• XSS.stack #1 – первый литературный журнал от юзеров форума

FUD cobalt strike possible? $ $ $

SpashiBoRu

CD-диск
Пользователь
Регистрация
04.07.2021
Сообщения
11
Реакции
0
Spent 2 days waisting my time and 500$ with member 'wav'

Telling me he crypted my cobalt strike FUD but not even google chrome can download the file it says 'Virus Detected'

Keeps saying its FUD why im waisting time on idiots?

Now

500$ in guarantor Escrow on xss.pro I provide Cobalt strike Payload you crypt admin verify it can bypass chrome/firefox/windows/defender 100% FUD we have deal i release garantor

Bye
 
Spent 2 days waisting my time and 500$ with member 'wav'

Telling me he crypted my cobalt strike FUD but not even google chrome can download the file it says 'Virus Detected'

Keeps saying its FUD why im waisting time on idiots?

Now

500$ in guarantor Escrow on xss.pro I provide Cobalt strike Payload you crypt admin verify it can bypass chrome/firefox/windows/defender 100% FUD we have deal i release garantor

Bye
https://xssforum7mmh3n56inuf2h73hvhnzobi7h2ytb3gvklrfqm7ut3xdnyd.onion/threads/53624/
 
why spend when public?

 
Пожалуйста, обратите внимание, что пользователь заблокирован
Does it bypass windows defender and chrome download?

chrome virus alert has nothing to do with AV detections, when chrome detects a new file hash it automatically marks it as potentially unsafe. after several downloads from people marking it as safe it goes off.
 
chrome virus alert has nothing to do with AV detections, when chrome detects a new file hash it automatically marks it as potentially unsafe. after several downloads from people marking it as safe it goes off.
Can't you change the hash of a file? It's that it says Virus detected it's not the dangerous warning where yo u can select keep.
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Can't you change the hash of a file? It's that it says Virus detected it's not the dangerous warning where yo u can select keep.

bind it with something else. or if you have several RDPs/proxies "tell" google its safe by marking it as safe on several devices.
 
Code custom loader, use encryption for payload and run time encryption-decryption for strings such as functions etc, use bootstraping, try to create anti-sandbox and anti-debug feature for your custom loader, or just make your own C2 and don't go public with it. Custom code = 100% FUD until you spread it to others. Also you can't make something that will bypass all AV's its impossible to do it. Always after getting a foothold you should try adding .exe extension to exclusions on AV's, disable auto-sampling and let it run :)
 
Флуд почистил.
Если есть претензии к заказчику/исполнителю - пишите нормальный арбитраж.
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх