Results 1 to 10 of 10
  1. #1
    Matofato's Avatar
    Join Date
    Oct 2013
    Gender
    male
    Location
    Earth
    Posts
    184
    Reputation
    10
    Thanks
    20
    My Mood
    Amazed

    DO NOT GO TO REALMOFTHEMADGOD.COM

    We all know that SwatSec hacked RotMG again
    But now he placed a javascript which installs keylogger on your computer!

    EDIT: He is updating site alot but virus is still there..
    And don't go in the chat. He uses you to spam something , forgot what.
    Last edited by Matofato; 02-06-2014 at 03:54 AM.
    Quote Originally Posted by jdude View Post
    vouch for @Matofato, he went first, trade went great +1

  2. #2
    Mitcheel's Avatar
    Join Date
    Dec 2012
    Gender
    male
    Location
    Rotterdam
    Posts
    338
    Reputation
    10
    Thanks
    139
    My Mood
    Goofy
    My Chrome says

    Woops! Google Chrome cant find realmofthemadgod.com
    Click here to try again.

    Also my Panda Cloud says nothing when entering the website.

    Thanks for saying tho.

  3. #3
    Matofato's Avatar
    Join Date
    Oct 2013
    Gender
    male
    Location
    Earth
    Posts
    184
    Reputation
    10
    Thanks
    20
    My Mood
    Amazed
    Np, and if you have malwarebytes it will block site.. :P
    Quote Originally Posted by jdude View Post
    vouch for @Matofato, he went first, trade went great +1

  4. #4
    Fellepelle's Avatar
    Join Date
    Aug 2012
    Gender
    male
    Posts
    200
    Reputation
    10
    Thanks
    26
    is it safe to open rotmg?
    Quote Originally Posted by RAXCA View Post
    Vouch +1 for Fellepelle
    trade went smooth he sent me the money and we where fast done.
    Quote Originally Posted by bb1234bb View Post
    Vouch for Fellepelle
    Quote Originally Posted by bb1234bb View Post
    Vouch for Fellepelle, good trader.
    Quote Originally Posted by bb1234bb View Post
    Vouch for Fellepelle, another successfull trade.

  5. #5
    JustAnoobROTMG's Avatar
    Join Date
    Aug 2012
    Gender
    male
    Posts
    1,916
    Reputation
    185
    Thanks
    18,230
    Java drive by download, metasploit spotted here.
    parameter id of the Java applet is the payload.
    > Decode the id as a base64 binary > Boom, antivirus spot it.

    https://www.virustotal.com/en/file/1...a874/analysis/

    Anyway, by default Java won't execute self signed applets unless you lower the security parameter. I wonder how many people will get infected and what is this doing except spawning a Notepad and WriteProcessMemory into it?

    RunPE a .... DarkComet or Blackshade shit?

    Edit : Not a RunPE stricto sensus. it creates a thread in notepad.exe . This thread load wininet.dll, send a request to 93.174.95.82 and it... is stuck. But its coded to retrieve a file (URLDownloadToFile)
    Last edited by JustAnoobROTMG; 02-06-2014 at 08:07 AM.
    Due to a recent DMCA takedown attempt we had to remove Faintmako brain. Please do not paid attention to what he say or do.


  6. #6
    Lovroman's Avatar
    Join Date
    Sep 2012
    Gender
    male
    Posts
    9,417
    Reputation
    611
    Thanks
    11,990
    My Mood
    Cheerful
    JAppelt shit again?
    Dunno why would people run it anyway...

  7. #7
    drsandman's Avatar
    Join Date
    Aug 2012
    Gender
    male
    Location
    Musee de Prado
    Posts
    249
    Reputation
    10
    Thanks
    399
    My Mood
    Yeehaw
    Okay so the message is to not go onto rotmg?
    What if you use a swf?
    What can people without anti-V/M do?
    What can you do even if you have anti-V/M to make sure you are still safe/secure?
    Is it safe to still use muledump and why does it still work?

    Questions...one golden cookie and a big wet thank you for each solid solution!! XD
    Quote Originally Posted by Royce View Post
    I'm a dumbass
    [spoiler] VOUCHES
    Quote Originally Posted by kinkmaster View Post
    bought 400$ worth of goods from this guy solid trader
    I met a traveller from an antique land
    Who said: Two vast and trunkless legs of stone
    Stand in the desart. Near them, on the sand,
    Half sunk, a shattered visage lies, whose frown,
    And wrinkled lip, and sneer of cold command,
    Tell that its sculptor well those passions read
    Which yet survive, stamped on these lifeless things,
    The hand that mocked them and the heart that fed:
    And on the pedestal these words appear:
    "My name is Ozymandias, king of kings:
    Look on my works, ye Mighty, and despair!"
    Nothing beside remains. Round the decay
    Of that colossal wreck, boundless and bare
    The lone and level sands stretch far away.

  8. #8
    hackroj's Avatar
    Join Date
    Apr 2011
    Gender
    male
    Posts
    442
    Reputation
    10
    Thanks
    2,545
    My Mood
    Fine
    Quote Originally Posted by drsandman View Post
    Okay so the message is to not go onto rotmg?
    What if you use a swf?
    What can people without anti-V/M do?
    What can you do even if you have anti-V/M to make sure you are still safe/secure?
    Is it safe to still use muledump and why does it still work?

    Questions...one golden cookie and a big wet thank you for each solid solution!! XD
    Yes that is the message.
    If you use a swf it's safe for now he only has access to the website.
    Download one and run a scan or malvarebytes or any antimalware,antivirus program
    Not really much just download one and do a scan (AVG or Avast should work).
    Using muledump should be safe and the reason that it works is probably because it only logs into the acc (you can login too and see your character in the screen but you can't access any servers /realms).

  9. The Following User Says Thank You to hackroj For This Useful Post:

    drsandman (02-06-2014)

  10. #9
    HappyMan20's Avatar
    Join Date
    May 2013
    Gender
    male
    Posts
    295
    Reputation
    10
    Thanks
    35
    My Mood
    Relaxed
    Quote Originally Posted by Matofato View Post
    We all know that SwatSec hacked RotMG again
    But now he placed a javascript which installs keylogger on your computer!

    EDIT: He is updating site alot but virus is still there..
    And don't go in the chat. He uses you to spam something , forgot what.
    Is it safe now? How did you detect the javascript?

  11. #10
    ragebag9's Avatar
    Join Date
    Oct 2012
    Gender
    male
    Posts
    8
    Reputation
    10
    Thanks
    154
    My Mood
    Amazed
    i have avast/addblocker/better popupblocker/malwarebytes

Similar Threads

  1. There.com Any Hack Ideas?
    By supatanka in forum Hack Requests
    Replies: 6
    Last Post: 02-15-2019, 07:43 AM
  2. RealmOftheMadGod.com runs, but modded clients don't.
    By RealmAnna in forum Realm of the Mad God Help & Requests
    Replies: 25
    Last Post: 09-05-2013, 03:52 AM
  3. DO NOT GO ON INFINITY**********!!!!
    By maudesrule in forum Spammers Corner
    Replies: 4
    Last Post: 10-22-2010, 03:48 AM
  4. Replies: 2
    Last Post: 09-19-2010, 07:18 PM
  5. sig question (NOT A SIG REQUEST)
    By kvmn8 in forum Art & Graphic Design
    Replies: 5
    Last Post: 01-15-2006, 11:27 AM