Poker Software
Page 1 of 2 12 LastLast
Results 1 to 10 of 12
  1. #1
    Member
    Join Date
    Nov 2008
    Posts
    43

    Default Failure to Launch - Msoft Security Essentials

    Tonight i go to start HEM
    Starts loading as normal but immediately closes down after main window appears. At which point a MSE red popup reads: 'Microsoft Security Essentials detected 1 potential threat and suspended it. Click 'Clean' to remove this threat.'

    When i click 'Show details' the detected item is shown as:
    Backdoor: Win32/Bisar!rts Alert Level: High

    Any ideas?

  2. #2
    Senior Member _Loki_'s Avatar
    Join Date
    Jul 2009
    Location
    B/ham UK
    Posts
    1,949

    Default

    Any ideas about what ? It's a backdoor trojan - follow the instructions MSE gives you is probably the answer

    Did you clean it as instructed ?

    Encyclopedia entry: Backdoor:Win32/Bisar!rts - Learn more about malware - Microsoft Malware Protection Center

  3. #3
    Member
    Join Date
    Nov 2008
    Posts
    43

    Default

    Ya i cleaned it as instructed and a 'your PC is now clean' type message comes up. Same thing happens though every time i try and run HEM so wondered if it was a known HEM problem/bug/update/virus whatever.

  4. #4
    Member
    Join Date
    Nov 2008
    Posts
    43

    Default

    Category: Backdoor

    Description: This program provides remote access to the computer it is installed on.

    Recommendation: Permit this detected item only if you trust the program or the software publisher.

    Microsoft Security Essentials detected programs that may compromise your privacy or damage your computer. You can still access the files that these programs use without removing them (not recommended). To access these files, select the 'Allow' action and click 'Apply actions'. If this option is not available, log on as administrator or ask the local administrator for help.

    Items:
    file:C:\Users\Shaun\AppData\Local\Xenocode\Applian ceCaches\HoldemManager.exe_v1C84EDBD\TheApp\STUBEX E\@PROGRAMFILES@\RVG Software\Holdem Manager\HMImport.exe


    That shows full details
    The HMImport.exe shows modified 5 mins ago which is when i just tried cleaning again.

    Is this a problem on my side?
    Can i delete this exe and re-install?
    I really dunno what to do.... anyone suggest something?

  5. #5
    Member
    Join Date
    Nov 2008
    Posts
    43

    Default

    Just got another warning, this time for Win32/Bumat!rts

    Category: Trojan

    Description: This program is dangerous and executes commands from an attacker.

    Recommendation: Permit this detected item only if you trust the program or the software publisher.

    Microsoft Security Essentials detected programs that may compromise your privacy or damage your computer. You can still access the files that these programs use without removing them (not recommended). To access these files, select the 'Allow' action and click 'Apply actions'. If this option is not available, log on as administrator or ask the local administrator for help.

    Items:
    file:C:\Users\Shaun\AppData\Local\Xenocode\Applian ceCaches\HoldemManager.exe_v2B34C5A3\Native\STUBEX E\@PROGRAMFILES@\RVG Software\Holdem Manager\DBControlPanel.exe
    file:C:\Users\Shaun\AppData\Local\Xenocode\Applian ceCaches\HoldemManager.exe_v65ED1E19\Native\STUBEX E\@PROGRAMFILES@\RVG Software\Holdem Manager\DBControlPanel.exe


  6. #6
    Graphics Guru fozzy71's Avatar
    Join Date
    Sep 1971
    Location
    HM Support
    Posts
    19,690

    Default

    It sounds like you are using an old version of HM (circa November of last year).

    Please update to the latest beta - http://www.holdemmanager.com/downloads/HmBetaUpdate.exe

    Close HEM and your anti-virus and delete any \xenocode\appliance cache folders and any other possible false positive files.

    1. Enable "Show hidden files and folders" under Control Panel -> Folder Options -> View
    2. Go to C:\Users\%USERPROFILE%\AppData\Local\Xenocode\Appl iance Cache and delete every folder you can find in there

    If you are on XP, that location is C:\Documents and Settings\%USERPROFILE%\Local\Application Data\xenocode\appliance cache

    Empty your recycle bin.

    reboot
    Participate in the Alpha release of the newest Hold'em Manager version: HM Cloud. Sign-up HERE.

    If you would like to leave some feedback to help us improve the quality of the solutions, and/or the support quality you received, you can do so here: Leave Feedback

  7. #7
    Member
    Join Date
    Nov 2008
    Posts
    43

    Default

    seems to have done the job thanks.
    Do you think i am/was infected or just a conflict/error?

    Seems fine now

  8. #8
    Graphics Guru fozzy71's Avatar
    Join Date
    Sep 1971
    Location
    HM Support
    Posts
    19,690

    Default

    It is an old False-Positive bug. If you want to be sure you are not infected by something I suggest following these steps - Virus/Spyware/Malware Q&A - Please read before posting - Computer Technical Help - Software and Hardware Forum
    Participate in the Alpha release of the newest Hold'em Manager version: HM Cloud. Sign-up HERE.

    If you would like to leave some feedback to help us improve the quality of the solutions, and/or the support quality you received, you can do so here: Leave Feedback

  9. #9
    Junior Member
    Join Date
    Oct 2008
    Posts
    21

    Default Hmm I scanned and also go these *PLEASE HELP*

    I did a microsoft security scanned and these showed up. My HEM is working normal and fine as usual, I just did a random scan and found these. PLEASE TELL ME THIS IS PART OF HEM or DID I JUST FIND A VIRUS IN MY COMPUTER, is this possibly a way for hackers to view holecards???

    Backdoor:Win32/Bisar!rts
    Category: Backdoor

    Description: This program provides remote access to the computer it is installed on.

    Recommendation: Permit this detected item only if you trust the program or the software publisher.

    Microsoft Security Essentials detected programs that may compromise your privacy or damage your computer. You can still access the files that these programs use without removing them (not recommended). To access these files, select the 'Allow' action and click 'Apply actions'. If this option is not available, log on as administrator or ask the local administrator for help.

    tems:
    file:C:\Documents and Settings\Stylistic\Local Settings\Application Data\Xenocode\ApplianceCaches\HoldemManager.exe_v5 01547F3\TheApp\STUBEXE\@PROGRAMFILES@\RVG Software\Holdem Manager\HoldemManager.exe
    file:C:\Documents and Settings\Stylistic\Local Settings\Application Data\Xenocode\ApplianceCaches\HoldemManager.exe_v7 BC20518\Native\STUBEXE\@PROGRAMFILES@\RVG Software\Holdem Manager\DBControlPanel.exe
    file:C:\Documents and Settings\Stylistic\Local Settings\Application Data\Xenocode\ApplianceCaches\HoldemManager.exe_v7 BC20518\Native\STUBEXE\@PROGRAMFILES@\RVG Software\Holdem Manager\HMHud.exe
    file:C:\Documents and Settings\Stylistic\Local Settings\Application Data\Xenocode\ApplianceCaches\HoldemManager.exe_v7 BC20518\Native\STUBEXE\@WINDIR@\Microsoft.NET\Fram ework\v2.0.50727\csc.exe

    Trojan:win32/orsam!rts
    Category: Trojan

    Description: This program is dangerous and executes commands from an attacker.

    Recommendation: Permit this detected item only if you trust the program or the software publisher.

    Microsoft Security Essentials detected programs that may compromise your privacy or damage your computer. You can still access the files that these programs use without removing them (not recommended). To access these files, select the 'Allow' action and click 'Apply actions'. If this option is not available, log on as administrator or ask the local administrator for help.

    Items:
    file:C:\Documents and Settings\Stylistic\Local Settings\Application Data\Xenocode\ApplianceCaches\HoldemManager.exe_v7 BC20518\TheApp\STUBEXE\@PROGRAMFILES@\RVG Software\Holdem Manager\HoldemManager.exe


    Trojan: Win32/Bumat!rts

    Category: Trojan

    Description: This program is dangerous and executes commands from an attacker.

    Recommendation: Permit this detected item only if you trust the program or the software publisher.

    Microsoft Security Essentials detected programs that may compromise your privacy or damage your computer. You can still access the files that these programs use without removing them (not recommended). To access these files, select the 'Allow' action and click 'Apply actions'. If this option is not available, log on as administrator or ask the local administrator for help.

    Items:
    file:C:\Documents and Settings\Stylistic\Local Settings\Application Data\Xenocode\ApplianceCaches\HoldemManager.exe_v7 BC20518\TheApp\STUBEXE\@PROGRAMFILES@\RVG Software\Holdem Manager\HMImport.exe

  10. #10
    HM Support netsrak's Avatar
    Join Date
    Feb 2009
    Location
    Germany
    Posts
    24,476

    Default

    Which HM version are you using?

    We had an issue with a false positive alarm in an older version of Holdemmanager (1.09.x). If you are still using this or you had it installed the virus scanner might still find parts of this old version in the appliancecache or in restore points. You can delete this files or ignore them.
    Participate in the Alpha release of the newest Hold'em Manager version: HM Cloud. Sign-up HERE.

    If you would like to leave some feedback to help us improve the quality of the solutions, and/or the support quality you received, - you can do this here


    HM2 FAQ -- Quick Start HM2 Guide -- Licensing -- Postgresql issues -- Top 10 Performance Tips

Page 1 of 2 12 LastLast

Similar Threads

  1. ZoneAlarm Extreme Security
    By Cherufe in forum Manager General
    Replies: 10
    Last Post: 01-24-2010, 05:57 AM
  2. security of my pc
    By pjeigenn in forum Manager General
    Replies: 1
    Last Post: 11-01-2009, 11:02 AM
  3. HEM Tagged As Backdoor.Trojan by Norton Internet Security
    By DawnToDusk in forum Manager General
    Replies: 7
    Last Post: 10-29-2009, 12:18 AM
  4. Firewall security alerts for HM/HM HUD
    By Tranclugator in forum Manager General
    Replies: 9
    Last Post: 06-17-2009, 02:33 PM
  5. AT&T McAfee security suite
    By Orthoguy in forum Manager General
    Replies: 1
    Last Post: 02-28-2009, 12:41 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •