
no tengo el stub original porque lo borre y no lo encontre pero bueno les dejo como la deje
Scan del stub ahora:
File Info
Report generated: 10.8.2009 at 22.31.08 (GMT 1)
Filename: stub-copia.exe
File size: 402 KB
MD5 Hash: 07916470f9ff8ef76e4282b49556386c
SHA1 Hash: 01B83CD8C031913E1C14F92052EA746CDF2F0096
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 1 on 22
Detections
a-squared Nothing Found!
Avira AntiVir - TR/Dropper.Gen
Avast Nothing Found!
AVG Nothing Found!
BitDefender Nothing Found!
ClamAV Nothing Found!
Comodo Nothing Found!
Dr.Web Nothing Found!
Ewido Nothing Found!
F-PROT6 Nothing Found!
Ikarus T3 Nothing Found!
Kaspersky Nothing Found!
McAfee Nothing Found!
NOD32 v3 Nothing Found!
Norman Nothing Found!
Panda Nothing Found!
QuickHeal Nothing Found!
Solo AntivirusNothing Found!
Sophos Nothing Found!
TrendMicro Nothing Found!
VBA32 Nothing Found!
VirusBuster Nothing Found!
Scan report generated by
[Enlace externo eliminado para invitados]
Server del PI:
File Info
Report generated: 11.8.2009 at 0.10.05 (GMT 1)
Filename: crypted.exe
File size: 408 KB
MD5 Hash: 4d05fcd908a3e5042b6675eb07b55175
SHA1 Hash: A0F94DEA173E71B5DD707F4829F1BE073653E9AF
Self-Extract Archive: Nothing found
Binder Detector: Nothing found
Detection rate: 1 on 22
Detections
a-squared Nothing Found!
Avira AntiVir - TR/Dropper.Gen
Avast Nothing Found!
AVG Nothing Found!
BitDefender Nothing Found!
ClamAV Nothing Found!
Comodo Nothing Found!
Dr.Web Nothing Found!
Ewido Nothing Found!
F-PROT6 Nothing Found!
Ikarus T3 Nothing Found!
Kaspersky Nothing Found!
McAfee Nothing Found!
NOD32 v3 Nothing Found!
Norman Nothing Found!
Panda Nothing Found!
QuickHeal Nothing Found!
Solo Antivirus Nothing Found!
Sophos Nothing Found!
TrendMicro Nothing Found!
VBA32 Nothing Found!
VirusBuster Nothing Found!
Scan report generated by
[Enlace externo eliminado para invitados]
Atencion: para sacar la HEUR del kav al encryptar ir al offset 22000 y cambiar el valor "65" por "90"
Descarga:
[Enlace externo eliminado para invitados]
Saludos