Selasa, 14 Agustus 2012

What is Crypter

Crypter is  software to  Bypass Security used to hide our viruses, RATs or any keylogger from antiviruses so that they are not detected and deleted by antiviruses. Thus, a crypter is a program that allow users to crypt the source code of their program. Generally, antivirus They typically look on the binary instructions and dependencies that are declared by the software. If their combination is risky then the heuristic alarm will be triggered.



How does a FUD crypter work?
The cryptor takes the Origial binary file of your exe and applies many encryptions on it then stores it on the ''end of file'' (EOF) ,.. so that a new encrypted executable file is created. In computing, EOF is a condition where no more data can be read from a data source.

Below is a simple diagram on FUD encryption;

As you can see from the above illustration, the new .exe file (encrypted) file can not be detected by antivirus be its Original code has been scrambled by the FUD crypter. When executed, the new .exe file decrypts its binary code into small portions of data at a time and injects them into another already existing process or it drops the code into multiple chunks in alternative data streams (rarely scanned by antivirus software) then executes it as a .txt or mp3 file.

Why Most FUD Crypters dont Work?
As a FUD crypter becomes popular, it also gains too much attention from Antivirus companies. The Antivirus software will be updated regulary and may include new detection mechanism that will easily detect any encryptions made by the crypter.

Where to Test whether your crypter is FUD or not?
If you want to test wheather your crypter is FUD or not, go to  http://scanner.novirusthanks.org and dont forget to check the box ''Do not distribut the sample''

Note:-Do not test your crypter on http://virustotal.com as it distributes the samples and your crypter will not remain FUD if you scan with virustotal.

Where to get a free FUD crypter?

its hard to find a 100% FUD crypter, because of the constant update in antivirus detection mechanisms. But just incase you get your hands on a latest FUD crypter If you followed FreeHackTools.Com you will find the best

0 komentar:

Posting Komentar