Best Blackhat Forum

Full Version: [GET] New Facebook Bot 2015 Oct
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Pages: 1 2
Sharing this useful Facebook program. Get amazing traffic for free!
[Image: PJcuccd.jpg]

Download:
Code:
http://mir.cr/0EWEHD50

Virustotal:
Code:
www.virustotal.com/en/file/4b50e886439d9528a98fb6a5be21761273454096a3744ace1b09442bedb92822/analysis/
Nice share. Thanks +Rep. It's working for me.
nod32 delete exe file on PC
after extract
unpack and rezip than scan again and wait for results ^^




https://www.virustotal.com/de/file/1918e...445415679/


SHA256: 1918eca82f5ba4da4a91c29e01e9584739379de613c7f60e083041360cfa4566
Dateiname: [Reported by Members as SPAM THREAD].zip
Erkennungsrate: 4 / 56
Analyse-Datum: 2015-10-21 08:21:19 UTC ( vor 0 Minuten )

ESET-NOD32 a variant of MSIL/Injector.MJB 20151021
Fortinet MSIL/Injector.MHZ!tr 20151021
McAfee-GW-Edition BehavesLike.Dropper.fc 20151021
Rising PE:Malware.RDM.37!5.2B[F1] 20151020
Something is not clean about this share. Can OP mention from where he got this?

1. The virustotal in the OP is for a file named "[Reported by Members as SPAM THREAD].zip" whereas the file we download is "Auto_Facebook_2015_0.rar"

2. The virustotal is carried out "5 days, 23 hours ago" and the share is today.

3. The result for the virustotal is "0 / 56 " where as subsequent checks show only "0/50" and leftover checks are timed out.

4. When I unzip my Kaspersky doesn't do anything but once I do a check it deletes the .exe file.

I would prefer to pass this. Lol

sorry, not able to edit the post.

1. The virustotal in the OP is for a file named "Auto_Facebook_2015.zip" whereas the file we download is "Auto_Facebook_2015_0.rar"

Please note --> not only the name is different, the extension is different too. That means somebody opened the file and made a new archive after the virus check. Too risky...
What is the link to the sales page?

(10-21-2015 05:41 PM)ijazlink Wrote: [ -> ]Sharing this useful Facebook program. Get amazing traffic for free!
[Image: PJcuccd.jpg]
I got the same files from elsewhere with the .ZIP file version.

DOWNLOAD:
Magic Button :
http://www40.zippyshare.com/v/iCuLn0rj/file.html


VT SCANNED:
Magic Button :
https://www.virustotal.com/en/file/4b50e886439d9528a98fb6a5be21761273454096a3744ace1b09442bedb92822/analysis/1445433008/

SHA256: 4b50e886439d9528a98fb6a5be21761273454096a3744ace1b09442bedb92822
File name: [Reported by Members as SPAM THREAD].zip
Detection ratio: 0 / 56
Analysis date: 2015-10-21 13:10:08 UTC ( 1 minute ago )

Probably harmless! There are strong indicators suggesting that this file is safe to use.

But, I do not know about this case whether the results are harmful or not. Please suggest.
here is result file from otarockaffella

https://www.virustotal.com/en/file/d9851...445501148/
(10-21-2015 06:23 PM)v00d00 Wrote: [ -> ]unpack and rezip than scan again and wait for results ^^




https://www.virustotal.com/de/file/1918e...445415679/


SHA256: 1918eca82f5ba4da4a91c29e01e9584739379de613c7f60e083041360cfa4566
Dateiname: [Reported by Members as SPAM THREAD].zip
Erkennungsrate: 4 / 56
Analyse-Datum: 2015-10-21 08:21:19 UTC ( vor 0 Minuten )

ESET-NOD32 a variant of MSIL/Injector.MJB 20151021
Fortinet MSIL/Injector.MHZ!tr 20151021
McAfee-GW-Edition BehavesLike.Dropper.fc 20151021
Rising PE:Malware.RDM.37!5.2B[F1] 20151020






lads
virus total don|t scan password protected files so do it like me unpack em and let VT check again and u will see that this one here ist infected with 4 things


over and out

never trust VT scans of created threads better check em again after downloading
Thanks mate!! I'll check this out!
Pages: 1 2
Reference URL's