Sinisterly
Battle.Net Retriver/Checker (Craked) - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: Computers (https://sinister.li/Forum-Computers)
+--- Forum: Software & Programs (https://sinister.li/Forum-Software-Programs)
+--- Thread: Battle.Net Retriver/Checker (Craked) (/Thread-Battle-Net-Retriver-Checker-Craked)



Battle.Net Retriver/Checker (Craked) - xemojex520 - 09-08-2020

imgur.com/a/1Jnlzxo - screenshot

About the program:
Multithreading
Fast operation speed
Http/SOCKS4/SOCKS5 Proxy support
Support for downloading a proxy from a link
Large database of Imap addresses.

Recover-  Restores accounts from valid emails, and puts a random password on them
Checker - Checks the restored account to the game.

LOG:
------------Good Hit-----------
Mail Data - mail:pass
Account Data - Mail: Password
Games:
OverWatch

Download: Link removed- Staff.
VirusTotal: virustotal.com/gui/file/a2eb0e21a1019f0e0546b400a9c1426478512d86f2ea85ed89816be4338e8ec7/detection


RE: Battle.Net Retriver/Checker (Craked) - mothered - 09-08-2020

The online virus scan report Is 4 months old.

@miso, If you have the time to analyze this, I'll be greatly appreciated.


RE: Battle.Net Retriver/Checker (Craked) - miso - 09-09-2020

(09-08-2020, 08:59 AM)mothered Wrote: The online virus scan report Is 4 months old.

@miso, If you have the time to analyze this, I'll be greatly appreciated.

@mothered , Info dumper

Dumped information is sent to 185.195.24.36 (Located in Moscow, Russia)

Hybrid Analysis Scan
Virustotal Scan [26/69]

Known information dumped (can be more):
Code:
Clipboard Timezone Screen Size Drive Type Drive Size Free space on drive Interacts with Discord (probably dump user login details)



RE: Battle.Net Retriver/Checker (Craked) - mothered - 09-09-2020

(09-09-2020, 11:53 AM)miso Wrote:
(09-08-2020, 08:59 AM)mothered Wrote: The online virus scan report Is 4 months old.

@miso, If you have the time to analyze this, I'll be greatly appreciated.

@mothered , Info dumper

Dumped information is sent to 185.195.24.36 (Located in Moscow, Russia)

Hybrid Analysis Scan
Virustotal Scan [26/69]

Known information dumped (can be more):
Code:
Clipboard Timezone Screen Size Drive Type Drive Size Free space on drive Interacts with Discord (probably dump user login details)
Brilliant work as usual, thank you.

I've removed the link, and the OP can now enjoy a permanent vacation. In terms of the VT report, Is the file the same as the OPs? If so, the checksums differ which obviously means his/her scan Is spoofed.


RE: Battle.Net Retriver/Checker (Craked) - miso - 09-09-2020

(09-09-2020, 12:32 PM)mothered Wrote:
(09-09-2020, 11:53 AM)miso Wrote:
(09-08-2020, 08:59 AM)mothered Wrote: The online virus scan report Is 4 months old.

@miso, If you have the time to analyze this, I'll be greatly appreciated.

@mothered , Info dumper

Dumped information is sent to 185.195.24.36 (Located in Moscow, Russia)

Hybrid Analysis Scan
Virustotal Scan [26/69]

Known information dumped (can be more):
Code:
Clipboard Timezone Screen Size Drive Type Drive Size Free space on drive Interacts with Discord (probably dump user login details)
Brilliant work as usual, thank you.

I've removed the link, and the OP can now enjoy a permanent vacation. In terms of the VT report, Is the file the same as the OPs? If so, the checksums differ which obviously means his/her scan Is spoofed.
the detection rate are similar however the description are different aswell as the sha512 given, which technically is a spoofed virustotal however the file he scanned also seemed malicious lol


RE: Battle.Net Retriver/Checker (Craked) - mothered - 09-09-2020

(09-09-2020, 01:03 PM)miso Wrote: the detection rate are similar however the description are different aswell as the sha512 given, which technically is a spoofed virustotal however the file he scanned also seemed malicious lol
That's what I was trying to establish- whether the file you scanned, Is the same as the OPs In the VT report.


RE: Battle.Net Retriver/Checker (Craked) - miso - 09-09-2020

(09-09-2020, 03:56 PM)mothered Wrote:
(09-09-2020, 01:03 PM)miso Wrote: the detection rate are similar however the description are different aswell as the sha512 given, which technically is a spoofed virustotal however the file he scanned also seemed malicious lol
That's what I was trying to establish- whether the file you scanned, Is the same as the OPs In the VT report.
tldr: they're not the same


RE: Battle.Net Retriver/Checker (Craked) - mothered - 09-10-2020

(09-09-2020, 07:17 PM)miso Wrote: tldr: they're not the same
Okay.

It's been established that the file was Infected, so that's all the counts.