PDA

View Full Version : what is HeurEngine.Packed.Themida.RGa


blacktiger
04-04-2009, 10:36 AM
I play Cabal online and just installed PC tools antivirus and it picked this up

Object Name Status Action Infection Date and Time


C:\PROGRAM FILES\OGPLANET\CABAL ONLINE\CABALMAIN.EXE Infected Quarantined HeurEngine.Packed.Themida.RGa 4/4/2009 2:38:12 AM

is this dangerous:confused:
Please Help.

mjq424
04-04-2009, 10:39 AM
Hi
This is a heuristic detection, not a signature detection and is therefore prone to false positives. Where did you get the file from? Was it a trustworthy source (and not cracked/hacked)? Is it possible to send the file to www.virustotal.com to get it scanned by other antivirus engines?

blacktiger
04-04-2009, 11:48 AM
heres the virus total scan
http://www.virustotal.com/analisis/447a67d2be61d479fef9b774b2737cc4

its not cracked/hacked
i got it from http://cabal.ogplanet.com/main.og

Janneson
09-11-2009, 11:42 PM
Hi

Who ever answers these I would like you to ACTUALLY talk to me please. The only answers I can find on the web have the same answers and they are all from you and all of it is the same copy and pasted load of bull. I demand to know is this thing dangerous for my computer or not please? No beating around the bush! It was found infecting C:Gpotato\Luna online\GameGuard\Gamemon.des I don't know what website it came from. I don't know if these things spread or move to different folders or not so the best guess I can give you is it came from the download site that I used for this game. And I don't remember where that was because I was trying several different mirrors because many of them where brocken. Irresponsible? Yes. But I need to know what this problem is and how to fix it please.

AChen
09-14-2009, 02:20 AM
Hi

Who ever answers these I would like you to ACTUALLY talk to me please. The only answers I can find on the web have the same answers and they are all from you and all of it is the same copy and pasted load of bull. I demand to know is this thing dangerous for my computer or not please? No beating around the bush! It was found infecting C:Gpotato\Luna online\GameGuard\Gamemon.des I don't know what website it came from. I don't know if these things spread or move to different folders or not so the best guess I can give you is it came from the download site that I used for this game. And I don't remember where that was because I was trying several different mirrors because many of them where brocken. Irresponsible? Yes. But I need to know what this problem is and how to fix it please.

Hi Janneson,

Could you please send us some more info so we can investigate this further:

1. Launch "PC Tools AntiVirus"
2. Click on "Settings"
3. Click on "Log Settings"
4. Select "Current Log"
5. Click on "View Log"

Your Browser should then launch and show you the log. On your browser, do the following to save the log.

6. Click on File
7. Click on Save As
8. On the new window, type in "Scan Logs" under file name and save the file to your desktop.

You then attach the "Scan Logs" file on your next reply so we may be able to examine it.

It would be great if you could also zip up the files being detected by PCTAV and we can look at these.