The Philippine Electronics and Technology Forum
February 10, 2012, 06:29:02 AM *
Welcome, Guest. Please login or register.

Login with username, password and session length
 
   Home   Help Search Login Register  

Pages: 1 2 [3]   Go Down
  Print  
Author Topic: Read1st! Classified.exe... Virus!  (Read 11772 times)
kurapiket
Size AA Battery
****

Pogi/Ganda Points: 0
Offline Offline

Posts: 121



« Reply #40 on: May 29, 2010, 11:27:39 PM »

Hayaan na lang natin sila, may mga ganyang tao talaga. Murahin man natin yan ng murahin, di rin hihinto yan Cheesy Nandito naman tayong mga taga-tanggal ng mga kalokohan nila, eh! Whehehe! Cheesy
I agree saka pabor po sa mga technician pag may infected PC may WORk hehe..
Logged
The Philippine Electronics and Technology Forum
« Reply #40 on: May 29, 2010, 11:27:39 PM »

 Logged
.
Diesel Generator
*

Pogi/Ganda Points: 278
Offline Offline

Gender: Female
Posts: 1533



« Reply #41 on: May 31, 2010, 05:40:11 PM »

^depende sa volume ng computer.. kung paisa isa lang bawat araw ok sana..  Grin Grin Grin
Logged
zinckingeye
Size C Battery
*****

Pogi/Ganda Points: 4
Offline Offline

Gender: Male
Posts: 186



« Reply #42 on: June 06, 2010, 05:50:19 PM »

lumipat ka muna ng ibang OS na kaya rin magscan at mag=update ng virus signature. Try mo na gamitiin ang avast(Linux version) using linux o ubuntu. Di pa gagana ang virus na yan sa linux cause hindi nya tinatanggap ang Win32 programs. Hope na gumana yan... Kung di pa rin eh try mo avast boot-scanning....
Logged

Wakupakels....
theeye23
CR2032 Battery
**

Pogi/Ganda Points: 0
Offline Offline

Posts: 49


The eye is looking at you! :D


« Reply #43 on: June 15, 2010, 06:05:54 PM »

hmmm... after ma-analyze namin ang ginagawa ng classified.exe sa operating system ng windows, ang conclusion namin ay "hindi" amateur VB programmers gumawa ng worm na ito. try nyo delete ang shutdown.dll sa root ng drive c: at mag-restart ang computer. posible team ng mga hackers ang gumawa ng classified.exe --- gusto nila magnakaw ng mga password!!!!

kelangan pa natin makahanap pa ng magaling na pantanggal sa trojan worm na ito! ang lufet!

Weak o noob ang Classified, kahit yung updated version nyan. Meron akong kopya ng pareho nyan.

Natatanggal ko yan using command prompt without using any 2nd party utilities. Kaya ko nasabing weak o noob.

About dun sa password stealing function ng Classified, that is the worst VB6 coding I have ever seen! Cheesy

At isang tao lang po ay may gawa nyan. Cheesy
Logged

Mag-ingat sa mga asal talangka, hihilahin ka nila pababa!

Namamato pag ika'y hitik... hitik sa bunga!
Rah
LR44 Battery
*

Pogi/Ganda Points: 0
Offline Offline

Gender: Male
Posts: 3


Fresh as ever!


« Reply #44 on: June 21, 2010, 08:15:14 PM »

naku nakakatakot!

meron ka ba talaga "coding" ng classified folder worm!?
sana hindi "source code" tinutukoy mo ha! hehehe!

paano mo naman nalaman na iisang tao lang may gawa ng worm na ito?
agree ako weak ang worm na ito pero 'yong sabihin na isa, dalawa o marami
gumawa ng worm na ito ay hindi ako agree!!!

mas maniwala pa ako na isang katutak na mga TANG@ gumawa nito kesa
iisang tao lang
Logged

Many insecured people did not breastfeed!
theeye23
CR2032 Battery
**

Pogi/Ganda Points: 0
Offline Offline

Posts: 49


The eye is looking at you! :D


« Reply #45 on: June 22, 2010, 09:08:25 PM »

naku nakakatakot!

meron ka ba talaga "coding" ng classified folder worm!?
sana hindi "source code" tinutukoy mo ha! hehehe!

paano mo naman nalaman na iisang tao lang may gawa ng worm na ito?
agree ako weak ang worm na ito pero 'yong sabihin na isa, dalawa o marami
gumawa ng worm na ito ay hindi ako agree!!!

mas maniwala pa ako na isang katutak na mga TANG@ gumawa nito kesa
iisang tao lang

Ah, hindi naman sya totally source code.

Dinisassemble ko sya using VB Decompiler Pro, kaya lang assembly language ang result kaya kina-ilangan ko pa ng ibang tao na magtatranslate.

Kaya ko nasabing iisang tao lang ang gumawa:

- Unang-una sa VB6 lang ginawa ang program
- At pangalawa, Napaka-simple ng mga functions para pagtulungan pa ng marami


Logged

Mag-ingat sa mga asal talangka, hihilahin ka nila pababa!

Namamato pag ika'y hitik... hitik sa bunga!
Rah
LR44 Battery
*

Pogi/Ganda Points: 0
Offline Offline

Gender: Male
Posts: 3


Fresh as ever!


« Reply #46 on: June 23, 2010, 10:40:09 AM »

i see disassembled pala...

dati, nakaka-receive kami ng e-mail ng worm na 'yan sa yahoo at gmail namin.
nakakapagtaka kung paano niya nalaman address namin!

pinaka-posible n'yan ay infected mga computer na gamit namin at dun siya
kumukuha ng e-mail address sa tina-type sa keyboard. posible rin na kita na
mga keystrokes at papadala sa author ng worm. gamitan mo ng utilities na
namo-monitor ng internet mails at mag-popup ang message na meron raw
smtp outbound mail attempt!!! kaya meron siya sariling e-mail system.

pwede rin reverse engineer n'ya brontok o 'di kaya kaibigan n'ya author
ng brontok! hehe.

ang worm naman kasi na EXE ay napakadali i-terminate kaya masabi ko
weak mga yan. ang talagang malulupit ay 'yong naka-DLL at sumasakay sa
windows svchost tulad ng Conficker - lalo na kapag rootkit na!

at ang talagang weak ay 'yong mga GUMAGAWA ng worm kasi 'kala nila
magagaling na sila. eh, tingnan mo ntv.vbs SOBRANG napakadali intindihin
source code n'ya! kahit grade 5 kaya gawin 'yon. weak sila dahil perwesyo
lng alam nila. 'di lang weak - MGA INUTIL PA!!!
Logged

Many insecured people did not breastfeed!
Rah
LR44 Battery
*

Pogi/Ganda Points: 0
Offline Offline

Gender: Male
Posts: 3


Fresh as ever!


« Reply #47 on: June 23, 2010, 10:45:42 AM »

bato bato sa langit - ang tamaan magalit na!!!
WEAK at INUTIL programmers ng mga trojans, worms at viruses!
wala na ba kayo ibang ALAM ha!? ha!!??
Logged

Many insecured people did not breastfeed!
Karl80
CR2032 Battery
**

Pogi/Ganda Points: 1
Offline Offline

Posts: 16


« Reply #48 on: June 23, 2010, 12:59:37 PM »

Amen! Amen!
Logged
Karl80
CR2032 Battery
**

Pogi/Ganda Points: 1
Offline Offline

Posts: 16


« Reply #49 on: June 23, 2010, 01:01:46 PM »

theeye23, I like your class-x.vbs edition! 'Kaw na post ng link dito ah.

:=)
Logged
amadjo01
Lead Acid Battery
*******

Pogi/Ganda Points: 14
Offline Offline

Gender: Male
Posts: 692


Meow....


« Reply #50 on: July 27, 2010, 10:20:01 AM »

sir ginoogle ko po yang name nya..

eto ung isa sa mga sites na nakita ko.. at different name nya,

http://www.symantec.com/security_response/writeup.jsp?docid=2009-071521-4358-99&tabid=2
http://www.sophos.com/security/analyses/viruses-and-spyware/w32autorunams.html?_log_from=rss

try also to upload the virus file to http://virscan.org/ at tingnan mo po kung known virus na siya ng different antivirus software..



got the same problem here!!!!!!
di ko lang po maalala kung paano nawala!!!
o baka nakahide lang!!!
Logged
The Philippine Electronics and Technology Forum
   

 Logged
Pages: 1 2 [3]   Go Up
  Print  
 
Jump to:  


Related Topics
Subject Started by Replies Views Last post
madalas ba kayong na-virus ? virus na galing sa usb « 1 2 ... 7 8 »
Viruses, Trojan and Spyware Problems
Siramiko 152 14550 Last post September 16, 2010, 05:41:43 PM
by cliffromz23
virus
Computer Software
manualsk8r 3 475 Last post May 20, 2009, 12:33:52 PM
by BroadBandAC
usb virus
Viruses, Trojan and Spyware Problems
paradox89 13 2140 Last post November 17, 2010, 06:27:36 PM
by !KuGZ$
help about this virus
General Computers and Internet Talk
bluegirl 15 1392 Last post July 06, 2009, 10:25:48 PM
by voltaman_krc
Anong Virus ito? hinde Alam ng Node anti-virus (Tinamaan ako galing sa usb)
Viruses, Trojan and Spyware Problems
Positron E+ 5 1269 Last post November 19, 2010, 11:16:44 AM
by jacks
Virus Via SMS?
Cellular Phones and Accessories
lorwin04 4 1283 Last post July 19, 2010, 01:59:40 PM
by lordemtech
Website with 28,000+ Circuits Classified According to Function/Application
Mechatronics and Robotics
TambayBlues 1 571 Last post February 16, 2010, 09:08:03 AM
by akhen
Powered by MySQL Powered by PHP Powered by SMF 1.1.15 | SMF © 2011, Simple Machines Valid XHTML 1.0! Valid CSS!