Archive Helmet Icon Archive A Reconstructed © MegaSecurity Database

Polymorphic Downloader 2.0

Released 23 years, 9 months ago. July 2002

Copyright © MegaSecurity


Polymorphic Downloader 2.0
Informations
Family Aphex's Polymorphic WebDownloader
Category Remote Access
Version Polymorphic Downloader 2.0
Released Date Jul 2002, 23 years, 9 months ago.

Author Information / Description
EES Polymorphic Downloader by Aphex of EES

A downloader that is impossible to detect?

Yes and no.

Anti-virus scanners detect trojans and other malware by comparing the characteristics
of the file to other known threats. CRC checks, import tables, static strings and
encryption algorithms are among the most popular methods of detection. 

A web downloader has but a single purpose and that is to download a file from a url
and execute it. There are a limited number ways to encrypt the exact same procedures
but if other operations are added to the procedures it will result in a uniqely different
file and the effectiveness of encryption is increased exponentially, raising the
difficulty of detection using these methods out of the scope of current Anti-virus
technology.

IN OTHER WORDS: generated downloader + exe encrypter = UNDETECTABLE

I recommend tElock 0.98, it is simple to use and very powerful.

http://linux20368.dn.net/protools/files/packers/telock.zip

Aphex

This archive is an almost-complete reconstruction of the legendary Mega Security (also known as Kobayashi), a premier 90s-era "Trojan Database" where malware authors once showcased their work. After a decade offline, the site was brought back in August 2024 by its original creator, MasterRat, who authorized the Malware Gallery to host this modernized, searchable version of the collection. While the original site remains available for those seeking a nostalgic, old-school experience, we are proud to continue its legacy here. Full credit and thanks go to MasterRat and the retired Mega Security staff for their years of dedicated work in cataloging these historical samples.