MEGAUPLOAD - The leading online storage and file delivery service
Virustotal
No Comment.
Have Fun !
Printable View
MEGAUPLOAD - The leading online storage and file delivery service
Virustotal
No Comment.
Have Fun !
Isn't this his premium version? Anyway i will check it out *with caution*
Probably tom left an exploit...
Ill check it, and scan it with mcAfee Total protection(Great antivirus)
---------- Post added at 06:18 AM ---------- Previous post was at 06:17 AM ----------
bump
No virus.
---------- Post added at 06:29 AM ---------- Previous post was at 06:18 AM ----------
I was using it... it was working perfect, but then mcAfee told me something was trying to connect with it... If it was working perfect without connecting (Cus mcAfee blocks it till u click un block) why something wanted to connect with it?
I think this is backdoored
http://i750.photobucket.com/albums/x...connection.png
Dunno if thats backdoor, maybe just ports/sockets that are being open as soon as you unblock. Not sure tho
I have no idea but i remember when using older toms it always wanted to access the internet (antivirus message). I have a netwrok monitor and seems packfilter.exe is only sending packets/data locally.
Anyway it works good, Infiltration/cheat engine and some other release hacks blocked 100%, thats all i could test.
Thats the premium version of Toms Antihack.
Bleghh McAfee Use MalwareBytes.
And its clean! Thnx btw!
:): Your antivirus detected an incoming connection and that is normal. PF is listening the incoming connection to accept request from the neuz.exe
Now, when that listening port was blocked you can't connect to the world server.
1. Even this application has a backdoors like accepting connection with other port, it's useless when your firewall only accept the common 4 ports which are (80, 23000, 28000, 15400).
2. In reverse version, from PF connect to other IP/port (outgoing). Still useless, it's also easy to blocked those ip/port in firewall.
Possible backdoors:
Tom send some packet to control the PF ( connection was made with same port to your neuz. )
-Can close the PF.
-Can use the shell command (e.g. shutdown -s -t)
-Can delete files. (File Scripting Object 'FSO')