• XSS.stack #1 – первый литературный журнал от юзеров форума

How To Bypass Windows UAC?

Пожалуйста, обратите внимание, что пользователь заблокирован
Hi everyone, I made a RAT in c++ that bypass all the anti viruses in VirusTotal.
but when the victim installs the RAT the UAC tell him that the publisher is not recognized.
how can I bypass it?
Any mass-spreading and your file will be red, also you should check it on Dyncheck
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Да ну, в UACME есть методы, которые работают везде. По крайней мере, в 1909 проверял последний раз, работало.
Или в 2020 году майкрософт выпустил принципиально новый анти-юак?
 
Ссылки кидать не буду, но на гитхабе полным полно свежих эксплоитов под UAC, есть даже универсальные начиная от 7 до 10 и вообще на любые задачи. И это не говоря про UACME
 
Your trojan probably bypassed them scantime, nowdays it isn't so easy to keep your code runtime FUD, you can crypt with any crypter you wan't, but it will be runtime detected, you need mutate your code.
My trojan bypassed the windows defender also in runtime.
 
My trojan bypassed the windows defender also in runtime.
Windows Defender is easy to bypass, my bot bypasses it too, I only need to change few strings to make it FUD again, I would say it's the worst antivirus, for example I only needed to change domain in bot configuration to FUD it again sometimes runtime, I have added some junk code wich I mutate every 3 days and my bot stays FUD.

Try: NOD32, it's the worst to FUD again.
 
Windows Defender is easy to bypass, my bot bypasses it too, I only need to change few strings to make it FUD again, I would say it's the worst antivirus, for example I only needed to change domain in bot configuration to FUD it again sometimes runtime, I have added some junk code wich I mutate every 3 days and my bot stays FUD.

Try: NOD32, it's the worst to FUD again.

If you really want to test your code against runtime detections try against EDR products (Kaspersky, TrendMicro OfficeScan, Symantec Endpoint Protection)
You will see what hell on earth is.
 
Пожалуйста, обратите внимание, что пользователь заблокирован
притвориться эксплорером и использовать elevated com
Скрытый контент для пользователей: dyadka0220.
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх