Carbylamine – A PHP Script Encoder to ‘Obfuscate/Encode’ PHP Files


Carbylamine is a PHP Encoder project, which can bypass all leading anti-virus detection against PHP Shells (C99, R57 etc) easily. It can be a very efficient tool for pen-testers when carrying out a black box test which involves inserting malicious code via PHP.

Carbylamine - A PHP Script Encoder to Obfuscate Encode PHP Files


Usage

You can download Carbylamine here:

carbylamine.php

Or read more here.

Posted in: Cryptography, Hacking Tools, Secure Coding


Latest Posts:


tko-subs - Detect & Takeover Subdomains With Dead DNS Records tko-subs – Detect & Takeover Subdomains With Dead DNS Records
tko-subs is a tool that helps you to detect & takeover subdomains with dead DNS records, this could be dangling CNAMEs point to hosting services and more.
Arcane - Tool To Backdoor iOS Packages (iPhone ARM) Arcane – Tool To Backdoor iOS Packages (iPhone ARM)
Arcane is a simple script tool to backdoor iOS packages (iPhone ARM) and create the necessary resources for APT repositories.
SharpHose - Asynchronous Password Spraying Tool SharpHose – Asynchronous Password Spraying Tool
SharpHose is an asynchronous password spraying tool in C# for Windows environments that takes into consideration fine-grained password policies and can be run over Cobalt Strike's execute-assembly.
Axiom - Pen-Testing Server For Collecting Bug Bounties Axiom – Pen-Testing Server For Collecting Bug Bounties
Project Axiom is a set of utilities for managing a small dynamic infrastructure setup for bug bounty, basically a pen-testing server out of the box with 1-line.
Quasar RAT - Windows Remote Administration Tool Quasar RAT – Windows Remote Administration Tool
Quasar is a fast and light-weight Windows remote administration tool coded in C#. Used for user support through day-to-day administrative work to monitoring.
Pingcastle - Active Directory Security Assessment Tool Pingcastle – Active Directory Security Assessment Tool
PingCastle is a Active Directory Security Assessment Tool designed to quickly assess the Active Directory security level based on a risk and maturity framework.


6 Responses to Carbylamine – A PHP Script Encoder to ‘Obfuscate/Encode’ PHP Files

  1. Sjon April 10, 2012 at 11:50 am #

    Really? All this script does is:

    $code = base64_encode(gzdeflate($code)); eval(gzinflate(base64_decode($code));

    I don’t understand this gets posted here.

    • JonS April 10, 2012 at 2:25 pm #

      Other things are also there, mate ! Look carefully !

    • Darknet April 10, 2012 at 4:22 pm #

      Submit something awesome that you’ve written, it’ll probably get posted too :)

  2. Sro April 23, 2012 at 6:09 pm #

    For PT, i use basic file