Log in

View Full Version : Stud_PE 1.5b preview


unknownone
August 4th, 2002, 18:30
..greatz

Since i don't know when i'll finish this proggie...

http://christig.virtualave.net/ITimer/zipp/Stud_PE1.5b.zip

homepage:
www.itimer.home.ro

ZaiRoN
August 4th, 2002, 18:39
hi!
it seems a good tool!!!
i like the 'advanced tree view in hexeditor', very original

ciao,
ZaiRoN

Hoof Arted
August 4th, 2002, 21:47
I am impressed..... Very nice!!!! Thanks for sharing it with us and I would like the finished version when you get there.

Hoof

wbe
August 4th, 2002, 23:44
Nice tool.

A good visualization aid for those who'd like to study the PE Header in detail.

Congratulations.

wbe

Exocist
August 5th, 2002, 00:57
have to agree, nice tool.. well done

-Ex

snaker
August 7th, 2002, 12:08
unknownone,

Your tools sure is good.
Most ideas are genuine and nicely implemented!
But your signature scanner *IS* *SURELY* ripped from PEiD

Why you do that without permission?
You dont even have a Greeting/Thanks to point that out!

This is bad you know

Bengaly
August 7th, 2002, 18:48
yay!
no fun when it comes to stealing info =/

i'll contact u snaker if i'll need one for my detector just to make u feel u did great job over PeId
ah well...

cyberheg
August 7th, 2002, 19:20
Both Peid and this other program are both freeware and both used in most cases by crackers to produce cracks and help them to ease their work in their effort to pirate comercial software. I bet either of you can't deny that it didn't cross your mind when you made it.
As for credits ofcourse he could have given you some but does it matter? I mean I would be happy enough to implement a feature good enough that people would actually use it in their own programs. This just means you made something innovative which not only you find good.

BTW. I tried this Stud_PE with a prog I wrote in Visual C++ 6.0 MFC in debug mode and it detected it as Visual C++ 5.0 while 6.0 is also on the list. I assume that is a bug.

unknownone
August 7th, 2002, 20:08
it was only a preview...
anyway...it's your work making that database (GREAT JOB)
...in the releas a'll show it...
maby we'll colaborate in the future.. visit us #rcf@undernet

sorry reversing your peid

greatz

snaker
August 8th, 2002, 04:01
cybergh: I dont agree with you that PEiD is build to help ease pirating jobs. I mean come on man, being on this forum you should know that cracking isnt all that is done by us.

Heh, yeah I'm not too much into greets, but when you use other people's code, the least you can do is mention that. You see, Qwerton might have spent some time developinf the scanning methods, and all people have to do is rip it.

About the Visual C++ 6.0/5.0 detection. I dont think there is a surefire signature byte way of detecting/distinguishing either. Most other identifiers try to do it with the linker version stored in the file.

Bengaly: Qwerton and me I think would be happy to let out some of the sources of PEiD for other people to use. Its coded in ASM, so if and when you need it, maybe write us a mail and we'll send

Bengaly
August 9th, 2002, 00:46
thnx Snaker!

as soon as i finish my disasm engine (bah..mabye next year heheh..too much opcodes)
i will contact for some signatures bytes
keep up the good work.
Ben

unknownone
December 4th, 2002, 23:13


download (http://itimer.home.ro/studpe.html)

greatz
unknownone

Snatch
December 5th, 2002, 03:49
I have written a disassembly engine if you make a good opcode class it really is not to hard. In fact on the web you can even find some if you need .

Snatch