black.hat Posted October 1, 2010 Report Posted October 1, 2010 (edited) ><This time I changed the whole way how i generate the Downloader.The Sourcecode of the Downloader is hardcoded, it gets obfusciated by the Builder and then compiled/linked.What you get is a pretty unique Downloader on every Build.Picture : =======================begood:infected.Usr6 rep+, thank you.black.hat's mail : shiny004@gmail.comcould be shiny00*@gmail.com , where * is numeric.=======================Plz change the icon to make it FullyFud Edited October 1, 2010 by begood Quote
alexalghisi Posted October 1, 2010 Report Posted October 1, 2010 shall we trust you ? if so .. why scanned on novirusthanks and not on virustotal ? scarry of not FUD anymore your virus ? nu descarcati e Trojan Dropper .... Quote
alias74 Posted October 1, 2010 Report Posted October 1, 2010 Avira AntiVir 01/10/2010 7.6.0.59 TR/Dropper.Gen Quote
Usr6 Posted October 1, 2010 Report Posted October 1, 2010 (edited) RAT shiny001.no-ip.biz 122.163.217.200 Server FileAve.com - mysite4's files (e bun accepta .exe downlod direct )the.earth.li Edited October 1, 2010 by Usr6 Quote