GSM Shop GSM Shop
GSM-Forum  

Welcome to the GSM-Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features.
Only registered members may post questions, contact other members or search our database of over 8 million posts.

Registration is fast, simple and absolutely free so please - Click to REGISTER!

If you have any problems with the registration process or your account login, please contact contact us .

Go Back   GSM-Forum > Other Gsm/Mobile Related Forums > GSM Programming & Reverse Engineering


GSM Programming & Reverse Engineering Here you can post all Kind of GSM Programming and Reverse Engineering tools and Secrets.

Reply
 
LinkBack Thread Tools Display Modes
Old 03-04-2010, 14:21   #16 (permalink)
No Life Poster
 
Boshko_Alfa's Avatar
 
Join Date: Mar 2007
Location: Skopje, Macedonia
Age: 36
Posts: 4,244
Member: 472933
Status: Offline
Sonork: 100.1590967
Thanks Meter: 1,331
Donate money to this user

hah... it's very uncivilized this... whatever i hope you have more brain to use on another pojects not cracking sw from boxes...
  Reply With Quote
Old 03-04-2010, 16:14   #17 (permalink)
Cheater -Don't Deal with him-
 
Join Date: Jun 2009
Posts: 226
Member: 1048777
Status: Offline
Sonork: 100.1588189
Thanks Meter: 750
ouh

Quote:
Originally Posted by dudlajmiga View Post
why isn't this topic deleted and user banned?
ppl already told you that this is trojan v. [a nasty one - sality]
its not a trojan ! this exe infected by small virus but not packed
if here a expert please post full results !
  Reply With Quote
Old 03-04-2010, 16:21   #18 (permalink)
Cheater -Don't Deal with him-
 
Join Date: Jun 2009
Posts: 226
Member: 1048777
Status: Offline
Sonork: 100.1588189
Thanks Meter: 750
null rsults

Quote:
Originally Posted by elcapitel View Post
Also known as: W32.HLLP.Sality (Symantec), BKDR_SALITY.AG (Trend), W32/Sality.dll (McAfee), Win32.Sality.L (EZ Antivirus), W32/Sality.O (F-Secure), W32/Sality.q (McAfee), Win32.Tro.Sality.E (CounterSpy), W32/Virus.Win32.Sality.m (Kaspersky)

Description
Win32/Sality is a polymorphic virus that infects Win32 PE executable files. It also contains trojan components. Win32/Sality has been known to be downloaded by variants of the Win32/Bagle family.


Method of Infection

When an infected file is executed the virus decrypts itself and drops a DLL file into the %System% directory. The DLL file is injected into other running processes. The virus then executes the host program code.

Some examples of the names used by the Sality DLL file as reported to CA from the wild include the following:

* %System%\syslib32.dll
* %System%\oledsp32.dll
* %System%\olemdb32.dll
* %System%\wcimgr32.dll
* %System%\wmimgr32.dll

Note: '%System%' is a variable location. The malware determines the location of the current System folder by querying the operating system. The default installation location for the System directory for Windows 2000 and NT is C:\Winnt\System32; for 95,98 and ME is C:\Windows\System; and for XP is C:\Windows\System32.

Many variants of Sality also attempt to infect executable files referenced by values in the following registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
if this a trojan what is remot port and info for remot host !!
if u sure he is a trojan post here ur results and tell admin for delet my thread & bane my id !
br v4mp
ire
  Reply With Quote
Old 03-04-2010, 17:37   #19 (permalink)
No Life Poster
 
free1600's Avatar
 
Join Date: Mar 2007
Location: /Fr/Ch\Ro\
Age: 39
Posts: 1,334
Member: 467911
Status: Offline
Thanks Meter: 351
''this exe infected by small virus'' ? it's not enough to ban ?

br,
free1600
  Reply With Quote
Old 03-04-2010, 22:28   #20 (permalink)
Junior Member
 
Join Date: Jan 2007
Posts: 1
Member: 429991
Status: Offline
Thanks Meter: 0
disinfected
http://www.multiupload.com/TDTGXEFIT2
  Reply With Quote
Old 03-05-2010, 03:49   #21 (permalink)
No Life Poster
 
darmiles's Avatar
 
Join Date: Sep 2005
Location: Resign
Posts: 525
Member: 177036
Status: Offline
Thanks Meter: 934
Donate money to this user
try this dis infect


lol


http://uploadmb.com/dw.php?id=1267757327&/Backups.rar

br

WTF TEAM
  Reply With Quote
Reply

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
looking for philips 362 firmware (multibox) temp_temp Philips 4 04-04-2010 10:04
Dejan's new sagem unlocker unpacked by KaToT KaToT Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 3 03-11-2001 23:24
Dejan's new sagem unlocker ,unpacked by KaToT KaToT Infineon C16X M51 & ARM7 M52 BASED 0 03-11-2001 00:56
Unpacked dejan flasher by KaToT , free download KaToT Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 0 03-03-2001 02:13

 



All times are GMT +1. The time now is 12:59.



Powered by Searchlight © 2024 Axivo Inc.
vBulletin Optimisation provided by vB Optimise (Pro) - vBulletin Mods & Addons Copyright © 2024 DragonByte Technologies Ltd.
- GSM Hosting Ltd. - 1999-2023 -
Page generated in 0.22466 seconds with 10 queries

SEO by vBSEO