Help - Search - Members - Calendar
Full Version: Undetecting Malware
Forums > General GSO > GSO Tutorials
drake112
What you will need:

AV Devil 2

Hex Editor: Everybody has their faviourite

AVG

Okay. I'm going to give you a basic tutorial on how to do it using AVG. I'm not on Windows at the moment so i'm sorry but i can't provide screenshots (Will probably add them at a later stage if requested enough).

::Let's Begin::

Install AVG, update it and TURN OFF RESIDENT SHIELD!

Open AV Devil 2 and where it says "Source Datei", browse for the stub of the malware that wants to be made undetectable.

Press okay in the second message and a box should pop up. DONT PRESS OKAY until you have re-enabled resident shield.

Press okay in the pop up box and it will scan the malware for offsets.

:::::::::::::::::::::::::::::::::::::::::::::::::: ::::::::::::::::::::::::::::::::::::::::::::::

Once it has scanned you will be able to see the detected values.

Open up a hex editor of your choice and change them.

Re-scan

Last time i checked AVDevil 2 was working fine with avg , avast , nod32 , antivir, norton
googleness
when i do this, once i press ok after turning on the shield, AVG pops up alterting me of the infected file. I leave that box there and Av devil just says scanning offsets, and sits there for minutes. How long should it take?
Baphomet
AV Devil is retarted.
It was already retarted when I tried it, and that was more then two years back.
If you are searching for offsets, split the file and try manually.
googleness
yeah, thats the way i normally do it, i was just hoping for a quicker lazier way >_>; ohwell.
lukestasz
Please can you post some screenshots i would most appreciate it smile.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2008 Invision Power Services, Inc.