37.gif

Search (advanced search)
Use this Search form before posting, asking or make a new thread.
Tips: Use Quotation mark to search words (eg. "How To Make Money Online")

03-15-2014, 11:18 PM (This post was last modified: 03-15-2014 11:18 PM by ezonhold.)
Post: #11
RE:
I would not download this to a computer i lliked!!!!!

---------------------------------------------
ROJ_GEN.F47V0802 also known as exqWebSearch, Artemis!9AA537B86A28.

Malware Analysis of TROJ_GEN.F47V0802

Created files:

%Common Appdata%eSafeeDelayinfo.edb
%Common Appdata%eSafeeGdpSvc.exe
%Common Appdata%eSafelogeGdpSvc.LOG
C:Documents and SettingsLocalServiceLocal SettingsTempCookiesindex.dat
C:Documents and SettingsLocalServiceLocal SettingsTempHistoryHistory.IE5desktop.ini
C:Documents and SettingsLocalServiceLocal SettingsTempHistoryHistory.IE5index.dat
C:Documents and SettingsLocalServiceLocal SettingsTempTemporary Internet FilesContent.IE57MJ8T5NMdesktop.ini
C:Documents and SettingsLocalServiceLocal SettingsTempTemporary Internet FilesContent.IE5desktop.ini
C:Documents and SettingsLocalServiceLocal SettingsTempTemporary Internet FilesContent.IE5index.dat
C:Documents and SettingsLocalServiceLocal SettingsTempTemporary Internet FilesContent.IE5NIIF3F5Wdesktop.ini
C:Documents and SettingsLocalServiceLocal SettingsTempTemporary Internet FilesContent.IE5OK5X7FBDdesktop.ini
C:Documents and SettingsLocalServiceLocal SettingsTempTemporary Internet FilesContent.IE5YTRI2EHEdesktop.ini

Detected by UnHackMe:

EGDPSVC.EXE
Default location: %COMMON APPDATA%ESAFEEGDPSVC.EXE



Recommended: UnHackMe anti-rootkit and anti-malwa

someone rep me for finding this out.. lol
03-23-2014, 06:03 AM (This post was last modified: 03-23-2014 06:06 AM by chavala79.)
Post: #12
RE:
great and working! Rep+++++
and hey, I donĀ“t know but about the malware but I have kasperskey installed (genuine software) and nothing was detected!
[Image: autopilot-money-machine.gif]
03-29-2014, 07:31 PM
Post: #13
RE:
rep+ :) thanks
03-29-2014, 07:40 PM
Post: #14
RE:
The O/P specifically said to run it under the following environments:

Vmware
Virtual Box
Sandboxie

All the above three programs create a separate section on your HDD where you can run applications without getting your PC infected. Virtual Box is available for free.




39.gif
Free counters!