how to break 99% of GDI malwares through any HEX editor

แชร์
ฝัง
  • เผยแพร่เมื่อ 6 เม.ย. 2023
  • song used - Dirtface Slanger - Dirtface Slanger
    song used - RHODAMINE - Darkzone
    to prevent your malware from that kind of patching use "xorstr" encryption for strings
    tags (ignore):
    virus, viruscheck, trojan, malware, windows, exe, memz, windows 7, вирус, вирусы от подписчиков, windows 10, mbr, trojans, вирус чек, вирусчек, windows xp, wncry, vmware, .exe, microsoft, вирусы на компьютере, computer, wannacry, ransomware, viruses, вирусы, wanadecryptor 2.0, how to remove malware, вирусология, антивирус, memz virus, вирус чек мемз, windows 11, memz trojan, wobbychip, xp, saw, bsod, horror, experiments, win32, вирусы от подписчиков #1, vmware workstation, майнкрафт но, windows 11 features, майнкрафт, троян, worms, system, blue, horror virus, creepy, worm, тестирование, убийство windows, screen, kitteyhacker, вирусы от подписчиков #4, operating, 2000, angry cow, of, death, хоррор игры, хоррор, наука и техника, mrsmajor, проверка, horror-virus, вирус на компе, android, meme, winxp.horror.destructive, virus removal, subscribe, вирусы от подписчиков #8, technology, pc, вирусы от подписчиков #6, winxp, glitch, master boot record, malware removal, danooct1, how to remove virus, se, antivirus, ms-dos, disk, youareanidiot, virii, malware вирус, malware youtube video, malwareyoutuber, saw.exe, как удалить вирусы, tronscript, компьютер, remove virus, dos, old, how to get rid of viruses, 000.exe, creepypastas, 000, компьютерные вирусы, amogus, вирусы от подписчиков #3, амогус, viruscheck memz, tutorial, software, how to remove virus from pc, 95, ms, 98, remove trojan, win32 soundcloud, coronavirus, corona virus, trojan memz, testing viruses on computer, check viruses, mobile, hacker, anti-virus, хакер, veryfun, youtube, виндовс, технология, trojan.memz.destructive, 2021, вирусы от подписчиков #8.mp4, google search, on, в майнкрафт, bossdamajor, expirements, check, memes, malware analysis, test, virus check, windows 10 pro, virus song, lasttrojan, андер, undermind, андермайнд, ben, pc virus removal, hacktool 4.0, computer virus, проверка вирусов viruses check viruscheck вирусчек memz trojan, love you virus, как уничтожить windows, страшный вирус на компьютер, scary virus pc, scariest virus, chrome.exe вирус, bug32, click fix, to fix, error, meme, virus, хакеры в фильмах, win32.exe, ben32.exe, you are an idiot virus, #malware, free, winlock, creepypasta stories, serial killer, killer, solaris, hysterium, nikitpad, siam alam, solaris virus, gdi, creepypasta, excel, office, msoffice, word, powerpoint, youareanidiot virus, oz вирус, win32.trojan.ransom.oz, ransomware вирус, trojan.ransom.oz, speedup, pcslowing, clear trojan, амогус мем, digital viruses, adware, what is computer viruses, pc viruses, among us, colombus, scary virus, reboot, defender, windowsdefender, antitrojan, iphone virus, efficiency, bytes, anti, virusremoval, windows10, antimalware, loaris trojan remover, скачать loaris, download loaris, software tutorial, trojan remover, загрузить loaris, how-to, properly, scan, removal, как удалить троян, спам, spyware, destructive, china social credit john xina, john xina, tags: china social credit meme, china social credit system, social credit meme, social credit, remove trojan virus, remove trojan from windows 10, убийца windows, trojan.mr.karich (убийца windows) (virus), trojan.vova.exe + petya, petya.a, how to remove trojan virus from windows, paint, virus petya, petya.exe, china social credit test meme, zhong xina, detonate the bomb.exe, anonim, detonate the bomb, илон маск, виртуальная машина, anonim cow, bomb, mbr game, game, cow, convert mbr to gpt, nyan cat meme, nyan cat, трояны, cyber soldier, social credit test zhong xina (virus), social credit test zhong xina, winxp memes edition, winxp memes edition.mp4, funny memes, fresh memes, felofox, dank memes, #viruscheck, #malwares, wipet, гипнотизирующий троян, quantizer.exe - жёсткий, quantizer.exe.mp4, quantizer.exe, гипнотический троян, самый опасный компьютерный вирус, самый кринжовый и очень громкий вирус, mrs major 4.0, вирусы на пк, lr_lasttrojan, eurorack quantizer, quantizer, как удалить вирус, programming, pctoaster, java, удалить вирус, удалить вирус с компьютера, malware pctoaster (win32), windows nt, leurak, хлебушек, вирус lasttrojan, #вирусы, mrsmajor2.0.exe, mrsmajor 2.0.exe, #партнёрка, #проверка, #tech, #trojans, #check, #viruses, mrsmajor 2.0, mrsmajor.exe, вирус убивает, peppa pig.exe, lol.exe, очень стрёмный вирус lasttrojan, wn cry, оптимизация видео, microsoft windows 98, trojan.memz. - система убита., trojan.memz & windows 11

ความคิดเห็น • 17

  • @bryld_
    @bryld_ ปีที่แล้ว

    nice

  • @VirusNew17
    @VirusNew17 ปีที่แล้ว

    Впервые вижу такие gdi 😳👍

  • @fr4ctalz638
    @fr4ctalz638 11 หลายเดือนก่อน

    you just made a quantizer-safety

  • @dinacostudio
    @dinacostudio ปีที่แล้ว

    Также мой вирус который будет делать перебор всех дисков и системный с загрузочный записью перезаписывать

  • @BodyAlhoha
    @BodyAlhoha ปีที่แล้ว

    time to xor the strings kek

    • @hessfire
      @hessfire  ปีที่แล้ว

      as i said in the description

    • @BodyAlhoha
      @BodyAlhoha ปีที่แล้ว

      @@hessfire oh i didnt see

  • @Velmi_r
    @Velmi_r ปีที่แล้ว

    cringe to assume PhysicalDrive0 is always the C: drive tbh

    • @hessfire
      @hessfire  ปีที่แล้ว

      you should use PhysicalDrive if you want to replace the bootloader

    • @Velmi_r
      @Velmi_r ปีที่แล้ว

      @@hessfire the bootloader of a non-system drive, yeah
      but otherwise you can use an incrementing integer from 0 to go through all possible drives (stopping if it errors) and replace the bootloader on each of them

    • @hessfire
      @hessfire  ปีที่แล้ว

      @@Velmi_r C: is a partition inside PhysicalDrive0
      BIOS checks for the first sector on a disk (512 bytes), so you have to write bootloader right into first sector, PhysicalDrive0 is perfectly a disk beginning

    • @Velmi_r
      @Velmi_r ปีที่แล้ว

      @@hessfire ik already, that's not what i meant
      what i meant is that PhysicalDrive0 does not always have to be the one with the system partition on it (which i assume alot of viruses do because it's like that on most if not all computers)
      in my case, my system drive is PhysicalDrive1, so if i ran a virus like this, it would only overwrite the MBR of my HDD and not affect my system drive at all

    • @hessfire
      @hessfire  ปีที่แล้ว

      @@Velmi_r ah, i understood
      actually 99% of GDI malwares that i had was explicitly writing to PhysicalDrive0, and my malwares also was explicitly using 0 drive
      will fix that in my future malwares, thanks!