PELock
From EverybodyWiki Bios & Wiki
PELock GUI | |
| Developer(s) | Bartosz Wójcik.[1] |
|---|---|
| Stable release | 2.1
/ June 2020 |
| Written in | 32-bit Assembler and C++ |
| Engine | |
| Operating system | Windows |
| License | Commercial software |
| Website | www |
Search PELock on Amazon.
PELock is a commercial[2] anti-cracking, metamorphic and polymorphic protector and executable compressor[3][4] for 32-bit EXE and DLL files[5]
Features
- Anti-decompilation features[6]
- Hash and CRC based Anti-tamper protection against software cracking and binary file patching
- Executable encryption with a multi-layer polymorphic encryption engine
- Executable compression[7] with a selected compression algorithm
- Executable code obfuscation[8] and mutation with a metamorphic engine
- Dynamic and static protection against reverse engineering and binary instrumentation[9]
- Dynamic code chunks decryption and re-encryption at runtime[10]
- Anti-debugger detections at the protected application start and constant system monitoring for the debugging software[11][12]
- Anti-dumping and anti-rebuilding techniques like import table destruction[13]
- Stolen code technique based on ripping common binary code patterns within the executable image and replacing it with a trampoline jump to a metamorphic mutated copy of the code[14]
- Executable password protection
- Watermarking of the executable files
- Runtime detection of custom-defined tools (detection based on window titles, window classes, loaded driver names, process names, module names, mutex names, visited websites)
- Regional and language locks
- Plug-in system for the extensions
- An option to add a bitmap or JPG startup nagscreen for the protected application
- Application DLL binding to the single, output executable file or a DLL library
- Built-in license key system based on public-key cryptography (RSA) and SDK[15] for many programming languages
See also
- Anti-tamper software
- Obfuscation (software)
References
- ↑ "PELock home page". Retrieved February 15, 2021.
- ↑ "When Malware is Packin' Heat; Limits of Machine Learning Classifiers Based on Static Analysis Features". Retrieved February 15, 2021.
- ↑ "Dynamic classification of packing algorithms for inspecting executables using entropy analysis". Retrieved February 15, 2021.
- ↑ Packer detection for multi-layer executables using entropy analysis. Retrieved February 15, 2021.
- ↑ Free Open-Source Software Fingerprinting. Retrieved February 15, 2021. Search this book on
- ↑ "Development and design of a process and a piece of software to analyze unknown software" (PDF). Retrieved February 15, 2021.
- ↑ "Dynamic classification of packing algorithms for inspecting executables using entropy analysis". Retrieved February 15, 2021.
- ↑ "Kompresní a obfuskační metody užívané u malware: detekce a automatická dekomprimace" (PDF). Retrieved February 15, 2021.
- ↑ "Experiences in instrumented binary analysis for malware". Retrieved February 15, 2021.
- ↑ "Hypervisor-based protection of code" (PDF). Retrieved February 15, 2021.
- ↑ One packer to rule them all: Empirical identification, comparison and circumvention of current antivirus detection techniques (PDF). Retrieved February 15, 2021.
- ↑ Application of CLIPS expert system to malware detection system. Retrieved February 15, 2021.
- ↑ Hiding PIN's Artifacts (PDF). Retrieved February 15, 2021.
- ↑ Towards paving the way for large-scale windows malware analysis: Generic binary unpacking with orders-of-magnitude performance boost. Retrieved February 15, 2021.
- ↑ "PELock SDK Package at GitHub". Retrieved February 15, 2021.
This article "PELock" is from Wikipedia. The list of its authors can be seen in its historical and/or the page Edithistory:PELock. Articles copied from Draft Namespace on Wikipedia could be seen on the Draft Namespace of Wikipedia and not main one.
