Sinisterly
Ponhub.com Brute Checker.7z - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: Hacking (https://sinister.li/Forum-Hacking)
+--- Forum: Hacking Tools (https://sinister.li/Forum-Hacking-Tools)
+--- Thread: Ponhub.com Brute Checker.7z (/Thread-Ponhub-com-Brute-Checker-7z)



Ponhub.com Brute Checker.7z - nassimalina - 04-30-2020

Ponhub.com Brute Checker.7z
╔═.✵.══════════╗
go to the link for download
↓↓↓
mega4up.com/hr51lopjcj84
↓↓↓
virus scan report:

https://www.virustotal.com/gui/file/1cd4f2017502840fd3fcdf6b5aca66a8998613ea9144f7f38dcbc26630322c6c/detection


RE: Ponhub.com Brute Checker.7z - miso - 04-30-2020

im gonna do a deep analysis tomorrow

Virustotal Scan [2/60] (.7z archive)

Virustotal Scan [11/72] (ncrewprog.exe)


RE: Ponhub.com Brute Checker.7z - mothered - 04-30-2020

Moved from Hacking Tools to Cracking Tools.

For future reference, checkers and the like belong here.


RE: Ponhub.com Brute Checker.7z - miso - 05-01-2020

@mothered this is a legit application, it indeed does webrequests to pornhub.com with the accounts

Tools Used:
- HxD
- MiTeC EXE Explorer
- Notepad
- ExeInfo PE
- Resource Hacker (just to dump the icon)

Extracted resources (manually done):
Close Icon (32x32): [Image: extract-6.png]
Unknown (128x128): [Image: extract-7.png]
Unknown (32x32): [Image: extract-8.png]
Tick in a circle (200x200): [Image: extract-9.png]
Telegram Icon (32x32): [Image: extract-3.png]
Information Icon (32x32): [Image: extract-4.png]
Gray Square (10x10) [its the same color as the thread background color]: [Image: extract-5.png]
Code:
[AppDetails] App Info: StringFileInfo [Hex] = 000004b0 Copyright = "Copyright  2019" InternalName = "ncrewprod.exe" OriginalFileName = "ncrewprod.exe" FileVersion = 1.0.0.0 ProductVersion = 1.0.0.0 AssemblyVersion = 1.0.0.0 Framework = .NET Framework 4.7.2 [/AppDetails] [chara.URLDumper]: Found 4 Links: - https://google.com/ - https://t.me/Qpride - https://www.pornhub.com/login - https://www.pornhub.com/front/authenticate [/chara.URLDumper] [chara.FilePathDumper]: Found 2 Links: - Error.txt - ].txt [/chara.FilePathDumper] [HOST::EXEPEINFO]: string(AppCompiler) = "Borland Delphi ( 2.0 - 7.0 ) 1992 - www.borland.com , Overlay : 49E76C... Nothing discovered" string(LamerUnpackInfo) = "Not packed , try OllyDbg v2 - www.ollydbg.de or IDA v7 www.hex-rays.com  or  x64 debug v0024 www.x64dbg.com" [/HOST::EXEPEINFO]: [chara.DeObTester]: HasObfuscator = Coudn't Find Any [/chara.DeObTester] [other] found an email: jhpark1105@gmail.com [/other]