Blog

Packers, Packers, Packers for sale !

04.20.2007 - 10:06 AM
Recently, we have noticed a huge increase of files packed with custom tools.A lot of them are really simple and naive, but a few of them are highly polymorphic, and uses interesting tricks. We also noticed that a few totally different packers were using similar functions for very specific tasks, which could mean that a few people are working together, and sharing their functions, to protect malicious applications against detection.

While browsing some locations looking for new released packers, we found some interesting sites. One of them was selling modified/hacked version of a two years old malicious packer, made to be sold:

From the help file you could read:

“ [REMOVED] is a powerful and stable "Undetected" tool against antivirus softwares for Windows operating systems.

[REMOVED] makes your files undetected which are detected by antivirus softwares as a virus, trojan, hack tool etc...
When you make your files undetected by [REMOVED], antivirus softwares will never alert for them!

DOES IT GET DETECTED FROM ANTIVIRUS PROGRAMS ? :
[REMOVED] Public Edition will be detected from most common anti virus softwares. If you want to Buy a Special Edition which never gets detected by Antivirus programs you can get more information by clicking here or send an email to
sale@[removed].com

Having registered, you get an opportunity to:

Get all versions of the the product for 1year FREE.
We give an offer to people who wants to own their registered [REMOVED] software just for 299$ (USD)”

Custom packers are being designed and sold more frequently as a means to avoid detection within signature based systems. Although many AV vendors are attempting to keep up via generic detection it’s an uphill battle with the sophistication and rise in numbers of samples and techniques.

We decided to look for different packers, and welcome to Packers Shop Inc:

Wait, you want some trading rather?:

How about public packers "mods" because of a lack of skills:


 

Those are just public sites, and the best tools are kept private. On the public sites we have visited, most people buying
private packers want to make their RAT or bot undetected, whereas the best packers/protectors (the ones you
cannot find or buy, unless you are a secure "partner") are used to protect rootkits, Banking Trojans and more.
Bookmark This Post:

Post a Comment: