We Recommend

Click here to Vote!

Sunday, June 27, 2010

flAming Crypter v1.0 by flAmingw0rm + Stub Update(19-05-10)

Hello,

I am releasing a free FUD (Runtime+Scantime) crypter made it VB.NET. Before saying it doesn't work, make sure to check if you have installed .NET framework on your computer. I'd like to say thanks to t0fx, the design of crypter, souce code and RunPE are made by him. I just edited some things and added EOF support.



Features:
- File Crypter (FUD Runtime+Scantime in Windows XP, Vista, 7)
- File Binder
- File Cloner
- Icon Changer
- EOF (End Of File)
- File Pumper
- Custom Injection
- 2 Different encryptions (RC4, TripleDES)
- Anti's ( Anti-Sandboxie, Anti-Ollydbg and more... )

Note: Do not move any files in the folder, just let it as it is.

Note: To change the icon successfully do the following:
1. Tick the box, choose your icon.
2. Untick the box, crypt it.
3. Now, drag your crypt server out of the folder and rename it, your icon should change.


LAST UPDATE
5/19/2010 - New Stub [FUD - 0/20]

Report date: 2010-05-19 20:51:20 (GMT 1)
Detection rate: 0 on 20 (0%)
Status: CLEAN


Instructions: Copy the file and paste it in the folder called 'res' in the crypter folder. Example C:\Program Files\flAming Crypter\res\replace in this folder.


Once again, I would like to say thanks to t0fx for the great crypter. He wrote the RunPE himself, the source code and design!

Tuesday, June 22, 2010

CyberEye-RAT 1.0

Hello, there is new version of CyberEye-RAT
->Estimated Date for New Version: ~23-26 June 2010

Features
[*] Screen capture
[*] Webcam capture
[*] Offline keylogger(even logs clipboard chance & visual keyboard)
[*] Semi-Automatic online keylogger
[*] Very Advanced File manager & transfer Manager
[*] instant messenger(chat window) between client & Server
[*] Talking engine(it will read with sound what do you write)
[*] (clipboard & keyboard) manager
[*] Mouse manager
[*] windows color & resolution chance
[*] Setting & gettin remote computers Date/time
[*] Turn off & Restart & log-off computer
[*] wide Fun manager
[*] view installed applications & unistall & delete regs
[*] internet explorer manager(visited websites ,open page, change home page)
[*] Taking private note for server(stores in Remote computer)
[*] Active Cpu and RAM Monitor (semi-auto)
[*] Remote shell manager(same as Run\Cmd)
[*] Process manager
[*] Application manager
[*] Services Manager
[*] Registry Manager
[*] Visible Messages With Windows APIs(for eg:error, information, warning kind messages)
[*] Server information
[*] computer information
[*] Chance Dns/IP
[*] Chance Server Nick
[*] ping Server
[*] close/ unistall server
[+] first execution date
[+] webcam aviable or not
[+] Mark servers (6 different color OR Flag)
Server size: 170 kb

Image Hosted by ImageShack.us

Image Hosted by ImageShack.us

Image Hosted by ImageShack.us


Monday, June 21, 2010

Emissary Keylogger v3B Public by The 7th Sage



-> Pidgin Stealer had some error. *Fixed*

-> Keylogs were fucked up if the victim typed fast. Fixed by changing the whole keylogging method.
Now its 5times more efficient than the previous keylogging method.

-> Previous logs were being attached to new ones. Fixed that one too.

-> If Email didn't work the ftp stopped working. A little change in try catch position here and there Fixed. Now you can use either one of them or both.

-> Added 2 Stub types. Admin and Non Admin Stub. Admin Stubs gives full power to the logger etc etc.

-> Stub size Reduced significantly from previous versions.

==If you want the keylogger to have full control of the system use this stub==

1) Copy Admin Stub and keep it with Keylogger v3.exe
2) Build Server like you usually do.

****Flaw of Admin Stub****

1) Will force admin if the victim has admin rights, else it will quit.
So unless you are sure or don't care about it use the admin stub.

****Benefit of Admin Stub****

1) It will give full power to the keylogger and the keylogger can exploit the system
without any limitation.

2) Disable options will work properly on a system with Win7 OS and UAC on.

==Non Admin Stub for no Disable Options on Win7 with UAC==

1) Same usage as admin stub.

**Flaw Of Non Admin Stub**

1) Not able to exploit a system completely with UAC on.

2) Disable options will not work with UAC on.

3) Has trouble bypassing antivirus in some cases.

**Benefit of Non Admin Stub**

1) Doesn't need admin rights to execute.

2) Will still send logs even if user doesn't have Admin or even if UAC is on.

Friday, June 18, 2010

iStealer Legends v6.3 by Kizar

The newest reincarnation of Kizar's infamous iStealer

Anti-Detection Methods:
Anti VirtualPC/VMWare Emulator
Anti Wire-Shark Sniffer
Anti Ollydbg Debugger
Anti Procmon Moniter
Melt (Deletes server after running)

Recovery Options:
MSN Messenger (7.xx 8.xx 9.xx)
Google Talk
Trillian
Pidgin/Gaim
Paltalk Scene
Steam
No-IP
DynDNS
Firefox (2.xx 3.xx 3.5x)
Internet Explorer (7.xx 8.xx)
Google Chrome
Opera
Internet Download Manager (IDM)
FileZilla
FlashFXP
SmartFTP
CuteFTP (Pro, Home, Lite)



bl0b Exebinder 0.2.0 & Unique Stub Generator 0.3.0 by pr!ngles[100% FUD]

bl0b Builder Features
-- Unlimited Files
-- Drop to Windir, Sysdir, AppData or Temp





- USG 0.3.0 Features
-- Random File Names
-- Random File Information
-- Random Var Names
-- Random Function Names
-- Encrypt Strings *RC4+StringToHex*
-- Add Random number of Fake Functions before Sub main
-- Randomize Function Positions
-- Custom Trash Code
------ Many Trash Options
------ Jump over Trashcode
------ 1-20 Trash Lines / Code Line
-- Add Modules
------ Min/max
------ Add Fake Functions
-----------Min/max
-----------Add Trash code into them
------------------Min/max / Line
------ Add Fake Apis
-- P-Code or Native

iCrypt v1 Mod by Abronsius

A simple mod of icrypt to obtain a light crypter and for the pleasure of gui lovers...

Thx to omc for providing the source.



NovaLite II v2.6--June 7th release by omc

This is a lite rat with some great basic features. It's compatible with all OS (even 64 bit) and it is easy to use.
Server size is 91k unpacked.
Developed in Delphi



Uploaded with ImageShack.us

Some but not all features include:
) Unlimited connects
) UAC workaround
) Cryptable server
) File manager w/upload and download/Run (show process)
) Screen capture with quality control/ stretch or full screen--save option
) URL download and run..... w/ broadcast to all if selected
) Window/Process/Registry and service managers
) remote shell
) System and Server information
) Keylogger (offline)
) Update Server

Whats New in V2.1:

) Save last builder setting
) Auto listen on startup
) View download url progress
) Mouse Clicks
) Keyboard Press

Whats new in V2.5:
) bug fixes
) offline key logger (with save as txt)
) Persistence
) update server via URL
) Faster screen capture

Whats new in V2.6:
) Bug fixes
) Auto ping remove dead servers


This is the same as NovaLite Pro, only it has Browser Passwords feature removed.

BCP, Binder/Crypter/Packer by SqUeEzEr

BCP is a new free FUD crypter, binder and packer by the coder SqUeEzEr.

Features:
-Bind up to 6 .exe files
-Fast compression and decompression with native api's RtlCompressBuffer and RtlDeCompressBuffer
-Dynamical api calling
-Various anti methods against Olly, Anubis, VmWare, VirtualPc, HideDebugger, Qemu, Sandboxie and other generic debuggers.
-Stub updating technique. The stub can be updated, without having to download a new builder!
-Eof preserve, obviously. (of only the first file in the bind list)
-Inventive way to bypass Avira Tr.Dropper/Gen!
-Very user-friendly interface.
-Stub size ~28kb unpacked!




Monday, June 14, 2010

GNY.Shell with safe mode off exploit

GNY.SHELL WITH AUTOMATIC SAFE MODE OFF



* Increased speed of the shell by optimised code.
* Cleaned up some buggy code.
* Newest private release from the GNY crew
* Automatically tries all known public safe_mode exploits, and tries to turn it OFF!
* The best shell used by professional hackers

Sunday, June 13, 2010

iSimple Keylogger & Stealer Version 1.5.01 by F R E S H






**CREDITS**
nirsoft.net
newbie223

---------------------------

Features:

**Stealers**
Internet Explora (v4.0 above)
Mozilla FireFox
Google Chrome
Opera

MSN Messenger
Windows Messenger (In Windows XP)
Windows Live Messenger (In Windows XP/Vista/7)
Yahoo Messenger (Versions 5.x and 6.x)
Google Talk
ICQ Lite 4.x/5.x/2003
AOL Instant Messenger v4.6 or below, AIM 6.x, and AIM Pro.
Trillian
Trillian Astra
Miranda
GAIM/Pidgin
MySpace IM
PaltalkScene
Digsby

Microsoft Office (2003, 2007)
Windows XP, Vista, 7 and ect...

**Other**

etes IE History
Deletes IE Cookies
Deletes IE Cache
Deletes FF Cookies
Deletes FF Cache
Deletes FF Sign-ons
Deletes Steam Login
Deltes WOW Cache

Disables CMD
Disables Registry Edit
Disables Task manager
Disables Firewall

USB Spread
Kills Antis
Adds to System Start up

---------------------------

Coded: VB.net
Uses: Keybord Hooks

By: F R E S H

Biohazard Keylogger v1.0 by Vipermakd



Saturday, June 12, 2010

How to setup Zeus Bot WITH Pictures

This Tutorial is for education purposes ONLY and I am NOT responsible in any way on how you use the information provided and what you do with the files.
Thank you and enjoy reading.


First of all I want to tell you that ZeuS Bot is the most illegal bot out there. It is a bot that connects to a HTTP webhost and not to a IRC channel or a PC. It is highly illegal as it is considered as a banking trojan as it logs every internet activity to a database. Well lets sta rt.

Step 1:

First of all you need offshore hosting, preferably bulletproof. The best i've found so far is SANTREX and VieFireHosting.
For VieFireHosting use this coupon provided by Nima304 which will get you a 50% Discount

Coupon Code:
X234A

Sign up, preferably with a domain. Think of a domain that is not easily tracked though if possible.

After that get the files needed. The files come with a black instead of blue theme, I editted the .css myself because I was bored.

Image and video hosting by TinyPic


Step 2:

Uploading the files.

1. Go and login into your CPanel X.
Image and video hosting by TinyPic

2. Go to File Manager.
Image and video hosting by TinyPic

3. Go and create a directory of your choice.
Image and video hosting by TinyPic

4. Upload the upload.zip to the directory created.
Image and video hosting by TinyPic

5. After that extract the files.
Image and video hosting by TinyPic

6. Chmod the directory /install/ and /system/ to 777. Also the whole directory.
Image and video hosting by TinyPic

Step 3:

Creating the Database.

1. Go to MySQL Databases in your CPanel.
Image and video hosting by TinyPic

2. Create a database and write the name down.
Hosted by imgur.com

3. Add new user and write the details down.
Hosted by imgur.com

4. Now add the created user to the created database. Be sure to select all privileges.
Hosted by imgur.com
Hosted by imgur.com


5. Be sure you have written everything down and move to the next step.

Step 4:

Installing the panel.

1. Navigate to the directory you created and got to /directory/install/. A Panel installer should appear.
Hosted by imageshack.us

2. What to enter:
Username: Enter the default username which you will use when logging in.
Password: Your password when logging in. Make it strong.
MySQL server:
Host: "localhost"
User: Your database user created before.
Password: Your database password created for the user.
Database: The database name.

Online bot timeout: Leave it as it is.
Encryption key use something VERY strong.

Then Click Install.
Hosted by imageshack.us


Step 5:

Making the bot.

1. Navigate to your ZeuS files and open config.txt
Replace the link where it says with your link. Also the encryption key you used before.
Hosted by imageshack.us

2. Open the zsb.exe
The builder also has a remover so if you test your server on your own pc you can just remove it with a mouse click.
Click on Builder.
Hosted by imageshack.us

Then click on Build Config. Save the file.
Click Build Loader. Save the file.
Hosted by imageshack.us
Hosted by imageshack.us
Hosted by imageshack.us
Hosted by imageshack.us

Now go and upload cfg.bin and bt.exe to the same directory as the panel.
Also you can delete the /install/ folder since the panel has been installed in the previous step.
Hosted by imageshack.us

In final the directory with Zeus installed should look like this:
Hosted by imageshack.us


Installed! Now a tutorial on how everything works!

Now navigate to the directory where you hav your ZeuS bot panel. Got to /directory/cp.php
A login box like this should be there:
Hosted by imageshack.us

Enter your panel username and password.
if you would like for your browser to keep cookies so that you don't need to login again every time you leave the page check the option.
Click Submit.
Hosted by imageshack.us

So now here is the panel.
Hosted by imageshack.us

1. Shows you the current user
2. Shows you the summary (see green comments)
3. Shows you the OS statistics of the infected bots.
4. You can browse through the bots and and their reports
5. You can browse through the scripts you got. Add/edit them.
6. There you can search trough the reports in the database
7. There you can search through the reports which are most times is txt format.
8. Just random information about your system and stuff.
10. Options. If you change the encryption key the automatically you loose all your bots. You need to make new server and config file with the new encryption key and spread it again.
11. Change your password.
12. Add and manage users.

1. Shows you the number of total reports in database.
2. Shows you the time the first bot came online.
3. Shows you total bots. The number of total pc's infected.
4. Shows you the number of active bots ins the past 24 hours.
5. Shows you the minimal version of bots.
6. Shows you the maximal version of bots.
7. Installs. Every pc which has not been infected with a Zeus bot server before gets on this list.
8. With this buttons you can reset the installs.
9. Shows you how much bots are currently online.
10. Lets you jump to statistics of a botnet.

Fly Crypter v2.3 + Unique Stub Generator 0.7 by BUNN

########################
#Release date: 1/18/2010
#Developed by: BUNNN
#Made in: Romania, Europe
#Gfx by: SpiLoT and Kano
#Credits: Cobein Steve10120 Slayer616 SqUeEzEr :D Who! aka Ap0calypse Darkbreak
#Beta testers: BlackDark Jonhyk Mi4night Mystil Xenon Goblert Peacefull Hero420 #Jumper Krizhiel Y.Xakep
#Developed for: HackHound.org
#
#Leaked by: ExEcuter
##
#Upped to: Digital Gangster . com
##
#Cracked by: The Notorious NOP
##
#Protection: HEX, BASE64, ETC NOOB BULLSHIT. ANY DUBMASS WITH GOOGLE CAN FIGURE THIS SHIT OUT.
# Passwords are always in some gay format like: {NIgGErs}.
# If you really want to see what the secret password was supposed to be, grab
# TEAM RESURRECTiON's modified vbaStrCmp msvbvm60.dlls and check it out.
#
#Release type: Loader
##
#Crack Date: 1/24/2010 (yah i'm lazy)

Image and video hosting by TinyPic

###################################
#CRACK INSTRUCTIONS: (for each exe)
#
# # run loader.
#
# # fuck entering a password. just hit ok.
#
# # wow. it thinks you're a winner.
#
# # enjoy no bullshit. you can now run without loader.

SicKrypter Mini V1.0 by Sikandar

Image and video hosting by TinyPic

HMO Crypter v1 by 5416339

Long time i didn't post any of my tools.So here it is ...Another Scantime + Runtime Crypter.

This crypter is dedicated to all my forum members at "HMO" without whom i would have been a mere coder ! Coded i VB.NET

It uses rc4 Encryption

Image and video hosting by TinyPic

Easy Binder v2.0 by Bubzuru

:: EasyBinder v2.0 Coded By Bubzuru ::

Image and video hosting by TinyPic

Easy Binder is a tool that combines (binds) unlimited files (no matter their type) into a single standalone executable (a Container). The Container (the final bound file) is a simple compiled program that, when opened, will automatically launch the included files.

Easy Binder can run any type of file from the bound file without affecting its direct functionality. For instance, if you bind an executable, a text file and an image file, when the Container file is run, the executable will be run too while the other files will be opened with the default image file viewer(IrfanView, Paint etc.) and text file viewer (Notepad, Wordpad etc.).

File Joiner features:
# unlimited files can be bound (joined)
# can bind any file type that is needed by the executable for a properly run
# the icon of the Host file (final bound file) can be changed
# the Host file (final bound file) is 100% FUD to all AV's at the time of creation
# Its 100% Free :D

Credits :
Thanx to the creators of nsis whout them this app wouldnt be possible

thanx to odin for the image ^_^

Jman1050's Binder and Downloader v1.0 [Fully Undetectable Forever]

Jman1050's Binder and Downloader v1.0 [Fully Undetectable Forever]
==========================================================

Image and video hosting by TinyPic


jBAD is a Binder and BITS Downloader Creator (2-in-1)

* BITS is a Windows feature, meaning it is undetectable and bypasses Windows Firewall (Redemptions Downloader BITS engine is based on my method)
* jBAD uses IExpress to bind, which is found on every windows machine, and means it is undetectable

NO 3rd PARTY SFX EXTRACTION OF INJECTED FILE
Originally seen in Redemptions FileBinder, any files made by my application
(using IExpress) are immediately patched to BLOCK THEM FROM BEING EXTRACTED.
(In English - You cannot right-click and choose "Extract Here", etc.)


Feature List
-------------------------

- Fully Undetectable. Forever.
- Full Command Line Functionality
- IExpress Bind w/ No SFX Extraction
- Reads from file for multi downloads - make it once, re-use forever, no need to add each file manually every time
- Create stand-alone single file downloader
- Create stand-alone multi file downloader
- Create and inject single file downloader (bind the downloader to another file)
- Create and inject multi file downloader (bind the downloader to another file)