Jump to content

Joth

Members
  • Posts

    5
  • Joined

  • Last visited

About Joth

  • Rank
    Newbie
    Newbie

Profile Information

  • Location
    Australia

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. I'm very confident that it is not a trojan, additionally, the file has been run for years without any issues occurring, and it is not just a random download from a random website. Having said this, is there anyone who can actually analyse the file? It's obfuscated, and I don't believe whoever commented originally knows what to do with that information, as they simply showed it was a trojan. No malicious files were dropped, no processes manipulated and functionality wise it works exactly as expected with no hidden processes running in the background. So again, I highly doubt that this is a trojan and would like the file to be analysed to confirm this because it is very annoying that it is still being detected. Additionally, the file was not detected by your AV program until a week or so ago.
  2. Thank you very much Marcos, I have to say, I can't get a straight answer from anyone. Literally 10 minutes before your reply (!!!) another admin on a different forum replied to a post similar to this one about the same file and said that the file was in-fact safe to run and did not contain any malware. The file is an autoclicker, which makes your mouse click when holding down the button & not having to constantly click it manually. My knowledge in this field is very limited, can you please provide some additional info to what specific malicious detection was found? Because a trojan could be anything...
  3. I have a .exe file (the file is an auto-clicker) that I am 99% sure is safe, however, it is obfuscated and I would like to decompile it for that extra 1% of confidence knowing that it's definitely nothing malicious. The file is an auto clicker and as mentioned is obfuscated to protect its code and prevent others from stealing it & repurposing it for malicious purposes. The file also uses a HWID login, so only registered users can use the auto clicker - I paid an access fee to become registered. The virustotal scan doesn't look promising, but again, coming from virustotal alone doesn't mean a whole lot and in addition it's also analysing an obfuscated file which is bound to make false positive detections. I also want to point out that no other antivirus program detects the file as anything suspicious, not malwarebytes, hitmanpro or kaspersky. In fact, none of my subscription programs detected it as potentially harmful until I ran a scheduled ESET security scan last night which instantly detected the file - also want to mention that I ran daily scheduled scans on ESET, none of which detected it as anything potentially harmful up until the one last night. Virustotal scan results: https://www.virustotal.com/gui/file/09430fa20aac3815ba456f4644f41b41073d4994e538797c172c10a19f825b35?nocache=1 Thank you very much for your help everyone!
×
×
  • Create New...