Metasploit mailing list archives

Re: Packing an Exe produced using msfpayload and msfencode?


From: John Nash <rootsecurityfreak () gmail com>
Date: Mon, 13 Sep 2010 21:30:39 +0530

sorry, i should have mentioned the purpose was AV evasion ...

Ok let me through a use case at you:

1. Exe A was encoded using msfencode ..... was detected by AV X

2. Exe A was then packed with Upx .... was not detected by AV X

have you ever encountered a scenario like this?



On Mon, Sep 13, 2010 at 7:01 PM, Rob Fuller <mubix () room362 com> wrote:

If there is a reason to. I have not had need to, in my personal experience.

--
Rob Fuller | Mubix
Certified Checkbox Unchecker
Room362.com | Hak5.org


On Mon, Sep 13, 2010 at 2:12 AM, John Nash <rootsecurityfreak () gmail com>wrote:

Is it worthwhile to pack executables produced by msfpayload or using
msfencoder?

can someone share their experience?


jn



_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework



_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework

Current thread: