okay so today i manually checked some of my files that i got off from here i checked it with manual unpacking (ollydbg) i did some reverse on them and they seemed like infected
so i download some anti viruses and rechecked if i am really right because i couldnt belive in my eyes
my results were this
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 4
Registry Keys Infected:
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum\R oot\LEGACY_RPCHGM (Trojan.Keylogger) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\RPCHGM (Trojan.Keylogger) -> Quarantined and deleted successfully.
Files Infected:
C:\Documents and Settings\Owner\Desktop\loader.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
C:\Misc\SRO Keypresser.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
C:\Misc\SWSRO\asd.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
C:\Misc\SWSRO\SWSRO Potion\bot.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
we must know that "C:\Documents and Settings\Owner\Desktop\loader.exe" is lolkops older loader which seems like it is really infected with a rat keylogger named bifrost
C:\Misc\SRO Keypresser.exe this is also lolkops work its his old "bot" so i got really angry because seems like he really infected some of his old work
C:\Misc\SWSRO\asd.exe this is an old autopotion i dont know who made it but its a packetbased one that i got from there long time ago for swsro old patch (it needed nuconnector and some other shit)
C:\Misc\SWSRO\SWSRO Potion\bot.exe this is TeamImperials bot which is also infected
really guys take care of what you download
its really sad that peoples i trusted have infected some of their files but oh well
i succesfully removed the keyloggers from my pc and changed all my passwords
i would recommend you do a huge clean up with this software named "Malwarebytes' Anti-Malware 1.44" if you used any of these programs like me
so i download some anti viruses and rechecked if i am really right because i couldnt belive in my eyes
my results were this
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 4
Registry Keys Infected:
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Enum\R oot\LEGACY_RPCHGM (Trojan.Keylogger) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\RPCHGM (Trojan.Keylogger) -> Quarantined and deleted successfully.
Files Infected:
C:\Documents and Settings\Owner\Desktop\loader.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
C:\Misc\SRO Keypresser.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
C:\Misc\SWSRO\asd.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
C:\Misc\SWSRO\SWSRO Potion\bot.exe (BackDoor.Bifrost) -> Quarantined and deleted successfully.
we must know that "C:\Documents and Settings\Owner\Desktop\loader.exe" is lolkops older loader which seems like it is really infected with a rat keylogger named bifrost
C:\Misc\SRO Keypresser.exe this is also lolkops work its his old "bot" so i got really angry because seems like he really infected some of his old work
C:\Misc\SWSRO\asd.exe this is an old autopotion i dont know who made it but its a packetbased one that i got from there long time ago for swsro old patch (it needed nuconnector and some other shit)
C:\Misc\SWSRO\SWSRO Potion\bot.exe this is TeamImperials bot which is also infected
really guys take care of what you download
its really sad that peoples i trusted have infected some of their files but oh well
i succesfully removed the keyloggers from my pc and changed all my passwords
i would recommend you do a huge clean up with this software named "Malwarebytes' Anti-Malware 1.44" if you used any of these programs like me