PDA

View Full Version : Is this possibly a working dupe?



Jere
07-20-2007, 05:51 PM
Is this possibly a working dupe?

Link removed by Pamela....try this again and I will be very unhappy. No it does not work.

BrioCloud
07-20-2007, 06:52 PM
What did he do? I can't answer you if it is a possible dupe if I can't see how he did it. Showing an Armor then making a ng then dropping the armor then picking it up and go to Gheeds does not sound like a possible dupe.

Could of been edited when he pressed trade.

Edit: Oh now I see, theres a rapidshare link on the side. Probably a keylogger. I won't even attempt to download and scan. =X

Edit: Downloaded the rar file and checked the readme. This is apart of the readme. ( I erased the readme I scanned on Kaspersky online and this is what I found)

Scanned file: D2Loader_GheedsDupe.rar - Infected
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/archive comment - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/pk.bin - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/inst.dat - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/packetshk.dll - infected by not-a-virus:Monitor.Win32.Perflogger.az (http://www.viruslist.com/en/find?words=not-a-virus:Monitor.Win32.Perflogger.az) D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/packetswb.dll - infected by not-a-virus:Monitor.Win32.Perflogger.az (http://www.viruslist.com/en/find?words=not-a-virus:Monitor.Win32.Perflogger.az)
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/D2Loader-1.11bGheedsVersion.exe - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/packets.exe - infected by not-a-virus:Monitor.Win32.Perflogger.az (http://www.viruslist.com/en/find?words=not-a-virus:Monitor.Win32.Perflogger.az) D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/rinst.exe - infected by Trojan-Spy.Win32.Perfloger.o (http://www.viruslist.com/en/find?words=Trojan-Spy.Win32.Perfloger.o)
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.txt - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/Gheeds readme.txt - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/gheeds.dll - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/gheeds.ini - OK

Nice try.

necronomikron
07-21-2007, 02:10 AM
That same video was posted with a fake dupe just the other day... which was just a keylogger. This is a .dll file, which while I can inspect it, does not guarantee anything. It could easily be a keylogger, trojan, or downloader. Please send these type of things to a mod before posting.

Edit: Oh wow, didn't realize that the 'd2loader' was an archive. Norton doesn't detect anything, but...

BrioCloud
07-21-2007, 02:40 AM
What? It's infected. Why bother saying anymore.

necronomikron
07-21-2007, 02:50 AM
What? It's infected. Why bother saying anymore.


I was merely posting my meager findings, and instructing him to pm a mod with this kind of stuff first.

Avast, Antivir, Kapersky all find an infection within the d2loader file.

Pamela
07-21-2007, 03:10 AM
He has 2 weeks to think about posting infected files.