Home Page › Forums › General Chat › TROJAN FOUND IN A POST! DO NOT DOWNLOAD
- This topic has 21 replies, 10 voices, and was last updated 3 years, 9 months ago by
InverseKinematics.
-
AuthorPosts
-
December 31, 2022 at 1:08 PM #1908122
TROJAN FILE FOUND IN https://zonegfx.com/p3d-robin-hd-for-genesis-8-female/ this file. Do not download it
December 31, 2022 at 1:47 PM #1908130Anonymous
InactiveRank:
December 31, 2022 at 2:21 PM #1908140They get all their content from here, why do they spike their files like this?
December 31, 2022 at 3:19 PM #1908156So what is in this file exactly?
Links to shit sites? A trojan?
Can we be more specific here please.December 31, 2022 at 3:34 PM #1908161@legolas18 Surface assertion.
A rich collection of viruses is identified.
Does anyone know why this post is still on the blog and available for download?
@hunter ?https://www.virustotal.com/gui/file/4821b4f601e2fdf33eb1e7034d0427c4c59e45ce112aec20fbf40e3543acc734
IM00071371-01_P3DRobinHDforGenesis8Female.zip\Content\Runtime\Textures\!P3D\Robin\P3DRobinFaceL09_1001.jpg
https://www.virustotal.com/gui/file/dd680d5da0b59455aa4fa7dda2df89661f0e72560b602454f999669ef5e25c7dAnd further
IM00071371-01_P3DRobinHDforGenesis8Female.zip\Content\data\DAZ 3D\Genesis 8\Female\Morphs\P3Design\Robin\CTRLP3DRobinHDLv5.dsf
https://www.virustotal.com/gui/file/dd680d5da0b59455aa4fa7dda2df89661f0e72560b602454f999669ef5e25c7dNote the fixed check date, someone already scanned this four months ago
2022-08-29 04:39:41 UTC 4 months agoDecember 31, 2022 at 5:51 PM #1908195Thanks for the clarification @normand
December 31, 2022 at 6:12 PM #1908203@legolas18
I just downloaded the character elswhere and I'm getting the same results as @normand. So what do you think is going on here? I scanned the entire Zip BTW.December 31, 2022 at 6:21 PM #1908208Thanks for the heads up. So what's going on with the OP's files if they say they downloaded them here?? Getting a little confusing now if the OP doesn't come back to verify this.
December 31, 2022 at 6:26 PM #1908209@legolas18 Does the degree of infection (covid or flu) matter in this case?
I downloaded from this first link
https://drive.google.com/file/d/11_h2lrzJIzqYvzF_gjLI5h-SLIyaoq6-/viewhttps://www.virustotal.com/gui/file/09e7d5e0d7a4d14a113c3b8123aeda5f9a869a4c6b7abd13a31aacca91830ae9
91.49 MB
Size
2022-05-12 01:33:04 UTC 7 months agoDecember 31, 2022 at 6:32 PM #1908211Are you using a good AV or the modern false positive AV 😛
I say this tongue-in-cheek because of the complaints i see on various 3D app GFX sites. It appears we have a band of infectious actors installing mining software into files and uploading them.December 31, 2022 at 6:38 PM #1908214Sounds like you have K.I.S.
If so it's the best IMO. Like you said it removes files right after they've downloaded to avoid infection.
December 31, 2022 at 6:39 PM #1908216P3D Robin HD for Genesis 8 Female.rar\IM00071371-01_P3DRobinHDforGenesis8Female.zip\Content\Runtime\Textures\!P3D\Robin\P3DRobinFaceL09_1001.jpg
Result description: Detected
Type: Trojan
Name: UDS:Trojan.Win32.Generic--------------------------------------------------------------------------
P3D Robin HD for Genesis 8 Female.rar//IM00071371-01_P3DRobinHDforGenesis8Female.zip//Content/data/DAZ 3D/Genesis 8/Female/Morphs/P3Design/Robin/CTRLP3DRobinHDLv5.dsf//
Result: Detected
Result description: Detected
Type: Trojan
Name: HEUR:Trojan.Win32.GenericThose are my results. Never seen a trojan in a .jpg before. Weird.
December 31, 2022 at 6:40 PM #1908217Perhaps there's a chance of the OP vaccinating the files and re-upping them.
@ulysses
Neither have I. It appears to be old school Hex Editing that can do this.December 31, 2022 at 6:40 PM #1908218here, probably, the warhead of these files
Names
P3DRobinFaceL09_1001.jpg
CTRLP3DRobinHDLv5.dsf
PPro2014Kg.exe
Fiore Ear.dsf
ppro2014kg.exe
BWM Chest Wide-R.dsf
setup.exe
PPro2014Kg.exe.!ut
file-5954188_exe
PPro2014Kg.exe1December 31, 2022 at 6:45 PM #1908219I just deleted the file. I cannot be bothered vaccinating it even in a sandbox.
-
AuthorPosts
- You must be logged in to reply to this topic.

