A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #15790  by EP_X0FF
 Sat Sep 29, 2012 3:32 am
MindfreaK wrote:Seems DarkCoderSC changed from malware to normal software.
Whatever white software they create after long time trojan development it all still will result in trojans (by design and behaviour).
 #15792  by rkhunter
 Sat Sep 29, 2012 7:26 am
EP_X0FF wrote:
MindfreaK wrote:Seems DarkCoderSC changed from malware to normal software.
Whatever white software they create after long time trojan development it all still will result in trojans (by design and behaviour).
For example?
 #15793  by EP_X0FF
 Sat Sep 29, 2012 8:05 am
rkhunter wrote:
EP_X0FF wrote:
MindfreaK wrote:Seems DarkCoderSC changed from malware to normal software.
Whatever white software they create after long time trojan development it all still will result in trojans (by design and behaviour).
For example?
Mail.ru software, Babylon Translator. Do you seriously will use any kind of soft from "former" script-kiddie trojan author? :D
 #15796  by rkhunter
 Sat Sep 29, 2012 9:47 am
EP_X0FF wrote:Mail.ru software, Babylon Translator. Do you seriously will use any kind of soft from "former" script-kiddie trojan author? :D
he-he, didn't meet guys who use Mail.ru, but as practice shows don't need to be the author of trojans for to invest some strange spy features into software ;) sure u know
 #15799  by MindfreaK
 Sat Sep 29, 2012 10:49 am
EP_X0FF wrote:
MindfreaK wrote:Seems DarkCoderSC changed from malware to normal software.
Whatever white software they create after long time trojan development it all still will result in trojans (by design and behaviour).
Sure it was designed as a Trojan but noobs can't use it anymore as they need to patch out the userinterface ....
 #15801  by Xylitol
 Sat Sep 29, 2012 11:26 am
MindfreaK wrote:
EP_X0FF wrote:
MindfreaK wrote:Seems DarkCoderSC changed from malware to normal software.
Whatever white software they create after long time trojan development it all still will result in trojans (by design and behaviour).
Sure it was designed as a Trojan but noobs can't use it anymore as they need to patch out the userinterface ....
Sure... it's hard to SW_HIDE. (and probably some minor shit?)
 #15803  by MindfreaK
 Sat Sep 29, 2012 11:51 am
Xylitol wrote: Sure... it's hard to SW_HIDE. (and probably some minor shit?)
For those kids using it that never programmed before it is lol
and sure it is not that hard.
 #15849  by hanan
 Tue Oct 02, 2012 10:24 am
they have a disclaimer on the site that this RAT is detected by all of the AVs engines even Windows Defender.
I am don't see any problem with this software as long as it is used for legit purpose, it is RAT and has the capabilities of RAT, even though you can patch it to make it hidden doesn't make it Trojan, since you can patch every legit Remote support tool out there to have it being hidden.
 #15871  by MindfreaK
 Tue Oct 02, 2012 9:19 pm
hanan wrote:doesn't make it Trojan, since you can patch every legit Remote support tool out there to have it being hidden.
The point is , it was a Trojan and DCSC just modified the code and added gui so it doesn't install and startup , so it is designed as a Trojan and it was a Trojan and will ever be a Trojan in my eyes.