Sign in to follow this  
CapitalMad

ReFUD [03/05/2019] [.NET + Native] [USG] [Scantime + Runtime] LimeCrypter v0.3

Recommended Posts

  • 76CoInF.png
  • This is a crypter originally coded by NyanCat. Over time it has become more detectable, but I have made the stub FUD again. Here is the latest build.

Main Points

  • .NET Coded in Visual Basic .NET, required framework 4.0 dependency.
     
  • USG Adding some junk methods and rename all variables using the Chinese language
     
  • Injection Hide payload behind a legit process
     
  • Bind Add file to run with your payload runtime
     
  • Anti Analysis Stop task manager and Wireshark from analyzing your payload
     
  • Anti Virtual Machines Uninstall itself if the machine is virtual to avoid scanning or analyzing

Please don't scan crypted files on VirusTotal

DT Link: https://github.com/NYAN-x-CAT/Lime-Crypter/releases/download/v.4.5/Lime.Crypter.zip

Crypter in Action: https://scanmybin.net/result/88e5a46182b2698c8e0c787a6175e47163e511cebe2789acf0fa1c383b1b6034

Share this post


Link to post
Share on other sites

And why did you bind rat to it and disable it from running on vm

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Sign in to follow this