Здравствуйте форумчане, подскажите, может кто знает как справиться с алертом такого вида?
клоака по типу прети линка и тд нужны, или доверенность файлу.Здравствуйте форумчане, подскажите, может кто знает как справиться с алертом такого вида?
Посмотреть вложение 85114
без архива, да.без архива. сразу ехе?


What is your TG1.- Build a container using something like this tool: https://github.com/mgeeky/PackMyPayload
There are many GUI open source tools that can build containers that need to be mounted like mkisofs an many others.
Note: Container = .iso/.img
2.- Store your container on any of the following living on the network projects.
https://lots-project.com/
Github, Dropbox, whatever you want to test.
3.- I work with clean payloads on static & runtime analysis I don't know about malware detected on static.
4.- After that Edge, Chrome would not detect your payload/malware as malicious. It will be a clean download.
Unsigned executables .exe, can bypass google chrome alerts with that method. But Microsoft Edge will flag as malicious.
Is always better to stay away from executables, DLLs are stealthier than them. I personally recommend using them + DLL sideloading.
Happy hacking!
PD: A very cool feature for MOTW mark evasion. Use with love
-
1. Create a container using something like this tool: https://github.com/mgeeky/PackMyPayload
There are many open source tools with a GUI that can create containers that need to be mounted, like mkisofs and many others.
Note: Container = .iso/.img.
2.- Save your container in any of the following network projects.
https://lots-project.com/
Github, Dropbox - whatever you want to test.
3.- I work with clean payloads in static and runtime analysis. I am not aware of any malware found in the statics.
4.- After this, Edge Chrome will not detect your payload/malware as malicious. It will be a clean download.
Unsigned .exe files can bypass Google Chrome warnings using this method. But Microsoft Edge will flag it as malicious.
It's always better to stay away from executables, DLLs are more stealthy than that. Personally I recommend using them + sideloading DLLs.
Happy hacking!
P.D.: Very cool feature for the MOTW brand. Use with love
Посмотреть вложение 85231