Blizzard Sector
Is this possibly a working dupe? - Printable Version

+- Blizzard Sector (https://www.blizzsector.co)
+-- Forum: Diablo II (https://www.blizzsector.co/forum-4.html)
+--- Forum: Hacks Bots and Editors (https://www.blizzsector.co/forum-16.html)
+--- Thread: Is this possibly a working dupe? (/thread-40317.html)



Is this possibly a working dupe? - Jere - 07-20-2007

Is this possibly a working dupe?

Link removed by Pamela....try this again and I will be very unhappy. No it does not work.


Is this possibly a working dupe? - BrioCloud - 07-20-2007

What did he do? I can't answer you if it is a possible dupe if I can't see how he did it. Showing an Armor then making a ng then dropping the armor then picking it up and go to Gheeds does not sound like a possible dupe.

Could of been edited when he pressed trade.

Edit: Oh now I see, theres a rapidshare link on the side. Probably a keylogger. I won't even attempt to download and scan. =X

Edit: Downloaded the rar file and checked the readme. This is apart of the readme. ( I erased the readme I scanned on Kaspersky online and this is what I found)

Scanned file: D2Loader_GheedsDupe.rar - Infected
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/archive comment - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/pk.bin - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/inst.dat - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/packetshk.dll - infected by not-a-virus:Monitor.Win32.Perflogger.az D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/packetswb.dll - infected by not-a-virus:Monitor.Win32.Perflogger.az
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/D2Loader-1.11bGheedsVersion.exe - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/packets.exe - infected by not-a-virus:Monitor.Win32.Perflogger.az D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.exe/data.rar/rinst.exe - infected by Trojan-Spy.Win32.Perfloger.o
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/D2Loader-1.11bGheedsVersion.txt - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/Gheeds readme.txt - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/gheeds.dll - OK
D2Loader_GheedsDupe.rar/D2Loader+Gheed's/gheeds.ini - OK

[SIZE=2] Nice try.

[/SIZE]


Is this possibly a working dupe? - necronomikron - 07-21-2007

That same video was posted with a fake dupe just the other day... which was just a keylogger. This is a .dll file, which while I can inspect it, does not guarantee anything. It could easily be a keylogger, trojan, or downloader. Please send these type of things to a mod before posting.

Edit: Oh wow, didn't realize that the 'd2loader' was an archive. Norton doesn't detect anything, but...


Is this possibly a working dupe? - BrioCloud - 07-21-2007

What? It's infected. Why bother saying anymore.


Is this possibly a working dupe? - necronomikron - 07-21-2007

KazeCloud Wrote:What? It's infected. Why bother saying anymore.


I was merely posting my meager findings, and instructing him to pm a mod with this kind of stuff first.

Avast, Antivir, Kapersky all find an infection within the d2loader file.


Is this possibly a working dupe? - Pamela - 07-21-2007

He has 2 weeks to think about posting infected files.