Full Version: Executable Packers
Alexander01
Is there a kind of tool that can analyse the executable-packer of a compressed exe... i know u can find this out by opening the exe in a hex-editor or reshacker but in the most cases it didn't work for me..
laggy
http://www.kaspersky.com/scanforvirus.html will tell you wink.gif

e.g.

wnshll.exe Packed: Morphine
wnshll.exe Packed: UPX
wnshll.exe Infected: Backdoor.Winshell.50
Progressor
The best file analyzer:

http://peid.has.it
misa
and the best page to find unpackers:

http://www.exetools.com/unpackers.htm
migo
why don't u try
Pro Tools

wink.gif
phoney
I use Aspack.
When its packed use antivir or norten and it find nothing wink.gif

greetz phoney
Alexander01
i have analysed the executable with PEiD
it's rewritted with morphine 1.2
is there any way to get the executables info back?
Progressor
QUOTE (Alexander01 @ Apr 12 2004, 07:36 PM)
i have analysed the executable with PEiD
it's rewritted with morphine 1.2
is there any way to get the executables info back?

Yeah, you can try these dumpers/unpackers:

http://wasm.ru/tools/6/qunp.zip
http://wasm.ru/tools/6/petools.zip
http://wasm.ru/tools/6/lordpe14.zip
http://wasm.ru/tools/6/petool.zip

But after dumping you will have to change file a little... if you don't know asm, you won't succeed.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.