|
Full Version: Executable Packers
Is there a kind of tool that can analyse the executable-packer of a compressed exe... i know u can find this out by opening the exe in a hex-editor or reshacker but in the most cases it didn't work for me..
http://www.kaspersky.com/scanforvirus.html will tell you
e.g. wnshll.exe Packed: Morphine wnshll.exe Packed: UPX wnshll.exe Infected: Backdoor.Winshell.50
I use Aspack.
When its packed use antivir or norten and it find nothing greetz phoney
i have analysed the executable with PEiD
it's rewritted with morphine 1.2 is there any way to get the executables info back?
Yeah, you can try these dumpers/unpackers: http://wasm.ru/tools/6/qunp.zip http://wasm.ru/tools/6/petools.zip http://wasm.ru/tools/6/lordpe14.zip http://wasm.ru/tools/6/petool.zip But after dumping you will have to change file a little... if you don't know asm, you won't succeed. This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
|
||