demon-i386 / zoshrinkC2

DNS over HTTPS targeted malware (only runs once)
Other
95 stars 9 forks source link

Have you tested Windows? #1

Open badboycxcc opened 1 year ago

badboycxcc commented 1 year ago

Have you tested Windows?

demon-i386 commented 1 year ago

only the artifact was tested on windows, however, the auto-delete functionality is not working yet

badboycxcc commented 1 year ago

OK,Can you bypass the killing software?

demon-i386 @.***> 于2023年5月9日周二 22:49写道:

only the artifact was tested on windows, however, the auto-delete functionality is not working yet

— Reply to this email directly, view it on GitHub https://github.com/demon-i386/MeliziaC2/issues/1#issuecomment-1540281528, or unsubscribe https://github.com/notifications/unsubscribe-auth/ARFYSVKZZTLET5ANORPRBDLXFJKRFANCNFSM6AAAAAAX3B5FOE . You are receiving this because you authored the thread.Message ID: @.***>

demon-i386 commented 1 year ago

what killing software?

badboycxcc commented 1 year ago

Windows Defender、Kaspersky、Norton...

demon-i386 commented 1 year ago

AV software has not yet been tested, however, the last time I sent two samples (non-executed and executed) to nodistribute, I had no detections.