• Omega@discuss.online
    link
    fedilink
    English
    arrow-up
    71
    ·
    1 day ago

    To be fair, if it was actually malware it could easily have done it hidden and in the background with no need for it to open cmd

    • lime!@feddit.nu
      link
      fedilink
      English
      arrow-up
      36
      ·
      edit-2
      1 day ago

      it opens automatically for programs without guis that forget to set the “please don’t show cmd” flag. i made a program for my grandmother to automatically sort her photos and it would always flicker that damn window because i couldn’t figure out how to set the flag from Go :(

        • lime!@feddit.nu
          link
          fedilink
          English
          arrow-up
          3
          ·
          24 hours ago

          that is what i used but i could not get it to work, possibly because the program did not have a gui either. it was just supposed to be a “button” in the file explorer.

          • owl@infosec.pub
            link
            fedilink
            English
            arrow-up
            1
            ·
            12 hours ago

            Huh, strange. That sounds really annoying if every time I press a button a terminal flashes on screen.

            • lime!@feddit.nu
              link
              fedilink
              English
              arrow-up
              2
              ·
              11 hours ago

              for a poweruser yeah but this is my grandmother we’re talking about. she only used the program once every six months, when her camera ran out of space and she emptied it onto the computer.

    • Aceticon@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      23 hours ago

      Windows applications can still access the Linux functionality when running under Wine, though of course that has to have been purposefully coded in.

      However you can run wine itself inside something like firejail to properly sandbox the whole thing - I have Lutris in my Linux gaming machine configured to do just that for all games by default (my firejail config even blocks networking).

        • Aceticon@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          3
          ·
          edit-2
          19 hours ago

          There is a launch configuration option under each game (under System Options tabs, if I’m not mistaken) called “command prefix” were you can put the firejail stuff (so if you put just “firejail -someoption” there your game gets launched with, for example “firejail -someoption wine …”) or whatever other sandboxing command you want to use (such as bubblewrap).

          In the main Lutris options, there’s a section with the default values for all those launch options for games, so if you put it in the “command prefix” there, all games get launched with that command prefix unless you override it in that game’s launch options (so, for example, if you’re blocking networking for all games but want to run a game for multiplayer over the net, you override the sandboxing wrapper options in that game’s launch options specifically, which won’t affect any other game).

    • nesc@lemmy.cafe
      link
      fedilink
      English
      arrow-up
      12
      ·
      1 day ago

      I think wine maps at least your home directory into prefix, so your data would be in danger.

  • Clanket@lemmy.world
    link
    fedilink
    English
    arrow-up
    24
    ·
    1 day ago

    I dont pirate games, and I see them sneaky command windows opening and closing a bit. Mainly on startup

    • sem@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      2
      ·
      edit-2
      11 hours ago

      Same, on Windows 11. Not sure what causes it. Someone should make a utility that logs every time a cmd window was opened.

  • elucubra@sopuli.xyz
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    1
    ·
    22 hours ago

    Thats why you virtualize. I have a program that I must use from time to time because of legacy issues, and much content in their propietary format. The solution was either pay out the wazoo for accesing my own content a few times a month, or arrr it. A download, and a VM does the trick. And bonus, I can use it in Linux, too.

    • YiddishMcSquidish@lemmy.today
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 day ago

      The fact they are collecting telemetrics and are constantly monitoring them. My laptop sped up considerably when I debloated Windows.

      • Ogmios@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        2
        ·
        15 hours ago

        That’s my point. If I’m already cool with Windows, what should I care about other, lesser, malware?

  • nesc@lemmy.cafe
    link
    fedilink
    English
    arrow-up
    10
    ·
    1 day ago

    My windows is installed on separate ssd and snapshotted regularly, opening browser on windows without ad blocker probably is more dangerous.

    • pivot_root@lemmy.world
      link
      fedilink
      English
      arrow-up
      12
      ·
      1 day ago

      Unless you have the other SSDs physically disconnected, you’re still running the risk of having your other installations affected by ransomware.

      • nesc@lemmy.cafe
        link
        fedilink
        English
        arrow-up
        3
        ·
        1 day ago

        Probably, yeah, but I have exported snapshots and backups for such cases, and data itself is encrypted. So at worst a few hours lost. They can be easily disconnected i just never actually do it.

        • lazynooblet@lazysoci.al
          link
          fedilink
          English
          arrow-up
          11
          ·
          1 day ago

          Many malicious actors don’t trigger their payload that you would notice until after data has been mined.

          I’ve visited businesses to help put together basic infrastructure after their systems were encrypted and ransomed. We would bring up a backup from the night before only to find the system still infected. We would go back a week, 2 weeks, a month.

          These things lie in wait and only as the final nuclear option do they get noticed.

          • nesc@lemmy.cafe
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 day ago

            Kind of not a problem? If malware in question would try to write itself onto other drives it needs to know my luks pin and support my fs, so at worst it can try and fail. If it’s a windows machine that has it, well I’ll just nuke it after firat reoccurence. Realistically, I’ve had this setup for over a decade and there were 3-5 times when pirated game had malware.

              • nesc@lemmy.cafe
                link
                fedilink
                English
                arrow-up
                1
                ·
                1 day ago

                Yes, backups are on multiple separate devices, that are both online and offline.

    • 474D@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      1
      ·
      1 day ago

      Same, I just threw windows on a 1tb ssd and it does nothing but play pirated games. Go ahead and collect what you want lol