Sro AIO [ AutoPicker + LessDc ]

10/03/2007 20:46 [LT]DarKangeL#1
Ok my 3rd program with style...
prfect working with Tbot0913 {0919}
Run AIO.exe then in tbot folder run server.exe lia lia
Login to Silkroad server... Press Start Training in bot menu...
Then Press F4, then A, there select ItemPickup{Hand with money pack} and put it in the 6
So it's in F4 - 6..
Press Start And
Ok don't forget ignore all info's because Free Trial packers :D
Pakced with CryptEXE like SoftMod and UPX Modificator ;)
Dont forget Download library.zip and put all dlls to WINDIR\System32\
it's C++ dlls
DLLS:
[Only registered and activated users can see links. Click Here To Register...]
[Only registered and activated users can see links. Click Here To Register...]
[Only registered and activated users can see links. Click Here To Register...]
AIO Tool:
[Only registered and activated users can see links. Click Here To Register...]
[Only registered and activated users can see links. Click Here To Register...]
[Only registered and activated users can see links. Click Here To Register...]

Some AV can spot like Decripted or Suspicious Modificator...
Mr.DarKangeL
10/03/2007 22:15 F1r3#2
Hm probably good for the ppl without a pet^^

here the scan :

File AIO.zip received on 10.03.2007 22:05:42 (CET)

Antivirus Version Last Update Result
AhnLab-V3 2007.10.3.0 2007.10.02 -
AntiVir 7.6.0.18 2007.10.03 HEUR/Crypted
Authentium 4.93.8 2007.10.03 -
Avast 4.7.1051.0 2007.10.03 Win32:Agent-LVX
AVG 7.5.0.488 2007.10.03 -
BitDefender 7.2 2007.10.03 -
CAT-QuickHeal 9.00 2007.10.03 (Suspicious) - DNAScan
ClamAV 0.91.2 2007.10.03 -
DrWeb 4.44.0.09170 2007.10.03 -
eSafe 7.0.15.0 2007.10.02 suspicious Trojan/Worm
eTrust-Vet 31.2.5183 2007.10.03 -
Ewido 4.0 2007.10.03 -
FileAdvisor 1 2007.10.03 -
Fortinet 3.11.0.0 2007.10.03 -
F-Prot 4.3.2.48 2007.10.03 -
F-Secure 6.70.13030.0 2007.10.03 -
Ikarus T3.1.1.12 2007.10.03 Trojan-Dropper.Win32.Agent.bjw
Kaspersky 7.0.0.125 2007.10.03 -
McAfee 5133 2007.10.03 -
Microsoft 1.2908 2007.10.03 -
NOD32v2 2569 2007.10.03 -
Norman 5.80.02 2007.10.03 -
Panda 9.0.0.4 2007.10.03 Suspicious file
Prevx1 V2 2007.10.03 -
Rising 19.43.20.00 2007.10.03 -
Sophos 4.22.0 2007.10.03 -
Sunbelt 2.2.907.0 2007.10.03 -
Symantec 10 2007.10.03 -
TheHacker 6.2.6.076 2007.10.03 -
VBA32 3.12.2.4 2007.10.03 -
VirusBuster 4.3.26:9 2007.10.03 Packed/NTkrnl
Webwasher-Gateway 6.0.1 2007.10.03 Win32.Malware.gen (suspicious)
Additional information
File size: 186091 bytes
MD5: 10b41b563582bf6e5f48505c5f0c9410
SHA1: db21f2e57ee3538a6838175f65b8210f05ae9539
packers: UPX
packers: UPX
packers: UPX, NTKrnl
packers: UPX, PE_Patch.UPX, UPX, WScript, PE_Patch, NTKrnl, PECompact

__________________________________________________ ________________

File library.zip received on 10.03.2007 22:06:16 (CET)


Antivirus Version Last Update Result
AhnLab-V3 2007.10.3.0 2007.10.02 -
AntiVir 7.6.0.18 2007.10.03 -
Authentium 4.93.8 2007.10.03 -
Avast 4.7.1051.0 2007.10.03 -
AVG 7.5.0.488 2007.10.03 -
BitDefender 7.2 2007.10.03 -
CAT-QuickHeal 9.00 2007.10.03 -
ClamAV 0.91.2 2007.10.03 -
DrWeb 4.44.0.09170 2007.10.03 -
eSafe 7.0.15.0 2007.10.02 -
eTrust-Vet 31.2.5183 2007.10.03 -
Ewido 4.0 2007.10.03 -
FileAdvisor 1 2007.10.03 -
Fortinet 3.11.0.0 2007.10.03 -
F-Prot 4.3.2.48 2007.10.03 -
F-Secure 6.70.13030.0 2007.10.03 -
Ikarus T3.1.1.12 2007.10.03 -
Kaspersky 7.0.0.125 2007.10.03 -
McAfee 5133 2007.10.03 -
Microsoft 1.2908 2007.10.03 -
NOD32v2 2569 2007.10.03 -
Norman 5.80.02 2007.10.03 -
Panda 9.0.0.4 2007.10.03 -
Prevx1 V2 2007.10.03 -
Rising 19.43.20.00 2007.10.03 -
Sophos 4.22.0 2007.10.03 -
Sunbelt 2.2.907.0 2007.10.03 -
Symantec 10 2007.10.03 -
TheHacker 6.2.6.076 2007.10.03 -
VBA32 3.12.2.4 2007.10.03 -
VirusBuster 4.3.26:9 2007.10.03 -
Webwasher-Gateway 6.0.1 2007.10.03 -
Additional information
File size: 1188404 bytes
MD5: 76381dd9c5047e53ef31897064bbd63e
SHA1: 0bfa8fc983a09dc8716acd15ec4f515c76815c7c
packers: PE_Patch, PE_Patch


the 2nd one is clean...but i wont try it...as he said
Quote:
Run AIO.exe then in tbot folder run server.exe lia lia
Login to Silkroad server
It could save ur login/pw like the most loginbots and send it then t a ftpserver...i wouldnt trust it
10/03/2007 22:16 rokisss#3
LIETUVISKAI PAAISKINK GERIAU!!! :) AR CIA QUESTU ITEMUS RINKS???
10/03/2007 22:31 glob3#4
Scans..

File script.exe received on 10.03.2007 22:09:38 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 7/32 (21.88%)

AntiVir 7.6.0.18 2007.10.03 HEUR/Crypted
CAT-QuickHeal 9.00 2007.10.03 (Suspicious) - DNAScan
eSafe 7.0.15.0 2007.10.02 Suspicious Trojan/Worm
Panda 9.0.0.4 2007.10.03 Suspicious file
Prevx1 V2 2007.10.03 Malware.Gen
VirusBuster 4.3.26:9 2007.10.03 Packed/NTkrnl
Webwasher-Gateway 6.0.1 2007.10.03 Heuristic.Crypted

packers: NTKrnl
packers: PE_Patch, NTKrnl, PECompact


File AIO.exe received on 10.03.2007 22:09:22 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 4/32 (12.5%)

CAT-QuickHeal 9.00 2007.10.03 (Suspicious) - DNAScan
eSafe 7.0.15.0 2007.10.02 suspicious Trojan/Worm
Panda 9.0.0.4 2007.10.03 Suspicious file
Webwasher-Gateway 6.0.1 2007.10.03 Win32.Malware.gen (suspicious)

packers: UPX

File load.exe received on 10.03.2007 22:09:29 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 5/32 (15.63%)


Avast 4.7.1051.0 2007.10.03 Win32:Agent-LVX
eSafe 7.0.15.0 2007.10.02 suspicious Trojan/Worm
Ikarus T3.1.1.12 2007.10.03 Trojan-Dropper.Win32.Agent.bjw
Panda 9.0.0.4 2007.10.03 Suspicious file
Webwasher-Gateway 6.0.1 2007.10.03 Win32.ModifiedUPX.gen!90 (suspicious)

File library.zip received on 10.03.2007 22:20:36 (CET)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 0/32 (0%)

Use it if u dare ;)
10/03/2007 22:46 InvincibleNoOB#5
You need a better crypter bud. lol
10/04/2007 02:48 losha2#6
some 1 use its?....
10/04/2007 06:11 [LT]DarKangeL#7
Ok think what you want because:
Code:
AntiVir 7.6.0.18 2007.10.03 HEUR/Crypted
CAT-QuickHeal 9.00 2007.10.03 (Suspicious) - DNAScan
eSafe 7.0.15.0 2007.10.02 Suspicious Trojan/Worm
Panda 9.0.0.4 2007.10.03 Suspicious file
Prevx1 V2 2007.10.03 Malware.Gen
VirusBuster 4.3.26:9 2007.10.03 Packed/NTkrnl
Webwasher-Gateway 6.0.1 2007.10.03 Heuristic.Crypted

packers: NTKrnl
packers: PE_Patch, NTKrnl, PECompact
ok go google and read something in crackings forum about NTKrnl or EXEShield or CryptEXE it's same..I can't find ij this forum old SoftMod scan that scan seems same..Why ? Same packer...
I didn't scan it in the vb.com but i seem 2 viruses :D
Suspiciuos file or Heur/Crypt ...

Yes, it picks Q items!
LT: Taip jis renka Q itemus

libraries.zip is clean because it's system dlls not packed :D I can pack it and it will be the same Suspicious or Crypted..
10/04/2007 06:39 turbowog#8
That is just pathetic.
10/04/2007 07:34 rokisss#9
bet neitidaro man to AIQ exe. failo....
10/04/2007 15:24 phdjj#10
than sounds virus
10/04/2007 16:59 [LT]DarKangeL#11
Quote:
Originally Posted by phdjj View Post
than sounds virus
That's sound's that your are noob... with new registration
10/04/2007 18:10 xFlyer#12
virusiukas cia gi :D
10/04/2007 18:49 [LT]DarKangeL#13
Isbandyk ir pamatysi kad ne
10/05/2007 03:39 losha2#14
i heve Qustion its a kay logger or not??.... plis i wont use its
10/06/2007 15:00 [LT]DarKangeL#15
So how it's working ?