multiclient for patch 5018

03/18/2008 05:08 gamerz80#1
copy and paste the exe to your conquer online folder..:p mine shows date and time too
03/18/2008 11:16 herehere#2
scamm it pls
03/18/2008 11:25 mike_870#3
AhnLab-V3 2008.3.18.1 2008.03.18 -
AntiVir 7.6.0.73 2008.03.18 -
Authentium 4.93.8 2008.03.18 -
Avast 4.7.1098.0 2008.03.18 -
AVG 7.5.0.516 2008.03.18 -
BitDefender 7.2 2008.03.18 -
CAT-QuickHeal 9.50 2008.03.14 -
ClamAV 0.92.1 2008.03.18 -
DrWeb 4.44.0.09170 2008.03.18 -
eSafe 7.0.15.0 2008.03.09 -
eTrust-Vet 31.3.5623 2008.03.17 -
Ewido 4.0 2008.03.17 -
F-Prot 4.4.2.54 2008.03.18 -
F-Secure 6.70.13260.0 2008.03.18 -
FileAdvisor 1 2008.03.18 -
Fortinet 3.14.0.0 2008.03.17 -
Ikarus T3.1.1.20 2008.03.18 -
Kaspersky 7.0.0.125 2008.03.18 -
McAfee 5253 2008.03.17 -
Microsoft 1.3301 2008.03.18 -
NOD32v2 2955 2008.03.18 -
Norman 5.80.02 2008.03.17 -
Panda 9.0.0.4 2008.03.17 -
Prevx1 V2 2008.03.18 Heuristic: Suspicious Self Modifying File
Rising 20.36.10.00 2008.03.18 -
Sophos 4.27.0 2008.03.18 -
Sunbelt 3.0.978.0 2008.03.18 -
Symantec 10 2008.03.18 -
TheHacker 6.2.92.248 2008.03.17 -
VBA32 3.12.6.3 2008.03.17 -
VirusBuster 4.3.26:9 2008.03.17 -
Webwasher-Gateway 6.6.2 2008.03.18 -

File size: 1376256 bytes
MD5: 86bed74916cca418b8e6ea31e806e9ad
SHA1: 2d311ebfd0ca9164834fc81ceb2d02d6ee7b8239
PEiD: Armadillo v1.71
03/18/2008 11:28 phonghuunguyen#4
Prevx1 V2 2008.03.18 Heuristic: Suspicious Self Modifying File = bad?
03/18/2008 11:30 mike_870#5
work's fine whit out cotobo !
03/18/2008 11:30 mike_870#6
Quote:
Originally Posted by phonghuunguyen View Post
Prevx1 V2 2008.03.18 Heuristic: Suspicious Self Modifying File = bad?
it is safe !
03/18/2008 11:35 TopOne#7
Here is a another scan


Antivirus Version Senaste Uppdatering Resultat
AhnLab-V3 2008.3.18.0 2008.03.17 -
AntiVir 7.6.0.73 2008.03.17 -
Authentium 4.93.8 2008.03.18 -
Avast 4.7.1098.0 2008.03.18 -
AVG 7.5.0.516 2008.03.17 -
BitDefender 7.2 2008.03.18 -
CAT-QuickHeal 9.50 2008.03.14 -
ClamAV 0.92.1 2008.03.18 -
DrWeb 4.44.0.09170 2008.03.17 -
eSafe 7.0.15.0 2008.03.09 -
eTrust-Vet 31.3.5623 2008.03.17 -
Ewido 4.0 2008.03.17 -
FileAdvisor 1 2008.03.18 -
Fortinet 3.14.0.0 2008.03.17 -
F-Prot 4.4.2.54 2008.03.18 -
F-Secure 6.70.13260.0 2008.03.18 -
Ikarus T3.1.1.20 2008.03.18 -
Kaspersky 7.0.0.125 2008.03.18 -
McAfee 5253 2008.03.17 -
Microsoft 1.3301 2008.03.17 -
NOD32v2 2954 2008.03.18 -
Norman 5.80.02 2008.03.17 -
Panda 9.0.0.4 2008.03.17 -
Prevx1 V2 2008.03.18 Heuristic: Suspicious Self Modifying File have no idea if its safe or not ;D
Rising 20.36.02.00 2008.03.17 -
Sophos 4.27.0 2008.03.18 -
Sunbelt 3.0.978.0 2008.03.18 -
Symantec 10 2008.03.18 -
TheHacker 6.2.92.248 2008.03.17 -
VBA32 3.12.6.3 2008.03.17 -
VirusBuster 4.3.26:9 2008.03.17 -
Webwasher-Gateway 6.6.2 2008.03.17 -
Övrig information
File size: 481590 bytes
MD5: b903cc75fe639eb1e4da5f5c0481c1d5
SHA1: 91bbf00e12f5892e1e52d77d1cb47086356308f1
PEiD: -
Prevx info: [Only registered and activated users can see links. Click Here To Register...]


as u guys can see its not same size as the first scan
but this is the file :P
pls some mod comfirm this ;D
03/18/2008 11:46 screwyourprayers#8
[Only registered and activated users can see links. Click Here To Register...]


This executable program has a file size of 312,832 bytes, it is called 15758933.EXE and is located in the %mai%\ folder.
This file is considered unsafe. It was first seen on Monday, Mar 17 2008. It has only been seen by one user in this section of the community. The file has only been seen in SPAIN.
15758933.EXE has been seen to perform the following behavior:
- The Process is packed and/or encrypted using a software packing process
03/18/2008 11:56 mike_870#9
AhnLab-V3 2008.3.18.1 2008.03.18 -
AntiVir 7.6.0.73 2008.03.18 -
Authentium 4.93.8 2008.03.18 -
Avast 4.7.1098.0 2008.03.18 -
AVG 7.5.0.516 2008.03.18 -
BitDefender 7.2 2008.03.18 -
CAT-QuickHeal 9.50 2008.03.14 -
ClamAV 0.92.1 2008.03.18 -
DrWeb 4.44.0.09170 2008.03.18 -
eSafe 7.0.15.0 2008.03.09 -
eTrust-Vet 31.3.5623 2008.03.17 -
Ewido 4.0 2008.03.17 -
F-Prot 4.4.2.54 2008.03.18 -
F-Secure 6.70.13260.0 2008.03.18 -
FileAdvisor 1 2008.03.18 -
Fortinet 3.14.0.0 2008.03.17 -
Ikarus T3.1.1.20 2008.03.18 -
Kaspersky 7.0.0.125 2008.03.18 -
McAfee 5253 2008.03.17 -
Microsoft 1.3301 2008.03.18 -
NOD32v2 2955 2008.03.18 -
Norman 5.80.02 2008.03.17 -
Panda 9.0.0.4 2008.03.17 -
Prevx1 V2 2008.03.18 Heuristic: Suspicious Self Modifying File
Rising 20.36.10.00 2008.03.18 -
Sophos 4.27.0 2008.03.18 -
Sunbelt 3.0.978.0 2008.03.18 -
Symantec 10 2008.03.18 -
TheHacker 6.2.92.248 2008.03.17 -
VBA32 3.12.6.3 2008.03.17 -
VirusBuster 4.3.26:9 2008.03.17 -
Webwasher-Gateway 6.6.2 2008.03.18 -
Additional information
File size: 1376256 bytes
MD5: 7119a50354ccb40a0cec5318a105d862
SHA1: dc47a9cc0e87e778a398f5bc42315d202502fa0e
PEiD: Armadillo v1.71

i don't think TQ send's us unsafe stuff !
03/18/2008 12:05 nTL3fTy#10
Quote:
Originally Posted by mike_870 View Post
AhnLab-V3 2008.3.18.1 2008.03.18 -
AntiVir 7.6.0.73 2008.03.18 -
Authentium 4.93.8 2008.03.18 -
Avast 4.7.1098.0 2008.03.18 -
AVG 7.5.0.516 2008.03.18 -
BitDefender 7.2 2008.03.18 -
CAT-QuickHeal 9.50 2008.03.14 -
ClamAV 0.92.1 2008.03.18 -
DrWeb 4.44.0.09170 2008.03.18 -
eSafe 7.0.15.0 2008.03.09 -
eTrust-Vet 31.3.5623 2008.03.17 -
Ewido 4.0 2008.03.17 -
F-Prot 4.4.2.54 2008.03.18 -
F-Secure 6.70.13260.0 2008.03.18 -
FileAdvisor 1 2008.03.18 -
Fortinet 3.14.0.0 2008.03.17 -
Ikarus T3.1.1.20 2008.03.18 -
Kaspersky 7.0.0.125 2008.03.18 -
McAfee 5253 2008.03.17 -
Microsoft 1.3301 2008.03.18 -
NOD32v2 2955 2008.03.18 -
Norman 5.80.02 2008.03.17 -
Panda 9.0.0.4 2008.03.17 -
Prevx1 V2 2008.03.18 Heuristic: Suspicious Self Modifying File
Rising 20.36.10.00 2008.03.18 -
Sophos 4.27.0 2008.03.18 -
Sunbelt 3.0.978.0 2008.03.18 -
Symantec 10 2008.03.18 -
TheHacker 6.2.92.248 2008.03.17 -
VBA32 3.12.6.3 2008.03.17 -
VirusBuster 4.3.26:9 2008.03.17 -
Webwasher-Gateway 6.6.2 2008.03.18 -
Additional information
File size: 1376256 bytes
MD5: 7119a50354ccb40a0cec5318a105d862
SHA1: dc47a9cc0e87e778a398f5bc42315d202502fa0e
PEiD: Armadillo v1.71

i don't think TQ send's us unsafe stuff !
If you don't think TQ sends "unsafe" stuff, scan TQ's patch executable ([Only registered and activated users can see links. Click Here To Register...]) and you will find that it reports that same heuristic problem.

I don't know where you guys are getting so many different MD5 and SHA1 hashes from, but the correct bunch for this multiclient is 86bed74916cca418b8e6ea31e806e9ad/2d311ebfd0ca9164834fc81ceb2d02d6ee7b8239 (MD5/SHA1).
03/18/2008 12:19 mike_870#11
Quote:
Originally Posted by nTL3fTy View Post
If you don't think TQ sends "unsafe" stuff, scan TQ's patch executable ([Only registered and activated users can see links. Click Here To Register...]) and you will find that it reports that same heuristic problem.

I don't know where you guys are getting so many different MD5 and SHA1 hashes from, but the correct bunch for this multiclient is 86bed74916cca418b8e6ea31e806e9ad/2d311ebfd0ca9164834fc81ceb2d02d6ee7b8239 (MD5/SHA1).
i know dude i posted the scan of original conquer.exe to point that is safe !
03/18/2008 15:36 Mr.BEMOS#12
[B]not wpoprking with cotobo thaanx
03/19/2008 01:13 flylow#13
So its sounding like this is an unsafe multi client?
03/19/2008 01:36 gamerz80#14
yes please dont download it if you do this program will open a vundo virus and delete your explorer.exe then it will later delete every program in your pc and send all your passwords to me on the internet :rolleyes:
03/19/2008 13:33 screwyourprayers#15
lol