1. To visit protected / private sections of the forum you must be connected with your user account. If you are not yet a member of our forum, you can create it now for free!.

User Tag List

Thread: Phobos

Results 1 to 2 of 2

  1. #1
    sagitari0's Avatar
    Junior Member
    Join Date Dec 2017
    Posts 23
    Like (Stats)
    1 Post(s)
    0 Thread(s)
    2 Post(s)


    Hey folks,

    I'm sharing with you Phobos. Phobos is a malware stub generator. You pass a file that you want to 'fake' and your malware.
    Phobos will create a executable with same name and icon of yout file to be faked, but, your malware gonna be inside.
    The name came from one of the two natural satellites of Mars.

    phobos.exe -originalFile bills.xlsx -malwareFile wannacry.exe -iconFile xlsx

    In the stub directory, phobos will create bills.xlsx.exe and your source code. When the victim open the file, the xlsx will be open and the malware will be executed.
    The types accepted are: pdf, mp3, doc, docx, xls, xlsx. The types are few but I want to add more.

    1 - As you can see, the stub name terminates with .exe, this can be a problem to a smart victim or if option 'hide extentions file' not checked.

    Please, give me a feedback to improve next versions.
    Attached Files
    Last edited by sagitari0; 11-01-2019 at 01:57.
    sorry for my english, its not my native language

    padwan in malware, padwan in hacking, jedi to find bugs in my life.

    WickrMe : sagitari0
  2. Likes hitman56, Harakiri liked this post
  3. #2
    Junior Member
    Join Date Oct 2018
    Posts 5
    Like (Stats)
    0 Post(s)
    0 Thread(s)
    1 Post(s)
    That '.exe' is a bad flag that is noticeable. work on that!

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts