How to create undetectable backdoors

#1

Hello ,

I’m looking for a tool that’ll help me to create undetectable backdoors (tools such veil,thefatrat…) those mentioned are creating backdoors that got detected by most av programs and even when I modify them with HxD editor they still get detected and I don’t know what to do
Does someone know any tool ?

1 Like
#2

Regards, kknas

AV evasion “resources/notes”:
unicorn.py
ebowla
HERCULES
hyperion.exe
shellter
veil
msf venom / evasion
peCloak.py
backdoor-factory
HackTheWorld
msfvenom > hyperion > PEScrambler

  • use LOLBAS / blend in, inject dll file off application
  • use csharp or go or, change settings / certs
  • use auxiliary/gather/impersonate_ssl serve .pem in https handler
  • use custom exe / code to run shellcode, but look legit

csc.exe + charp rev shell



manual:


https://github.com/deptofdefense/SalSA/wiki/PE-File-Format


/usr/share/metasploit-framework/tools/exploit/egghunter.rb
sulley
spike
boofuzzer

videos:


103 Noob 101 Practical Techniques for AV Bypass Jared Hoffman

books:
Antivirus hackers handbook
also seen some good youtubes/presentations from blackhat or defcon about defender/AMSI type stuff

#3

Thank you too much x1337 do ou know some empacker like upx

1 Like