Página 1 de 1

Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 08:07
por legionpr
bueno esta ves le traigo otra mod que hice al Skull Crypter v3 quedo bastante bien ya que el stub estaba quemadito espero que les guste la mod dentro del la carpeta hay un txt que contiene la informacion del stub leer importante saludos


Imagen




ANTES



File Info

Report generated: 28.9.2009 at 8.00.48 (GMT 1)
Filename: stubORIGI.exe
File size: 36 KB
MD5 Hash: 8341c1727c25497926177b2e2a8c0438
SHA1 Hash: E1FAADC5244369628F030933DE698453AEF6FC7B
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 18 on 23

Detections

a-squared - Riskware.Win32.VBInject!IK
Avira AntiVir - BDS/Poison.alat
Avast - Win32:Trojan-gen {Other}
AVG - VB.JKW
BitDefender - Gen:Trojan.Heur.PT.cm0@biT@fnp
ClamAV - Trojan.Poison-67
Comodo - -Nothing Found!
Dr.Web - BackDoor.Poison.686
Ewido - -Nothing Found!
F-PROT6 - -Nothing Found!
Ikarus T3 - VirTool.Win32.VBInject
Kaspersky - Backdoor.Win32.Poison.amer
McAfee - Generic VB.c trojan
NOD32 v3 - Win32/Bifrose.NSN
Norman - Backdoor W32/PoisonIvy.dam
Panda - Bck/Poison.F
QuickHeal - Backdoor.Poison.alat
Solo Antivirus - Backdoor.Poison.Alat
Sophos - Troj/Poison-BI
TrendMicro - -Nothing Found!
VBA32 - Backdoor.Win32.Poison.alat
VirusBuster - Backdoor.Poison.OQG
ZonerAntivirus - -Nothing Found!

Scan report generated by
[Enlace externo eliminado para invitados]




AHORA PI2.3.2



File Info

Report generated: 28.9.2009 at 8.01.50 (GMT 1)
Filename: SERVERPI2.3.2.exe
File size: 42 KB
MD5 Hash: 1f43fdc081f758fcb07cc31191eaed21
SHA1 Hash: CC8C7FA7997F15483B28BE818457304B6EEFED6B
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 0 on 23

Detections

a-squared - -Nothing Found!
Avira AntiVir - -Nothing Found!
Avast - -Nothing Found!
AVG - -Nothing Found!
BitDefender - -Nothing Found!
ClamAV - -Nothing Found!
Comodo - -Nothing Found!
Dr.Web - -Nothing Found!
Ewido - -Nothing Found!
F-PROT6 - -Nothing Found!
Ikarus T3 - -Nothing Found!
Kaspersky - -Nothing Found!
McAfee - -Nothing Found!
NOD32 v3 - -Nothing Found!
Norman - -Nothing Found!
Panda - -Nothing Found!
QuickHeal - Suspicious
Solo Antivirus - -Nothing Found!
Sophos - -Nothing Found!
TrendMicro - -Nothing Found!
VBA32 - -Nothing Found!
VirusBuster - -Nothing Found!
ZonerAntivirus - -Nothing Found!

Scan report generated by
[Enlace externo eliminado para invitados]




AHORA Bifrost v1.21



File Info

Report generated: 28.9.2009 at 8.01.49 (GMT 1)
Filename: serverBifrostv1.21.exe
File size: 64 KB
MD5 Hash: dd38dc138ab7f4860601b70c00135f6d
SHA1 Hash: 7B756885ADC5DD75854A2168D71E548B090F0818
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 0 on 23

Detections

a-squared - -Nothing Found!
Avira AntiVir - -Nothing Found!
Avast - -Nothing Found!
AVG - -Nothing Found!
BitDefender - -Nothing Found!
ClamAV - -Nothing Found!
Comodo - -Nothing Found!
Dr.Web - -Nothing Found!
Ewido - -Nothing Found!
F-PROT6 - -Nothing Found!
Ikarus T3 - -Nothing Found!
Kaspersky - -Nothing Found!
McAfee - -Nothing Found!
NOD32 v3 - -Nothing Found!
Norman - -Nothing Found!
Panda - -Nothing Found!
QuickHeal - Suspicious
Solo Antivirus - -Nothing Found!
Sophos - -Nothing Found!
TrendMicro - -Nothing Found!
VBA32 - -Nothing Found!
VirusBuster - -Nothing Found!
ZonerAntivirus - -Nothing Found!

Scan report generated by
[Enlace externo eliminado para invitados]





AHORA Spy-Net [RAT] v1.7




File Info

Report generated: 28.9.2009 at 8.31.03 (GMT 1)
Filename: Spynet v1.7-Server.exe
File size: 238 KB
MD5 Hash: c325d7190482dc38f3e374ae59173db6
SHA1 Hash: E944AA333DD982F093773958F781979F1280C999
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 0 on 23

Detections

a-squared - -Nothing Found!
Avira AntiVir - -Nothing Found!
Avast - -Nothing Found!
AVG - -Nothing Found!
BitDefender - -Nothing Found!
ClamAV - -Nothing Found!
Comodo - -Nothing Found!
Dr.Web - -Nothing Found!
Ewido - -Nothing Found!
F-PROT6 - -Nothing Found!
Ikarus T3 - -Nothing Found!
Kaspersky - -Nothing Found!
McAfee - -Nothing Found!
NOD32 v3 - -Nothing Found!
Norman - -Nothing Found!
Panda - -Nothing Found!
QuickHeal - Suspicious
Solo Antivirus - -Nothing Found!
Sophos - -Nothing Found!
TrendMicro - -Nothing Found!
VBA32 - -Nothing Found!
VirusBuster - -Nothing Found!
ZonerAntivirus - -Nothing Found!

Scan report generated by
[Enlace externo eliminado para invitados]



[Enlace externo eliminado para invitados]


Pass:indetectables.net

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 10:42
por spyder3
un super 10 como siempre

por cierto una vez encriptado yo no tube problem con el avast como pones en el readme

File Info

Report generated: 28.9.2009 at 11.27.26 (GMT 1)
Filename: server.exe
File size: 49 KB
MD5 Hash: 652bcfab8b38adea20ffeb65fbbf81b0
SHA1 Hash: 4E519D82EE7E7A679305C80A5CA67B5D73B38F28
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 1 on 23

Detections

a-squared - -
Avira AntiVir - -
Avast - -
AVG - -
BitDefender - -
ClamAV - -
Comodo - -
Dr.Web - -
Ewido - -
F-PROT6 - -
Ikarus T3 - -
Kaspersky - -
McAfee - -
NOD32 v3 - -
Norman - -
Panda - -
QuickHeal - Suspicious
Solo Antivirus - -
Sophos - -
TrendMicro - -
VBA32 - -
VirusBuster - -
ZonerAntivirus - -

Scan report generated by
[Enlace externo eliminado para invitados]


salu2

pd.32 bajadas y donde estan los agradecimientos

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 11:40
por dani14sev
ola mira se que esto no va aqui pero es que soy nuevo y toy intentando aprender a cambiar eso que dices del offset entonces pues haber si me podrias decir algun sitio donde epliquen como utilizar el editor es que dices que con spynet ir al offset 73400 y lo abro con el editor y me llega solo al 4001E aber si me puedes ayudar porfavor
de todas foras si no puedes pues muchas gracias pr el cripter

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 12:48
por rdnmlln
Tío eres un Crack!
Una mod de lujo

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 12:58
por polifemo
legionpr.... Un kapo...

Muy buena mod...

Saludos y muchas gracias bro

PD: dani14sev... offset 73400 esta en escala (decimal) y 4001E (por ejemplo) está en escala(Hexadecimal)... busca en el menú de tu Editor Hexadecimal que tiene un lugar donde cambiar la escala... Y por favor , las preguntas en la sección de Dudas y Preguntas

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 14:48
por Bonezinho
Muito bom, parabéns!!

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 19:10
por br1
Re piola kpo
muy buena MoD
gracias compañero!!
saludos

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 19:39
por deck
legion anda q me avisas jajajaj buena mod bro :)

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 19:46
por SoyLey3Nd4
una maravilla xD

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 19:59
por depuniet
buenisima!!!!!

pd: viva la cantera!!

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 20:54
por jorditribo
Alguien lo subio a virustotal y ahora lo detectan 7 antivirus

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 28 Sep 2009, 21:07
por espatarramonjas
ke bueno amigo
verde ke te kiro verde

saludos

Re: Skull Crypter v3 {M0D By L3GIONPR [[[ FUD]]]}

Publicado: 29 Sep 2009, 00:20
por Dj_Asim
hi and thanks for this crypter.. long time ago ive visited this site and posted :D i will start soon to mod more crypters.. anyway

the stub is detected because of : "text" and "data" string.. just do "TEXT" and "DATA" but no need because Crypted.exe = FUD

File Info

Report generated: 29.9.2009 at 1.08.21 (GMT 1)
Filename: project2.exe
File size: 52 KB
MD5 Hash: 4d647d252ad3ddd903306a844699c993
SHA1 Hash: 97D1049D9BF79364DC6ED1100F8FB827BD30F9CE
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 1 on 23

Detections

a-squared - -
Avira AntiVir - -
Avast - -
AVG - -
BitDefender - -
ClamAV - -
Comodo - -
Dr.Web - -
Ewido - -
F-PROT6 - -
Ikarus T3 - -
Kaspersky - -
McAfee - -
NOD32 v3 - -
Norman - -
Panda - -
QuickHeal - Suspicious
Solo Antivirus - -
Sophos - -
TrendMicro - -
VBA32 - -
VirusBuster - -
ZonerAntivirus - -

Scan report generated by
[Enlace externo eliminado para invitados]



Gracias