Exetools  

Go Back   Exetools > General > Community Tools

Notices

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #3  
Old 10-25-2023, 14:07
vetgrapje vetgrapje is offline
Guest
 
Join Date: Oct 2023
Location: in a house
Posts: 2
Rept. Given: 0
Rept. Rcvd 0 Times in 0 Posts
Thanks Given: 0
Thanks Rcvd at 0 Times in 0 Posts
vetgrapje Reputation: 0
Exclamation other source binded it with a virus

It took me some time to track down this forum, I would like to thank you for your work. I first downloaded this hook from another source (downloadly.ir) it was working fine, but it seems it has been bundled with a virus and gave me some red flags so I did some digging and eventually found the source of this hook. Below some information about the dirty version.dll.

hybrid analysis red flags: http://www.hybrid-analysis.com/sample/d6670efa10094a946cba5e9e1b8f585836a8e545f854a0b7dcef475db91ccc6a/6527c6fe8727fe055a050a58
SHA265: d6670efa10094a946cba5e9e1b8f585836a8e545f854a0b7dcef475db91ccc6a

I uploaded this assumed VIRUS here, maybe handy for analysis
https://pixeldrain.com/u/qd61uDj3 (watch out virus, only download for analysis)

I would like to know what exactly is added, any tips on how to find this out?

kind regard, T
Reply With Quote
 

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
How can I hook DllMain ? ioannis General Discussion 12 07-29-2015 01:09
Techsmith Morae Manager squareD General Discussion 2 01-08-2010 01:10
SST Hook -> Bluescreen!? Cobi General Discussion 12 05-04-2005 09:37


All times are GMT +8. The time now is 05:23.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )