Ngork? Malware?

BYS

n3wb
Joined
Jul 15, 2024
Messages
9
Reaction score
1
Location
Los Angeles, CA
Can someone help me understand the signifigance of this? My background with BI and Windows security is weak so I don't know how to react to this. I did search the Internet including this wonderful site but really am at a loss if this should be of concern. Thank you.

BLUE_IRIS_SCREEN_SHOT.jpg
 

wittaj

IPCT Contributor
Joined
Apr 28, 2019
Messages
26,324
Reaction score
51,477
Location
USA
No concern. But if you don't plan to use it as a way to access your system remotely, simply don't run it. It isn't needed unless you use that particular program.

It is how the "unknown Publisher" or "potential virus" or "compromised" messages are generated (just called virus moving forward in the rest of this post for simplicity).

It is not a virus, rather it is whatever antivirus you are using has flagged it as a potential virus. Some programs look at the total number of users and below a certain number, it is flagged. These specialty type files/programs get false positives all the time.

You can check the file with VirusTotal , an antivirus website owned by Google that runs it thru a lot of different antivirus algorithms.


 

BYS

n3wb
Joined
Jul 15, 2024
Messages
9
Reaction score
1
Location
Los Angeles, CA
Thank you. So (again layperson speaking) it is part of BI not some malware that latched onto BI? What scared me is I installed a free app called MiniTool Partition Wizard on the same day and Windows Defender spotted Ngork but in subsequent scans would not complete until I deleted MiniTool. Im not saying something nefarious is happening but MiniTool's orgins are China and they do a good job of obscuring that fact.
 

wittaj

IPCT Contributor
Joined
Apr 28, 2019
Messages
26,324
Reaction score
51,477
Location
USA
Yes, it was a recent add-on into BI for people that used that a means to view their system remotely.

If you don't use it now, no need to switch or run it.

 
Top