22 July, 2012

Learn more about Crypters!

Hello everyone!

This is my new tutorial for CoderTrick, its noob friendly! Well you going to learn more about Crypter-stub connection. It's really easy & basic, but some people asking how they work. That's why I made this tutorial, lets start Cool

What's Crypter?

Crypter's are programs used to encrypt your virus server and make it FUD from Anti-Virus software's. You can find many free crypter's, here on HackForums that are FUD. Crypter's can be coded in different programming languages: Visual Basic .NET, Visual Basic 2006, Delphi, C++ etc.

Crypters works something like this:

You open Crypter.exe, then choose Server and then click crypt button.

What do I need to know about crypter?

Well, very important thing about crypter is Stub. Stub must be in same folder with crypter or it won't crypt it.

I Builder - Crypters builder is used to encrypt the selected file. Some crypters can be Runtime and some Scantime only. Runtime FUD are Fully Undetected from Anti-Viruses when you run the crypted server and AV doesn't detects. Scantime is when you scan it with Anti-Virus. Smile

II Stub - Crypters builder use Stub to encrypt & split builders data with stub and make new FUD-ed file.

III EOF - EOF aka. End-Of-File support means that your crypter can work with End-Of-File server's. Some server's will just crash or won't work when you crypt and if your crypter doesn't support EOF it won't end the terminal unless End-Of-File ends it.

IV Scantime - Scantime crypter is crypter that is FUD from all Anti-Viruses when you scan it. But it will be detected when you execute crypted scantime server, so its important to have RunPe module (read down).

V Runtime - Runtime crypter is crypter that is FUD when you execute your crypted file. Runtime crypter use RunPe module, which inject your Virus with some process from TaskMangr and make it fully un-visible from TaskManager process list.

Encryption Algorithms?

This is list of famous Encryption algorithms & encrypted text example:

  • RC4 - 07 B3 44 70 A9 EC 18 8A 15 F3 95
  • TEA - T)’1c â&Ý7| nÄòäœP›Ûw z\ËւLE–í1ûZ mGJžŠ$U [ñÃÏn
  • DES - � "Hɼ��L�/�V ����ȵ�z�
  • XOR - 8b2f56c9ab1fd6cf17e590706f35bae4a3d083fceb0423a311
  • BlowFish - U�9 m9�Nkm��f;/�~��D��
  • TwoFish - ��}q �� MlH m*�# �{ MDr*|_��

Tips & Suggestions

You bought FUD private crypter. You want to stay FUD for long time, then you will need to:

- Scan on NoVirusThanks.org only and make sure you checked Do not distribute the sample and then start with scan.

- Do not share your crypter with anyone or release it to public.

- Do not scan on Virustotal.com ~ Why? Well, Virustotal send every file you scan to AV companies and that will make your crypter UD.

- Do Not Scan on virusscan.jotti.org ~ Why? Same reason, they also distribute a sample.

Labels:

0 Comments:

Post a Comment

Subscribe to Post Comments [Atom]

<< Home