• XSS.stack #1 – первый литературный журнал от юзеров форума

Smartscreen Bypass?

GGHTC

RAM
Забанен
Регистрация
30.04.2023
Сообщения
127
Реакции
8
Пожалуйста, обратите внимание, что пользователь заблокирован
Hi, i have coded some Malware and there are now 0/26 on antiscan.me and Fud by runtime, tested with WD. MalwareBytes and McAfee.

It also bypasses the Browser scan.

Does anyone know, how i can bypass the windows smartsceen as a exe file??
 
Hi, i have coded some Malware and there are now 0/26 on antiscan.me and Fud by runtime, tested with WD. MalwareBytes and McAfee.

It also bypasses the Browser scan.

Does anyone know, how i can bypass the windows smartsceen as a exe file??
Like the person above mentioned.

Even if the file is FUD, downloading from the internet will add the MOTW by default, so you will need a valid trusted signing certificate to bypass the warning.

The other alternative is to use a legit trusted application already installed in the machine(LOLBINS) to execute your .exe(or .dll), like for example windows shortcuts, using a trusted signed application as parent process. Just send it hidden in a ISO/IMG container or zip file.

Even now showing the MOTW warning, the file will not be blocked by Smartscreen. It's all about the certificate actually, if your payload is clean.
 
Последнее редактирование:


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх