Executing shellcode in memory | Malware Development

preview_player
Показать описание
#Malware #Development #process #metasploit #linux
⚠️ This video is for educational purposes only. Malicious hacking is illigal and unethical. ⚠️

In today's video I'll show you basic shellcode execution in memory and how to encrypt it wit XOR and AES algorithms. Enjoy :)

🖤 SUBSCRIBE 🖤

Timestamp:
0:00 - Intro
0:22 - Shellcode loader
9:55 - First Virus Total scan
11:22 - Static Analysis
12:00 - Crypter code
18:28 - Modifying loader
23:05 - 2th Virus Total scan (comparasion)
26:37 - Outro

Follow me on Twitter/X:

Malware Development playlist:

Tiny-AES-C:

Virus Total:

ATRIBUTION

Рекомендации по теме
Комментарии
Автор

The detection isn’t because of the encrypted Shellcode itself rather it was the use of AES encryption most of AVs signature these as malicious cause who would encrypt some BYTEs and call VirtualAlloc, CreateThread functions other than hackers

suly
Автор

screeck: "I was a fool that night" LOL

danielrodriguez
Автор

cool video. just be aware that you have to handle the errors returned by win32 apis (VirtualAlloc, CreateThread, etc.). It is good progamming pratice to do so :P and you will figure out faster on why something doesnt work.

Cpider
Автор

bro please post more vids about malware development thank you!

aliena
Автор

And bro plz try and test your payloads on EDR as well :)

MalwareHunter_
Автор

is it detected by most AV now? Do you use any NTDLL.dll and is it not hooked by the AV ?

novianindy
Автор

Bro, can you cover Windows Registry hacking BRO

DutchNorthAtlanticAlliance
Автор

hi screeck, why you dont post anymore ?

exe.mdnght
Автор

nice, but virustotal redistribute the results

TechnologicAll
Автор

Well, no matter how much everyone asks not to upload to virustotal, they still upload it... why!?

VenziL
Автор

Could you please tell me how can i learn about win32 api to write well?

koshane
Автор

Never upload to virustotal. It will be worked through and day later your work is scratched

stanislavsmetanin
join shbcf.ru