church9691
Newbie
- Apr 16, 2021
- 57
- 17
- 18
kinda confused, why does this game have a different name than the past version? has it been updated in some way or it just got reuploaded?
translation changekinda confused, why does this game have a different name than the past version? has it been updated in some way or it just got reuploaded?
ah gotcha, guess ill give it another whirl thentranslation change
even tho i didn't download any of the infected game i will probably do the same, the main reason i quoted you was to adress the files you saw in some appdata folder as like you i was quite spooked and became a bit more paranoid than usual from the situation but after looking into it i was scared for nothing since those are just remnant of the NW.JS which is the base of some game from there and also RPG maker.So, just because a few people quoted my main post, I'm posting an update here just so y'all know what's up.
Since making that initial post, I've changed every password for every account I'm associated with on this PC, enabled 2FA on pretty much everything that would allow it, and did a complete Win11 restart/disk reformat. I haven't had any suspicious activity so far, Steam seems fine, Discord seems fine, my bank account seems to have been untouched (which was my main concern bc I had made a payment from my bank right after playing the game the first time), and none of my social media has been putting out weird scam shit. Should be stated that like, 95% of my social media presence is almost entirely accessed from my phone, so that was never too much of a worry of mine. It seems that my antivirus (which I have since purchased an upgraded plan for, just to be safe) probably caught it before it sent anything out. Or, maybe I was just too freaked out and changed all my passwords before someone was able to comb through my data. Either way, I'll keep y'all posted but I think I'm in the clear for now.
As some people have stated, I think I'm gonna be in the "waiting for a few days before downloading anything" camp for the foreseeable future. A little bummed to have lost my catalogue though. Might check out that sandboxie program someone was talking about.
Ah yeah, I read that too. Bit of a relief, but still. I was super paranoid and freaking out when I wrote that whole thing so I just posted anything that seemed weird. Thanks for the reply. Viruses are some fucked up shit, eh?even tho i didn't download any of the infected game i will probably do the same, the main reason i quoted you was to adress the files you saw in some appdata folder as like you i was quite spooked and became a bit more paranoid than usual from the situation but after looking into it i was scared for nothing since those are just remnant of the NW.JS which is the base of some game from there and also RPG maker.
Cherev explained what those were with way more detail than me a bit before in the thread.
hahaha yeah, i was a bit parnoid too even tho i haven't downloaded any of the infected game, everyone tend to freak out a bit when there's a small chance they got a virusAh yeah, I read that too. Bit of a relief, but still. I was super paranoid and freaking out when I wrote that whole thing so I just posted anything that seemed weird. Thanks for the reply. Viruses are some fucked up shit, eh?
From what I understand of Sandboxie I don't think it would protect you here either. Unless it prevents access to the internet for sandboxed items, which it hasn't when I used it to download suspicious files in a sandboxed browser, it would still download a copy of the virus, the virus would attempt to look at your local data, so sandboxie creates a copy for it the virus to look at, and it would still upload that data.So, just because a few people quoted my main post, I'm posting an update here just so y'all know what's up.
Since making that initial post, I've changed every password for every account I'm associated with on this PC, enabled 2FA on pretty much everything that would allow it, and did a complete Win11 restart/disk reformat. I haven't had any suspicious activity so far, Steam seems fine, Discord seems fine, my bank account seems to have been untouched (which was my main concern bc I had made a payment from my bank right after playing the game the first time), and none of my social media has been putting out weird scam shit. Should be stated that like, 95% of my social media presence is almost entirely accessed from my phone, so that was never too much of a worry of mine. It seems that my antivirus (which I have since purchased an upgraded plan for, just to be safe) probably caught it before it sent anything out. Or, maybe I was just too freaked out and changed all my passwords before someone was able to comb through my data. Either way, I'll keep y'all posted but I think I'm in the clear for now.
As some people have stated, I think I'm gonna be in the "waiting for a few days before downloading anything" camp for the foreseeable future. A little bummed to have lost my catalogue though. Might check out that sandboxie program someone was talking about.
you can configure sandboxie so the process that run into the sandbox cannot access internet in the sandbox settingFrom what I understand of Sandboxie I don't think it would protect you here either. Unless it prevents access to the internet for sandboxed items, which it hasn't when I used it to download suspicious files in a sandboxed browser, it would still download a copy of the virus, the virus would attempt to look at your local data, so sandboxie creates a copy for it the virus to look at, and it would still upload that data.
Thinking about it now I need to figure out how to lock sandboxie networking or something.
You can check for \appdata\local\mysupergames and if that folder is present chance are you were indeed infected, you can also check the main thread about the virus to see the time the virus was online with the timestampsSadly I've downloaded the curse file as well, I scanned my system with Avast 3 times (I mean we never know for sure so...), changed almost all my passwords, and nothing was put in the quarantine zone by my antivirus... I hope I'm safe
I always clean my appdata after playing a game so I don't really know but I don't remember seeing a "mysupergames" folder. Anyway, cleaning my computer and reseting my passwords was needed as I didn't do it since a whileYou can check for \appdata\local\mysupergames and if that folder is present chance are you were indeed infected, you can also check the main thread about the virus to see the time the virus was online with the timestamps
Would i be ok if malwarebytes was blocking the outbound from the exe that was in that folder.... i also stopped the exe in task manager and deleted it or would i be still in jeopardy?You can check for \appdata\local\mysupergames and if that folder is present chance are you were indeed infected, you can also check the main thread about the virus to see the time the virus was online with the timestamps
if the outbound from the exe was blocked you should technically be fine but i personally wouldn't be too sure and still change my password as i've seen other people in the thread with malwarebyte where the virus workedWould i be ok if malwarebytes was blocking the outbound from the exe that was in that folder.... i also stopped the exe in task manager and deleted it or would i be still in jeopardy?
Rightyoif the outbound from the exe was blocked you should technically be fine but i personally wouldn't be too sure and still change my password as i've seen other people in the thread with malwarebyte where the virus worked