• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

Stud PE V2.4.0.1 released

Status
Not open for further replies.

SP

Leech #800000
Shadow
User
Joined
Oct 23, 2011
Messages
230
Reputation
0
Reaction score
602
Points
93
Credits
0
‎13 Years of Service‎
77%
What's new in latest release:

2.4.0.1 - 02 apr 2008

-fixed a bug with imported functions name lenght;

-added external signature verifier; writed a note about signatures;

-fixed RVA2RAW for UPACK which has EP inside PE HEADER; now imports are shown fine;

-added basic disassembler from hexeditor right click menu;

-fixed showing which export is in fact a forwarder to other dll; like HeapAlloc in kernel.dll;

-added process memory dumper/viewer; right click on the process you want to inspect; you can

use dissasambler (from right click menu inside the hexeditor) to see how the code looks at

certain VA; the difference from other (dumpers LordPE, ProcDump, PETools) is that it can dump/view code blocks protected with PAGE_GUARD or NOACCESS flags.

2.2.0.5 - 19 mar 2006

-Open Folder option in Procs list;

-fixed dos header word array - 10x TQN;

-fixed showing wrong signature searching time on PEs with EP 0 - 10x marciano;

-removed a validity check..some packed with asprot files didn't show any res dir;

-it now shows the forwarder exports;

-TLS table editor/viewer;

-new option in hexeditor :select up to 4 bytes the from menu -> GoToRAW GoToRVA GoToVA;

-option to view what is the virtual address of slected byte in hexeditor;

-"Mark Sel"ection inside hexeditor;

-"History" of recent Blocks of data viewed inside hexeditor;

-it will see imports like upack imports (names inside header);

download :
This link is hidden for visitors. Please Log in or register now.


 
Status
Not open for further replies.
Back
Top