A Cryptor made by me,
it uses RC4 Encryption and most antiviruses cant detect a virus in it
and those that do cant say what virus it is
in next version i might add process injection
Av Results
Installer is in there for people who need
http://rapidshare.com/files/143372998/Cryptor.rar.html
it uses RC4 Encryption and most antiviruses cant detect a virus in it
and those that do cant say what virus it is
in next version i might add process injection
Av Results
- Code:
File Built.exe received on 09.07.2008 16:44:45 (CET)
Current status: finished
Result: 4/36 (11.11%)
Compact
Print results
Antivirus Version Last Update Result
AhnLab-V3 2008.9.6.0 2008.09.07 -
AntiVir 7.8.1.28 2008.09.05 TR/Dropper.Gen
Authentium 5.1.0.4 2008.09.07 -
Avast 4.8.1195.0 2008.09.06 -
AVG 8.0.0.161 2008.09.07 -
BitDefender 7.2 2008.09.07 -
CAT-QuickHeal 9.50 2008.09.06 -
ClamAV 0.93.1 2008.09.07 -
DrWeb 4.44.0.09170 2008.09.07 -
eSafe 7.0.17.0 2008.09.07 -
eTrust-Vet 31.6.6072 2008.09.05 -
Ewido 4.0 2008.09.07 -
F-Prot 4.4.4.56 2008.09.07 -
F-Secure 8.0.14332.0 2008.09.07 -
Fortinet 3.112.0.0 2008.09.07 -
GData 19 2008.09.07 -
Ikarus T3.1.1.34.0 2008.09.07 Trojan-Dropper.Win32.VB.aqw
K7AntiVirus 7.10.443 2008.09.05 -
Kaspersky 7.0.0.125 2008.09.07 -
McAfee 5378 2008.09.05 -
Microsoft 1.3903 2008.09.07 -
NOD32v2 3423 2008.09.06 -
Norman 5.80.02 2008.09.05 -
Panda 9.0.0.4 2008.09.07 -
PCTools 4.4.2.0 2008.09.07 -
Prevx1 V2 2008.09.07 -
Rising 20.60.62.00 2008.09.07 -
Sophos 4.33.0 2008.09.07 -
Sunbelt 3.1.1610.1 2008.09.05 Trojan-Dropper.Win32.VB!cobra (v)
Symantec 10 2008.09.07 -
TheHacker 6.3.0.8.075 2008.09.06 -
TrendMicro 8.700.0.1004 2008.09.05 -
VBA32 3.12.8.5 2008.09.07 -
ViRobot 2008.9.5.1365 2008.09.06 -
VirusBuster 4.5.11.0 2008.09.06 -
Webwasher-Gateway 6.6.2 2008.09.05 Trojan.Dropper.Gen
Additional information
File size: 2162367 bytes
MD5...: 0d38074fd18acf647df67db5e250a215
SHA1..: 30e7ff86da2f2dc8afe79a67f991e90114b5e8a4
SHA256: c9f26c0b7e8c2ceed0f42d6cafd297780c99159b5559ef008c8a116cdf556f68
SHA512: de02908d1484876b1ac8f8860477b0b425a974912f157540c10f2fe92ad5a513
2c7e7d28a1fb6d71cf4ceb1cfca27248daf2ecc041e1163e9dacbc40b1365dad
PEiD..: -
TrID..: File type identification
Win32 Executable Microsoft Visual Basic 6 (91.5%)
Win32 Dynamic Link Library (generic) (5.5%)
Generic Win/DOS Executable (1.4%)
DOS Executable Generic (1.4%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x401380
timedatestamp.....: 0x48c3e78d (Sun Sep 07 14:39:09 2008)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1f18 0x2000 5.46 035625c8955331120f5ba997ba542fa3
.data 0x3000 0x340 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110
.rsrc 0x4000 0x8c0 0x1000 1.87 b8f61cf0cd5fff26e8e28e1d3e8ee475
( 1 imports )
> MSVBVM60.DLL: _CIcos, _adj_fptan, __vbaAryMove, __vbaFreeVar, __vbaLenBstr, __vbaStrVarMove, __vbaFreeVarList, __vbaPut3, _adj_fdiv_m64, -, __vbaFreeObjList, _adj_fprem1, __vbaStrCat, __vbaSetSystemError, __vbaHresultCheckObj, _adj_fdiv_m32, __vbaAryVar, __vbaAryDestruct, __vbaOnError, _adj_fdiv_m16i, _adj_fdivr_m16i, _CIsin, __vbaChkstk, __vbaFileClose, __vbaGenerateBoundsError, __vbaAryConstruct2, __vbaI2I4, DllFunctionCall, _adj_fpatan, __vbaUI1I2, _CIsqrt, __vbaExceptHandler, -, _adj_fprem, _adj_fdivr_m64, __vbaFPException, -, _CIlog, __vbaErrorOverflow, __vbaFileOpen, __vbaVar2Vec, __vbaNew2, -, _adj_fdiv_m32i, _adj_fdivr_m32i, __vbaStrCopy, __vbaFreeStrList, _adj_fdivr_m32, _adj_fdiv_r, -, __vbaVarDup, __vbaStrToAnsi, -, _CIatan, __vbaStrMove, __vbaAryCopy, _allmul, _CItan, _CIexp, __vbaFreeObj, __vbaFreeStr
( 0 exports )
Installer is in there for people who need
http://rapidshare.com/files/143372998/Cryptor.rar.html