PaulDotCom mailing list archives

packers....


From: netevil at hackers.it (NetEvil)
Date: Sat, 6 Feb 2010 15:21:21 +0100

Hi Duncan,
I've not tried Polypack yet...but i'm going to give a try and see! ;)
Thanks! I'll let you know how much is detected...
David


Hi David,

Have you tried Polypack (http://polypack.eecs.umich.edu/)

I have not used it my self but have heard good things.

Cheers

D

On 5 February 2010 07:31, NetEvil <netevil at hackers.it> wrote:
Hi guys,
In my pentest i have 2 binaries, the first evil and the second
trusted..both undetected by AVs..
But when i pack them together...(I've tried many tools..) the
resulting bin is often detected as "evil packed file.." or something
like that...and this is not stealth as i would it to be...
...Then i have to work on the final bin trying to remove detected
signature...but it's always painful ...
Is it the only way to do it? or i am missing  some undetected
packer?..maybe have i to write it in my own :?

Thanks in advance
...and wish you all a lot of fun at shmoocon! ;-)

David
_______________________________________________
Pauldotcom mailing list
Pauldotcom at mail.pauldotcom.com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com




-- 

Duncan Alderson | Zeb3dee
webantix.net | clamtech.co.uk
_______________________________________________
Pauldotcom mailing list
Pauldotcom at mail.pauldotcom.com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20100206/208c3cc3/attachment.htm 


Current thread: