![]() |
|
Leak DaRKDDoSeR 5.6c Cracked - Printable Version +- Sinisterly (https://sinister.li) +-- Forum: Hacking (https://sinister.li/Forum-Hacking) +--- Forum: Hacking Tools (https://sinister.li/Forum-Hacking-Tools) +--- Thread: Leak DaRKDDoSeR 5.6c Cracked (/Thread-Leak-DaRKDDoSeR-5-6c-Cracked) Pages:
1
2
|
DaRKDDoSeR 5.6c Cracked - blackhatrussia0x0 - 04-19-2019 [center] [/center][center]DaRKDDoSeR 5.6c Cracked DaRKDDoSeR simple tools for all kind of attack and stealing [/center] ========== [center] UDP Flood SYN FLood HTTP attack Slowloris attack ARME attack password stealing ICQ:653580170 jabber: russianhackerclub@Jabber.ru Links removed- Staff. Slowloris attack,UDP Flood,SYN FLood,HTTP attack,ARME attack,password stealing,ddos attack,ddos protection,denial of service attack,ddos mitigation,dns attack,ddos website,anti ddos RE: DaRKDDoSeR 5.6c Cracked - corekiller - 05-25-2020 Very cool....like to see stuff like this RE: DaRKDDoSeR 5.6c Cracked - miso - 05-25-2020 there is no virusscan, ill scan it later RE: DaRKDDoSeR 5.6c Cracked - mothered - 05-25-2020 (05-25-2020, 08:12 PM)miso Wrote: there is no virusscan, ill scan it laterPlease do. I can then deem whether to keep/remove the links. RE: DaRKDDoSeR 5.6c Cracked - miso - 05-25-2020 (05-25-2020, 10:04 PM)mothered Wrote:Failed to download, blocked by chrome, anonfile shows a virus warning(05-25-2020, 08:12 PM)miso Wrote: there is no virusscan, ill scan it laterPlease do.
RE: DaRKDDoSeR 5.6c Cracked - mothered - 05-26-2020 (05-25-2020, 10:28 PM)miso Wrote: anonfile shows a virus warning I get similar messages with AnonFiles, most of which are false positives. RE: DaRKDDoSeR 5.6c Cracked - peshotriceps - 08-14-2020 nice job dude keep up the good work RE: DaRKDDoSeR 5.6c Cracked - Drako - 08-15-2020 (08-14-2020, 10:34 PM)peshotriceps Wrote: nice job dude keep up the good work I suggest you run it in a VM or Sandboxie. Tools in sketchy threads like this one tend to have some sort of infection. Of course, they could always be false positives. Just warning you. RE: DaRKDDoSeR 5.6c Cracked - miso - 08-15-2020 @mothered , contains an malicious application, however, the main application uses it to inject itself Code: ### Extracted files
DaRKDDoSeR_5.6c_Cracked.rar
|- DaRKDDoSeR+5.6c+Cracked
|- Backgrounds
|- "1.bmp" -> "17.bmp"
|- Icons
|- (76 icons)
|- vcl_skins
|- (131 .skn files)
|- DaRKDDoSeR.exe | Main application | Virustotal Scan [51/72]: https://www.virustotal.com/gui/file/ba72876bf978152d115b5c92d65708a56f0158dba13874e07aa15f81f0550801/detection
|- UPX.exe | UPX 3.0.0 | Virustotal Scan [2/71]: https://www.virustotal.com/gui/file/5bac20d7b5c926c52b74ad78c889c41bbd6615cf2240af391434f3f5b9a6f5fb/detection
|- login.ini
|- Stub.exe | Unused | Virustotal Scan [55/67]: https://www.virustotal.com/gui/file/f25cf98427f1aab7dd5724f80ba12b9065c323877030a4381db43692ac8ae3f9/detection
### - Stub.exe - ###
### MD:
CodeLang: Delphi
This application contains a bunch of URLs aswell as a bunch of WebClients, there is also references (from screen) to:
- "Run" (via registry)
- WindowsLive ("WindowsLive:name=*")
- SQL Lite
- Windows Update (probably isn't actually windows update, svchost.exe is the next string)
- Mozilla (probably dumps passwords & profiles (they're referenced)) | Only Mozilla
- Gets OS ("Windows NT", "Windows 2000" etc...)
this virus seems quite old since the "latest" windows version mentioned is Windows Vista, plus, most antiviruses detects it as malicious
### - DaRKDDoSeR.exe - ###
### MD:
CodeLang: Delphi
References (from strings):
- "FastMM Borland Edition"*
- "MouseZ"
- "GetMonitorInfo"
- "explorer"
- "Stub.exe"
I think that the main application injects "Stub.exe" onto the connected computer.RE: DaRKDDoSeR 5.6c Cracked - mothered - 08-15-2020 (08-15-2020, 03:49 AM)miso Wrote: @mothered , contains an malicious application, however, the main application uses it to inject itselfOnce again, excellent work with your analysis. I've removed all 3 download links. |