Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 43 guests online
Free Business and Tech Magazines and eBooks
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Malware
My new article
EH-Net
May 22, 2013, 09:12:50 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Malware
(Moderator:
don
) >
My new article
Pages:
1
[
2
]
Go Down
« previous
next »
Print
Author
Topic: My new article (Read 19001 times)
0 Members and 1 Guest are viewing this topic.
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: My new article
«
Reply #15 on:
September 09, 2012, 06:27:27 PM »
Quote from: SephStorm on September 09, 2012, 12:45:38 PM
You mentioned ProRat, I am thinking about trying it out, I know this a borderline stupid question, but is it "safe" it download and run the program? I assume most commercial type malware programs dont infect the "customer" machines...
Dear sephstorm
I mentioned prorat in ur old topic too because its easy to use and u can make it undetectable with a cryptor program but its possible to create malwares without any malware creator like prorat and without programming.
For ur safety i extermely suggest u to install windows xp on a virtual machine. Then download the program from it, and after download disable networking feature and then run it. Dont forget to create snapshot of ur vm before doing it. And seph who knows maybe those malwares infects customer's machine
Good luck
«
Last Edit: September 09, 2012, 09:24:34 PM by Cyber.spirit
»
Logged
ICS Academy Network Security Certified
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: My new article
«
Reply #16 on:
September 09, 2012, 06:33:57 PM »
@hayabusa
Thank u for your Encouraging comment . As you guest i learnt from alot of experiences and its completely new method which i want to talk about even beginners can do it becuase it dosent requires programming or metasploit and so on, and because of it no av can find and destroy it thanx again.
«
Last Edit: September 09, 2012, 06:54:23 PM by Cyber.spirit
»
Logged
ICS Academy Network Security Certified
hayabusa
Hero Member
Offline
Posts: 1632
Re: My new article
«
Reply #17 on:
September 09, 2012, 07:08:43 PM »
Quote from: sternone on September 09, 2012, 02:46:06 PM
Thanks for your reaction.
I really watch out not to disclose anything that would blow it for future lab customers. You know that very well.
About the multihomed machine, well, if they don't get that, they are not in the right place. It's Offensive's own document who shows the network layout, not my posts. I don't need any glory. I would like you to explain me what all the other posts on the forums are for, are they only done for Glory ? Please elaborate. I learn from other's people posts and maybe some would do the same from my posts. Are you affiliated with Offensive Security ? You sure sound like it after I gave 'some small' critical remarks about it your tone completely changed.
About cyber.spirit, he's allowed to post whatever he wants to. I would say that counts both ways, People can say whatever they want to in reply to my posts, again, that works both ways. If you don't like it, well then you shouldn't go on a 'forum' at all.
Nope, not associated with them, but I think you're being VERY overly critical of some things. You assume too much of what I mean, without thinking clearly.
As for the multi-homed box, yes, the network layout is diagrammed in the course docs. But if my memory serves me, it doesn't say, "the route to the admin network lies specifically on a Windows XYZ machine, so look there if you want to try to be an uber-hacker, without doing more recon / homework." It could just as easily have been a multi-homed linux box, or even a router with multiple paths. My point is, you gave enough info, even without IP's, to give someone specific boxes to target.
I'm trying to give you the benefit of the doubt, as someone who truly wants to learn and grow. Your jumping into attack mode on multiple things, here (cyber.spirit's thread, hammering negatively on Offsec, or those of us who point out your over-criticality), paints you otherwise. Please, just chill with the negativity. If you feel badly about OSCP, fine, post your opinion. But as multiple folks (including me) have said in your other thread, if you truly feel that let down at their lack of handing you info, then IMHO, you're basing an opinion on something, due to your own lack of prior research and understanding.
Regardless, I wish you luck as you continue, and you have my best wishes at finishing the course and attempting the exam. Good luck!
«
Last Edit: September 09, 2012, 07:11:07 PM by hayabusa
»
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
hayabusa
Hero Member
Offline
Posts: 1632
Re: My new article
«
Reply #18 on:
September 09, 2012, 07:22:29 PM »
<rant on>
One more thing to think about, with regard to your comment inferring maybe I shouldn't be on forums... (sorry, but you touched a nerve)
You, sir / madame, are the one specifically asking for info on what's needed to know for the exam. Not only did you post it once, but twice, on different threads.
That tells me two things:
First, you KNOW, per Offsec's terms, that we can't give you any additional info towards the exam, so you're asking an ethical forum to be unethical.
Second, you obviously don't understand how forums work, and that 'cross-posting' the SAME request, to multiple threads, is frowned upon.
So tell me, who shouldn't be on forums?
<rant off>
Most everyone on here, who's been a member for any length of time, will tell you that I contribute, and that I rarely, if ever, go into a rant. So I apologize to those people, and to sternone, that this one got me to do so. Anyway, again, I DO wish you well, sternone, and good luck / continued learning.
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
sternone
Full Member
Offline
Posts: 129
Re: My new article
«
Reply #19 on:
September 09, 2012, 09:01:15 PM »
I read many things that I don't like, some I reply to, others I don't.
I have no problem with people having another opinion. It seems to me I stepped on some 'holy ground' .. your Offensive OSCP ratings and reputation. It's not allowed at all to say anything negative about it or I'm almost put away in the dog house.
About this thread, sure, write your article about how you will write your virus code without programming 1 line of code, or even better, without knowing any programming language - beating the best coders I have seen personally in my life -who I consider friends since many years- who program nota bene in assembly language at a level that you can only dream off.
Crazy stuff. Makes you wonder.
Logged
Try harder....hmpf!!
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: My new article
«
Reply #20 on:
September 09, 2012, 09:15:40 PM »
Quote from: sternone on September 09, 2012, 09:01:15 PM
I read many things that I don't like, some I reply to, others I don't.
I have no problem with people having another opinion. It seems to me I stepped on some 'holy ground' .. your Offensive OSCP ratings and reputation. It's not allowed at all to say anything negative about it or I'm almost put away in the dog house.
About this thread, sure, write your article about how you will write your virus code without programming 1 line of code, or even better, without knowing any programming language - beating the best coders I have seen personally in my life -who I consider friends since many years- who program nota bene in assembly language at a level that you can only dream off.
Crazy stuff. Makes you wonder.
Sternone im wondering why you understand everything in awful way!! Im not beating anybody i respect to your friends but do u respect to us or to this forum??
I just want to show beginners how to create undetectable malware without knowing any programming language. Now tell me is it bad? And something else if ur friends are good programmer it dosent mean that ur expert too try to find ur own experience. Creating these type of malware was one of my experieces and i want share it with ETHICAL hackers
Logged
ICS Academy Network Security Certified
sternone
Full Member
Offline
Posts: 129
Re: My new article
«
Reply #21 on:
September 09, 2012, 09:20:42 PM »
I say it's not possible to create a virus without knowing how to code in any computer language that will not be detected by the anti virus programs coded by the best assembly programmers on this planet.
Go ahead and let me read your article.
I will be the first to tell you that I was wrong and that all the Heuristic analysis is just voodoo and you can beat them without having to code anything nor have to know how to code anything.
«
Last Edit: September 09, 2012, 09:22:53 PM by sternone
»
Logged
Try harder....hmpf!!
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: My new article
«
Reply #22 on:
September 09, 2012, 09:27:48 PM »
ok after i publish my article u'll change ur idea because its possible 100% undetectable from av
Logged
ICS Academy Network Security Certified
hayabusa
Hero Member
Offline
Posts: 1632
Re: My new article
«
Reply #23 on:
September 09, 2012, 10:17:17 PM »
Quote from: sternone on September 09, 2012, 09:01:15 PM
I read many things that I don't like, some I reply to, others I don't.
I have no problem with people having another opinion. It seems to me I stepped on some 'holy ground' .. your Offensive OSCP ratings and reputation.
Ok. Are we done bickering now? You'e stated, and may continue to state, your opinion.
Have a wonderful evening.
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
Pages:
1
[
2
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
Gates
: Isabelle Marant if you're|a really wonderful|pc|whether you are having a lesson
(0) by
ddogs42zm
News Items and General Discussion About EH-Net
: 1000 страшно пол
(0) by
quohaphoday
GPEN - GIAC Certified Penetration Tester
: Karen Millen Outlet as an example SFTP
(0) by
dtree28yt
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(27) by
don
Greetings
: Hi from the UK
(2) by
n37sh@rk
Network Pen Testing
: AIX Vulnerability Assessments
(2) by
ras76
Tutorials
: Need guidance
(9) by
hanyhasan
Programming
: Finished Python Course in Codecademy now what?
(15) by
hanyhasan
Network Pen Testing
: Ruby on Rails Vulnerabilities / Attacks in BackTrack 5 r3
(0) by
SUdoctstudent
Network Pen Testing
: De-ICE 1.140 released!
(2) by
superkojiman
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.