Author Topic: how to make it stealth?  (Read 959 times)

0 Members and 1 Guest are viewing this topic.

Offline beamer

  • NULL
  • Posts: 3
  • Cookies: 0
    • View Profile
how to make it stealth?
« on: September 22, 2012, 09:48:56 am »
I want to install 3proxy on one of the machines, unfortunately it is detected as trojan by AVs and Microsoft defender.
Is there any FUD or any technique around that can solve this issue.

Offline Kulverstukas

  • Administrator
  • Zeus
  • *
  • Posts: 6627
  • Cookies: 542
  • Fascist dictator
    • View Profile
    • My blog
Re: how to make it stealth?
« Reply #1 on: September 22, 2012, 12:16:18 pm »
3proxy is not a virus, some bullshit AV's detect it as one. I don't know a way around it, I suppose you could disable those or use the MSF PE scrambler or what's it called, and make it less detectable.

Offline p_2001

  • Royal Highness
  • ****
  • Posts: 684
  • Cookies: -64
    • View Profile
Re: how to make it stealth?
« Reply #2 on: September 22, 2012, 12:27:23 pm »
Most Av have a trusted list.. Add it to av trusts list
"Always have a plan"

Offline Axon

  • VIP
  • King
  • *
  • Posts: 2047
  • Cookies: 319
    • View Profile
Re: how to make it stealth?
« Reply #3 on: September 22, 2012, 01:08:00 pm »
Is there any FUD or any technique around that can solve this issue.


1- Disable AV
2- Install software
3- Enable AV


Problem solved...?

Offline beamer

  • NULL
  • Posts: 3
  • Cookies: 0
    • View Profile
reply to above answers
« Reply #4 on: September 22, 2012, 09:09:13 pm »
That way I will need to have a physical access to the machine, which I don't.
As for MSF PE, those are publicly available and hence most of the AVs out there can detect the payloads that you use using MSF  :'(
If anyone out there knows a script there that will disable the AV, that will also do.
(Eg: script to disable AV when you connect the pendrive)