A forum for reverse engineering, OS internals and malware analysis 

Search found 4 matches

 Go to advanced search

Re: AV SP Discussion & Bypass

 by cuttingedge ¦  Tue Nov 03, 2015 1:53 pm ¦  Forum: User-Mode Development ¦  Topic: AV SP Discussion & Bypass ¦  Replies: 121 ¦  Views: 223287

Hi these ones: Postby R00tKit » Tue Feb 21, 2012 7:58 am hi i kill kaspersky service avp.exe in user mode and this method also work for its UI :)) http://www.mediafire.com/?e6od81xewhkoyzr Re: Kill kaspersky 2012 from user mode :) Postby 0x16/7ton » Thu Oct 04, 2012 7:12 pm Hello again:) So as promi...

Re: AV SP Discussion & Bypass

 by cuttingedge ¦  Tue Nov 03, 2015 12:59 am ¦  Forum: User-Mode Development ¦  Topic: AV SP Discussion & Bypass ¦  Replies: 121 ¦  Views: 223287

Could someone make a mirror of all the dead sendspace.com links on this thread back from 2012? There was some great shares but they did not upload them to kernalmode. Maybe someone has them archived?

Thank you!

Re: Linux/Bash0day alias Shellshock alias Bashdoor

 by cuttingedge ¦  Sun Oct 25, 2015 5:43 am ¦  Forum: Malware ¦  Topic: Linux/Bash0day alias Shellshock alias Bashdoor ¦  Replies: 42 ¦  Views: 128962

Our team infiltrated the source of the threat successfully. This is the coder's designed of the codes in Sept 2015 & Several version of source codes that has beed modded by lizzards was snagged. All will be shared. We are preparing to it. No need to reverse this threat, just read the crappy C codes...


 by cuttingedge ¦  Tue May 05, 2015 9:54 pm ¦  Forum: Malware ¦  Topic: Win32/Rombertik ¦  Replies: 27 ¦  Views: 53251

Hello, I read an article on Rombertik and would like to know if anyone has a sample of it? Read about it here: http://www.extremetech.com/computing/205000-rombertik-malware-attacks-hard-drives-wipes-mbr-if-detected I did a search for it and could not find anything posted about it. Thank you. Sample ...