;D


once again a undetection paper by me ............




some av scanning your code ( delphi) for the units you are using ............
some very simple trick will get a rid of it ! for example the spynet detection of the stun on McAfee is placed there.....


mark the section where the unit names are placed .... near the End Of File

and overwrite it with random bytes ( most hexeditors offer this function ....


haZl0oh





before :

File Info

Report generated: 8.2.2009 at 0.30.42 (GMT 1)
Filename: SERVERFILE_SERVER.exe
File size: 230 KB
MD5 Hash: 6FD4937515138CABBAF94FDCD8118308
SHA1 Hash: A20B51B22FBFA43AF55BD4D64D6A9B982ED35484
Packer detected: Borland Delphi 6.0 - 7.0
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 13 on 24

Detections

a-squared - Riskware.Win32.DelfInject!IK
Avira AntiVir - TR/Spy.Gen
Avast - Win32:Agent-ADAS [Trj]
AVG - Nothing found!
BitDefender - Virtool.25137
ClamAV - Nothing found!
Comodo - Nothing found!
Dr.Web - DLOADER.PWS.Trojan
Ewido - Nothing found!
F-PROT 6 - W32/DelfInject.A.gen!Eldorado
G DATA - Win32:Agent-ADAS [Trj] B
IkarusT3 - VirTool.Win32.DelfInject
Kaspersky - Nothing found!
McAfee - Generic.dx trojan
MHR (Malware Hash Registry) - Virus Found - detect rate 19%
NOD32 v3 - Win32/Genetik
Norman - Nothing found!
Panda - Nothing found!
Quick Heal - Nothing found!
Solo Antivirus - Nothing found!
Sophos - Mal/Emogen-Y
TrendMicro - Nothing found!
VBA32 - Backdoor.XiaoBird.85
Virus Buster - Nothing found!

Scan report generated by
NoVirusThanks.org




after :


File Info

Report generated: 8.2.2009 at 0.36.02 (GMT 1)
Filename: SERVERFILE_SERVER.exe
File size: 230 KB
MD5 Hash: 36B787FADA797BCCF3AFE40DE3396FED
SHA1 Hash: C26958D2FB9CD70217D1E9DE986D9BE3B0F9DB03
Packer detected: Borland Delphi 6.0 - 7.0
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 11 on 24

Detections

a-squared - Riskware.Win32.DelfInject!IK
Avira AntiVir - TR/Spy.Gen
Avast - Win32:Agent-ADAS [Trj]
AVG - Nothing found!
BitDefender - Virtool.25137
ClamAV - Nothing found!
Comodo - Nothing found!
Dr.Web - DLOADER.PWS.Trojan
Ewido - Nothing found!
F-PROT 6 - W32/DelfInject.A.gen!Eldorado
G DATA - Win32:Agent-ADAS [Trj] B
IkarusT3 - VirTool.Win32.DelfInject
Kaspersky - Nothing found!
McAfee - Nothing found!
MHR (Malware Hash Registry) - Nothing found!
NOD32 v3 - Win32/Genetik
Norman - Nothing found!
Panda - Nothing found!
Quick Heal - Nothing found!
Solo Antivirus - Nothing found!
Sophos - Mal/Emogen-Y
TrendMicro - Nothing found!
VBA32 - Backdoor.XiaoBird.85
Virus Buster - Nothing found!

Scan report generated by
NoVirusThanks.org