Jump to content

Recommended Posts

Posted

Hello MxC! I decided to make a topic teaching you avoid to be infected from bad files on internet [shared , from downloads and much more]

 

What is it a backdoored file?

 

It's an infected file , binded 99%, which would damage your personal data and use your pc like a bot!

 

What means bind? or what the hell we call binder?

 

It's a programm that can incorporate your virus,rat,keylogger,trojan with clean programms & files and infect others easily! It means binder is a way for crypting your bad files and infect others !

 

FIRST METHOD

Right click it, if you got winrar installed and you see

"open with winrar" then this means it was binded with winrar

so definitely it's backdoored

 

SECOND METHOD

Open it with a resource editor such as resource hacker/restorator/pe explorer and check the rcdata section,if theres 1 & 2 entries in it

then its binded

 

THIRD METHOD

Open it with a hex editor , at the start of a PE header theres always this line "This program cannot be run in DOS mode" , search for it,if it

exists more then once then it might be binded

it depends on the specific app,for example its not unusual for

binders/crypters to have the stub file attached in the resources

also search for .exe and inspect the results,a binded file

drops the files to a temp folder before executing em , so if

you find somethin like this: %.t.e.m.p.%..x.x...e.x.e or file1.exe/file2.exe

then its def binded...

 

FOURTH METHOD

Run it in sandboxie ,when a file is ran'd in sandboxie its isolated (cant access your files/registry, first click the sandboxie tray icon to

open up its Window , then right click the file and click "run with sandboxie"

if you see another process name in the sandboxie Window then its probably backdoored (this doesnt include sandboxie rpcss/dcom launch processes,those are legit and needed for some programs) , thats not all , the file may drop another when one of the buttons in the program GUI is clicked or after you close it , so click all the buttons and close it

just to make sure , if you do see other processes then immdiatly click file>terminate all processes from the sandboxie menu , if a file refuses to run in sandboxie or its suppose to be a program and it runs

without GUI then it would probably be best to delete it!!

 

[move]Credits 2 GOOLE SEARCH[/move]

 

*I MADE THIS GUIDE, OTHER RETARDS LEECH IT, YOU CAN FIND THIS GUIDE EVERYWHERE, IN GOOGLE FORUMS ETC, LEECHING YOUR GUIDES ISNT THE BEST THING TO MAKE YOU ANGRY BUT STILL BELONG TO 'EM*

 

Posted

If you find the guide usefull stop crying for credits and so on, because in MxC are sharing a lot of programms and files I thought that it is necessary to post it, bye

 

 

Where is the proper credits? And how do you know that the guide belong to this guy rolf, go play with your toys but away from my topic

Posted

If you find the guide usefull stop crying for credits and so on, because in MxC are sharing a lot of programms and files I thought that it is necessary to post it, bye

You claimed to be yours.

No problem if you had put credits,or not even putting credits

 

but this

No mate it's 100% mine  :)

I am the first who shared it in other forums like hf, someone leech it really

really gets me angry

 

People are not that stupid as you think

 

In 1 week,you have scammed,lied many times.

Hell,noone is gonna believe w/e you say

 

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



  • Posts

    • No digas pj man, significa "personaje". En inglés se usa "char", por character.
    • This package is based of aCis 408/409 and has been prefilled with server & client modifications for your convenience. A detailed list of the features (including images/videos) in this package can be found in the L2DEV Discord. You can download the entire package here.   What this Package DOES include: Prerequisite Install Files (MySQL, JDK21) Server (Compiled) + Patch Files Popular server-side Java Mods What mods are currently installed: Custom Community Board Character Preferences Menu Daily & Weekly Quests Balance System Events Engine Visual System (aka DressMe) Achievements System Retail Interface with Teleport Menu Player Startup Guide Agathion Support Autofarm System Castle / Hall Siege Manager Daily Login Rewards NPC & Item Search Dungeon System Class & Subclass Master Preset & Scheme Buffer Market Board System Ranking / Leaderboard System PCBangPoints System 4 Custom Maps (Hellbound, Fantasy Isle, Kamael Island & Crystal Island) Updated WorldMap/Minimap to support custom zones What this Package DOES NOT include: EmuDevs Armor Files EmuDevs Weapon Files EmuDevs Skin Files EmuDevs Cloak Files EmuDevs Skill Files EmuDevs Enemies/Raid Bosses EmuDevs Essence Interface Source Code To properly setup this package you will need to: Install the prerequisite files Import the database backup Register a gameserver/hexid using the tools provided in the GameServer folder Notes: The default database scheme name is "emudevs" Agathion support has been added but you will need to add your own Agathion NPC's to your patch. Bugs should be reported in L2DEV or EmuDevs discord. Most mods can be configured via the XML files Most HTML's can be edited via the HTML files  
    • Hello, I am working with the IL Classic files, and I would like to make it so that when someone grabs the zariche or akamanah, they transform into the monster.... I remember many years ago in an IL Java that I had, I had done it but the truth is that from those times (+15 years) I no longer have anything... And I started with L2 OFF again... Could someone tell me how to do this? I have managed to add a thousand custom things in terms of functionality, but this one is getting complicated, I have achieved the maximum that the mob appears lying on the pj even, but I do not achieve 100% of what I want!
    • No such file was present in the share you mentioned, nor has such a file ever been publically shared, as far as I know. As a matter of fact, the whole system in l2aepvp was different. It was allegedly an earlier version and it used something called Player Passport or something like that. Anyway, the only way is to reverse-engineer (reconstruct) it by looking at the calls and imagining what it is used for and what it should consist of.  
    • i know bro... i need the file or class to finish implement this share..   I can't find the l2aepvp source code anywhere, I don't know if it has been released for free or not to search code to patch errors
  • Topics

×
×
  • Create New...