AntiFooling v1.0.0 - Prevent the Malware Execution

Discussion in 'other anti-malware software' started by guest, Dec 6, 2016.

  1. guest

    guest Guest

    http://indetectables.net/viewtopic.php?f=7&t=55796

    It basically simulates that you are running a VM so the some/most malware won't try to infect your machine
     
  2. boredog

    boredog Registered Member

    Joined:
    Feb 1, 2015
    Posts:
    2,499
    adguard doesn't like the site and blocks it.
     
  3. guest

    guest Guest

    https://github.com/ScorpioTM/AntiFooling

     
    Last edited by a moderator: Dec 6, 2016
  4. StillBorn

    StillBorn Registered Member

    Joined:
    Nov 19, 2014
    Posts:
    187
    Yeah, the image and therein impression(s) of even the slightest trace of professionalism could sure use some work... https://github.com/LordNoteworthy/al-khaser (derived from the link in post #3).

    ~ Image Removed As Per Policy - However, Image is Found On the Above Link ~
     
    Last edited by a moderator: Dec 6, 2016
  5. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    13,597
    Location:
    The Netherlands
    Interesting tool, HMPA also offers this feature.
     
  6. genieautravail

    genieautravail Registered Member

    Joined:
    May 6, 2012
    Posts:
    109
    Somebody has links for the executables ?
     
  7. clubhouse1

    clubhouse1 Registered Member

    Joined:
    Sep 26, 2013
    Posts:
    1,124
    Location:
    UK

    http://seclist dot us/antifooling-prevent-the-malware-execution.html
     
  8. genieautravail

    genieautravail Registered Member

    Joined:
    May 6, 2012
    Posts:
    109
    Thank you @clubhouse1 but it's a link for the script. :(

    I have already the script, I would like the exe files ! :blink:
     
  9. genieautravail

    genieautravail Registered Member

    Joined:
    May 6, 2012
    Posts:
    109
    Sadly, if you compile the script, you get an executable without interface and options. :(

    I'm searching the executables derived from the script.
    You can see a screenshot of them on this page: http://indetectables.net/viewtopic.php?f=7&t=55796
     
  10. clubhouse1

    clubhouse1 Registered Member

    Joined:
    Sep 26, 2013
    Posts:
    1,124
    Location:
    UK
    Well the executable's are in the following link 32 and 64 bit flavours...I don't know the hash files to check their authenticity...


    http://www dot zonavirus.com/noticias/2016/antifooling-simula-que-una-maquina-es-virtual-para-que-algunos-malware-no-se-ejecuten.asp
     
  11. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    4,881
    Well, I put this, through Google Translate: hXXp://www.hackplayers.com/2016/12/antifooling-simular-que-tu-maquina-es-virtual.html

    And, it will come up with this, in English: hXXps://translate.google.com.au/translate?sl=auto&tl=en&js=y&prev=_t&hl=en&ie=UTF-8&u=http%3A%2F%2Fwww.hackplayers.com%2F2016%2F12%2Fantifooling-simular-que-tu-maquina-es-virtual.html&edit-text=

    Make of it, what you will. ;)
     
  12. clubhouse1

    clubhouse1 Registered Member

    Joined:
    Sep 26, 2013
    Posts:
    1,124
    Location:
    UK
  13. genieautravail

    genieautravail Registered Member

    Joined:
    May 6, 2012
    Posts:
    109
    @clubhouse1
    thank you very much for the links, it's exactely what I wanted! :)
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.