- infects PE files (DLL/EXE);
- does not change section attributes of the file infected;
- stores the first polymorphic decryptor in the first executed section;
- expands the last section and stores useful load there, as well as stolen data and additional information; all that is stored encrypted and with different keys;
- applies the Extended EPO method to transfer control to the first decryptor;
- the second decryptor is built by the "Infernal trash" method aimed at complicating the treatment;
- written in C with ASM inlines;
- every infected file will contain useful load.
-
Notifications
You must be signed in to change notification settings - Fork 0
TheComputerGuy96/Polymorphic
Folders and files
| Name | Name | Last commit message | Last commit date | |
|---|---|---|---|---|
Repository files navigation
About
This is sample source code of Polymorphic-family computer viruses.
Resources
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published