Jump to content
CreateAndInject

What is the packer?

Recommended Posts

Seems like a home-made stuff; but its very poor :

 

de4dot to clean call + rename

SAE in-built deobfuscator to clean control flow (If there is actually some cflow)

 

edit :

 

Custom section header

mZFtlXh.png

 

watermark in the #US Heap :

 

eG1MRt6.png

 

 

http://info.wibusystemsusa.com/blog/bid/282264/CodeMeter-5-0-released

 

Good luck it's using Dongles :closedeyes:

Edited by Xenocode

Share this post


Link to post

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now

×
×
  • Create New...