ALERT!
Click here to register with a few steps and explore all our cool stuff we have to offer!

Jump to content



Photo

SilverCrypter v. 1.0


  • Please log in to reply
SilverCrypter v. 1.0

#1

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#1

First in the World to use Deep Dark Web Technology (AFAIK):

 

First_in_the_World.jpg

 

The-Deep-Web.jpg?ssl=1

 

Recursive Multi-Layer Encryption (3 to 5 layers recommended):

 

?url=https%3A%2F%2Fwww.researchgate.net%

 

Deep Dark Web Crypted malware detection rate:

 

 

 

Silver Crypter is an application to help make your malware FUD. Unlike most crypters that base their power on cryptography, SilverCrypter, not only uses cryptography, but also uses blending techniques to make the malware process look like a regular innocent process. Interestingly, the most advanced techniques like process injection or hollowing are also the biggest red flags for antivirus software, thereby leading to detection. SilverCrypter avoids all that and uses techniques that are very hard to detect without creating collisions with regular software. That is why you don't see detection rate increasing rapidly with SilverCrypter. Even SilverCrypter nude and bare source code is not recognized by antivirus like most crypters are because we keep it safe under the hood of a protector, so what antivirus sees is the protector code and not the inner guts of our app. You will also notice there is no Decryption Stub (a favorite target for antiviruses signature system), there reason being, there is no need for one. We make our efforts to never make use of custom code that is easily detectable.

Recently we added  to SilverCrypter the ability to communicate, dynamically encrypt and make use of the Deep Dark Web Services, creating in this way an effective and totally anonymous VPN type of protection which will significantly reduce or completely eliminate the possibility of your control websites being taken down if it is located in an Onion server.

 

--File size is typically reduced or increased only slightly in regard to original depending on method used.

--It has drag&drop for all the items.

--It let you change your malware icon.

--6 different crypting methods, using legit techniques which in general fool most antivirus. No custom encryption code stub that

can be easily detected by signature and need to be changed from time to time.

--It can create FUD custom loader droppers which are significantly smaller than malware itself.

--Methods vary from crypting the malware itself, to creating dropless loaders (you can test which one is best for you). Some malware

will not work if fileless specially those needing dll libraries to work properly.

--It can make FUD your weaponized word documents.

--Results vary with method but in general you can get 1-4/38 detections which don't seem to worsen with time

due to the fact that legitimate methods used by SilverCrypter are regularly employed by innocent software.

--First in the World Crypter to incorporate Deep Dark Web Technology (AFAIK).

--First crypter to kill antivirus software as part of its processes

--File spoofer supports several formats.

--Compression engine for encrypted targets.

--Signature stealer.


Edited by Aesculapius, 31 January 2021 - 05:54 PM.

  • 8

#2

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#2

Added:

 

--Dynamically keyed Tiny Encryption Algorithm (TEA) with a 128-bit key and Cipher Block Chaining (CBC). Means that if you crypt your file 10 times then you get 10 totally different files.

--No need to be changing stubs like in current crypters anymore.


Edited by Aesculapius, 11 June 2019 - 10:09 PM.

  • 1

#3

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#3

Added:

 

--Dropper mode. In dropper mode, a crypted file is created and the executable behaves as an small fud downloader&dropper. You have to put the crypted file in any free web hosting service and distribute the dropper. Link in first post is updated.


Edited by Aesculapius, 12 June 2019 - 10:08 PM.

  • 1

#4

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#4

Added:

 

--Reset fields button added.


  • 1

#5

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#5

Wannacry after crypting with silvercrypter, only heuristic scanner can get it, no signature scanner can get it. Important mainstay popular antivirus software don't catch it.


Edited by Aesculapius, 31 January 2021 - 05:54 PM.

  • 0

#6

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#6

New File less Dropper Mode with file size less than 300 kb (it must be re-encrypted after creation with SilvercCrypter). Note: Not all applications support running without a physical file on disk


Edited by Aesculapius, 31 January 2021 - 05:54 PM.

  • 0

#7

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#7

new FUD Word Documents feature. These are results of a weaponized document in virustotal:


Edited by Aesculapius, 31 January 2021 - 05:54 PM.

  • 0

#8

muwibejuge
muwibejuge
    Offline
    0
    Rep
    0
    Likes

    New Member

  • PipPip
Posts: 13
Threads: 2
Joined: May 16, 2019
Credits: 0
Four years registered
#8

I just tried to run and it says dont run in a VM? Why is that?


  • 0

#9

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#9

I just tried to run and it says dont run in a VM? Why is that?

hello, because you are trying to run it in a vm and the protector used (safengine) does not run in vm. BR.


  • 0

#10

Aesculapius
Aesculapius
    Offline
    16
    Rep
    31
    Likes

    Junkie

Posts: 397
Threads: 17
Joined: Aug 28, 2016
Credits: 0

Seven years registered
#10

Added Word Document malicious macro hiding. Now when a user opens Vbs Editor to analyze the macro, he gets an error of access denied.


  • 0


 Users browsing this thread: