external image

TROJANS at 3Dice? (combined threads)

Cat

Dormant account
Joined
Mar 29, 2008
Location
Ireland
Hi everyone......I'm writing this as I've found 2 Trojans on my laptop and now again another 2 Trojans and they are coming from 3Dice, the only problem I have with this is that I've not had a reply to my email to Enzo and I really want to know what's going on!!!!

Also I warned a few of my friends to check they're pc's and "what do you think" they had more than me on there's.......What does this mean??? and What can be done????

Detected Item Description and Information

Listed below is basic information about the detected application/process. This application may not be safe to have on your system.

Summary : Trojan.Dropper/Gen.Process

Company : Unknown

Description : Trojan.Dropper/Gen.Process

Threat Level (1-10) : 5

Processes : *
SGSGOSS.EXE
GWCEA.EXE
CDKAPW.EXE
ERAWE.EXE

CLSID List :

Thats a copy of report i'm not good at understanding what it means!!!!


HELP ENZO

Cat
 
Last edited:
possible help

Hi everyone......I'm writing this as I've found 2 Trojans on my laptop and now again another 2 Trojans and they are coming from 3Dice, the only problem I have with this is that I've not had a reply to my email to Enzo and I really want to know what's going on!!!!

Also I warned a few of my friends to check they're pc's and "what do you think" they had more than me on there's.......What does this mean??? and What can be done????

HELP ENZO

Cat

Just a quick reply to ask if youve went to the live chatroom they have on there to see what cs is saying about it?
 
I was hoping I'd have an email back from Enzo by now before i said anything to other players....another player got a reply saying Enzo would talk to them today and it never happened and the same about a reply to they're email, I always chat in 3D but at the moment i'm busy cleaning up a mess on my laptop..


Cat
 
i wouldnt

I was hoping I'd have an email back from Enzo by now before i said anything to other players....another player got a reply saying Enzo would talk to them today and it never happened and the same about a reply to they're email, I always chat in 3D but at the moment i'm busy cleaning up a mess on my laptop..


Cat

Bit scary if its more than 1 player having that issue keep us updated cat thnx and gl with your pc.
 
Cat, while you still have time to edit the title of the thread here, why don't you name it "ABOUT TROJANS at 3Dice" since this only concerns 3Dice but by the title no one else knows that and can not be properly warned ?? Just a suggestion...:)
 
Hi Cat,

First off, as much as I like to help everyone personally - sending an email to enzo is not the way to be assured of the fastest possible response. I'm only human and we have 24/7 support available on [email protected], via the website chat, via the player chat and via telephone. Depending on the schedule contacting anyone at support personally can take a couple of days.

The trojan you detect is most likely a false positive of your scanner. 3Dice software performs sha-1 checking on its files every time it is started and this completely eliminates the possibility of local infections. (the software would complain its files are modified and re-download proper versions from the website.).

Furthermore, none of the infected processes you list in your post originate from 3Dice, and so if its not a false positive then you have yet to discover the actual source of this problem. I'll contact you on the player chat as soon as I can Cat, and will talk you through the correct steps to pin this down.

In the mean time, you can download an alternative scanner (many free ones out there), which can help you determine whether or not its just a false positive.

Kindest Regards,

Enzo
 
Hi Enzo, thank you for replying I'm still not sure what's going on and I will talk to you in chat and see what can be done!

The only other problem I see is that Noirin and Wanda who are players in 3Dice also found the same results and many more that I can't name without they're permission.

Thanking you


Cat
 
I went to support in chat and I asked about it earlier today and was told that it would be looked into and they would get back to me.....



N:)
 
...I'm writing this as I've found 2 Trojans on my laptop and now again another 2 Trojans and they are coming from 3Dice......

Summary : Trojan.Dropper/Gen.Process

Company : Unknown

Description : Trojan.Dropper/Gen.Process

Threat Level (1-10) : 5

Processes : *
SGSGOSS.EXE
GWCEA.EXE
CDKAPW.EXE
ERAWE.EXE

CLSID List :

Oh! This thread is about computer infections!

I thought maybe it was about protecting yourself from one of their royal reamings....

My Bad!;)
 
dont panic!

Pretty sure it will be a false positive on this. i have tryed many different antivirus softwares in my time. some are better than others. i have 3D installed on my computer and there is no sign of any malware, viruses or spyware. i use avg amd somtimes that comes up with false positives. so if it comes up positive and i'm absolutly sure the software is legitamate and trust worthy i just ignore it. bear in mind i havent been the victim of a computer virus in 4 years. people get so paranoid about viruses but its spyware which is the most dangerous threat and even that is a peice of piss to detect.
 
TROJANS at 3Dice

Hi :)
on Oct 13th I found 2 Trojan viruses on my laptop that had come for 3Dice Casino. I e-mailed the detail to Enzo and then I went to live support and was assured that Enzo would speak with me tomorrow (Oct. 14th). On Oct. 14th I went into 3Dice Casino and sent PM's to live support about these Trojan's and to see if something had been done about them. I sent 3 PM's to live support and received no reply what so ever, even in last PM I asked could I be e-mailed with an up date on the situation :mad:. Is in now 45 hour's later and I not not received any information for any source about Trojan's.
I had informed some friends who play at 3Dice that I have MSN contact with and they too found these viruses, one of these player got a date saying Trojans were on her PC since Aug. 31st. (did nobody at 3Dice notice these?) These friends also contacted other players who have found same.
I have read the thread by another player about this problem and I have read the reply she received from Enzo on the matter, which was about false and positive Trojans. I was annoyed that Enzo could take the time to reply to a thread on CM but had not bothered to reply to what was now two e-mails the I had sent him, plus three failed attempts for answers form live support. After all it was I that had found these Trojans and quietly reported them to both Enzo and live support and not in chat room and causing a panic with players.
My point in this thread is to make 3Dice players aware of these Trojans so that they have the choice to risk playing at 3Dice while these Trojans are there, im my book false or positive means nothing to me they are Trojans and they should not be there, and I consider other members of 3Dice my friends and I want them to be aware and have the chance to scan and remove Trojans. But also know when 3Dice is opened Trojans return.
Also in support of the other 3Dice players thread...who was told to make contact with live support that Enzo was only human after all, well yes I made contact with live support and I still await an answer. To my friends at 3Dice who I believe should be aware of this get scanning and see what ye find.


Wanda :thumbsup:
 
Last edited:
Link Outdated / Removed

Personally, I think it's false positives from your virus scanner, but what do I know. Try a scan with Adaware, AVG, and Spybot Search & Destroy, just in case.
 
... I used super anti sypware..

Can you tell us specifically which anti-spyware product you are using? That can make a HUGE difference in the chance of false positives you're likely to see. A few anti-virus/spyware products are considered "industrial strength", many others are ... let's just say they aren't.

Best thing would be if you could post your spyware reports here. That could tell us volumes, may even allow some sharp cookie here to clear this up for you.

PS. I'm going to merge this with another thread on the same subject, for several reasons including the fact that my suggestions here applies there too.
 
Last edited:
Summary : Trojan.Dropper/Gen.Process

Trojan.Dropper is a Trojan horse that drops Trojan horses (viruses) onto compromised computers.

See this for more info.
You do not have permission to view link Log in or register now.



Seriously doubt it's a false positive when the anti-virus program is naming the specific Trojan Virus Program.
 
Trojan.Dropper is a Trojan horse that drops Trojan horses (viruses) onto compromised computers.

See this for more info.
You do not have permission to view link Log in or register now.



Seriously doubt it's a false positive when the anti-virus program is naming the specific Trojan Virus Program.
Gen.Process is probably short for generic process, i.e., this detection covers anything that downloads something from the internet.
 
I Started This Thread

Hi everyone, I've had a long and interesting chat with Enzo and to tell the truth I've learned alot form him...thank you Enzo :thumbsup:

A few words from the MAN HIMSELF to me:


well viruses - trojans and spyware 101 my pleasure
ok so for starters a virus describes an application that embeds itself in other applications and continues to copy itself all over the place. The term virus describes how it gets spread, and nothing really about what it does.
a trojan typically is an application, like a utility or a little gadget that actually has a hidden agenda.
(and might for example be used to send spamn from your computer)
the term trojan describes in that sense functionality, and not how its spread
and spyware is software, may be of trojan nature, that tries to gather personal information on your computer.
to detect and/or remove any of these, several scanning techniques exist.
one of the most commont techniques used today is what we call signature checking
a scanner doesn't know how the entire virus/trojan looks like, but it knows a small sequence that is supposed to uniquely identify the virus/trojan
and so it will scan executable files on your disk looking for these signatures
now unfortunately the presense of a signature is not a guarantee ..
normally these scanners automatically send out reports to the site of the manufacterer
so in a following update
they will probably extend that particular signature so that the known false positives don't happen anymore
which means if the virus is there .. it will not fail and always detect it .. but .. it might also find the signature in some other file that really doesn't contain the virus but just happens to contain a signature
with the 3Dice software, you are actually more guaranteed of clean files because of a second aspect
as with many financial software, we take extra security precausions
the thing is that the 3Dice software will check every single file it has ... everytime you start it ..
so the odds of 3Dice.exe getting infected are very very very low ..
it is .. it protects us from hackers ..
which is why I'm so sure




I also found out that Avast is not as good as AVG and maybe alot more anti-virus software.....I just hope all that is said in this post helps most of you understand what's going on with the Trojan that i've been getting and many others.

Adware and spybot s/d seems to be great programs, i've downloaded both in the past few hours and don't have any dirt or Trojan's on my laptop:notworthy

Thank you Enzo ....I will say this though if I get anything else that is coming for me i'll contact you in support:thumbsup:

Cat :D
 
Last edited:
Cat, thank you for posting about this. The first thing I did was update and run my antivirus, as well as update and run my spyware. I seem to be unscathed.

I notice that you, Wanda and Noirin are all in Ireland. Are your other friends there too? Could it be coming through your ISP perhaps...sometimes these vandals will attack a provider's system to "get back" at them for some real or imaginary injury.

I'm not an expert, but I did notice that you are all in the same location. Just a thought.

Hope you resolve it soon.
 
Cat, thank you for posting about this. The first thing I did was update and run my antivirus, as well as update and run my spyware. I seem to be unscathed.

I notice that you, Wanda and Noirin are all in Ireland. Are your other friends there too? Could it be coming through your ISP perhaps...sometimes these vandals will attack a provider's system to "get back" at them for some real or imaginary injury.

I'm not an expert, but I did notice that you are all in the same location. Just a thought.

Hope you resolve it soon.

Nice grab there Jas...about the Ireland thing. I never even noticed. I am also virus free. The other thing is that (I "think"), they are all using the same virus scanner. A false positive seems a definite possibility. But the Ireland thing, if not relevant, is a huge coincidence.
 
Trojans at 3Dice - the answers

Hi all,

last night I got an e-mail for Enzo with apology about non answers to live support, which I got totally paranoid about believing no one at 3Dice wanted to speak to me about Trojans. For the other members of 3Dice reading this and perhaps looking for the reassurance I too was seeking on the matter, below I have copied and pasted the relevant part of e-mail received from Enzo. :)
I've had the tech team investigate the warning you are
seeing and it is a false positive of the scanner you are using. That
means that the scanner software - wrongly - thinks it is seeing a trojan.

These scanners use signatures (or heuristics) to check applications,
and because of that they sometimes make mistakes. (an executable file
can contain a character sequence that matches one of the signatures
without actually containing the trojan in question.). The only way
to determine whether or not you are dealing with a false positive
is to use more than one scanning application. Apart from your
virus scanner, consider installing the free 'spybot s/d' and 'ad-aware'
applications. Those specialize in trojans and other malware and
once installed an actual infection will trigger all three (or atleast
two) warnings. If only one application detects something the a false
positive is always the most likely outcome.

The 3Dice software has extra security measures when compared to normal
software being that as soon as a virus would change any of the 3Dice
files, the casino will detect this the first time it is started and
redownload latest versions from the website. (this is our guarantee
that hackers cannot tamper with our files.).

In a future update, the signatures of your virus scanner may be updated
to remove this false positive, and in the mean time most scanners allow
you to ignore a certain warning per application. (so if it complains
after starting 3Dice, you can safely check 'ignore' since you know
that your scanner detects a false positive on these files.)

Wanda :thumbsup:
 
Last edited by a moderator:
I freaked a little when it came up that I had a trojan...even though I don't know much about them... Have a new lap top, only 2 weeks ago and it really worried me:eek2:

I, too, spoke to Enzo and would like to take this chance to thank him for taking the time to speak to me and explain it to me. :notworthy

BTW, fell asleep with lap top last night and woke this morning to find it on the ground and screen cracked...now playing with big blob on screen. Realise now threat was the floor and not anything from 3dice:p

N:)
 
Soooooooo PMSL Noir :lolup:

Jas and Pina...it wasn't an Irish thing with the trojans girls at the time, it was from others all over but at this time i'm so glad to say that it has all been cleared up and we can all thank Enzo for his help:)

By the way Noir......laptops are for you lap not the floor :lolup:
 
Will we go down in history as The Trojan Girls???:o



N:)

These are the 'real' Trojan girls....:D

2006USC6.jpg
 
It appears that Enzo is correct in the fact that it was only a false positive result as you can see below from all the scans...the only one to come back and say anything was Panda...but it was also most likely just showing a false positive too.


Antivirus Version Last Update Result
AhnLab-V3 2008.10.14.0 2008.10.13 -
AntiVir 7.8.1.34 2008.10.13 -
Authentium 5.1.0.4 2008.10.13 -
Avast 4.8.1248.0 2008.10.14 -
AVG 8.0.0.161 2008.10.13 -
BitDefender 7.2 2008.10.14 -
CAT-QuickHeal 9.50 2008.10.13 -
ClamAV 0.93.1 2008.10.14 -
DrWeb 4.44.0.09170 2008.10.14 -
eSafe 7.0.17.0 2008.10.12 -
eTrust-Vet 31.6.6146 2008.10.13 -
Ewido 4.0 2008.10.13 -
F-Prot 4.4.4.56 2008.10.12 -
F-Secure 8.0.14332.0 2008.10.14 -
Fortinet 3.113.0.0 2008.10.14 -
GData 19 2008.10.14 -
Ikarus T3.1.1.34.0 2008.10.14 -
K7AntiVirus 7.10.492 2008.10.13 -
Kaspersky 7.0.0.125 2008.10.14 -
McAfee 5403 2008.10.11 -
Microsoft 1.4005 2008.10.14 -
NOD32 3519 2008.10.14 -
Norman 5.80.02 2008.10.13 -
Panda 9.0.0.4 2008.10.13 Suspicious file
PCTools 4.4.2.0 2008.10.13 -
Prevx1 V2 2008.10.14 -
Rising 20.66.02.00 2008.10.13 -
SecureWeb-Gateway 6.7.6 2008.10.13 -
Sophos 4.34.0 2008.10.14 -
Sunbelt 3.1.1722.1 2008.10.14 -
Symantec 10 2008.10.14 -
TheHacker 6.3.1.0.110 2008.10.14 -
TrendMicro 8.700.0.1004 2008.10.13 -
VBA32 3.12.8.6 2008.10.13 -
ViRobot 2008.10.13.1417 2008.10.13 -
VirusBuster 4.5.11.0 2008.10.13 -
 
Trojans at 3Dice

OMG !!!!!!!!!! :eek:

CAT !!! NOIRIN !!!! rob's got our pic from
someplace... OK which of ye let him have it..
pmsl...

Wanda :lolup:
 
It appears that Enzo is correct in the fact that it was only a false positive result as you can see below from all the scans...the only one to come back and say anything was Panda...but it was also most likely just showing a false positive too.


Antivirus Version Last Update Result
AhnLab-V3 2008.10.14.0 2008.10.13 -
AntiVir 7.8.1.34 2008.10.13 -
Authentium 5.1.0.4 2008.10.13 -
Avast 4.8.1248.0 2008.10.14 -
AVG 8.0.0.161 2008.10.13 -
BitDefender 7.2 2008.10.14 -
CAT-QuickHeal 9.50 2008.10.13 -
ClamAV 0.93.1 2008.10.14 -
DrWeb 4.44.0.09170 2008.10.14 -
eSafe 7.0.17.0 2008.10.12 -
eTrust-Vet 31.6.6146 2008.10.13 -
Ewido 4.0 2008.10.13 -
F-Prot 4.4.4.56 2008.10.12 -
F-Secure 8.0.14332.0 2008.10.14 -
Fortinet 3.113.0.0 2008.10.14 -
GData 19 2008.10.14 -
Ikarus T3.1.1.34.0 2008.10.14 -
K7AntiVirus 7.10.492 2008.10.13 -
Kaspersky 7.0.0.125 2008.10.14 -
McAfee 5403 2008.10.11 -
Microsoft 1.4005 2008.10.14 -
NOD32 3519 2008.10.14 -
Norman 5.80.02 2008.10.13 -
Panda 9.0.0.4 2008.10.13 Suspicious file
PCTools 4.4.2.0 2008.10.13 -
Prevx1 V2 2008.10.14 -
Rising 20.66.02.00 2008.10.13 -
SecureWeb-Gateway 6.7.6 2008.10.13 -
Sophos 4.34.0 2008.10.14 -
Sunbelt 3.1.1722.1 2008.10.14 -
Symantec 10 2008.10.14 -
TheHacker 6.3.1.0.110 2008.10.14 -
TrendMicro 8.700.0.1004 2008.10.13 -
VBA32 3.12.8.6 2008.10.13 -
ViRobot 2008.10.13.1417 2008.10.13 -
VirusBuster 4.5.11.0 2008.10.13 -

Ty for all the scans Rob and for going to the trouble to scan :)

Is there any room left on your computer with all of those on it?!


N:)
 

Users who are viewing this thread

Accredited Casinos

Read about our rating system and how it's done.
Back
Top