io.kent Posted January 8, 2013 Report Posted January 8, 2013 W7=XPSTUBFile InfoReport Date: 07.01.2013 17:01:55http://elementscanner.com//?RE=f4266ab4ac106d13d96119b3db5bc596File Name:STUB.exeFile Size: 184320 bytesMD5 Hash: a136e63b6c5dcdaa8dae5d40397471e0SHA1 Hash: a0d063dd6c9194c329b07d4cda82171e04ed8f07Status: CleanTotal Results: [COLOR="#00FF00"]0/35[/COLOR]AVG Free-Clean.ArcaVir-Clean.Avast 5-Clean.AntiVir (Avira)-Clean.BitDefender-Clean.VirusBuster Internet Security-Clean.Clam Antivirus-Clean.COMODO Internet Security-Clean.Dr.Web-Clean.eTrust-Vet-Clean.F-PROT Antivirus-Clean.F-Secure Internet Security-Clean.G Data-Clean.IKARUS Security-Clean.Kaspersky Antivirus-Clean.McAfee-Clean.MS Security Essentials-Clean.ESET NOD32-Clean.Norman-Clean.Norton Antivirus-Clean.Panda Security-Clean.A-Squared-Clean.Quick Heal Antivirus-Clean.Solo Antivirus-Clean.Sophos-Clean.Trend Micro Internet Security-Clean.VBA32 Antivirus-Clean.Vexira Antivirus-Clean.Zoner AntiVirus-Clean.Ad-Aware-Clean.BullGuard-Clean.Immunet Antivirus-Clean.K7 Ultimate-Clean.NANO Antivirus-Clean.VIPRE-Clean.XtremeRATFile InfoReport Date: 07.01.2013 17:01:52http://elementscanner.com//?RE=aaade9ca19eae976dbee593a663404bdFile Name:XtremeRAT.exeFile Size: 217088 bytesMD5 Hash: be7753e8d753ebbe0923c4e372b2d390SHA1 Hash: e2c3c5417a48e32fddc83ea0fcaac079b6478a2eStatus: INFECTEDTotal Results: [COLOR="#FF0000"]1/35[/COLOR]AVG Free-Clean.ArcaVir-Clean.Avast 5-Clean.AntiVir (Avira)- TR/Dropper.Gen.BitDefender-Clean.VirusBuster Internet Security-Clean.Clam Antivirus-Clean.COMODO Internet Security-Clean.Dr.Web-Clean.eTrust-Vet-Clean.F-PROT Antivirus-Clean.F-Secure Internet Security-Clean.G Data-Clean.IKARUS Security-Clean.Kaspersky Antivirus-Clean.McAfee-Clean.MS Security Essentials-Clean.ESET NOD32-Clean.Norman-Clean.Norton Antivirus-Clean.Panda Security-Clean.A-Squared-Clean.Quick Heal Antivirus-Clean.Solo Antivirus-Clean.Sophos-Clean.Trend Micro Internet Security-Clean.VBA32 Antivirus-Clean.Vexira Antivirus-Clean.Zoner AntiVirus-Clean.Ad-Aware-Clean.BullGuard-Clean.Immunet Antivirus-Clean.K7 Ultimate-Clean.NANO Antivirus-Clean.VIPRE-Clean.BIFROSThttp://chk4me.com/check/public/3P8CqfG14KhZ6_XW_0200z8wQ7ohttp://www.sendspace.com/file/q5jlwdROT99/3DES/MetCr-1712/XOR-MC/Vita13ÆûþæŒÞæšÞÆïþÆ…þÆÝþÆþæ*ÞÆßþæ†ÞƇþÆõþÆáþæ‚Þæ–ÞÆ÷þÆ‹ þæ’ÞÆõþæôÞæ°ÞæöÞæŒÞæ”ÞÆýþÆþæ’ÞÆíþƱþæ†ÞÆ—þÆëþ Quote
FlamiN1451859564 Posted January 10, 2013 Report Posted January 10, 2013 Sa inteleg ca nu e aia ordinea de decriptare a parolei ? Quote
io.kent Posted January 10, 2013 Author Report Posted January 10, 2013 Ai incercat ordinea asa cum este pusa? si tia dat error? Quote
FlamiN1451859564 Posted January 10, 2013 Report Posted January 10, 2013 (edited) Ai incercat ordinea asa cum este pusa? si tia dat error?Nu, doar am vazut / intre ele si doar am presupus. Anyway, nu pot gasi de niciun chip ROT99 dar inca incerc pntru ca este fud si am nevoie. Edited January 10, 2013 by FlamiN Quote
zone_cs Posted January 10, 2013 Report Posted January 10, 2013 mie crypteru asta imi ruleaza in background, si nu ca ii lipseste un dll sau un ocx, pur si simplu sta in procese ca un stealer, noroc ca eram pe sandibox ...la voi merge? Quote