Updated Multi-Client for patch 5072

11/13/2008 03:16 Gamma#1
Well, here is my first contribution ever in 3 years. I followed the dissassembly Ollydbg guide by "tanelipe" and have compiled a working multi-client for the patch 5076. I know it's not much, but it was fun to do :)

Features:
-Multi-client
-Dissabled the TQ Anti-Trojan program
-Disabled the sign-out pop-up


Feel free to scan, thank you.
If this is useful to you, please hit the thanks button. ;)
~Ed
11/13/2008 09:36 HeRo_slash#2
Nice Work Bro
11/13/2008 09:42 girlhush#3
AntiVirus Engine Version Definition Version Status
Antivir 7.4.0.37 6.39.0.81
Nothing found
ArcaVir 1.0.4 2006.01.27
Nothing found
Avast 1.0.7 0753-0
Nothing found
AVG 7.5.47 269.9.14/883
Nothing found
BitDefender 7.60825 7.60825
Nothing found
F-Prot 4.6.6 3.16.14
Nothing found
Norman 5.70.01 5.70.01
Nothing found
Rising 17.00.00.36 19.25.00.00
Nothing found
VirusBlokAda32 3.12.0.2 2007.07.01
Nothing found
VirusBuster 4.3.23:9 (2007-02-16) 9.86.8/11.0
Nothing found




think its clean :)
11/13/2008 09:50 girlhush#4
Just another scan :)



Scanner results
Scan taken on 13 Nov 2008 08:49:12 (GMT)
A-Squared
Found nothing
AntiVir
Found nothing
ArcaVir
Found nothing
Avast
Found nothing
AVG Antivirus
Found nothing
BitDefender
Found nothing
ClamAV
Found nothing
CPsecure
Found nothing
Dr.Web
Found nothing
F-Prot Antivirus
Found nothing
F-Secure Anti-Virus
Found nothing
G DATA
Found nothing
Ikarus
Found nothing
Kaspersky Anti-Virus
Found nothing
NOD32
Found nothing
Norman Virus Control
Found nothing
Panda Antivirus
Found nothing
Sophos Antivirus
Found nothing
VirusBuster
Found nothing
VBA32
Found nothing
11/13/2008 10:11 Rorrim#5
um,, there was no views.... (until I refreshed just now and they just magically appeared either pple trust me that well or ff was being wonky) so I decided to scan it myself.
hmm second one with sunbelt going crazy, thats a new one since I last scanned a file so its probably just being contrary

From [Only registered and activated users can see links. Click Here To Register...], the one I trust
-----------
File Conquer.zip received on 11.13.2008 10:07:11 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 1/36 (2.78%)
Loading server information...
Your file is queued in position: ___.
Estimated start time is between ___ and ___ .
Do not close the window until scan is complete.
The scanner that was processing your file is stopped at this moment, we are going to wait a few seconds to try to recover your result.
If you are waiting for more than five minutes you have to resend your file.
Your file is being scanned by VirusTotal in this moment,
results will be shown as they're generated.
Compact Compact
Print results Print results
Your file has expired or does not exists.
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.

You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:

Antivirus Version Last Update Result
AhnLab-V3 2008.11.13.2 2008.11.13 -
AntiVir 7.9.0.31 2008.11.13 -
Authentium 5.1.0.4 2008.11.12 -
Avast 4.8.1248.0 2008.11.12 -
AVG 8.0.0.199 2008.11.12 -
BitDefender 7.2 2008.11.13 -
CAT-QuickHeal 9.50 2008.11.12 -
ClamAV 0.94.1 2008.11.13 -
DrWeb 4.44.0.09170 2008.11.13 -
eSafe 7.0.17.0 2008.11.12 -
eTrust-Vet 31.6.6208 2008.11.13 -
Ewido 4.0 2008.11.12 -
F-Prot 4.4.4.56 2008.11.12 -
F-Secure 8.0.14332.0 2008.11.13 -
Fortinet 3.117.0.0 2008.11.13 -
GData 19 2008.11.13 -
Ikarus T3.1.1.45.0 2008.11.13 -
K7AntiVirus 7.10.523 2008.11.12 -
Kaspersky 7.0.0.125 2008.11.13 -
McAfee 5432 2008.11.13 -
Microsoft 1.4104 2008.11.13 -
NOD32 3609 2008.11.13 -
Norman 5.80.02 2008.11.12 -
Panda 9.0.0.4 2008.11.12 -
PCTools 4.4.2.0 2008.11.13 -
Prevx1 V2 2008.11.13 -
Rising 21.03.30.00 2008.11.13 -
SecureWeb-Gateway 6.7.6 2008.11.13 -
Sophos 4.35.0 2008.11.13 -
Sunbelt 3.1.1785.2 2008.11.11 Backdoor.Win32.S (vf)
Symantec 10 2008.11.13 -
TheHacker 6.3.1.1.151 2008.11.13 -
TrendMicro 8.700.0.1004 2008.11.13 -
VBA32 3.12.8.9 2008.11.12 -
ViRobot 2008.11.13.1464 2008.11.13 -
VirusBuster 4.5.11.0 2008.11.12 -
Additional information
File size: 777086 bytes
MD5...: 057bfb655f43c9da739423e085de0e6b
SHA1..: 858c5f8ee45e3f228376723b5287781e21f41ab2
SHA256: 4eeb05fff82d366d7d1057f80efb008bd0137f3f8523d42a70 a0df9ae6028fd1
SHA512: ae65f8c7bb5bb46185677a3b1fd55b829719d15f9ca698f729 31f6d3e760aec8
e561b1e87205271ae3e2a040960d71748124cef7c4e754c7a6 ff919926c515d0
PEiD..: -
TrID..: File type identification
ZIP compressed archive (100.0%)
11/13/2008 10:13 imported_J_J#6
Antivir: Nothing found
ArcaVir: Nothing found
Avast: Nothing found
AVG: Nothing found
BitDefender: Nothing found
F-Prot: Nothing found
Norman: Nothing found
Rising: Nothing found
VirusBlokAda32: Nothing found
VirusBuster: Nothing found

[Only registered and activated users can see links. Click Here To Register...]
Scanned by [Only registered and activated users can see links. Click Here To Register...]
11/13/2008 10:13 imported_J_J#7
Antivir: Nothing found
ArcaVir: Nothing found
Avast: Nothing found
AVG: Nothing found
BitDefender: Nothing found
F-Prot: Nothing found
Norman: Nothing found
Rising: Nothing found
VirusBlokAda32: Nothing found
VirusBuster: Nothing found

[Only registered and activated users can see links. Click Here To Register...]
Scanned by [Only registered and activated users can see links. Click Here To Register...]
11/13/2008 10:15 Gamma#8
Thanks for the scans. And omg my first thanks :D
11/13/2008 10:18 imported_J_J#9
thanks i jus tried it works
11/13/2008 10:37 baracuda355#10
thanks bro. working.
11/13/2008 11:41 karla08#11
Thanks ^.^




Antivir: Nothing found
ArcaVir: Nothing found
Avast: Nothing found
AVG: Nothing found
BitDefender: Nothing found
F-Prot: Nothing found
Norman: Nothing found
Rising: Nothing found
VirusBlokAda32: Nothing found
VirusBuster: Nothing found

[Only registered and activated users can see links. Click Here To Register...]
Scanned by [Only registered and activated users can see links. Click Here To Register...]
11/13/2008 14:28 elpop#12
thx alot
11/13/2008 14:31 MONALISA#13
Nice work ty
11/13/2008 14:56 walkswithwolves#14
Quote:
Originally Posted by Gamma View Post
I followed the dissassembly Ollydbg guide by "tanelipe" and have compiled a working multi-client for the patch 5072.
I tried that guid and I couldn't find "TQ_CONQUER"

Did I do something wrong or just somehow got 2 bad copies of Ollydbg:confused:

-edit-
It didn't completely work for me. Some of the names don't show and I get an "invalid coordinates" when I try to left click anything in TG.

kudos for the effort though gamma! Keep it up:D
11/13/2008 16:48 Myth1#15
tnx dude