Page 1 of 1

silkroad pictures please look

Posted: Wed Oct 24, 2007 9:12 pm
by erikosius
Please people look why screen loking like this and wen i play sro its be 2
can some one help me?
[Link Removed - Milly]

Posted: Wed Oct 24, 2007 9:18 pm
by Nader
im pretty sure this is a bad file, why would u post the same thing for a client dl

Posted: Wed Oct 24, 2007 10:29 pm
by erikosius
omg... No one help me ;(

Posted: Wed Oct 24, 2007 11:04 pm
by Behemoth
malicious object,
use imageshack.us for images -__-

Posted: Thu Oct 25, 2007 2:35 am
by ddcc
It's virus infested.

Posted: Thu Oct 25, 2007 10:15 am
by erikosius
for all peoples enyware viruses....;(

Posted: Thu Oct 25, 2007 10:30 am
by nphillip
are u a turk?

Posted: Thu Oct 25, 2007 3:48 pm
by erikosius
no lol i am lithuanian ;)

Posted: Fri Oct 26, 2007 3:41 am
by ddcc
Ardamax trojan eh? Think you can steal people's usernames and passwords?

VirusTotal Results:

File silkroad.jpg received on 10.26.2007 05:30:43 (CET)
Current status: finished
Result: 23/32 (71.88%)

Antivirus Version Last Update Result
AhnLab-V3 2007.10.26.0 2007.10.26 Win-Trojan/Ardamax.14848.D
AntiVir 7.6.0.27 2007.10.25 -
Authentium 4.93.8 2007.10.25 W32/Trojan.CCFT
Avast 4.7.1074.0 2007.10.25 Win32:Agent-LWO
AVG 7.5.0.503 2007.10.25 PSW.Generic5.HHS
BitDefender 7.2 2007.10.26 Trojan.Generic.57717
CAT-QuickHeal 9.00 2007.10.25 TrojanSpy.Ardamax.n
ClamAV 0.91.2 2007.10.26 Trojan.Dropper-2328
DrWeb 4.44.0.09170 2007.10.25 -
eSafe 7.0.15.0 2007.10.22 -
eTrust-Vet 31.2.5241 2007.10.25 -
Ewido 4.0 2007.10.25 Logger.Ardamax.n
FileAdvisor 1 2007.10.26 -
Fortinet 3.11.0.0 2007.10.19 Spy/Ardamax
F-Prot 4.3.2.48 2007.10.25 W32/Trojan.CCFT
F-Secure 6.70.13030.0 2007.10.25 Trojan-Spy.Win32.Ardamax.n
Ikarus T3.1.1.12 2007.10.26 Trojan-Spy.Win32.Ardamax.n
Kaspersky 7.0.0.125 2007.10.26 Trojan-Spy.Win32.Ardamax.n
McAfee 5149 2007.10.25 Keylog-Ardamax.dr.gen
Microsoft 1.2908 2007.10.26 TrojanSpy:Win32/Ardamax.A
NOD32v2 2618 2007.10.26 probably a variant of Win32/Keylogger.Ardamax
Norman 5.80.02 2007.10.25 W32/Ardamax.CRU
Panda 9.0.0.4 2007.10.26 -
Prevx1 V2 2007.10.26 Heuristic: Suspicious Self Modifying File
Rising 19.46.32.00 2007.10.26 -
Sophos 4.22.0 2007.10.26 Ardamax Installer
Sunbelt 2.2.907.0 2007.10.26 -
Symantec 10 2007.10.26 -
TheHacker 6.2.9.107 2007.10.25 Trojan/Spy.Ardamax.n
VBA32 3.12.2.4 2007.10.25 Trojan-Spy.Win32.Ardamax.n
VirusBuster 4.3.26:9 2007.10.25 TrojanSpy.Ardamax.W
Webwasher-Gateway 6.6.1 2007.10.25 Riskware.Ardamax.K.Gen

Additional information
File size: 491759 bytes
MD5: 4da4d1c09229c0916fd26d81017e4885
SHA1: c336d1503484e4b2905d5dee144c8b8ff8c02270
Prevx info: http://fileinfo.prevx.com/fileinfo.asp? ... 009038A3A1

Posted: Fri Oct 26, 2007 5:22 am
by skandal
What in God's name?? :shock:
No, i'm not talking about ardamax, that is a frequent in noobs posts*when will retards learn it's easier to be smelled than rotten cheese*. Intsead i'm looking at the file. That's right, silkroad.jpg...a freaking image.ddcc, are you sure that's the complete name and not silkroad.jpg.exe?

Posted: Fri Oct 26, 2007 2:47 pm
by ddcc
It's a jpg. The original link was to a silkroad.jpg at on of those file uploading sites. It's not an actual image though, because image viewers report it's corrupted, so it's either one that's trying to exploit a bug in image processing softawre, or it's a real executable that was repackaged into a jpg without the author knowing you can't execute images.

Posted: Fri Oct 26, 2007 5:07 pm
by ciddy
how gay -_-

Posted: Fri Oct 26, 2007 7:21 pm
by Hitman
nphillip wrote:are u a turk?


ROFL!!!

Posted: Sun Oct 28, 2007 11:51 am
by JeroenNL
ddcc wrote:Sophos 4.22.0 2007.10.26Ardamax Installer
Sunbelt 2.2.907.0 2007.10.26 -
Symantec 10 2007.10.26 -
TheHacker 6.2.9.107 2007.10.25 Trojan/Spy.Ardamax.n
VBA32 3.12.2.4 2007.10.25 Trojan-Spy.Win32.Ardamax.n
VirusBuster 4.3.26:9 2007.10.25TrojanSpy.Ardamax.W
Webwasher-Gateway 6.6.1 2007.10.25Riskware.Ardamax.K.Gen


Does that mean all the free virusscanners found something but Symantec didn't? If so, why the hell does it cost that much?