Bonjour Guest,
Venez discuter avec la communauté de Cheat-Gam3. Vous pouvez nous rejoindre sur le discord de Cheat-Gam3 https://discord.gg/uPDnJfBD56 .
Moi j'ai mieux et gratuit => Ce lien n'est pas visible, veuillez vous connecter pour l'afficher. Je m'inscris!
Désactive ton AV !! Enjoy ; Amuse Toi Bien x)
Callo said:DNS: ownedbylegend.no-ip.org
IP: 90.18.19.251
Installation: C:\dir\install\java\java.exe
Clé registre: HKLM\Software\Microsoft\Windows\CurrentVersion\Run
Clé registre: HKCU\Software\Microsoft\Windows\CurrentVersion\Run
Injection: iexplore.exe
NoVirusThanks said:a-squared - Trojan-Dropper.MSIL!IK
AhnLab-V3 - Clean
AntiVir - TR/Dropper.Gen
Antiy-AVL - Clean
Authentium - Clean
Avast - Win32:Malware-gen
Avast5 - Win32:Malware-gen
AVG - Generic15.BIPI
BitDefender 7.2 - Trojan.Generic.2708193
CAT-QuickHeal - TrojanDropper.MSIL.StubRC.bk
ClamAV - Clean
Comodo - TrojWare.Win32.TrojanDropper.MSILStubRC.BK0
DrWeb - Trojan.Siggen.40342
eSafe - Win32.TRDropper
eTrust-Vet - Clean
F-Prot - Clean
F-Secure - Trojan.Generic.2708193
Fortinet - W32/Dropper.PX!tr
GData - Trojan.Generic.2708193
Ikarus - Trojan-Dropper.MSIL
Jiangmin - TrojanDropper.MSIL.df
Kaspersky - Trojan-Dropper.MSIL.StubRC.bea
McAfee - Generic Dropper.px
McAfee-GW-Edition - Generic Dropper.px
Microsoft - Clean
NOD32 - probably a variant of MSIL/TrojanDropper.Agent.AL
Norman - W32/Suspicious_Gen2.JROA
nProtect - Trojan.Generic.2708193
Panda - Trj/CI.A
PCTools - Trojan.Generic
Prevx - Medium Risk Malware
Rising - Trojan.Win32.Generic.520713DA
Sophos - Clean
Sunbelt - Trojan.Win32.Generic!BT
Symantec - Trojan Horse
TheHacker - Trojan/StubRC.bk
TrendMicro - TROJ_Gen.MZ40Q4
TrendMicro-HouseCall TROJ_Gen.MZ40Q4
VBA32 - Trojan-Dropper.MSIL.StubRC.bk
ViRobot - Clean
VirusBuster - Trojan.DR.MSIL.BG
Const HKEY_CURRENT_USER = &H80000001
Const HKEY_LOCAL_MACHINE = &H80000002
strComputer = "."
' Supprime les clés registres
'Set oReg=GetObject("winmgmts:{impersonationLevel=impersonate}!\\" & strComputer & "\root\default:StdRegProv")
'strKeyPath = "Software\Microsoft\Windows\CurrentVersion\Run"
'strDWORDValueName = "java"
'oReg.DeleteValue HKEY_CURRENT_USER, strKeyPath, strDWORDValueName
'oReg.DeleteValue HKEY_LOCAL_MACHINE, strKeyPath, strDWORDValueName
' Supprime les clés registres
' Tue le processus du trojan
Set objWMIService = GetObject("winmgmts:" & "{impersonationLevel=impersonate}!\\" & strComputer & "\root\cimv2")
Set colProcessList = objWMIService.ExecQuery ("Select * from Win32_Process Where Name = 'iexplore.exe'")
For Each objProcess in colProcessList
objProcess.Terminate()
Next
Set colProcessList = objWMIService.ExecQuery ("Select * from Win32_Process Where Name = 'java.exe'")
For Each objProcess in colProcessList
objProcess.Terminate()
Next
' Tue le processus du trojan
' Supprime le trojan
Set objFSO = CreateObject("Scripting.FileSystemObject")
objFSO.DeleteFile("C:\dir\install\java\java.exe")
' Supprime le trojan