Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 38 guests and 1 member online
Free Business and Tech Magazines and eBooks
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Malware
My new article
EH-Net
May 21, 2013, 07:14:44 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Malware
(Moderator:
don
) >
My new article
Pages: [
1
]
2
Go Down
« previous
next »
Print
Author
Topic: My new article (Read 18943 times)
0 Members and 1 Guest are viewing this topic.
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
My new article
«
on:
August 24, 2012, 02:35:30 AM »
Hi guys,
I have a question about my new artile or its better to say i wanna put it in vote so here is the idea:
Im writing an article about how to create undetectable viruses and trojan without knowing any programming language and i dont want to use malware builders like prorat too,
So what do u think about my article is it a good field to research ? Thanx
Logged
ICS Academy Network Security Certified
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: My new article
«
Reply #1 on:
August 24, 2012, 03:40:29 AM »
i forgot to say i wanna publish my article here so give some guide about my idea and what do u wanna read in it please
Logged
ICS Academy Network Security Certified
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: My new article
«
Reply #2 on:
August 24, 2012, 11:31:26 AM »
No ideas?
Logged
ICS Academy Network Security Certified
unicityd
Full Member
Offline
Posts: 156
Bored IT Manager, Crypto Nerd
Re: My new article
«
Reply #3 on:
August 24, 2012, 03:43:06 PM »
Research what interests you. Malware is a pretty hot topic, especially because of Stuxnet, Duqu, and Gauss. I'm sure you can find some cool things to research and write about.
If and when you do write an article, take the time to polish your writing: spell-check, re-read, revise, etc. Make sure everything is accurate and clear. If your writing is sloppy, people will have trouble understanding you and may not bother to read it.
Logged
BS in IT, CISSP, MS in IS Management (in progress)
3xban
Hero Member
Offline
Posts: 605
Re: My new article
«
Reply #4 on:
August 26, 2012, 06:54:48 PM »
as far as your topic goes, well creating custom code is certainly one way to get past signature based scanners. If it is new code, with new hashes and new behavior, well you will certainly be able to hide from the average home AV. Enterprise AVs will run things like App control and heuristic scanning. Both of which are tougher to bypass.
And don't submit your own samples to Virustotal
Logged
Certs: GCWN
(@)Dewser
Jamie.R
Sr. Member
Offline
Posts: 429
Re: My new article
«
Reply #5 on:
August 27, 2012, 06:02:12 AM »
I think any article written about security will be good. There are so many areas of security that there will always be people that find your article interesting. As they maybe an expert in one area but no one is expert in all area of security and its a constant battle to learn more and more.
Logged
OSWP | Hackingdojo Nidan | eCPPT
sternone
Full Member
Offline
Posts: 129
Re: My new article
«
Reply #6 on:
September 09, 2012, 02:31:13 AM »
Let me get this straight.
You are going to write an article about how to code virus code without knowing any coding language and the goal is to bypass the smartest coders in this world with you knowing no coding language. That's not even funny anymore.
In what language is it going to be then ? L33t v3.0 ?
Please stop trolling, you won the price last month of the poster with the most posts and got the free training, there's no need to post like a mad man saying NOTHING anymore.
Thank you.
Logged
Try harder....hmpf!!
SephStorm
Hero Member
Offline
Posts: 530
Re: My new article
«
Reply #7 on:
September 09, 2012, 03:43:22 AM »
Quote from: sternone on September 09, 2012, 02:31:13 AM
Let me get this straight.
You are going to write an article about how to code virus code without knowing any coding language and the goal is to bypass the smartest coders in this world with you knowing no coding language. That's not even funny anymore.
In what language is it going to be then ? L33t v3.0 ?
Please stop trolling, you won the price last month of the poster with the most posts and got the free training, there's no need to post like a mad man saying NOTHING anymore.
Thank you.
Ignore this ^. I am interested in seeing the article Cyber spirit.
Logged
Support my hactivities.
http://www.cafepress.com/TRUEHacker
3xban
Hero Member
Offline
Posts: 605
Re: My new article
«
Reply #8 on:
September 09, 2012, 06:25:01 AM »
ouch, yeah ignore that comment man. Though there is something to consider, I've looked at some pretty advanced samples that made it past the typical checks, one may even call them "persistent"
. So you may not be able to avoid the coding part. What you can do is write a defensive article on how one protects against this type of malware. That will be some good research for you.
Logged
Certs: GCWN
(@)Dewser
jason
Hero Member
Offline
Posts: 1012
Re: My new article
«
Reply #9 on:
September 09, 2012, 09:08:03 AM »
Please do write the article. It's alot easier to tear folks down that to actually do something constructive.
I'm not entirely sure where you would go with your research on this, if you're not custom coding and you're not using a builder. I suppose you could talk about how people tweak existing malware in order to create a variant, invalidate the existing signatures, and get past the scanners. There are certainly alot of example of this out there to look at.
Logged
hayabusa
Hero Member
Offline
Posts: 1631
Re: My new article
«
Reply #10 on:
September 09, 2012, 10:48:14 AM »
@cyber.spirit - I think you should definitely put the time / research in, and write your article. Regardless of sternone's remarks or thinking, IF you learn from the experience, then it's a worthwhile effort. If others learn, too, then all the better.
@sternone - I'm happy to see you advancing in Offsec's labs, however, I think your 'play-by-play', as someone called it, is borderline on giving other students too much information. The post where you pointed out the multi-NIC machine, for instance, OS and all (even without giving the IP's) is enough to have people openly going looking for that box. While yes, there is something to hitting the other parts of the network, if they start focusing on that, there's a lot of other machines that they might 'skip', thinking the importance of reaching the admin network, for instance, is of utmost importance. They'll miss out on learning topics from the remaining lab boxes.
I know you didn't give away the proverbial 'keys to the kingdom' or anything, but I think you're teetering on the fencepost. Also, please note the next bit, here, is not an attack, but... In addition, attacking cyber.spirit's article idea, when 'tooting your own horn', constantly, after every exploit you achieve in the OSCP lab, leaves me thinking you're out for self-promotion and glory. Doesn't leave me much more interested in your future writings, either.
Be tactful and respectful, please.
«
Last Edit: September 09, 2012, 10:56:34 AM by hayabusa
»
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
SephStorm
Hero Member
Offline
Posts: 530
Re: My new article
«
Reply #11 on:
September 09, 2012, 12:45:38 PM »
You mentioned ProRat, I am thinking about trying it out, I know this a borderline stupid question, but is it "safe" it download and run the program? I assume most commercial type malware programs dont infect the "customer" machines...
Logged
Support my hactivities.
http://www.cafepress.com/TRUEHacker
sternone
Full Member
Offline
Posts: 129
Re: My new article
«
Reply #12 on:
September 09, 2012, 02:46:06 PM »
Quote from: hayabusa on September 09, 2012, 10:48:14 AM
@sternone - I'm happy to see you advancing in Offsec's labs, however, I think your 'play-by-play', as someone called it, is borderline on giving other students too much information. The post where you pointed out the multi-NIC machine, for instance, OS and all (even without giving the IP's) is enough to have people openly going looking for that box. While yes, there is something to hitting the other parts of the network, if they start focusing on that, there's a lot of other machines that they might 'skip', thinking the importance of reaching the admin network, for instance, is of utmost importance. They'll miss out on learning topics from the remaining lab boxes.
I know you didn't give away the proverbial 'keys to the kingdom' or anything, but I think you're teetering on the fencepost. Also, please note the next bit, here, is not an attack, but... In addition, attacking cyber.spirit's article idea, when 'tooting your own horn', constantly, after every exploit you achieve in the OSCP lab, leaves me thinking you're out for self-promotion and glory. Doesn't leave me much more interested in your future writings, either.
Be tactful and respectful, please.
Thanks for your reaction.
I really watch out not to disclose anything that would blow it for future lab customers. You know that very well.
About the multihomed machine, well, if they don't get that, they are not in the right place. It's Offensive's own document who shows the network layout, not my posts. I don't need any glory. I would like you to explain me what all the other posts on the forums are for, are they only done for Glory ? Please elaborate. I learn from other's people posts and maybe some would do the same from my posts. Are you affiliated with Offensive Security ? You sure sound like it after I gave 'some small' critical remarks about it your tone completely changed.
About cyber.spirit, he's allowed to post whatever he wants to. I would say that counts both ways, People can say whatever they want to in reply to my posts, again, that works both ways. If you don't like it, well then you shouldn't go on a 'forum' at all.
Logged
Try harder....hmpf!!
3xban
Hero Member
Offline
Posts: 605
Re: My new article
«
Reply #13 on:
September 09, 2012, 05:28:39 PM »
Quote from: SephStorm on September 09, 2012, 12:45:38 PM
You mentioned ProRat, I am thinking about trying it out, I know this a borderline stupid question, but is it "safe" it download and run the program? I assume most commercial type malware programs dont infect the "customer" machines...
Hey Seph, well malware is malware. Always treat it with caution. Even if software/samples have been "cleansed" for learning, they can still potentially harm your system. Even though ProRat is a a tool to build it, the source supplying it may have another agenda.
May not even hurt to toss it in a VM and do some behavioral analysis before using it further.
Logged
Certs: GCWN
(@)Dewser
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: My new article
«
Reply #14 on:
September 09, 2012, 06:06:55 PM »
Quote from: sternone on September 09, 2012, 02:31:13 AM
Let me get this straight.
You are going to write an article about how to code virus code without knowing any coding language and the goal is to bypass the smartest coders in this world with you knowing no coding language. That's not even funny anymore.
In what language is it going to be then ? L33t v3.0 ?
Please stop trolling, you won the price last month of the poster with the most posts and got the free training, there's no need to post like a mad man saying NOTHING anymore.
Thank you.
Hey hey hey sternone i'm not going to publish this article just because of the prize because i already won it. I'm always active in this forum and i'll publish alot of my articles here soon because i do love this great forum no mattar if you like it or not.
No man your a specialist in l33t programming not me!!! If you dont know how to create useful or harmful programs without using any programming language it dosent mean its impossible.
«
Last Edit: September 09, 2012, 06:15:41 PM by Cyber.spirit
»
Logged
ICS Academy Network Security Certified
Pages: [
1
]
2
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
GAWN - GIAC Assessing Wireless Networks
: Karen Millen Dresses Things did improve as the decade gone on
(0) by
dtree70fx
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Programming
: Finished Python Course in Codecademy now what?
(11) by
securitian
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
Tutorials
: Need guidance
(8) by
r0ckm4n
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
Other
: BSides Boston
(0) by
3xban
Career Central
: InfoSec in Central, FL
(2) by
tturner
Web Applications
: Web vulnerability scanner
(4) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.