{lang: 'en-US'}

Picture Guide : A virus fix to AVG, MapleSEA v0.86, and Themida

Notes prior to this guide : If there are any sections/parts/links in this guide that BREAKS the rules/ToS in this forum(s), please inform me, or better yet, immediately remove the problems from this guide without approaching me. This is a free and open guide, and any part can be reproduced without permission.

Okay. Welcome to my very first technical public guide on how to fix :

MapleStory.exe detected as a virus by AVG!

A MUST READ, NOT YOUR USUAL YADA-YADA : Before I start, I would like to say that, if you want to skip my whole 'documentary', the links to the v0.86 executable are at the bottom of this guide. Once you scroll to a few pictures/the word FIX being very BIG and BLUE on your screen , you should stop and scroll up abit to see what's happening. That is of course if you don't have time to even read about the problem, that is, MapleSEA, Themida and AVG.

Firstly, let us lay our foundations here that....

ASIASOFT is not trying to steal your bank accounts!

There is not a need for them to purposely, with full of motive, pack their latest 0.86 client with some kind of virus.

So, lets check what actually is detected in the MapleStory.exe

Retrieved from : http://virusscan.jotti.org/en/scanre...b4476cdf59f9f7

-----------------------------------------------------------------
[ArcaVir] 2009-11-18 Found nothing
[G DATA] 2009-11-18 Found nothing
[A-Squared] 2009-11-18 Found nothing
[Ikarus] 2009-11-18 Found nothing
[Avast! antivirus] 2009-11-18 Found nothing
[Kaspersky Anti-Virus] 2009-11-18 Found nothing
[Grisoft AVG Anti-Virus] 2009-11-18 Win32/Themida
[ESET NOD32] 2009-11-18 Found nothing
[Avira AntiVir] 2009-11-18 Found nothing
[Norman Virus Control] 2009-11-18 Found nothing
[Softwin BitDefender] 2009-11-18 Found nothing
[Panda Antivirus] 2009-11-18 Found nothing
[ClamAV] 2009-11-18 Found nothing
[Quick Heal] 2009-11-17 Found nothing
[CPsecure] 2009-11-18 Found nothing
[Sophos] 2009-11-17 Found nothing
[Dr.Web] 2009-11-18 Found nothing
[VirusBlokAda VBA32] 2009-11-17 Found nothing
[Frisk F-Prot Antivirus] 2009-11-17 W32/Themida_Packed!Eldorado
[VirusBuster] Operation timed out
[F-Secure Anti-Virus] 2009-11-18 Found nothing
-----------------------------------------------------------------

We can clearly see the obvious. Let us call upon the one responsible for this calamity. Let me present to you, Themida!

*clap clap*

Let me quote from a certain forum that was discussing about Themida, in which someone typed in these words :

-----------------------------------------------------------------
"Themida is a software protection product designed to prevent software from being "cracked" and does use encryption, therefore, is very difficult for any anti-virus to confirm one way or another if its malware. Un-fortunately, Themida is highly used by virus writers, keylogger writers, etc., to concel their malware.
So, all in all no one can actually be absolutely certain that when Themida is detected it is malware or a legit product....its your call."
-----------------------------------------------------------------

If you don't believe about Themida being a 'security feature', well, go ahead to their website : http://www.oreans.com/themida.php

So, executables packed with Themida might be innocent, or vicious. It's your call. Well, maybe, Asiasoft did this to prevent hackers from doing some bad, mean stuff to the MapleStory.exe? Hmm...Yeah, should be! So, if you think Asiasoft is indeed trying to steal your poor little MSN accounts, think again! xD

So, now that we know that this new MapleStory executable is safe, what do we do? Hmmm...

FIX

Quoted from sky777 at http://forums.asiasoftsea.net/showthread.php?t=720016 :

-----------------------------------------------------------------


Solution: DONT CLICK THE HEAL BUTTON, CLICK THE IGNORE, and update AVG free to 9.0 version, then problem will solved
-----------------------------------------------------------------

AVG v9.0 : http://download.cnet.com/AVG-Anti-Vi...dlPid=11014801

So, what if you don't want to / cannot upgrade your AVG AntiVirus? Well, there is a way you can make AVG quieten down by :

Path 1 :

1. Open AVG antivirus by double clicking on the icon from the system tray area.

2.

This image has been resized. Click this bar to view the full image. The original image is sized 789x211.


3.
This image has been resized. Click this bar to view the full image. The original image is sized 750x580.


4.

5.
This image has been resized. Click this bar to view the full image. The original image is sized 750x580.


Path 2 :

THIS METHOD SWITCHES OFF YOUR ONLY WALL OF DEFENSE. DO NOT DO THIS UNLESS YOU ARE VERY SURE THAT YOUR COMPUTER IS CLEAN, RUNNING WITH PROPER INTERNET SECURITY AND THAT YOU ARE VERY SURE THAT RUNNING YOUR COMPUTER WITHOUT YOUR ANTIVIRUS IS ACCEPTABLE TO YOUR CODE OF ETHICS. I WILL/SHALL NOT/NEVER BE RESPONSIBLE FOR ANY DAMAGE/PROBLEMS TO YOUR COMPUTER SHOULD YOU PERFORM THE STEPS SHOWN.

1.
This image has been resized. Click this bar to view the full image. The original image is sized 786x305.


2.
This image has been resized. Click this bar to view the full image. The original image is sized 790x580.


Themida will not be a problem any longer, and MapleStory will be available to you pronto.

Client v0.86

Oh, let us not forget to the people who clicked 'Heal' and was viciously attacked/harassed by AVG.

Executable for MapleSEA v0.86 :

http://www.mediafire.com/?jmynlgz3doi
http://www.opendrive.com/files/57762...MapleStory.exe

Final Note :
SERIOUSLY, if you still have AVG installed in your computer, give yourself a break and install Avira AntiVir, easily obtained at www.free-av.com I have been using it for almost 2 years, and it has not failed me yet. And I don't think it ever will.

Thank you for reading my guide. Hope you won't have any more problems after this! (:

Added :

AVG9.0 caused MapleStory to 'minimize' without warning.

Quoted from UnicornGirl from : http://forums.asiasoftsea.net/showthread.php?t=720446

-----------------------------------------------------------------
So far the known cause is AVG9.0.

It happens on and off, so no way to tell when it's going to happen.

The time interval is about 30 mins, not really random.

Only way to fix this is to install back 8.5, risking the detection of maplestory.exe as virus.

Hope this helped
-----------------------------------------------------------------

BE WARNED!

Added :

Quoted from comacer from http://forums.asiasoftsea.net/showpo...&postcount=204

-----------------------------------------------------------------
exploit this technicality and plant MALWARE/KEYLOGGERS in the maplestory directory with Themida protection, thereby allowing it to disguise as PART OF THE MAPLESTORY (program)
-----------------------------------------------------------------

From the above quote, I would like to add that the steps shown in Path 1 is indeed not PERFECTLY safe. It doesn't do harm if you do not use hacking programs/modules, or run any suspicious files on your computer that might temper with the MapleStory directory. If this is the case, you are safe beyond doubt. (:

Just in case you want to be extra super-duper safe, UPGRADE TO AVG 9 and follow the steps show here, with the only difference being CHOOSING EXCLUDED FILES.

I quote from http://www.avg.com/us-en/index-faq.keyw-exception on how to exclude files from Resident Shield

* Open AVG User Interface.
* Select the Advanced Settings option from the Tools menu.
* Navigate to the Resident Shield branch -> Excluded Files.
* Use the Add button to choose the file to be excluded.
* Confirm the changes using the OK button.

ps. Install Avira AntiVir



Credits to:
CyNiX's Avatar CyNiX CyNiX is offline

Blogger Tips and TricksLatest Tips And TricksBlogger Tricks