OrIaX Posted January 6, 2009 Report Posted January 6, 2009 Primul meu release :Dinamiq v.1.0.0. - coded in VBCredits : RST and opensc.wsThings to do:Refac G.U.I.-ul100% F.U.D.Nu stiu daca am sa fac publica versiunea 100% FUD pt ca in maxim 2 zile se duce Daca faceti teste incercati pe NVT cu optiunea de "don`t send"Astept pareri, bug-uri si ideiAici aveti dovada de 4/24 File InfoReport generated: 7.1.2009 at 13.32.02 (GMT 1)Filename: Dona.exeFile size: 74 KBMD5 Hash: FD0B82E98F70C11AC360E8EE39BB8413SHA1 Hash: 013100FD30E9FC0DF5FABD37493D068F4A9BB972Packer detected: Nothing found [Overlay] *Self-Extract Archive: Nothing foundBinder Detector: Nothing foundDetection rate: 4 on 24Detectionsa-squared - Nothing found!Avira AntiVir - HEUR/MalwareAvast - Nothing found!AVG - Nothing found!BitDefender - Nothing found! ClamAV - Nothing found! Comodo - Nothing found! Dr.Web - Nothing found!Ewido - Nothing found! F-PROT 6 - Nothing found! G DATA - Nothing found! IkarusT3 - Nothing found! Kaspersky - Multi.PackedMcAfee - Nothing found! MHR (Malware Hash Registry) - Nothing found!NOD32 v3 - Win32/Kryptik.AE Norman - Nothing found! Panda - Nothing found!Quick Heal - Nothing found!Solo Antivirus - Nothing found!Sophos - Sus/UnkPacker TrendMicro - Nothing found!VBA32 - Nothing found! Virus Buster - Nothing found!Scan report generated by NoVirusThanks.orgEdit:Daca este destul de ok pt voi il pot muta la RST Power
OrIaX Posted January 6, 2009 Author Report Posted January 6, 2009 Incarca executabilul in memorie?Nu inteleg ff bine ca sunt rupt de somn si gandesc aiurea acum. Daca ma intrebi daca il incarca in memorie cand il cripteaza raspunsul e NU . Oricum el e 4/24 Scantime si Runtime.Oricum inca e in teste puternice si am nevoie de mult feedback . doar ca pe RST multi nu stiu ce e ala crypter sau packer . foarte ciudat peste 30 de views si nici un download . e mai interesant sa "invii" topicuri de 2 3 ani decat asa ceva[ Scuze de Off-Topic dar e frustrant ]
Nytro Posted January 6, 2009 Report Posted January 6, 2009 Un antivirus care se respecta va citi orice fisier nou creat sau modificat deci ar trebui sa il gaseasca. Cred ca e mai mult Scantime decat Runtime. Crypterul meu scantime modifica octetii executabilului apoi il copia pe hard disk cum era inainte de a fi cryptat apoi il rula. Asa face si acesta? A, trebuia sa faci o grafica, cat mai simpla.L-am incercat, dar decat pe ndo care il detecteaza.
OrIaX Posted January 6, 2009 Author Report Posted January 6, 2009 NOD32 v3 - Win32/Kryptik.AE Pai cam asta e principiul : 1.criptezi -> ajunge la destinatie camuflat -> are key-ul si se decripteaza singur 2. criptezi -> ajunge la destinatie camuflat -> ruleaza camuflat fara a genera ceva pe hard disk-ul "victimei"Eu am Zone Alarmul care sare la orice fila nou creata la orice incercare de scriere si surprinzator sau nu, nu zice nimicDar aici sunt eu cu ZA si tu cu NOD-ul in rest altcineva ... ?!?!Fara Feedback nu poti face ceva bun pt ca la tine merge bine dar nu stii ce se intampla la altii
OrIaX Posted January 7, 2009 Author Report Posted January 7, 2009 New update ... i-am schimbat GUI-ul :Si revin cu aceeasi rugaminte :Va rog sa il testati cat mai multi, astept pareri!
daatdraqq Posted January 7, 2009 Report Posted January 7, 2009 Avira :HEUR/Crypted suspicious code (deny access)
OrIaX Posted January 7, 2009 Author Report Posted January 7, 2009 Avira :HEUR/Crypted suspicious code (deny access)Avira AntiVir - HEUR/MalwareMultumesc oricum Keep it up guys!
virusz Posted January 7, 2009 Report Posted January 7, 2009 http://img134.imageshack.us/my.php?image=84103252wk4.pngam incercat vre-o 3 fisiere si tot asa
OrIaX Posted January 7, 2009 Author Report Posted January 7, 2009 http://img134.imageshack.us/my.php?image=84103252wk4.pngam incercat vre-o 3 fisiere si tot asavista? sau xp?
virusz Posted January 8, 2009 Report Posted January 8, 2009 xp b2600 sp3 ...scuze ca n-am zis + la cineva:crypterul:http://img211.imageshack.us/my.php?image=32mpkvd9pngpartal1.pngtot xp
OrIaX Posted January 8, 2009 Author Report Posted January 8, 2009 xp b2600 sp3 ...scuze ca n-am zis + la cineva:crypterul:http://img211.imageshack.us/my.php?image=32mpkvd9pngpartal1.pngtot xpnp o sa vad ce s-a intapmpat , referitor la acel "cineva" e problema de la .ocx , asta e lucrul cel mai frustrant cand lucrezi cu vb daca faci ceva trebuie sa faci si installer cu toate dll-urile si ocx-urile PS. A Functionat la cineva?LE. Am sters linkul de download momentan
Nytro Posted January 8, 2009 Report Posted January 8, 2009 Deci incarca executabilul in memorie. Ai folosit mPECL? Ce ocx lipseste?
OrIaX Posted January 8, 2009 Author Report Posted January 8, 2009 Deci incarca executabilul in memorie. Ai folosit mPECL? Ce ocx lipseste?Comdlg32.ocx