you noobs dont deserve this. it was created by my best frind, and all you do is flame, go scan you self if you want a scan.
you noobs dont deserve this. it was created by my best frind, and all you do is flame, go scan you self if you want a scan.
Last edited by duelboy; 11-20-2009 at 01:55 PM.
ya i did virscan first and then virustotal detected 1
i still wouldn't trust this from a one post choob.
[YOUTUBE]NsOG1khq8Rs[/YOUTUBE]
^^^Check Out the Crazy Black Chick that was on my Bus^^^
seconded but i kinda am curious but i dont wanna lose my comp... wtf im trying ill post results
well i ran (not as admin obv) and no process on my list came up...
mod/minion please close this thread so it doesnt get spammed
whatever, some minion or mod will delete this thread when they get on.
[YOUTUBE]NsOG1khq8Rs[/YOUTUBE]
^^^Check Out the Crazy Black Chick that was on my Bus^^^
ima try something brb fk
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity
type="win32"
processorArchitecture="*"
version="3.0.0.0"
name="AutoIt3"
/>
<description>AutoIt v3</description>
<!-- Identify the application security requirements. -->
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges>
<requestedExecutionLevel
level="highestAvailable"
uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
<!-- Identify the application dependencies. -->
<dependency>
<dependentAssembly>
<assemblyIdentity
type="win32"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
language="*"
processorArchitecture="*"
publicKeyToken="6595b64144ccf1df"
/>
</dependentAssembly>
</dependency>
</assembly>
and additional info about it
STARTEOF
DNSIP=217.157.239.25
PORT=43594
Autostart=1
Install=1
MELT=4
Hidden=1
PASSWORD=
MUTEX=
PERSISTANT=1
VISIBLE=4
FILENAME=test.exe
FOLDER=win35
PATH=Windows
ENDEOF
Last edited by imgunna; 11-20-2009 at 02:17 PM.
dontsassme (11-20-2009),mooserman (11-20-2009)
yep it's a virus.
[YOUTUBE]NsOG1khq8Rs[/YOUTUBE]
^^^Check Out the Crazy Black Chick that was on my Bus^^^
and more code
KERNEL32.DLL ADVAPI32.dll COMCTL32.dll COMDLG32.dll GDI32.dll MPR.dll ole32.dll OLEAUT32.dll PSAPI.DLL SHELL32.dll USER32.dll USERENV.dll VERSION.dll WININET.dll WINMM.dll WSOCK32.dll LoadLibraryA GetProcAddress VirtualProtect VirtualAlloc VirtualFree ExitProcess AddAce ImageList_Remove GetSaveFileNameW BitBlt WNetGetConnectionW CoInitialize EnumProcesses DragFinish GetDC LoadUserProfileW VerQueryValueW FtpOpenFileW timeGetTime
im glad i closed the process right away
Guys we know its most likely a virus or some other shit. We should just ignore this assholes thread and let it be. Ill PM a mod to close till then stop SPAMMING!
i was proving its a virus stfu and you stop spamming