig thumbdrive :)
and a partridge in a pear tree Internet Speed Virgin 50MB. Other Info Zalman Guardian System Fan Controls
Aerocool Modern V system monitor.
And a nice bunch of stickers on the front!! All that money for something that glows blue. But thats why we do it kids. all for the bling!!
100mbit Seedbox, loving that!
Razor Destructor Gaming Mat, Razor Moray Headphones.
To much spare money perhaps? Nah, my mrs has shoes. I have a very expensive way of her shopping for |
28 Jul 2009
|
#7 | | win7 ultimate / virtual box weston super mare, UK |

Quote: Originally Posted by damoh This one mate: SDbot.gen!f
I seem to have gotten rid of it, not before my steam got hijacked. But imho steam customer support has been 'flakey' at best. Told it can take upto 5 days for them to return my account to me. Then in the next breath im told that if said hacker does anything to my account which results in me getting a Vac ban then essentially tough.
Nice possibly "NAME: Randex
ALIAS: SdBot, Backdoor.SdBot.gen, Randex.C, Slanper.A
VARIANT: Randex.C
Randex is an IRC controlled worm, based on the well known SdBot IRC backdoor. This worm infects Windows computers on local networks that use weak passwords."
the weakness has been using IRC, check this site for details | My System Specs | | System Manufacturer/Model Number built my own OS win7 ultimate / virtual box CPU Intel Core i7 3770K,1155, Ivy Bridge Motherboard MSI Z77A-G43 Memory GSkill Ripjaws Z Series 1600 CL 9.0 16GB Graphics Card KFA2 GeForce GTX 670 EX OC 2048MB GDDR5 PCI-E gfx card Sound Card onboard Nvidia HDMI audio Monitor(s) Displays ASUS VK222H 22" widescreen LCD monitor Screen Resolution 1680x1050 Keyboard logitech Mouse logitech MX518 PSU Corsair HX 750W ATX2.2 Modular Cooling Antec 25 Kuhler H2O 620 Hard Drives Kingston 128gb SSD
OCZ Vertex 90gb SSD
500GB WDCaviar 16mb 5000KS
320GB WDCaviar 16mb 3200AAKS sata 2
1TB Samsung 16mb HD103SJ sata 2 Internet Speed 7mb adsl |
28 Jul 2009
|
#8 | | Windows 7 RTM x64 In a house |

Quote: Originally Posted by ickymay possibly "NAME: Randex
ALIAS: SdBot, Backdoor.SdBot.gen, Randex.C, Slanper.A
VARIANT: Randex.C
Randex is an IRC controlled worm, based on the well known SdBot IRC backdoor. This worm infects Windows computers on local networks that use weak passwords."
the weakness has been using IRC, check this site for details  Never used IRC in my life. | My System Specs | | System Manufacturer/Model Number Made by Mastercard OS Windows 7 RTM x64 CPU Core 2 Quad, @3.8 on aircooling Motherboard XFX 750i Nforce Memory 8 Gig Geil Black Dragon Graphics Card Nvidia 8800GTX 512 x 2 in SLI Sound Card Razor Barracuda Monitor(s) Displays 2 X 24 Inch Hannsg Screen Resolution 1600x1050 Keyboard Razor Lycosa Mouse Razor Mamba, sweet as candy PSU 600 Watt Coolermaster Elite Silent Pro Case Coolermaster Storm Cooling Coolermaster V8 Hard Drives 1X64 Gig Kingston SSD Drive
2X 320 sata
2X250 ide
1X 320 External. and lets not forget the 8 gig thumbdrive :)
and a partridge in a pear tree Internet Speed Virgin 50MB. Other Info Zalman Guardian System Fan Controls
Aerocool Modern V system monitor.
And a nice bunch of stickers on the front!! All that money for something that glows blue. But thats why we do it kids. all for the bling!!
100mbit Seedbox, loving that!
Razor Destructor Gaming Mat, Razor Moray Headphones.
To much spare money perhaps? Nah, my mrs has shoes. I have a very expensive way of her shopping for |
29 Jul 2009
|
#9 | | Windows 7 Ultimate Houston, Texas |
I hope you get this resolved soon. | My System Specs | | System Manufacturer/Model Number Gigabyte OS Windows 7 Ultimate CPU Intel Core(TM)2 Quad- Q9550, 2.83GHz Motherboard G31M-ES2L Memory 4GB Graphics Card ATI Radeon HD4600 Sound Card On Board: Monitor(s) Displays Acer AL2223W, Acer AL1916 Screen Resolution 1680 x 1050, 1280 x 1024 Keyboard Microsoft Laser 6000 Mouse Logitech Optical Trackman PSU 600W Case Cooler Master Hard Drives 160GB
350GB
250GB
250GB Internet Speed 1.5MB Other Info I am also running a quasar gamatron flux capacitor with twin pulse tronic phasers......jk, I have no such stuff. |
29 Jul 2009
|
#10 | | Windows® 8 Pro (64-bit) Mumbai, India |
This shows that MSE works better than AVG. | My System Specs | | System Manufacturer/Model Number Samsung NP530U4B-S02IN OS Windows® 8 Pro (64-bit) CPU Intel® Core™ i5 Processor 2467M (1.60GHz, 3MB L3 Cache) Motherboard Samsung Electronics Memory 6GB DDR3 System Memory at 1,333MHz (on BD 4GB + 2GB x 1) Graphics Card AMD Radeon™ HD7550M 1GB DDR3 (Ext. Graphic) Sound Card Realtek High Definition Audio Monitor(s) Displays 35.56cm (14.0) SuperBright 300nit HD LED Display Screen Resolution 1366x768 Hard Drives 1TB S-ATA II Hard Drive (5400RPM) with ExpressCache 16GB SSD Internet Speed sucks Antivirus Microsoft Security Essentials Browser Google Chrome (Sync enabled) Sharing a quick warning for steam users problems? All times are GMT -5. The time now is 05:03 PM. | |