dikidera
April 19th, 2011, 06:47
I am strictly a newbie, but the reason i posted here is because i am dealing with a packer.
What did i try?
I tried using peid,protection_id, PE Explore from heaven tools, RDG and they all said that either it wasn't packed or packed with an unknown packer.
I tried dumping the process, and while that did make the file larger and the exe was still working, it was still not unpacked.
I used Packingstone plugin for peid and it said it wasn't packed, but when opening the file with olly it said it was compressed.
Peid only tells me that the EP and Entropy is packed, but no info on packer(custom packer?)
I have seen the true unpacked version of this file and it gives no such error in olly meaning it was unpacked therefore it was packed.
So how do i find a packer, which is unknown and no tool has it's signatures?
What did i try?
I tried using peid,protection_id, PE Explore from heaven tools, RDG and they all said that either it wasn't packed or packed with an unknown packer.
I tried dumping the process, and while that did make the file larger and the exe was still working, it was still not unpacked.
I used Packingstone plugin for peid and it said it wasn't packed, but when opening the file with olly it said it was compressed.
Peid only tells me that the EP and Entropy is packed, but no info on packer(custom packer?)
I have seen the true unpacked version of this file and it gives no such error in olly meaning it was unpacked therefore it was packed.
So how do i find a packer, which is unknown and no tool has it's signatures?