SimeTrie95Online Posted January 5, 2013 Report Share Posted January 5, 2013 (edited) Buna ziua am creeat acest program ca sa-l impart cum se poate si la cine vrea este un mini program cu logare care te ajuta sa faci diferite actiuni nu este cine stie ce dar daca am tot muncit ceva timp la el am zis sa il postez si eu ca e ce sa fac cu el in PC este creeat 100% de mine Nu contine virusi si 2 la mana pana sa il instalati va rog sa intrati pe virustotal sa il scanati ca la mine nu imi da voie sa intru pe virustotal ok ?Uitati link Download: Hostfile.nl Free Image and File Host Va rog comentarii decente sunt incepator .Parola PM Me Please....Contine WebBrowse,Auto Typer, Alarm Clock and Calculator. Cam atatea dar mai facem mai multe avand PC-ul prost i-mi este greu sa mai fac cu cat sunt mai multe cu atata functioneaza mai greu.https://www.virustotal.com/file/c17603c7bab0c8b04a6074bb4bc4f1f658eb2a3f71e0835132b43a8998fd1be9/analysis/1357425273/SHA256: c17603c7bab0c8b04a6074bb4bc4f1f658eb2a3f71e0835132b43a8998fd1be9SHA1: 60567c4d1f8b75db1a1df7f7b34a60c25227bb76MD5: 272f1b9be0b8b886dd72287341401754File size: 9.1 MO ( 9507645 bytes )File name: SimeTrie95-Tools.rarFile type: RARDetection ratio: 1 / 44Analysis date: 2013-01-05 22:34:33 UTC ( 1 minut ago ) Edited January 5, 2013 by SimeTrie95Online Quote Link to comment Share on other sites More sharing options...
sensi Posted January 5, 2013 Report Share Posted January 5, 2013 "te ajuta sa faci diferite actiuni" mai exact ce actiuni? Quote Link to comment Share on other sites More sharing options...
DeCrew Posted January 5, 2013 Report Share Posted January 5, 2013 "te ajuta sa faci diferite actiuni" mai exact ce actiuni?actiuni ilegale ce crezi ? trebuie sa-ti explice omul tot textu? Quote Link to comment Share on other sites More sharing options...
DeCrew Posted January 5, 2013 Report Share Posted January 5, 2013 "te ajuta sa faci diferite actiuni" mai exact ce actiuni?actiuni ilegale ce crezi ? trebuie sa-ti explice omul tot textu? Quote Link to comment Share on other sites More sharing options...
Undeath Posted January 5, 2013 Report Share Posted January 5, 2013 E un stealer pe acolo ba babuinilor.Probabil ceva FUD.Ce idei aveti "actiuni ilegale" Quote Link to comment Share on other sites More sharing options...
SimeTrie95Online Posted January 5, 2013 Author Report Share Posted January 5, 2013 Nu am nimc doar programul in sine am cerut sa fie scanat ca eu nu pot accesa virustotal. Quote Link to comment Share on other sites More sharing options...
Wav3 Posted January 6, 2013 Report Share Posted January 6, 2013 Tu scanezi .rar pe virustotal si vi sa ne spui ca e curat? Quote Link to comment Share on other sites More sharing options...
dede24ever Posted January 6, 2013 Report Share Posted January 6, 2013 Ai 3 mesaje ,inregistrat ieri....oare cat de incredere poti fi? Quote Link to comment Share on other sites More sharing options...
SimeTrie95Online Posted January 6, 2013 Author Report Share Posted January 6, 2013 Am gresit am scanat pe rar m-am grabit din cauza ca nu pre i-mi merge virustotal are toane nu stiu de ce nu functiuneaza dar incerc sa schimb ip-ul si dupaceea ma uit si il scanez o sa las sus un edit... Quote Link to comment Share on other sites More sharing options...
gotr00t Posted January 6, 2013 Report Share Posted January 6, 2013 SHA256: c7ecd14c8df5ea184fce811c856daf4b9e043036d436b6faabfc7bda824782beFile name: Setup SimeTrie95.exeDetection ratio: 1 / 46Analysis date: 2013-01-06 09:51:12 UTC ( 12 ore, 8 minute ago )Ok. detectat de "TheHacker" ca fiind: Backdoor/Delf.abve. Dupa ceva cautari dupa backdoorul respectiv:When program starts it stops the following processes: Winoldap.exe dracula.exe axer.exe.It creates the HKCU\Software\internettime\id registry key and saves the random id and lastrun under this key. The backdoor logs the pressed keys every 10 ms and save into the %Windows%\temp\itimkl.txt file.It copies itself as %Windows%\Winoldap.exe and adds the value:Default="%Windows%\Winoldap.exe" into theHKCU\Software\Microsoft\Windows\CurrentVersion\RunandHKLM\Software\Microsoft\Windows\CurrentVersion\Runregistry keys (so when windows starts the backdoor starts too).It queries command to execute from a certain URL address. Command can be the one of the following:-Sets command query timer interval-Lists all the files into an temporary file and sends it to the certain URL address-Lists all the files of a directory and sends the list.-Creates a Srceenshot and sends the picture.-Downloads a file-Starts an UDP client-Executes a file (it can do it hidden too)-Show a message dialog-Sends a fileWhen program stops it copies itself and adds registry values (above).Manual Remove:Stop the program in the task manager. Remove the registry values which created by the backdoor. Finally delete the program. Quote Link to comment Share on other sites More sharing options...
SimeTrie95Online Posted January 6, 2013 Author Report Share Posted January 6, 2013 Si ce zici are ceva in el sau mi se pare mie? Quote Link to comment Share on other sites More sharing options...