Exetools

Exetools (https://forum.exetools.com/index.php)
-   General Discussion (https://forum.exetools.com/forumdisplay.php?f=2)
-   -   Virus Win32:Induc (https://forum.exetools.com/showthread.php?t=12408)

Antelox 08-20-2009 22:07

Virus Win32:Induc
 
Hi all,

here there is a simple description of Win32: Induc virus that infects Delphi Development Environments.

LoOk:

http://antelox.wordpress.com/2009/08/20/virus-win32induc/

Bye. :)

dj-siba 08-20-2009 23:53

More info
Code:

http://blog.eurekalog.com/?p=244
http://www.kaspersky.com/news?id=207575885
http://www.at4re.com/f/showthread.php?t=6549

here a small tool from my friend STRELiTZIA
SlugMRT small tool to detect W32/Induc-A virus in non packed program
http://rapidshare.com/files/269477686/SlugMRT.rar

Antelox 08-21-2009 03:00

Very Nice dj-siba, thx much br0!!! ;)

Does he have this mw??? It so please send me a PM :D

Thx in advance!!!

Bye.

dj-siba 08-21-2009 03:29

see here analyze of virus with source code
http://www.at4re.com/f/showthread.php?t=6549
you can use google to translate from Arabic

Antelox 08-21-2009 05:06

I say an infected exe so that I can analyze it.

Btw thx much for the hints ;)

Bye.

dj-siba 08-21-2009 18:54

ok here an infected keygen
http://download-crack-serial.com/software-crack.php?id=125613

Antelox 08-21-2009 22:52

Oh thx br0,

Can i upload it to OffensiveComputing as a Win32/induc sample???

Bye.

Git 08-22-2009 05:18

Why spread this filth at all? Every time somebody uploads this kind of source you can bet for certain it will fall into many hands that will abuse it and do harm to others. If you are so keen to upload it why not limit it to requests from people you know and trust?. Be responsible please.

Git

BoRoV 08-27-2009 02:37

My tools for fight with this virus
http://a0.sderni.ru/319127-Anti.Win32.Induc.v0.13.7z

STRELiTZIA 09-17-2009 21:53

Hi,
Good work :)
but I have a brief comment...

Your Tool Patch only one byte without removing the entirment code of virus that will always concedere as infected by the Antivirus...

BoRoV 09-18-2009 14:15

yes, I know about this problem, going to correct it, but time is not present

SLV 09-29-2009 07:06

One more cause why not to use stupid delphi :)

BoRoV 09-29-2009 14:39

already it was heard from you :)

LaptoniC 10-04-2009 17:05

Kaspersky always flags CORE keygens by tam infected with this virus for quite long time. I don't know whether it is false positive but I think they should take care of it.

.:hack3r2k:. 10-05-2009 03:07

Since this "cvirus" was actually harmless it passed untected for long period of time so at current time for sure there are out there many Delphi applications containing it.

Br;)


All times are GMT +8. The time now is 19:40.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2026, vBulletin Solutions, Inc.
Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX