.com.unity Forums
  The Official e-Store of Shrapnel Games

This Month's Specials

Raging Tiger- Save $9.00
winSPMBT: Main Battle Tank- Save $6.00

   







Go Back   .com.unity Forums > Illwinter Game Design > Dominions 2: The Ascension Wars

Closed Thread
 
Thread Tools Display Modes
  #1  
Old April 7th, 2004, 04:58 PM

Norfleet Norfleet is offline
Major General
 
Join Date: Jan 2004
Posts: 2,425
Thanks: 0
Thanked 0 Times in 0 Posts
Norfleet is an unknown quantity at this point
Default OT: SPYWARE/TROJAN and Off Topic!

While trying out the new patch, I was very unpleasantly surprised when while trying to play a SINGLE PLAYER test game, with only myself and an AI opponent, I was unpleasantly jerked to the desktop with a security alert! Dominions II was trying to phone home, and my firewall had intercepted a suspicious request.

What on earth is 82.182.97.69 30729?

I cannot identify this port or protocol. Reverse-DNS identifies this IP as "1-1-2-16a.msp.mlm.bostream.se".

Has somebody managed to slip some sort of odd spyware trojan into the new Dom2 patch?

[ April 10, 2004, 03:44: Message edited by: Zen ]
  #2  
Old April 7th, 2004, 05:01 PM
Gandalf Parker's Avatar

Gandalf Parker Gandalf Parker is offline
Shrapnel Fanatic
 
Join Date: Oct 2003
Location: Vacaville, CA, USA
Posts: 13,736
Thanks: 341
Thanked 479 Times in 326 Posts
Gandalf Parker is on a distinguished road
Default Re: OT: SPYWARE/TROJAN and Off Topic!

That is home.

Totally guesswork but I suspect that the "CD keys are only checked in multiplayer games" might be getting tackled. Along with a way to update the list of CD keys that are Banned. Or maybe the list got too long to include inside the game so now it checks it at home.

[ April 07, 2004, 16:04: Message edited by: Gandalf Parker ]
__________________
-- DISCLAIMER:
This game is NOT suitable for students, interns, apprentices, or anyone else who is expected to pass tests on a regular basis. Do not think about strategies while operating heavy machinery. Before beginning this game make arrangements for someone to check on you daily. If you find that your game has continued for more than 36 hours straight then you should consult a physician immediately (Do NOT show him the game!)
  #3  
Old April 7th, 2004, 05:07 PM

Norfleet Norfleet is offline
Major General
 
Join Date: Jan 2004
Posts: 2,425
Thanks: 0
Thanked 0 Times in 0 Posts
Norfleet is an unknown quantity at this point
Default Re: OT: SPYWARE/TROJAN and Off Topic!

So it's ILLWINTER'S Spyware, phoning home. How evil. What little faith I had in them is now destroyed. It saddens me to see them resort to spyware tactics, phoning home with all of the information about your computer. I have no idea what's in these mystery packets, but given the surreptitious nature of such an inclusion, it is obviously a Bad Thing. No software on MY computer phones home. Period.
  #4  
Old April 7th, 2004, 05:16 PM

Norfleet Norfleet is offline
Major General
 
Join Date: Jan 2004
Posts: 2,425
Thanks: 0
Thanked 0 Times in 0 Posts
Norfleet is an unknown quantity at this point
Default Re: OT: SPYWARE/TROJAN and Off Topic!

Hmm. The more odd thing is that it doesn't happen consistently: It doesn't occur every time you try to play. Some people are unable to get it to occur at all, and it doesn't happen in every game, network or SP.

Maybe it's an update checker? I'm trying to be generous and hoping that Illwinter did not, in fact, include something so obviously malware as something that phones home every time you try to play, allowing them to track your playing habits and computer data, and that this is something more benign, like an update-checker...maybe.
  #5  
Old April 7th, 2004, 05:24 PM

Norfleet Norfleet is offline
Major General
 
Join Date: Jan 2004
Posts: 2,425
Thanks: 0
Thanked 0 Times in 0 Posts
Norfleet is an unknown quantity at this point
Default Re: OT: SPYWARE/TROJAN and Off Topic!

Is there an official statement on this matter, or only guilty silence?
  #6  
Old April 7th, 2004, 05:34 PM
tinkthank's Avatar

tinkthank tinkthank is offline
Lieutenant Colonel
 
Join Date: Jan 2004
Posts: 1,276
Thanks: 0
Thanked 2 Times in 2 Posts
tinkthank is on a distinguished road
Default Re: OT: SPYWARE/TROJAN and Off Topic!

Small question here, since I really dont understand what all of this means: How can a game make your computer call "home", and what does that mean? I mean, will it make my modem dial something and then transfer information even if I dont want that to be?
  #7  
Old April 7th, 2004, 05:36 PM

Anglachel Anglachel is offline
Corporal
 
Join Date: Apr 2004
Location: Winter Park, Florida
Posts: 81
Thanks: 0
Thanked 0 Times in 0 Posts
Anglachel is on a distinguished road
Default Re: OT: SPYWARE/TROJAN and Off Topic!

Would the nature of this spyware be a tracking cookie? Kind of illiterate on spyware. If not then the ad-aware spyware remover I just ran only found tracking cookies and I removed them. There were seven of them.
__________________
Where the lion's skin will not reach, you must patch it out with the fox's.
Plutarch
  #8  
Old April 7th, 2004, 05:41 PM

Norfleet Norfleet is offline
Major General
 
Join Date: Jan 2004
Posts: 2,425
Thanks: 0
Thanked 0 Times in 0 Posts
Norfleet is an unknown quantity at this point
Default Re: OT: SPYWARE/TROJAN and Off Topic!

No, tracking cookies are not the only thing: The program appears to call home (according to Gandalf, that's an Illwinter server), on a nonstandard port, and sends unknown data. Normal Spyware/Adware removal programs won't detect this behavior, since it occurs inside of a normal (and new) program.

Basically, this little added feature has the ability to do all of that, and your spyware checkers will not be able to detect it right now, and probably never, because it's unlikely that this will be added to their detection profiles.

However, I have no idea why this program would suddenly phone home in a change not mentioned in the patch update, so I can only assume that it is no good. Otherwise, they would have told us about it.
  #9  
Old April 7th, 2004, 05:42 PM
Nephelim's Avatar

Nephelim Nephelim is offline
Private
 
Join Date: Mar 2004
Location: SF Bay Area, CA
Posts: 28
Thanks: 0
Thanked 0 Times in 0 Posts
Nephelim is on a distinguished road
Default Re: OT: SPYWARE/TROJAN and Off Topic!

And the behaviour if it is unable to phone home is...?

not everyone has an always-on connection.. And some of us like to black-hole route things that try to phone home.
  #10  
Old April 7th, 2004, 06:06 PM

Norfleet Norfleet is offline
Major General
 
Join Date: Jan 2004
Posts: 2,425
Thanks: 0
Thanked 0 Times in 0 Posts
Norfleet is an unknown quantity at this point
Default Re: OT: SPYWARE/TROJAN and Off Topic!

Quote:
Originally posted by Nephelim:
And the behaviour if it is unable to phone home is...?

not everyone has an always-on connection.. And some of us like to black-hole route things that try to phone home.
Like me, yes. I black-hole anything that tries to use the Internet without permission as a general rule.

The behavior that occurs when unable to phone home is, as far as I can tell, absolutely nothing.

What I don't know is what the behavior for being ABLE to phone home is, given that I will not allow such a thing! If anyone can tell me what THAT is, I'd be curious.
Closed Thread

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On

Forum Jump


All times are GMT -4. The time now is 01:45 PM.


Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Copyright ©1999 - 2024, Shrapnel Games, Inc. - All Rights Reserved.