Reverse Engineering RET Homepage RET Members Reverse Engineering Projects Reverse Engineering Papers Reversing Challenges Reverser Tools RET Re-Search Engine Reverse Engineering Forum Reverse Engineering Links

Go Back   Reverse Engineering Team Board > Search Forums
FAQ Members List Calendar Search Today's Posts Mark Forums Read

Showing results 1 to 25 of 25
Search took 0.18 seconds.
Search: Posts Made By: ac!d
Forum: File Unpacking 09-18-2011, 11:05 AM
Replies: 5
Views: 13,792
Posted By ac!d
a new protection id will be out soon (atm we are...

a new protection id will be out soon (atm we are still beta testing some things), so every one gets the latest detections

about the protection... read up some themida tutorials and also give the...
Forum: File Unpacking 09-16-2011, 09:49 PM
Replies: 5
Views: 13,792
Posted By ac!d
Protection ID

Protection ID
Forum: File Unpacking 09-16-2011, 10:18 AM
Replies: 5
Views: 13,792
Posted By ac!d
Scanning -> .\BM_FORAIR.exe File Type : 32-Bit...

Scanning -> .\BM_FORAIR.exe
File Type : 32-Bit Exe (Subsystem : Win GUI / 2), Size : 7823360 (0776000h) Byte(s)
[File Heuristics] -> Flag : 00000000000000001100000000100010 (0x0000C022)
[!] Themida...
Forum: .NET Reverse Engineering 08-11-2011, 10:24 PM
Replies: 9
Views: 17,838
Posted By ac!d
yep please upload it somewere, i would love to...

yep please upload it somewere, i would love to have a look at it. if it is a new protection / modified stuff i'll add the detection into Protection ID :)
(perhaps our internal beta does already pick...
Forum: File Unpacking 08-01-2011, 12:09 PM
Replies: 22
Views: 36,138
Posted By ac!d
download UPX, google for it. then in command...

download UPX, google for it. then in command prompt do "UPX -d filename.exe" to decompress it automatically. (if it's a non 'hacked' upx version)
Forum: File Unpacking 07-27-2011, 08:41 AM
Replies: 2
Views: 11,372
Posted By ac!d
-=[ ProtectionID v0.6.4.1 JULY]=- (c) 2003-2011...

-=[ ProtectionID v0.6.4.1 JULY]=-
(c) 2003-2011 CDKiLLER & TippeX
Build 07/23/11-22:05:07
Ready...
Scanning -> .\packed.dll
File Type : 32-Bit Dll (Subsystem : Win CUI / 3), Size : 625152 (098A00h)...
Forum: File Unpacking 07-24-2011, 07:17 AM
Replies: 5
Views: 12,230
Posted By ac!d
ermmm this isn't even a exe file... its some...

ermmm this isn't even a exe file... its some config file etc. of some mech warrior game ;P
Forum: File Unpacking 07-16-2011, 01:03 PM
Replies: 5
Views: 13,280
Posted By ac!d
possibly a false positive due outdated/buggy...

possibly a false positive due outdated/buggy signatures, try scanning it with Protection ID.
Forum: File Unpacking 06-11-2011, 01:24 PM
Replies: 2
Views: 10,874
Posted By ac!d
google for Shrinker v3.4, it should still be...

google for Shrinker v3.4, it should still be somewhere around the net, even it was released back in 1999...
Forum: .NET Reverse Engineering 04-28-2011, 11:42 AM
Replies: 11
Views: 17,054
Posted By ac!d
yep first time here too to see it being used for...

yep first time here too to see it being used for protecting a net app.
and pid does detect it fine :)

Scanning -> .\xxxxxx
File Type : 32-Bit Dll (Subsystem : Win CUI / 3), Size : 68608 (010C00h)...
Forum: Reverse Code Engineering 03-24-2011, 12:04 PM
Replies: 5
Views: 7,867
Posted By ac!d
lol yeah i would like that too ;P

lol yeah i would like that too ;P
Forum: File Unpacking 03-21-2011, 09:58 PM
Replies: 3
Views: 14,168
Posted By ac!d
there is no version info stored inside the exe...

there is no version info stored inside the exe that i know of, give Protection ID a chance, it does detect it like v5.01 or v5.03 - v5.04. we are currently working on an exact way, all signature...
Forum: File Unpacking 03-15-2011, 12:56 PM
Replies: 15
Views: 22,866
Posted By ac!d
scanned with protection id gave the following...

scanned with protection id gave the following info:

Scanning -> .\BM_FORAIR.exe
File Type : 32-Bit Exe (Subsystem : Win GUI / 2), Size : 3124736 (02FAE00h) Byte(s)
[File Heuristics] -> Flag :...
Forum: File Unpacking 02-23-2011, 10:20 AM
Replies: 3
Views: 18,245
Posted By ac!d
Scanning -> .\UnpackMe_UPolyX-0.5.dll File...

Scanning -> .\UnpackMe_UPolyX-0.5.dll
File Type : 32-Bit Dll (Subsystem : Win GUI / 2), Size : 305152 (04A800h) Byte(s)
-> File has 51712 (0CA00h) bytes of appended data starting at offset...
Forum: Reverse Code Engineering 02-03-2011, 11:33 AM
Replies: 6
Views: 8,997
Posted By ac!d
google some .net debuggers (dile, reflector..)...

google some .net debuggers (dile, reflector..) and read some docs.
if your target is not packed or obfuscated it should not be that hard to crack it.

also google .net reversing as i think you don't...
Forum: Reverse Code Engineering 01-30-2011, 02:18 PM
Replies: 6
Views: 8,997
Posted By ac!d
PEiD does not recognize .net protectors, scan the...

PEiD does not recognize .net protectors, scan the files with Protection ID and post the log.


olly is for win32 pe file debugging and does not really fit for '.net patching'.
Forum: File Unpacking 01-26-2011, 09:09 PM
Replies: 4
Views: 13,503
Posted By ac!d
the single exe is useless when debugging... needs...

the single exe is useless when debugging... needs other dlls...
unpacking it with olly shouldn't be a big deal since its only an exe packer.
Forum: .NET Reverse Engineering 01-17-2011, 11:29 AM
Replies: 4
Views: 12,032
Posted By ac!d
definitively Protection ID, as it gets updated on...

definitively Protection ID, as it gets updated on a regular basis and currently detects about 25 different .net packers, obfuscators/protectors and licensing modules.

another tools is DNiD wich also...
Forum: Reverse Code Engineering 01-05-2011, 10:14 PM
Replies: 13
Views: 11,499
Posted By ac!d
hey there copy cd by nero ;) learn some english...

hey there copy cd by nero ;)

learn some english and don't request cracks here.
lol u didn't show any single step you've done for yourself.
Forum: .NET Reverse Engineering 01-01-2011, 04:27 AM
Replies: 5
Views: 11,551
Posted By ac!d
yeah, but interesting protection :)

yeah, but interesting protection :)
Forum: File Unpacking 10-31-2010, 03:37 PM
Replies: 2
Views: 11,628
Posted By ac!d
Protection ID scan: Scanning ->...

Protection ID scan:

Scanning -> .\3dcontrol.dll
File Type : 64-Bit Dll (Subsystem : Win GUI / 2), Size : 2125824 (0207000h) Byte(s)
[!] Warning : File is 64 Bit, this os is NOT
[File Heuristics] ->...
Forum: .NET Reverse Engineering 10-29-2010, 07:58 PM
Replies: 1
Views: 10,505
Posted By ac!d
next time post some scan logs so people know what...

next time post some scan logs so people know what protection is used on the file they are downloading.

here is the Protection ID output:

Scanning ->.\ODIN-AB.exe
File Type : 32-Bit Exe (Subsystem :...
Forum: File Unpacking 10-03-2010, 11:35 AM
Replies: 2
Views: 13,084
Posted By ac!d
FastScanner v3.0 is wrong, no ASProtect in here....

FastScanner v3.0 is wrong, no ASProtect in here. the exe was compiled with Visual Fox Pro.
Forum: .NET Reverse Engineering 09-24-2010, 11:00 PM
Replies: 2
Views: 10,519
Posted By ac!d
try Protection ID v6.4.0, it does detect alot of...

try Protection ID v6.4.0, it does detect alot of .net protectors
Forum: Reverse Code Engineering 09-22-2010, 11:23 AM
Replies: 7
Views: 6,732
Posted By ac!d
you scanned the setup.exe / installer, not the...

you scanned the setup.exe / installer, not the software. hence protection id detected setup factory module ;)

- install the software
- run protection id
- tick the 'Log Filter' checkbox (the left...
Showing results 1 to 25 of 25

 
Forum Jump




Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2021, Jelsoft Enterprises Ltd.